Exetools  

Go Back   Exetools > General > General Discussion

Notices

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #1  
Old 03-30-2026, 20:15
Jasi2169's Avatar
Jasi2169 Jasi2169 is offline
Family
 
Join Date: Sep 2015
Location: India/TSRh
Posts: 323
Rept. Given: 3
Rept. Rcvd 72 Times in 49 Posts
Thanks Given: 47
Thanks Rcvd at 524 Times in 202 Posts
Jasi2169 Reputation: 72
Red face app not cracked since 2019 with tricks

https://www.daemon-tools.cc/products/dtultra

Daemon tools ultra is not cracked since 2019, v5.5.1 is latest proper crk, app has subscription mode and the bad thing is that license even if you bought permanent is not permanent, app need internet after 30days passed to keep using license which is against preservation, anyway can be bypassed for date,not issue here, can be patched too to load no issue, issue is the hidden check which dont let app mount images or vmdisk etc without proper license, i am not good in unpacking maybe someone with good knowledge in unpacking want to try and have fun

request generated to server

https://secure.disc-soft.com/sys/activate and the request gets encrypted in query=

"product=DTUltra&option=subscription&version=7.1.0&w=Microsoft+Windows+10+(build+1337)&l=en-US&lng=0409&serial=&email=EMAIL%40gmail.com&pcname=PC-NAME&ProtocolVersion=2.3&hwkey=HWID&auth_token=MD5HASH&r=00001"

response decrypted below from server ,good boy with permanent lifetime license paid subscription

<?xml version=\"1.0\" encoding=\"UTF-8\"?><response code=\"0\" random=\"00001\" sid=\"HWID\"><protocol version=\"2.3\"/><message url=\"https://www.daemon-tools.cc/\"><text><![CDATA[Activation is approved]]></text></message><license type=\"subscription\" software=\"DTUltra\" subscription_type=\"paid\" user_email=\"[email protected]\"><configuration instances=\"1\"/></license></response>

random r is generated should respond, hwid is made from
check if widnows 10 or up if below windows stuff is added in hwid else no
then, taking win10and up as majority is win10 and up now
computername->fetch its sid +
smbios type 2 with manufacturer/product/serial +
disk size of system drive using DISKIO

every single thing is encrypted,hashed,sig verified using bcrypt.dll

i have spoofed/patched the main engine.dll which can load any hwid, the app binaries specially DiscSoftBusServiceUltra.exe service and DTCommonRes.dll is vmprotected, no patch since 2019, patching is easy the hidden trick is that app dont mount images etc and some other features without valid license, the tricks are hidden in vmprotect files and service, if anyone looking for some challenge do check, i am not good in unpacking

Checking deep apo used aes with custom table i guess didnt look properly with XOR/AES/xor stuff
AES Mode = CBC
If i am not wrong
Key = A9F13C7B3904C72A6DBF19FAB5E3FA72
IV = CE1CC75A4EC42ADD6C0851836A902262
Reply With Quote
 

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



All times are GMT +8. The time now is 06:50.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )