Reverse Engineering Team Board

Reverse Engineering Team Board (http://www.reteam.org/board/index.php)
-   Reverse/Social Engineering (http://www.reteam.org/board/forumdisplay.php?f=22)
-   -   HASP SRM dump (http://www.reteam.org/board/showthread.php?t=4738)

husmanafper3 07-10-2012 04:50 PM

HASP SRM dump
 
Hi expert


I have dump file for SRM doungle how can i convert it to emulator plz?

Thanks in advance

crackslab 07-11-2012 05:21 AM

dump file not enough for Hasp SRM Solution, need usbtrace log also

husmanafper3 07-11-2012 02:18 PM

i have usb trace i have dump can any one help ?????
BR

TEMS 09-26-2012 02:03 AM

Please kindly help
 
Dear brother,
please kindly help how to make emulator SRM from dump and usb trace to emulator SRM

Thanks for kindly support

saullow 03-24-2013 01:44 PM

agree with TEMS, please help us....

Git 04-07-2013 07:08 AM

OK, better stop there. This is NOT a warez board. We are here to promote learning of reverse engineering, not the swapping of commercial software.

Git

Larry 08-28-2013 06:13 AM

HASP SRM USB Protocol are crypting by AES. You need make UsbTrace decode tool to decrypt the log.

Dongle use a few AES keys. At least:

* One - for communicate with aksusb.sys driver (functions 2F/AF: check the dongle by white-box AES crypto; you can skip to solve this key now, just install old Sentinel HASP driver < 6.56);

* One - for communicate with HASP License Manager (difference versions of HASP License Manager used defferent AES Keys; now it's a 3 different keys);

* One - for communicate with the protected software (read memory, write memory, hasp_encrypt() / hasp_decrypt() operations, etc).

To decrypt UsbTrace log you need reverse HASP License Manager and modify public HASP Emulator source by Chingachguk & Denger2K.

You can use this drivers' version to reverse the USB Protocol crypting:
http://rapidshare.com/files/458985502/HASPUserSetup.zip

It isn't good packed and crypted. You need research the file Windows\system32\hasplms.exe.

You need to use Rjindael AES C++ source code as base for decrypt/encrypt USB Packets. You can find it in Google.

If you done the reverse of decrypt/encrypt packets between HASP SRM and HASP License Manager after dongle's plug, you will need to get the next AES key from the protected software to decrypt UsbTrace Log between HASP SRM - HASP License Manager - The Protected Software. Just open the protected software in IDA Pro or OllyDbg, find the place where api calls to the dongle are forming and crypting by AES, put the breakpoint on the AES setup key function and get the AES key. After it decode respective packets.

Other case if your software used new white-box AES. It's more difficult to recover the AES-key for decode packets between HASP SRM - HASP License Manager - The Protected Software.

Prenumele Numele 10-30-2013 06:39 AM

usbtrace hasp hl srm decoder
 
decoder for usbtrace log txt of hasp hl srm
parser / processor


I have an old decoder for hasp4/hl usbtrace
I also have srm emulator source code
I need help making log txt decoder / parser
that will use AES vendor code
also have decoder.exe to compare and guide to good results.

best regards,
Nick

skr706 06-19-2014 10:08 PM

Hi There,

I got a encrypted package named as hasp 4 hl srm*emulator*6.51*srmkit250.rar. from http://dc489.4shared.com/download/Ek...2c36&lgfp=2000
or from http://dc489.4shared.com/download/Ek...2d0e141bb19949

Can anyone try to get the password for the file.

Best Regards
Sunil

BfoX 06-20-2014 11:32 AM

over 20 symbol for rar archive :D

Prenumele Numele 10-25-2014 03:47 PM

I got password into a txt files with passwords
indeed is a long password

who wants I could test my tools and this emu for hasp hl srm donglesed softs

BfoX 10-25-2014 11:10 PM

Show your stuff

skr706 02-24-2015 04:17 AM

Could you please send/ share the password for the "hasp 4 hl srm*emulator*6.51*srmkit250.rar"
skr706@gmail.com
@Sunil

user1 03-01-2015 05:15 AM

fake shit.

Prenumele Numele 03-06-2015 04:10 AM

now you can get srmkit 2 6.63
 
here is srmkit tyrus 2 6.63
cause password fits as that for 6.51

http://directmirror.com/v8ea0ksi9464/hasphlsrm6.63.rar
http://directmirror.com/dhv5fszrtr76/hasphlsrm6.63.rar

or
with 7-zip
http://www19.zippyshare.com/v/CYbMN7vG/file.html
http://www19.zippyshare.com/v/eWYYvvNi/file.html
http://www19.zippyshare.com/v/vgFDjkyE/file.html
http://www19.zippyshare.com/v/Cemnc9yQ/file.html
http://www19.zippyshare.com/v/sDwagrrT/file.html
http://www19.zippyshare.com/v/AY5NXIfo/file.html
http://www19.zippyshare.com/v/I4Qb91a7/file.html
http://www19.zippyshare.com/v/5lWmmUHP/file.html

I recomand
https://1fichier.com/?u22sek2q18

Prenumele Numele 03-06-2015 04:58 AM

in my stuff these too
 
Quote:

Originally Posted by BfoX (Post 38133)
Show your stuff

http://www11.zippyshare.com/v/bjetAx0n/file.html
http://www11.zippyshare.com/v/IEGChkbA/file.html

who wish these:
http://www11.zippyshare.com/v/gIoA0mlD/file.html ?

