You must be logged in to post a comment
nightxyz on 2024-03-08 16:46: 9 characters beginning with capital letter.
2 hours 20 minutes with manual unpacking using x64dbg.
sporta778 on 2024-03-08 21:17: you are ambitious, urine them;))
Rem00n on 2024-03-09 16:32: 10 minutes, it appears in RAX when using Animate into in x64dbg :o
lowercase on 2024-03-10 01:02: @Rem00n nice! you should post a solution
The_Kevin_ on 2024-03-11 08:35: Nice, I take 2 days to bypass that!
nightxyz on 2024-03-11 18:45: We will see, who will pull the shortest time value out of his ass ? After all, we don't know the truth.
lowercase on 2024-03-12 05:55: @nightxyz yea, 2 hours is believable but 1 minute is kinda sus. you cant just search for strings normally so id highly doubt @test did it in 1 minute
post a solution
daddypenguin on 2024-03-14 16:52: Where does Spongebob live? Great crackme, took like ~10 mins
cnathansmith on 2024-03-15 20:24: 5-10 mins
cnathansmith on 2024-03-15 20:26: Unpack with UPX, break on the size comparison before memcmp, then just check the arguments in rcx and rdx for the one that's not your input
1337ReverseEngineer on 2024-03-16 09:57: Quite easy. Took ~2 hours. No need to even unpack it.
cnathansmith on 2024-03-16 15:11: @1337ReverseEngineer it would've saved you 2 hours
bang1338 on 2024-03-18 00:05: interesting...
justAuser on 2024-03-20 16:52: Love the easy unpacking part. Password: Pineapple
S3cre7Reveal3d on 2024-03-31 16:56: i need help, i get this error when i search IAT.
Fthunk
S3cre7Reveal3d on 2024-03-31 21:08: I did it, I unpacked with UPX and Showed the Flag.
nignog on 2024-04-02 05:53: i just went stepping til RCX and RDX comp
1337 on 2024-05-02 11:46: like 20 mins of staring at ida and then decided to dynamically analyse. Breakpoint at the memcmp call and rcx holds ur input while rdx was the answer nice
navadeep on 2024-08-08 13:22: can any one please explain . whats the UPX and unpacking that you all are talking about . im new here :)
Ja4V8s28Ck on 2024-09-18 07:23: UPX is a program to compress(pack) exe files. This crackme is compressed (packed) using UPX (there are many more to compress and obfuscate exe files). You can identify which program is used to pack or obfuscate using "Detect It Easy" program or anyother of your choice
https://upx.github.io/ (Read the documentation to know how to pack and unpack programs)
XJ_gout on 2024-11-01 14:09: Pineapple
phucle225 on 2024-12-21 17:05: nop this jnz 0x00007FF7211A1AA0