• 0

Stealing EXE !


Question

  • 0

just open an exe in debuger and you have the assembly code, real hard to do right? well that ASM code can very painfully be converted to any languge if you have the right converter... and it will never be exactly the same as the original source unless you have the symbols listing

Recommended Posts

  • 0
you're trying to win an impossible war, and the worst thing about it, is the fact your knowledge on it is obviously very low... people who have been doing this their entire lives and know the ins and outs of every single system still can't pull it off, so there is very little chance that you would do it... mainly because its impossible

585263781[/snapback]

actually i made it (in most of my important progs ), you seem confused , and if you want me to prove it , tell me anything of the logic and i will send you the code ( but in VB .net as i have small knowledge about it )

  • 0
actually i made it (in most of my important progs ), you seem confused , and if you want me to prove it , tell me anything of the logic and i will send you the code ( but in VB .net as i have small knowledge about it )

585263802[/snapback]

send that exe to any professional cracker.. and check it out.. and do one thing.. send it to me.. let me try if I can crack it up.. I am not pro, but I have pretty good knowledge about it..

pro crackers will surely be able to do that...

  • 0
Think about it for a moment - you don't even understand what an EXE file is, let alone anything lower level, but you are going to defeat hardcore crackers who understand the thing from top to bottom.

Lame tricks don't work, security through obscurity is a non-starter - every cracker worth his salt would use a file monitor and network monitor  to instantly spot this "scheme" and then just a couple of NOPs would render it useless. It may stop the casual copier - but a simple key stops 95% if them anyway.

But none of this matters as it's quite obvious you lack any in depth understanding of the problem at hand - you scheme assumes the crackers are stupid, the best crackers are as good as the best security makers - that's why the battle continues.

585263787[/snapback]

man i said before its a TRICK , recognized = its OVER , and BTW i respect you for saying "file monitor and network monitor " cause thats a part of solution but if the crackers know that how they conclude the mechanism !!! i know its hard but i didn't said its impossible , um just saying "does any one hears about this tricks ?"

and also you know that crack and virus makers are the most intelligent people in programming .....

trick means "the hours which make your cracker seeking for the solution"

  • 0
send that exe to any professional cracker.. and check it out.. and do one thing.. send it to me.. let me try if I can crack it up.. I am not pro, but I have pretty good knowledge about it..

pro crackers will surely be able to do that...

585263828[/snapback]

cool man are u serious ........ ok please give me ur name and ur e-mail , i was really seeking to find people do that because you know that no one can rate him self , other rate him

  • 0
actually i made it (in most of my important progs ), you seem confused , and if you want me to prove it , tell me anything of the logic and i will send you the code ( but in VB .net as i have small knowledge about it )

585263802[/snapback]

I seem confused? I'm a PhD candidate in computer science... I have a degree in Computer Science and Information Security... please dont tell me IM confused... Your program is even in VB.NET which is one of the easiest things to take into MSIL and convert back to code that is very easy to hack... if you think you are going to pull something off in .NET you are badly mistaken...

  • 0
no thats ur opinion , but if u read the whole thread you will find that i said i use "decompilation" in peace purpose like "anti-cracker tricks" ,they didn't belive  me and then we are here .......

winston, i know u have great experience , but u know the disadvantages of forums is that there is posts and u seem confused as you are reading a story ( if we made forums seems like chating ;) ... it will be cool )

585263777[/snapback]

I wish i can understand what on earth your reply is about, so i could at least form a coherent response to that... :blink:

  • 0
deal , ......... i will made it and post it in the forum between 4 - 5 days ( exams here ;) ) and that will be great , agree ?

585263887[/snapback]

no, not a deal, that gives you enough time to run away and hope we forgot about this thread... if you actually had something now then you'd be able to post it now... as you are already spending so much time just on this single thread, it doesn't show me that you are necessarily strapped for time.

  • 0
man i said before its a TRICK , recognized = its OVER , and BTW i respect you for saying "file monitor and network monitor " cause thats a part of solution but if the crackers know that how they conclude the mechanism !!! i know its hard but i didn't said its impossible , um just saying "does any one hears about this tricks ?"

and also you know that crack and virus makers are the most intelligent people in programming .....

trick means "the hours which make your cracker seeking for the solution"

585263835[/snapback]

No crackers and vxers are not the most intelligent people in programming - SOME of them MAY be AMONGST the best programmers/engineers/problem solvers in the field, but it's not a given. It's just that when developing security, obscurity is nothing more than hide and seek and you should always think (true or not) that your enemy is cleverer, craftier and more skilled than you.

