首页
社区
课程
招聘
[求助]hasp hl时间问题,有谁能改?
2011-11-14 20:58 28290

[求助]hasp hl时间问题,有谁能改?

2011-11-14 20:58
28290
我有一个加密狗,是hasp hl time的,用hasp hl2007模拟出了一个.dmp文件,并且已经转成.dng文件了,可以正常模拟!
但是有一个问题,那个文件日期是2007/01/01到2008/04/04的20:44的47到50秒之间,如果超过这个日期的软件就不能运行,请问有谁能帮我把时间改成2060年呢?谢谢!

[培训]《安卓高级研修班(网课)》月薪三万计划,掌握调试、分析还原ollvm、vmp的方法,定制art虚拟机自动化脱壳的方法

上传的附件:
  • 1.rar (1.84kb,114次下载)
收藏
点赞0
打赏
分享
最新回复 (33)
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-16 07:43
2
0
求助,谁帮忙修改一下啊
雪    币: 962
活跃值: (1525)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
zhongtiany 2011-11-16 10:47
3
0
要求还需要:
1、hasp hl的password,用h5dmp dump出够数据,然后转成.reg;
2、被保护的安装程序。

用MK模拟狗(够数据记录在.reg文件中,可方便编辑狗数据),然后调试被保护的程序,看程序在做什么比较,找到期限比较的数字后就反过来修改模拟狗数据。
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-16 22:16
4
0
这是很多年前的狗,原狗已经没有了。软件有450M,很难传上来。

雪    币: 673
活跃值: (503)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
流星liuxing 2011-11-23 16:49
5
0
加载模拟狗,重新用h5dmp收集dump数据不就好啦,可以用hasploger收集一下log,如果程序加了壳的话也会用得到的
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-24 22:23
6
0
hasploger在哪里下载得到啊??

附件为 h5dmp出来的文件, 密码为0893:7447
上传的附件:
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2011-11-25 22:25
7
0
use multikey 18.0.3 version, save as reg
REGEDIT4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Multikey\Dumps\08937447]
"Name"="for panyonglin"
"Copyright"="kjms"
"Created"="25/11/2011 20:40:44"
"DongleType"=dword:00000001
"SN"=dword:10598243
"Type"=dword:0000001A
"Memory"=dword:00000001
"SecTable"=hex:8D,9F,8F,9F,81,93,83,93
"NetMemory"=hex:43,82,59,10,00,00,00,00,00,00,FD,FF
"Option"=hex:00,01,02,4A,1F,01,10,0A,0B,01,0F,29,02,00
"HaspTimeMemory"=hex:00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
43,82,59,10,00,00,00,00,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF
"TimeShift"=hex:00,00,00,00,00,00,00,00
"Data"=hex:\
FB,01,01,20,00,1D,00,01,00,8B,01,00,00,00,07,03,\
06,0C,18,31,07,03,06,0C,18,31,07,03,06,0C,18,31,\
07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,80,00,00,00,00,07,EC,37,80,42,58,86,\
F7,87,29,0C,47,AF,93,1F,3E,33,BA,98,87,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
7B,30,16,FF,A6,DE,5B,E2,85,CE,49,FA,23,EA,91,8C,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF
"EDStruct"=hex:\
20,02,27,69,E8,96,01,57,44,57,46,5F,4C,5F,4E,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
"ColumnMask"=dword:000000BB
"CryptInitVect"=dword:00000033
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-26 00:38
8
0
[QUOTE=kjms;1023588]use multikey 18.0.3 version, save as reg

REGEDIT4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Multikey\Dumps\08937447]
"Name"="for panyonglin"
...[/QUOTE]

您好,您倒出来的REG文件不能用,连在以前允许的范围里也不行,
雪    币: 439
活跃值: (86)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
Pan88168 2011-11-26 01:57
9
0
你要搞清楚点:

1. 时间限制是基于HASP HL TIME的硬件内时钟?
2. 时间限制是基于HASP HL * 的内存数据,直接调用或是加密后的数据来验证等?
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-26 08:29
10
0
这个加密狗的时间限制是基于内存数据的,因为模拟出来也是有时间限制的
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2011-11-26 17:18
11
0
change this "Type"=dword:000000EA
re import the reg, restart.cmd(multikey folder), now run your xxx.exe file
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-27 02:28
12
0
现在电脑不在身边,明天晚上试验一下
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-27 20:50
13
0
不好意思,我原来的mk驱动有问题,
经测试,无论"Type"=dword:000000EA 还是"Type"=dword:0000001A
都可以在原来的时间范围内正常使用,但超过规定时间软件还是不能运行,
谢谢kjms的帮忙!!
雪    币: 439
活跃值: (86)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
Pan88168 2011-11-28 11:44
14
0
未必

看你的REG,加密狗时钟区也有数据.

具体还是上LOG最直观
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-29 00:28
15
0
这个是在用REG模拟读出来的。
log:
Hasp In:> HaspIsHasp
Hasp Out:> HaspIsHasp Status=0 (0x0) P1=1 P2=2

Hasp In:> HaspInitPacket
PW1=2195 (0x893) , PW1=29767 (0x7447)
Hasp Out:> HaspInitPacket Status=0 (0x0)

Hasp In:> HaspStatus
Hasp Out:> HaspStatus Status=0 (0x0)  P1=0 P2=5

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:23 Minutes:24 Hours:16

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspReadBlock Address=0 (0x0) BlockLength=1 (0x1) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
            FB01

Hasp In:> HaspReadBlock Address=0 (0x0) BlockLength=16 (0x10) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
FB010120001D0001
008B010000000703
060C18310703060C
18310703060C1831

