![]() |
|
|
|
#1
|
|||
|
|||
|
Use IceExt? i think it'll help you with SIce hiding from StarForce...
|
|
#2
|
|||
|
|||
|
fripouille: Starforce has been discussed here a lot. You should use the search button first.
Sky: About using IceExt, i doubt it will help against Starforce because own redirection of debugging interrupts that make Sice to crash. Regards. |
|
#3
|
|||
|
|||
|
Hi all .
Thanx, but in fact, IceExt is no use against starf0rce. It detects 2 Meltice tricks, but this can be easily made by hand... not a big deal. Peleon : I tried to use 'search' option before, but I can't see any 'search' button in this forum. Sure, I need new glasses. thanx a lot... more informations are of course welcome. bye. |
|
#4
|
|||
|
|||
|
you should use windbg instead of softice, because its not that 'intrusive' as softice and you'll need only one simple trick to prevent detection
once you can use a debugger to view interesting parts (like the prodrv06) you'll see a very simple code-decryption, api loading at runtime and a little vm |
|
#5
|
|||
|
|||
|
You could implement your own Ring0 Debugger bypassing the Windows/Processor Debugging Features by adding a new Interrupt to the IDT which invokes cli and jumps into your Code.
So its -nearly Undetectable (except by selfchecking Code) -useable for StarForce Apps If anyone wants to start such a Project, i will join
|
|
#6
|
|||
|
|||
|
It seems there is no too much information about Staforce cracking, but someting obvious is that the protection is being cracked. We have some examples like Xpand Rally (StarForce 3.3) cracked by Ultima or the more recent Will Of Steel (Starforce 3.4.67.7) cracked by Hoodlum.
Unfortunately there are no tutorials or know tools to help in the cracking of SF, at least for the public masses. The best information I have found is the tutorial of yates called "StarForce 3 - Brief insight into a hidden world" that explains how the mov instruction works in the SF Virtual Machine. You can get it from: http://www.yates2k.net/cd/starforce.rtf Does anyone have got more technical information about this protection? |
|
#7
|
||||
|
||||
|
Quote:
Quote:
Quote:
Good luck. |
|
#8
|
|||
|
|||
|
Hi !
Thank you all for your answers !... even if the last one doesn't sound pretty optimistic. It seems to be a really hard target, but even if I'm almost sure of being unable to break it down, I'm just going to start a 'step by step' approach. First, I'll follow niom's advice and try to use windbg instead of SI. Even if I'm not familiar with this proggy. once again, thanx. bye |
![]() |
| Thread Tools | |
| Display Modes | |
|
|