Many crackers take on the task of cracking simply as an intellectual challenge, it doesn't matter if it takes minutes, hours, days or weeks.

If you were talking about physical security, then "the hours which make your cracker seeking for the solution" may help - in the real world a safe cracker couldn't take days. But software security is the equivalent of giving a safe cracker the safe to take home, then he has all the time in the world to bring the strongest tools to bear on the problem...you can bet the safe is opened sooner rather than later.

The only recent case I have seen where protection offered a hard enought challenge to make the time less than worthwhile, has been StarForce 3 copy protection. SF3 protected games appear on warez a long time after their release (unlike Safedisk and Securom) and with entertainment software, it's this "time to warez" that hurts the most.

  • 0
deal , ......... i will made it and post it in the forum between 4 - 5 days ( exams here ;) ) and that will be great , agree ?

585263887[/snapback]

If you post it here and it doesn't get cracked that doesn't say anything about your scheme.

You would do better, posting it to a some dedicated cracker forums with the title "UNCRACKABLE PROTECTION - give it a try" - if it's not as lame as it sounds, you should get a response within the hour. But it may well be such a lame scheme that no one bothers to respond - kind of like when someone tells an awful joke and nobody responds.

  • 0
i was wondering the same lol

585263946[/snapback]

you both : txt is identified in regeitry ( the extension only) , try in dos "EX: copy c:\>a.txt con ", and exe as an example identified by registry and the file codes ...

i have no much time ...... neofuse u see me in the programmers forum , and please don't forgot , if u will then PM me after 4 days

  • 0
you both : txt is identified in regeitry  ( the extension only) , try in dos "EX:  copy c:\>a.txt con ", and exe as an example identified by registry and the file codes ...

i have no much time ...... neofuse u see me in the programmers forum , and please don't forgot , if u will then PM me after 4 days

585263978[/snapback]

you really don't havea clue what you're talking about do you?

  • 0
Funniest thread ever

so true, well at least in the programming section of neowin.

and also you know that crack and virus makers are the most intelligent people in programming .....

as _Pablo said

No crackers and vxers are not the most intelligent people in programming - SOME of them MAY be AMONGST the best

look Elagizy, with out flaming, you need to be a bit more humble and listen to the people on neowin. Your "arrogance" is causing this thread to become a bit of a joke. if you are serious about what you are trying to do, be humble and listen.

The idea that you think that a bag of tricks can make your program un-crackable is really making people reading this thread laugh. just say ok, so how can I best protect my program if that is what you really want to do.

BTW: your knowledge of computer science (not just programming) appears to be seriously lacking. I suggest you follow the tutorial links people have posted for you.

  • 0

unless you first now how to code, and im not exactly sure that you do, you probably shouldnt even be touching assembly code. Use any debugger, VS will do. But changing the assembly code is practically useles if you're trying to make improvements, you have to hook a program normally. It sounds to me like you're trying to write a crack or something. In which case just change the jump lines, such as xxxx73 to xxxx74, i think, i cant remember exactly, i havnt touched assembly code for a while...

  • 0
great man ...........

i will tell you 2 logics , cause i don't know ur skills in this ..

1- security system will depend on hardware ( HDD serial ) then encoding it to numbers and if every 1st 2 numbers ( after encoding ) will have an alternative number which is Authorization Code  ( so we got 01 to 99 numbers ) ..... don't tell me making KEYgen will gonna work ..... and after programing that make a (EX VB :  public  sub  ajskhdakjhad ()," or  you can name it a feature in your prog ( and that is the trick " ) and on each button in your prog call this sub to check the authorization code which is saved in a file in other path .........

hope u solve it ;) Preparing the 2nd logic

585263540[/snapback]

You clearly have very little idea of what you're talking about. Whatever system you put in place can be circumvented... all it takes is time. Cracking can take two main approaches.... either you work with the security that has been put in place (such as a keygen) or you circumvent the security (such as by adding code to bypass any checks).

Your first example is far too simple to present much of a challenge to a cracker.

  • 0
2-

A security system depends on the number of opened process ( ctrl+alt+del ), put a value ( authorization code ) for each number between ( 1 to 500 , i think no one will have more than 500 or he is crazy ) where no value has no relation to the other ( so there is no keygen can be made ) after that make a timer each 3 minutes  check the value of authorization code  which saved in a file and saved also in other file ( which is used by program in other functions ) by using a trick ( public sub ) and if the crack is found, then the program will know that, by making a variable which confirm that Authorization code is confirmed and checked , if the variable came with a code which means its not confirmed ( EX if a = "Form1.WMP.PLay" another trick ), then from a secret link in your website have a page which has another code ... let the program read this code and if its confirmed that is crack then let ur program read the code from the website then save it to file which saved file in another path , and finally make the prog check this code and then self damage to ur prog ( "PROGRAM CORRUPTED") ;)

585263652[/snapback]

I haven't coded in years, however I'll try and tell you the problems I see with your logic:

For one this is very, very inefficient. So a user's process list changes, then the program becomes unusable for 3 minutes? A secret link on your webpage with code to "complete" more code? What happens if the site is down? The user has to wait for it to be back up? Oh the user can't wait, because the last part of the "trick" involves corrupting itself?

Alright well say someone actually wanted a program that does this. The cracker disables the timer, so it only checks once. Now the program stays authorized. And now it checks the website for some sort of secret code. Well let's say it can't be decompiled, well simple monitoring of WinSOCKS should tell you what URL its trying to snag. So now the secret code is snagged and then placed locally and the HOSTS file is changed for that URL to resolve locally to the local code saved. More than likely the URL will be changed via Hex or whatnot anyway.

