By ro0ted | February 17, 2015 - 20:13 | Posted in /b/ | 12 Comments
#ro0ted #OpNewblood What the Blackhats don’t want you to know: Register this product; Reversing Pt 1

Before I can post my new crackme for the contest since no one has cracked my crackme that was written in Visual Basic…it’s depressing no one managed to crack it. VB is amateur level of easy. So I put together one in MASM. Before I post it let’s go over a couple examples. This tutorial is 1 example. – https://twitter.com/ro0ted/

 


~ Consider this a lecture. Enter spectator mode. Pay attention if you want to crack my crackme and enter a chance to win our gas mask gift pack. I will post several methods/techniques of how to crack serials all today/tomorrow. ~

 

 

 

Run the crackme in Ollydbg.

3

4\

4

What do we do as always? Search for all referenced strings:

1

1

1

66

 

66

99

Lots of my readers email me with JNZ errors so let’s change the Call to 004010AA which is the correct msgbox:

So before we do that let me show you what’s going on here with JNZ and the calls and how the code executes when you enter the wrong serial.

99

So we edit the call where the JNZ jumps to right click the call and click assemble.

99

99

See how it says not registered? Simple fix. Edit the push in assemble wrong one to the correct one:

4444

Now run the program.

454353

Conclusion this is obvious the worst way and/or wrong way to apply a patch a program but we did learn if you have problems with editing JNZ’s which a lot of my readers have emailed me about you can edit the calls, pushes. My point is everything on your screen editable.

ro0ted

 


 

 

(In order)

Why am I teaching Reverse Engineering to inexperienced new Anons in OpNewblood?

Whitehat Lab

ASM Programming

Introduction Part 1 Ollydbg 

Introduction Part 2 Using Ollydbg and Tracing Botnets

Analyzing Botnets

 Introduction Part 3 Ollydbg: Cheating a Crackme

Introduction Part 4 Ollydbg: Your first Patch

Encryption 101

Cuckoo Sandbox: Automated Malware Analysis also known as Malwr.com

Introduction to Honeydrive: A Brief Walk Through

Installing Kippo the SSH Honeypot on a VPS Part 1: How to set it up

Resource Hacker

Dll Injection the Easy Way

Visual Basic Binaries Walk Through Part 1

Ollydbg on Steroids

Creating Patchers Part 1

Have you supported the gas mask campaign over the years?

Crack to win a gas mask gift pack

How to edit a register me crack me Pre Part 1 +

 

(Visited 386 times, 1 visits today)


  • You can follow any responses to this entry through the RSS 2.0 feed.
  • Both comments and pings are currently closed.