WinPatch v1.2
Introduction |
Greetings and welcome to the noble art of reverse engineering!
Tools required |
Numega Softice v3.22
Target's URL |
http://www.artistry.com/products/winpatch/
Essay |
Step1. Start WinPatch v1.2.
Step2. Choose: "About" and then "Register".
Step3. Start Softice (Ctrl + D) and place a breakpoint on: bpx getwindowtextaand press [Enter]
then returnto winpatch (ctrl + D)
Step4. Type in:
Name: McCodEMaN
Registration Id: 1234567
Organization: The Reverse Engineering Squad
Step6. Press [OK] and softice will break due to BPX GetWindowTextA.
Step7. Type: d eax [Enter] and press F5.
-Whatdo we see in the prot-window?
Yes, our username: McCodEMaN
Step8. Type: d eax [Enter] and press F5.
-Whatdo we see?
Hm, our ID number is in the prot-window: 1234567
Step9. Type: d eax [Enter] and you will see our Oranizations name:
The ReverseEngineering Squad
Step 10. Press F11.
Step 11. Trace down with F10 until you see...................
:004131C0 52 PUSH EDX
Step 12. Type: d edx -Whatis this!!!....look what we found?!....ain`t that the
ID-code we where looking for.....L&D-xxxx-xxxxxxxx
Step 13. Type bc * to remove all breakpoints and have fun!
Final Notes |
| BACK |