Not only is this method defeated, it is now actually more effecient.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Ocenaudio 3.19.3 by Razvan Serea  Ocenaudio is a full featured, fast and easy to use audio and music editor. It is the ideal software for people who need to edit and analyze audio files without complications. Ocenaudio also has powerful features that will please more advanced users. To assist ocenaudio development, a powerful toolset of audio editing, analysis and manipulation called Ocen Framework was created. ocenaudio is also based on Qt framework, a well known library for cross-platform development. Cross-platform support ocenaudio is available for all major operating systems: Microsoft Windows, Mac OS X and Linux. Native applications are generated for each platform from a common source, in order to achieve excelent performance and seamless integration with the operating system. All versions of ocenaudio have a uniform set of features and the same graphical interface, so the skills you learn in one platform can be used in the others. VST plugins support Ocenaudio supports VST (Virtual Studio Technology) plugins, giving its users access to numerous effects. Like the native effects, VST effects can use real-time preview to aide configuration. Real-time preview of effects Applying effects such as EQ, gain and filtering is an important part of audio editing. However, it is very tricky to get the desired result by adjusting the controls configuration alone: you must listen the processed audio. To ease the configuration of audio effects, ocenaudio has a real time preview feature: you hear the processed signal while adjusting the controls. The effect configuration window also includes a miniature view of the selected audio signal. You can navigate on this miniature view in the same way as you do on the main interface, selecting parts that interest you and listening to the effect result in real time. Multiselection for delicate editions To speed up complex audio files editing, ocenaudio includes multi-selection. With this amazing tool, you can simultaneously select different portions of an audio file and listen, edit or even apply an effect to them. For example, if you want to normalize only the excerpts of an interview where the interviewee is talking, just select them and apply the effect. Eficient edition of large files With ocenaudio, there is no limit to the length or the quantity of the audio files you can edit. Using an advanced memory management system, the application keeps your files open without wasting any of your computer's memory. Even in files several hours long, common editing operations such as copy, cut or paste happen almost instantly. Fully featured spectrogram Besides offering an incredible waveform view of your audio files, ocenaudio has a powerful and complete spectrogram view. In this view, you can analyze the spectral content of your audio signal with maximum clarity. Advanced users will be surprised to find that the spectrogram settings are applied in real time. The display is updated immediately when altering features such as the number of frequency bands, window type and size and dynamic range of the display. Ocenaudio 3.19.3 changelog: Fixes issues with MP4 files with more than 8 channels Fixes incorrect VBR detection for some CBR MP3 files Other bug fixes and improvements Download: Ocenaudio 64-bit | Portable | ~40.0 MB (Freeware) Download: Ocenaudio for Linux and Mac OS View: Ocenaudio Homepage | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • DiskGenius 6.2.0.1829 - All Versions: Free, Lite & Portable by Razvan Serea DiskGenius is a full-featured partition manager, which is designed to optimize disk usage for Windows users. It will efficiently help you recover lost data, resize/split partition, backup files, edit hex data, check bad sectors, manage virtual disks, erase data, etc.. Create a system image backup for current Windows with simple clicks to keep the operating system under protection. DiskGenius key features: Partition Management - It can create format, resize, extend, backup, split, hide and clone partition, both MBR and GPT are supported. Disk and partition conversion - Convert dynamic disk to basic, convert virtual disk format and convert MBR to GPT, convert primary partition to logical. File recovery - It can recover files deleted or emptied form recycle bin, recover files from damaged partition or disk and recover files by file type and supports file preview and file filter. Partition recovery - It is the best partition recovery program in that it can recover files from damaged, corrupted and RAW partitions, search for lost partition and recover files from it, besides, it can fix partition table. RAID recovery - It can reconstruct Virtual RAID and recover files from it, and all RAID types are supported. Sector Editor - A Hex editor is embedded to help users edit raw hex data and recover data manually. Backup and Restore - It can backup and restore partition including system partition, hard disk and partition table. Bad Tracks - It can check and repair bad sectors for all storage devices; check hard disk S.M.A.R.T. information. Delete files permanently - It can delete files permanently so that they can't be recovered by any data recovery software. Virtual Disk - It supports virtual disks, including VMware, Virtual PC and Virtual Box. Create WinPE bootable disk and you can manage disk partition when system crashes or there is no operating system on your computer. Support FAT12/FAT16/FAt32/exFAT/NTFS/EXT2/EXT3/EXT4 file system format. DiskGenius 6.2.0.1829 changelog: Add the "Disk Speed Test" feature. Add the "Windows Boot Repair and Conversion" feature. Add the BMB21-2019 erase standard to the "Erase Sectors" feature. Add support for restoring an individual partition from a PMFX disk image file. Enhanced The "Verify Or Repair Bad Sectors/Blocks" feature displays disk read speed in the detection window during scanning. The "Quick Partition" dialog box allows users to quickly select the number of partitions by pressing the numeric keys 1, 2, 7, 8, or 9. The "Set Volume Name" dialog box supports selecting preset volume labels provided by the software. The "Copy Sectors" feature supports resuming copy tasks after modifying the number of skipped bad sectors. Add the "TRIM Optimization" option to the format dialog box. The "Clone Partition" and "Clone Disk" features perform TRIM optimization on target partitions or disks before cloning. Add support for Not Equal To search conditions (prefixed with "!") when searching hexadecimal data in the sector editor. Optimize the display of capacity values in the program interface to show two decimal places. Add a minimize button to dialogs that may require long processing time. Enhance support for the ReFS file system. Enhance support for newer HIF and MP4 formats when recovering files by type. Enhance support for the EXT4 file system. Enhance compatibility of the "File Recovery" feature with special data structures. Fixed Fixed the issue that the selected file system type automatically reverted to NTFS after changing it to exFAT or EXT4 in the "Quick Partition" dialog box. Fixed inaccurate Unicode string search results in the "Sector Editor" feature. Fixed the issue that exceptions might occur when adding multiple disks in the "Erase Sectors" feature. Fixed the issue that insufficient target disk space was incorrectly reported in some cases when cloning, backing up, or restoring disks. Fixed the issue that folder modification timestamps were not preserved when copying files from ReFS partitions. Fixed the issue that Excel-format reports generated by features such as file copying or bad sector checking could not be opened when the report contained more than one million rows. Fixed the issue that folders were not displayed in the exclude-folder dialog box when backing up partitions to image files. Fixed the issue that the "Erase Sectors" feature could not be executed in some cases. Download: DiskGenius 6.2.0.1829 | 63.9 MB (Freeware, paid upgrade available) Download: DiskGenius Portable 64-bit | 40.0 MB Download: DiskGenius Portable 32-bit | 36.0 MB Download: DiskGenius Lite 64-bit | 13.4 MB Download: DiskGenius Lite 32-bit | 11.6 MB View: DiskGenius Home Page | DiskGenius Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Really? Use a better search engine https://www.google.com/search?...ourceid=chrome&ie=UTF-8
  • Recent Achievements

    • Week One Done
      agatameier earned a badge
      Week One Done
    • One Month Later
      agatameier earned a badge
      One Month Later
    • Week One Done
      ssd21345 earned a badge
      Week One Done
    • Contributor
      MarkHughes4096 went up a rank
      Contributor
    • Dedicated
      jordanspringer earned a badge
      Dedicated
  • Popular Contributors

    1. 1
      +primortal
      513
    2. 2
      +Edouard
      182
    3. 3
      PsYcHoKiLLa
      143
    4. 4
      ATLien_0
      95
    5. 5
      Steven P.
      74
  • Tell a friend

    Love Neowin? Tell a friend!