
KKR_WE_RULE's Beat The Protection
Download KeyGenMe.zip, 236 kb (password: crackmes.de) Browse contents of KeyGenMe.zip This one is a level 5 challenge :D
Difficulty: 4 - Needs special knowledge | RatingWaiting for at least 3 votes View profile of KKR_WE_RULE » |
Solutions
Solution by tamaroth, published 27. nov, 2010; download (659 kb), password: crackmes.de or browse.
tamaroth has rated this crackme as quite nice.
Discussion and comments
redoC 04. Nov 2010 | Contains virus Win32/Induc ... ? |
---|---|
KKR_WE_RULE Author 19. Nov 2010 | Clean Version upped :) Get cracking :) |
tamaroth Moderator 21. Nov 2010 | Quite fun, found some ways to basically bypass some of the protection :P Name: tamaroth serial: 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-343154934174747C25132565D44B9597 activation: 1234567890-1234567890 Machine ID doesn't realy matter ;p name: KKR_WE_RULE serial: 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-3B699F4C8B35AA033599A64D63891FC6 activation as above Hopefully i'll find some time to describe what's been done here to bypass dlp etc :) |
KKR_WE_RULE Author 22. Nov 2010 | Hmm.. Interesting.. Bypass the dlp !! Will be waiting for your soln buddy :) You have really pwnd me !:D |
tamaroth Moderator 23. Nov 2010 | Solution submitted, hopefully it'll be accepted sometime soon. |
KKR_WE_RULE Author 23. Nov 2010 | Good Work buddy :D Looking forward to seeing ya soln :) |
Coderess 24. Nov 2010 | tamaroth Why do not use demangler in IDA it can make screens more beautiful and clear :) |
KKR_WE_RULE Author 24. Nov 2010 | Well...well...well. Awesome soln.. i must say :) Brilliant :) Congratz tamaroth :) |
KKR_WE_RULE Author 24. Nov 2010 | btw, ya keygen produces bad serials for some names.. But it works for most :) This challenge stands solved :) @Encrypto : Still waiting 4 ya soln :) |
tamaroth Moderator 24. Nov 2010 | show me some examples, i have a vague idea what might be wrong, but need to check it out ;p |
KKR_WE_RULE Author 24. Nov 2010 | Well , Name : KKR_WE_RULE : gives 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-30580803A455CAB63CD9512C6123E67E this 1 doesn't work :) Name : crackmesde gives 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-10DD39C71114F82D3D57D1A4439CC50C this didn't work either :) Name : RedCrew gives 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-3BC707298B322B40D03377D1B80D61AB This didn't work too :) Name : Babi gives 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-4DA78CE3FD9E641402E0F294CFEF19D1 this 1 works :) regards KKR |
tamaroth Moderator 24. Nov 2010 | Hey, i know what's wrong. By simple mistake I've put "older" keygen into the package, there's also small problem with miracl lib in my source code (just found out). But the source code works, when i recompiled it again just now, for your names i got proper values, which are: (treaet names without "") name: "KKR_WE_RULE" serial: 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-3B699F4C8B35AA033599A64D63891FC6 name: "crackmesde" serial: 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-48265DF21220BDD302B6BDE79D04FFAB name: "RedCrew" serial: 40ABDB3B6D3FB3E3EB57C9B3647F2BD2-7D23CFF9F2088EA26401D55CCB265F43 The problem in older version was that i passed crc32 as a dword to convert (miracl function), and sadly enough convert takes parameters as int, not unsigned int, so when crc32 was bigger that 7FFFFFFF, it was considered a negative number. Source code has a way around it though (converts uint to a string and then cinstr from string to big). I'll update the keygen (and source) in a while. |
KKR_WE_RULE Author 24. Nov 2010 | alright :) No problem :) Well done :) |
Encrypto 26. Nov 2010 | Hello KKR: I am currently writing up the solution :). @tamaroth: brilliant solution. absolutely well spotted! |
Xspider 26. Nov 2010 | hi encrypto wasup :D where is tamaroth's solution O_o |
KKR_WE_RULE Author 26. Nov 2010 | There was a bug in his keygen. He'll upload the fixed one soon :D Looking forward to your soln tCm! :) |
tamaroth Moderator 26. Nov 2010 | My solution is currently reviewed by moderators, i uploaded new version due to a bug in my keygen which caused sone names generating wrong serials, should be available soon :) |
Xspider 27. Nov 2010 | okey then :) mods are a lill bit lazy :p |
KKR_WE_RULE Author 28. Nov 2010 | Allright :) This 1 works like a charm :) Good Work Man :) |
You may leave your comment, thoughts and discuss this crackme with other reversers here.
Acting childish will not be tolerated.
HTML and such will be left as-is, so don't try.