Hasp In:> HaspReadBlock Address=16 (0x10) BlockLength=23 (0x17) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
0700000000000000
0000000000000000
0000000080000000
0007EC3780425886
F787290C47AF931F
    3E33BA988700

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:23 Minutes:24 Hours:16

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:28 Month:11 Year:7

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:24 Minutes:24 Hours:16

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:28 Month:11 Year:7

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:28 Month:11 Year:7

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:24 Minutes:24 Hours:16

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-29 00:54
16
0
这个是原始HASPHL2007模拟出来,再监控得到的Log
Hasp In:> HaspIsHasp
Hasp Out:> HaspIsHasp Status=0 (0x0) P1=1 P2=0

Hasp In:> HaspInitPacket
PW1=2195 (0x893) , PW1=29767 (0x7447)
Hasp Out:> HaspInitPacket Status=0 (0x0)

Hasp In:> HaspStatus
Hasp Out:> HaspStatus Status=0 (0x0)  P1=0 P2=5

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:22 Minutes:24 Hours:2

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspReadBlock Address=0 (0x0) BlockLength=1 (0x1) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
            FB01

Hasp In:> HaspReadBlock Address=0 (0x0) BlockLength=16 (0x10) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
FB010120001D0001
008B010000000703
060C18310703060C
18310703060C1831

Hasp In:> HaspReadBlock Address=16 (0x10) BlockLength=23 (0x17) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
0700000000000000
0000000000000000
0000000080000000
0007EC3780425886
F787290C47AF931F
    3E33BA988700

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:22 Minutes:24 Hours:2

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:29 Month:11 Year:7

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:22 Minutes:24 Hours:2

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:29 Month:11 Year:7

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:24 Minutes:24 Hours:2

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:29 Month:11 Year:7

Hasp In:> HaspGetDate
Hasp Out:> HaspGetDate Status=0 (0x0)
Day:29 Month:11 Year:7

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:24 Minutes:24 Hours:2

雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-29 01:15
17
0
如果不能改REG文件的时间数据的话,请问如果欺骗加密狗当前的时钟呢?
雪    币: 439
活跃值: (86)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
Pan88168 2011-11-29 06:28
18
0
数据很明显了啊..

自己查SDK就解决了.
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-29 23:15
19
0
不知道在哪里有,发给我好吗?? panyonglin999@126.com
谢谢
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2011-11-30 00:06
20
0
@panyonglin modified reg
REGEDIT4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Multikey\Dumps\08937447]
"Name"="for panyonglin"
"Copyright"="kjms"
"Created"="30/11/2011 20:40:44"
"DongleType"=dword:00000001
"SN"=dword:10598243
"Type"=dword:0000001A
"Memory"=dword:00000001
"SecTable"=hex:8D,9F,8F,9F,81,93,83,93
"NetMemory"=hex:43,82,59,10,00,00,00,00,00,00,FD,FF
"Option"=hex:00,01,02,4A,1F,01,10,0A,0B,01,0F,29,02,00
"HaspTimeMemory"=hex:00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
43,82,59,10,00,00,00,00,\
FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF,FF
"TimeShift"=hex:00,00,00,00,00,00,00,00
"Data"=hex:\
3C,01,01,20,00,1D,00,01,00,8B,01,00,00,00,07,03,\
06,0C,18,31,07,03,06,0C,18,31,07,03,06,0C,18,31,\
07,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,80,00,00,00,00,3C,EC,37,80,42,58,86,\
F7,87,29,0C,47,AF,93,1F,3E,33,BA,98,87,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
7B,30,16,FF,A6,DE,5B,E2,85,CE,49,FA,23,EA,91,8C
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-30 00:23
21
0
[QUOTE=kjms;1024897]@panyonglin TRY THIS REG
REGEDIT4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Multikey\Dumps\08937447]
"Name"="for panyonglin"
"Copyright"="kjms"...[/QUOTE]

您好,您刚发的REG文件连在以前的时间里都不能启动软件,好像后面少了
雪    币: 86
活跃值: (903)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
luzhmu 2011-11-30 11:20
22
0
这个可以改时间的
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-11-30 22:32
23
0
如何改啊,每个的含义是什么啊
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2011-12-1 03:14
24
0
BELOW MODIFIED REG DATA WORKING OR NOT????
雪    币: 206
活跃值: (10)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
panyonglin 2011-12-1 21:19
25
0
It can't work.

use the reg, get the log as below

Hasp In:> HaspIsHasp
Hasp Out:> HaspIsHasp Status=0 (0x0) P1=1 P2=1

Hasp In:> HaspInitPacket
PW1=2195 (0x893) , PW1=29767 (0x7447)
Hasp Out:> HaspInitPacket Status=0 (0x0)

Hasp In:> HaspStatus
Hasp Out:> HaspStatus Status=0 (0x0)  P1=0 P2=5

Hasp In:> HaspGetTime
Hasp Out:> HaspGetTime Status=0 (0x0)
Seconds:24 Minutes:44 Hours:15

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspID
Hasp Out:> HaspID Status=0 (0x0)  P1=33347 (0x8243) P2=4185 (0x1059)
HaspId: 274301507 (0x10598243)

Hasp In:> HaspReadBlock Address=0 (0x0) BlockLength=1 (0x1) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
            3C01

Hasp In:> HaspReadBlock Address=0 (0x0) BlockLength=64 (0x40) Words
Hasp Out:> HaspReadBlock Status=0 (0x0)
Memory:
3C010120001D0001
008B010000000703
060C18310703060C
18310703060C1831
0700000000000000
0000000000000000
0000000080000000
003CEC3780425886
F787290C47AF931F
3E33BA9887000000
0000000000000000
0000000000000000
0000000000000000
0000000000000000
7B3016FFA6DE5BE2
85CE49FA23EA918C
游客
登录 | 注册 方可回帖
返回