Jump to content
Tuts 4 You

Easy CrackMe (YeetFuscator)


Alex0
Go to solution Solved by BlackHat,

Recommended Posts

Easy CrackMe (YeetFuscator)


Language: C#(.Net)

Goal: to get the key of obfuscated file

Key on the screenshot is wrong, you have to crack this CrackMe and send key with tutorial on how did you do that.


 

Edited by Alex0
Forgot the name of protector
Link to comment
Share on other sites

  • Solution

As It is a Crack Me and the Goal is to get the key of obfuscated file

So I am going to find the Key without actually Unpacking It.

Methodology -

Quote

 

  • Run the software. 
  • Open the Process Hacker.
  • Enter anything in the TextBox and It will show an Error.
  • Check for that in Memory Strings and You will find out the Correct Key just near to it.

 

Valid Key -

Spoiler

79320480-148247987-UXNEIFN

Image -

Spoiler

Leet.png.312a91b7e4edc57475886f9d387b963a.png

 

  • Like 2
Link to comment
Share on other sites

tarequl.hassan
2 hours ago, BlackHat said:

As It is a Crack Me and the Goal is to get the key of obfuscated file

So I am going to find the Key without actually Unpacking It.

Methodology -

Valid Key -

  Reveal hidden contents

79320480-148247987-UXNEIFN

Image -

  Reveal hidden contents

Leet.png.312a91b7e4edc57475886f9d387b963a.png

 

Hello Blackhat

Can you share your Process Hacker?

 

Thanks

Link to comment
Share on other sites

KanohAgito
58 minutes ago, tarequl.hassan said:

Hello Blackhat

Can you share your Process Hacker?

 

Thanks

lol lol why you even here !!! search in google !!!

  • Haha 1
  • Sad 1
Link to comment
Share on other sites

3 hours ago, tarequl.hassan said:

Hello Blackhat

Can you share your Process Hacker?

 

Thanks

Hello, tarequl.hassan!

I think he used this https://processhacker.sourceforge.io/downloads.php

To get straight to the Memory Strings you should do folowing:

1. Open obfuscated app

2. Open process hacker

3. Find your process in Process Hacker and right click on it

4. Select "Properties" and navigate to tab called "Memory"

5. You will see button in top-right called "Strings..."

That's it, I hope it helped. Have a nice day!

Edited by Alex0
  • Thanks 1
Link to comment
Share on other sites

tarequl.hassan
10 hours ago, Alex0 said:

Hello, tarequl.hassan!

I think he used this https://processhacker.sourceforge.io/downloads.php

To get straight to the Memory Strings you should do folowing:

1. Open obfuscated app

2. Open process hacker

3. Find your process in Process Hacker and right click on it

4. Select "Properties" and navigate to tab called "Memory"

5. You will see button in top-right called "Strings..."

That's it, I hope it helped. Have a nice day!

Thanks mate for the support with the procedure. 

 

Have a nice day.

  • Like 1
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...