Git 03-06-2015 07:30 AM

Thanks for upoloading these folks, but i can't find a single link that doesn't want to install toolbars, download managers, ILivid.exe, or a 7 hour download, etc, etc. Could somebody please upload to mega.nz ? For those who don't know it is the fastest, most secure download site out there. TIA

Also, I don't understand "cause password fits as that for 6.51", can you share the password please?

Git

BfoX 03-06-2015 09:14 AM

@Git: it is fake - market step if you want to buy this kit...

https://mega.co.nz/#!bU4F0TDb!fW7DVL...7jC2SyMTG5kML4

i test tyrus password from 6.51 - not jet

Prenumele Numele 03-06-2015 10:03 AM

not fake
 
6.51 I mean pass of that:

http://www.4shared.com/rar/Ek2jVUQ0/...651srmkit.html

Git 03-07-2015 07:02 AM

Why not just TELL US WHAT IS THE PASSWORD please?.

And even though I am registered with 4shared all I see is when I try to download 6.51 is crazy ILivid crap and adverts and diversions and everything EXCEPT the file you want. Why do people use these sites?

Git

BfoX 03-07-2015 07:56 AM

6.51 also password protected and my passwd wrong for it

Prenumele Numele 03-08-2015 12:19 PM

Quote:

Originally Posted by BfoX (Post 38303)
6.51 also password protected and my passwd wrong for it

that/also my password begins with !@@

BfoX 03-09-2015 03:12 PM

you need show ends also =)
i'm will compare

Prenumele Numele 03-09-2015 04:20 PM

... ####yyt^
all with capital letters

BfoX 03-10-2015 02:25 AM

Quote:

Originally Posted by Prenumele Numele (Post 38311)
... ####yyt^
all with capital letters

my pwd is 90 symbol length and not have your

don_007 03-10-2015 02:51 AM

hi
 
can you share password here

Prenumele Numele 03-21-2015 07:42 AM

hasp srm dumper and decoder
 
hasp srm 1.5 not works well on windows vista, 7 and 8.(1)
I could give password/ or srm kit v2 6.65 free of money for that can prove that he/she deserves it. It contains updated dumper and decoders/solvers.

BfoX 03-21-2015 10:40 AM

you start casting of the deserve?

Prenumele Numele 03-21-2015 04:48 PM

draft text tutorial
 
http://www62.zippyshare.com/v/Cllp8xFV/file.html
http://www62.zippyshare.com/v/rsIgXou9/file.html

Prenumele Numele 03-21-2015 10:30 PM

my dumper http://www57.zippyshare.com/v/oQqlaA1h/file.html
I can decode in spare time your dumps made by this personalised to me.
also if you have usbtrace logs only or with aes key I can decode them.

How to use UsbTrace
http://www.mediafire.com/download/8r...for_dongle.wmv or
http://lostdongle.com/?page_id=104

Git 03-22-2015 08:12 AM

Quote:

prove that he/she deserves it
How on earth can anybody *prove* that they deserve it?. I am disabled and living on state welfare, but if you think I am going to send a photo of me in my wheelchair and a copy of my bank statement you can think again!.

Git

Prenumele Numele 03-22-2015 10:46 AM

hmmm
 
http://files.brstudio.com/SentinelHASP_6.50_GUI.rar

util for old emu posted last days

BfoX 03-22-2015 10:52 AM

Quote:

Originally Posted by Prenumele Numele (Post 38344)
can prove that he/she deserves it



tell us criteria of selection of the deserve

Prenumele Numele 03-22-2015 10:58 AM

first probe to start server http://www25.zippyshare.com/v/WyRijzEs/file.html in ollydbg or inline patching or other way. no need to fix vmprotect

in memory is enough

BfoX 03-22-2015 11:14 AM

inside mks.sys vmprotected. x86 and x64

Prenumele Numele 03-22-2015 01:42 PM

maybe a pc clone would help

how to force hardware ids for virtual machine ?

maybe an injection of these sys files in server exe or in clients will do/

I tried to install as device x86 sys but failed.

Git 03-23-2015 06:44 AM

hmmm ?

Git

Prenumele Numele 03-23-2015 12:54 PM

I think HDD drive serial and BIOS serial would be enough if I could customise a vmware machine with windows xp.

BfoX 03-23-2015 03:17 PM

Bios date, windows install time, cpuid feature

Prenumele Numele 03-23-2015 03:30 PM

protections
 
maybe, there are simple or complicate with many parameters protections.

try to see what values are checked http://www48.zippyshare.com/v/Uo1vkp4S/file.html


All times are GMT -4. The time now is 03:10 PM.

Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2022, Jelsoft Enterprises Ltd.