cracked CO partner

06/03/2006 14:13 inuyoukai#1
Ihave an idea, and i think im on my way to figureing it out, what if we altered the time on the trial version to like12089748172489 minutes, in order for it to run forever, not an ACTUAL crack but very similar...

what i've done so far,
used stripper and unpacked trial s3dhook.dll

opened the new unpacked one withh resource tuner

now i can look at strings and other things inside, but most of it still say '???' and so on, so i install the langauge pack so i could see/ write chineese characters... that didn't work still getting '???' so i've been searching for any place where it says 20 but...nothing so im thinking the actual number is in '????' format

i looked at the version and it says the timer fun = 00033Ch , i dunno about you guys, but i dunnno how long a CH is and im a bit affraid to just run around altering stuff


any tips would be marvelous. ty


cummon big shot hackers ^_^ help a girl out
Kurizen
06/03/2006 14:58 Peach#2
it is not that simple
06/03/2006 15:06 puzzlebird#3
well, I suspect the timer does not do at exactly 20 minutes, the co2 program crashed some time inbetween 15-20 minutes, so there may be a range and random function to select when to send crash signal.

BTW, where did you find the timer function is at 00033Ch? I also disassembled s3dhook.dll, but did not find any timer function in it.
06/03/2006 16:27 at10ti0n#4
Quote:
Originally posted by puzzlebird@Jun 3 2006, 15:06
well, I suspect the timer does not do at exactly 20 minutes, the co2 program crashed some time inbetween 15-20 minutes, so there may be a range and random function to select when to send crash signal.

BTW, where did you find the timer function is at 00033Ch? I also disassembled s3dhook.dll, but did not find any timer function in it.
if u disasembly the unpacked s3dhook.dll search this hex value: A1 68 2E 05 10 here should be that timer function. it would be easier to open in ida pro, it makes things much understandable :)
06/03/2006 17:10 prog4mer#5
Quote:
Originally posted by puzzlebird@Jun 3 2006, 14:54
ok. Here's what I have got so far for cracking it.

We try to crack with the trial version.

First of all, you need stripper 2.13b9 to unpack the exe file, then use stripper 2.07f to unpack s3dhook.dll. One hint is that stripper 2.13 MUST be initialized in "english" locale, otherwise the program will exit with error 85.

Secondly, search ascii string "202." in the unpacked exe file and change the IP address string to 127.0.0.1, and search 32bit unsigned value "12502" and change it to "D530" in heximal (this is 12501 in decimal). Save the new exe file. Now it should start with the emulator without problem.

Thirdly, there is a timer in the trial version, but I stuck here and made no program so far with dissembled code. If someone gives me a little bit of hint, I can go on.

CO really sucks without botter.
we r allready near.. but we need 2 translate it later.. but first crack it =) !!
now we just need 2 find the real timer range ....

@at10ti0n what u mean with ida pro ?
06/03/2006 17:13 at10ti0n#6
Quote:
Originally posted by prog4mer@Jun 3 2006, 17:10


we r allready near.. but we need 2 translate it later.. but first crack it =) !!
now we just need 2 find the real timer range ....

@at10ti0n what u mean with ida pro ?
[Only registered and activated users can see links. Click Here To Register...]
its a disassembler... open the unpacked s3dhook.dll with it and ull see much more info... even function names.
06/03/2006 22:41 currypuff#7
tts cool