Jump to content
Tuts 4 You

[CrackMe].net crackme or keygenme


mdj

Recommended Posts

Confuser v 1.x :D ....

Failed to unpack from the tricks i know so far,...

Somebody is talkin about unpacking it using WinHex on some forums but i cant access it (dunno why)

Will be nice to see how to unpack Confuser MANUALLY ,..!! Anybody ???

Good crack me btw ,..!! :)

Link to comment
Share on other sites

Confuser v 1.x :D ....

It was protected with .NET Reactor followed by Confuser v1.9 (r76186+).

Will be nice to see how to unpack Confuser MANUALLY ,..!! Anybody ???

It's using AntiTamperMem which just decrypts the encrypted methods when it starts. Dump it from memory and fix the PE and .NET headers afterwards. Then manually fix each proxy call, and manually decrypt (using your trusty binary calculator I assume) the resources, and finally manually decrypt the constants. If you're successful, you'll end up with a 356KB file.

  • Like 1
Link to comment
Share on other sites

Hi,

It hard to talk about unpacking .net because as i know we don't have much info about this stuff. So while 0xd4d is here, i just want to know that is this easy to decrypt string, function which is obfuscated to "normal" ; just like xyzasbc => System.String.. kind of xenocode. Beside time and knowledge about dotnet programming, is IL required? I really want to decrypt myself but not much tut public on net.

Link to comment
Share on other sites

  • 5 months later...
  • 10 months later...
  • 10 months later...

sir i have did all thing you said but i have a file when i open it in .net reflector it says module contains multiple strings.plz give me solution urgent


Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...