首页
社区
课程
招聘
[請問]请教二只Sentinel dongle加密狗在同一部电脑中模拟的问题
2016-9-26 14:09 7446

[請問]请教二只Sentinel dongle加密狗在同一部电脑中模拟的问题

2016-9-26 14:09
7446
请教二只Sentinel加密狗在同一部电脑中模拟的问题
有二只Sentinel dongle,分别是同一间公司,不同软件的硬碟锁
利用SSP2MK分析取出二个reg档案
但是发现章档里面的[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\\0000ABCD]
二个reg档都显示一样的
而且我试了一下,如果我安装dongleA的Multikey,dongleA的软件可以执行,但是安装dongleB的Multikey的话,变成dongleA的软件就不能使用
请问这是不是二个reg一样有冲突的关系呢?
如果是要在同一部电脑安装这二个Multikey的话,请问要怎么修改呢?

[CTF入门培训]顶尖高校博士及硕士团队亲授《30小时教你玩转CTF》,视频+靶场+题目!助力进入CTF世界

收藏
点赞0
打赏
分享
最新回复 (19)
雪    币: 817
活跃值: (1927)
能力值: ( LV12,RANK:2670 )
在线值:
发帖
回帖
粉丝
KuNgBiM 66 2016-9-26 14:23
2
0
要经过分析,然后把数据整合
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 14:24
3
0
嗯,请教一下
这二只加密狗都有分析,并取得reg档案
请问接下来是要怎么整合呢?
雪    币: 817
活跃值: (1927)
能力值: ( LV12,RANK:2670 )
在线值:
发帖
回帖
粉丝
KuNgBiM 66 2016-9-26 14:38
4
0
分析调试程式主体,推算结果
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 21:24
5
0
這個問題我已經找到答案了
感謝,謝謝…
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2016-9-26 21:55
6
0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\0000ABCD1]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\0000ABCD2]
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 21:59
7
0
[QUOTE=kjms;1446421][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\0000ABCD1]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\0000ABCD2][/QUOTE]

kjms您好,我就是爬文爬到您多年前的資料
就像您寫的方式,就成功了,好厲害,真的謝謝您!
但是kjms請教一下,我那個sentinel模擬還是一樣出問題,我使用在18.0.3的multikey
還是顯示SafeNet protection key number does not match.
可否請您幫幫我
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2016-9-26 22:40
8
0
As last picture show to you still not dumped the dongle data...
ssp2mk => attached dongle right click dump safe mode... then you will see the all data...
also your dongle ultropro need to extract qa tables capture via toro sentinel monitor its working only 32bit
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 22:47
9
0
Hi kjms
So your mean is which I make the dmp by ssp2mk, that I need take to capture by toro sentinel monitor .
But the sentinel monitor which just can run on the 32bit system. Is it right?
Can you teach me how to analysis by sentinel monitor software?
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 22:51
10
0
Hi kjms
Or can I give you the dmp which I make by ssp2mk to you help me to analysis by sentinel monitor ?
Please…..
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2016-9-26 22:55
11
0
upload the ssp2mk dump file also capture the log via toro monitor upload the same.
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 23:05
12
0
Hi kjms
Ok I will try do it myself.
Can you give me the “toro sentinel monitor “ to download it?
Thank you a lot.
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2016-9-26 23:13
13
0
http://bbs.pediy.com/attachment.php?attachmentid=10044&d=1196358709
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-26 23:36
14
0
Hi kjms
I have download the file “toro sentinel monitor “.
And I have install finish.
1. run the “SentinelMonitor.exe”
2.load the dump which I make by ssp2mk.
3.and then?
上传的附件:
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-27 21:34
15
0
Hi kjms
Recently I have try many times to install the emulator in my computer.
Then I find the strange situation:
My system is Win7 X64 and the Multikey version is 0.18.03_X64
(1) On the first system-Win7-1(I build the Win7 X64 in the VMware)
I try use your method which you teach me in 2016-09-20, 08:11:30
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\000073B4]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\000073B4]
"CellType"=hex:\
    01,01,03,03,03,01,03,01,01,00,00,00,01,01,03,03,\
It’s work and success to open the software.
(2)Then I try install on the second system-Win7-2(I build the Win7 X64 in the VMware)
I try the same method like (1), and it can’t work and show “SafeNet protection key number does not match”.
Then I try modify the reg be :
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\73B40000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\73B40000]
"CellType"=hex:\
    01,01,03,03,03,01,03,01,01,00,00,00,01,01,03,03,\
It’s work and success to open the software.

▲My question is:
(1)Why? I have try (1) install first system and it success. Why the (1) reg unsuccess on the second system?
(2)what’s mean front “HKEY_LOCAL_MACHINE….” to add “-“ ?
(3)How do I do to make sure what’s right on method(1) or method(2)?
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-28 00:21
16
0
Hi kjms
I test again and find some thing about my emulator’s problem.
I build new Win7 x64 system.
I install emulator with reg and try open software, that show “SafeNet protection key number does not match”.
And then I change 000073B4 to 73B40000 , and then try open software again.
It’s show success.
The above method I have try 5 times on new system, Why ?
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2016-9-28 08:20
17
0
its depending upon multikey version use... read the multikey manual
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-28 08:33
18
0
Hi kjms
I have read the Multikey manual , but I have no idea.
It just write about the Sentinel dongle:
*** SENTINEL ***
"Type" = dword: 00000000 - Model
"sntMemory" = hex: - memory cells
"CellType" = hex: - types of cells

I have find some days and have no answer , so please help me or teach me how to solve it.
Other I find somethings about the problem
Every time I want to install the emulator , first times be unsuccess.
Ex :
If I install emulator which the reg file is 0000abcd, then it will unsuccess.
And I modify the reg file become abcd000 , install emulator again , then it will success.
I have try 6 times , it show first time will unsuccess.
Even first time reg file is abcd0000 , it will unsuccess.
I just modify reg file become different with first time reg file, then it will success.
Above is my find and strange thing.
雪    币: 79
活跃值: (79)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
kjms 2016-9-28 22:03
19
0
Mk 18.1 and below reg
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\000073B4]
"DongleType"=dword:00000003
"Type"=dword:00000000
"CellType"=hex:\
    01,01,03,03,03,01,03,01,01,00,00,00,01,01,03,03,\
    01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,\
    01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,\
    01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,01
"sntMemory"=hex:\
    A1,82,B4,73,00,00,00,00,00,00,00,00,99,CF,00,00,\
    00,00,00,00,00,00,00,00,51,68,20,00,EA,87,22,C0,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00

Mk 18.2 and above reg
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\000073B4]
"DongleType"=dword:00000003
"Type"=dword:00000000
"CellType"=hex:\
    01,01,03,03,03,03,03,03,01,00,00,00,01,01,03,03,\
    01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,\
    01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,\
    01,01,01,01,01,01,01,01,01,01,01,01,01,01,01,01
"sntMemory"=hex:\
    A1,82,B4,73,00,00,00,00,00,00,00,00,99,CF,00,00,\
    00,00,00,00,00,00,00,00,51,68,20,00,EA,87,22,C0,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
雪    币: 3551
活跃值: (2345)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
ianlcc 2016-9-28 23:12
20
0
[QUOTE=kjms;1446662]Mk 18.1 and below reg
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\MultiKey\Dumps\000073B4]
"DongleType"=dword...[/QUOTE]

Hi kjms
I try your method and make the video.
Please see the video.
Because I try again , and the problem as the same as show.
上传的附件:
游客
登录 | 注册 方可回帖
返回