Captured Windows 8 KMS Activation Network Traffic

Discussion in 'Windows 8' started by Dhilip89, Aug 14, 2012.

  1. 100

    100 MDL Expert

    May 17, 2011
    1,349
    1,576
    60
  2. TCM

    TCM MDL Addicted

    Aug 25, 2011
    808
    417
    30
    #102 TCM, Sep 6, 2012
    Last edited by a moderator: Apr 20, 2017
  3. hack

    hack MDL Senior Member

    Sep 14, 2009
    293
    252
    10
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  4. hack

    hack MDL Senior Member

    Sep 14, 2009
    293
    252
    10
    I will keep my comments to an absolute minimum for now as I was under the impression that Creativity and Humour were allowed on this forum.


    @jarod75 you clearly know your stuff even your posts are encrypted. (Joke) Who do you work for DARPA or the CIA? (Joke)
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  5. Mr Jinje

    Mr Jinje MDL Expert

    Aug 19, 2009
    1,770
    1,101
    60
    #105 Mr Jinje, Sep 8, 2012
    Last edited by a moderator: Apr 20, 2017
    Is this what you've been talking about ? Are you saying this is the snip that encodes the data for W8 client KMS outgoing activation packets ?

    Code:
    .text:0058258D
    .text:0058258D ; ¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦ S U B R O U T I N E ¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦¦
    
    ; Attributes: bp-based frame
    
    sub_58258D proc near
    
    var_20= dword ptr -20h
    var_1C= dword ptr -1Ch
    var_18= dword ptr -18h
    var_14= dword ptr -14h
    var_10= dword ptr -10h
    var_C= dword ptr -0Ch
    var_8= dword ptr -8
    var_2= byte ptr -2
    var_1= byte ptr -1
    arg_0= dword ptr  8
    arg_4= dword ptr  0Ch
    arg_8= dword ptr  10h
    arg_C= dword ptr  14h
    arg_10= dword ptr  18h
    
    mov     edi, edi
    push    ebp
    mov     ebp, esp
    sub     esp, 24h
    cmp     [ebp+arg_10], 10h
    jz      short loc_5825A5
    
    
     
  6. mictlan

    mictlan MDL Member

    Nov 9, 2009
    231
    116
    10
    Only 7-zip or xz makes it doable. RAR compression is FAR behind 7zip/xz.
     
  7. DarkStarXxX

    DarkStarXxX MDL Member

    Feb 14, 2010
    225
    70
    10
  8. Garbellano

    Garbellano MDL Addicted

    Aug 13, 2012
    947
    248
    30
    He has no idea what he is talking about, just showing some random routine that does nothing. That service is a dead-end.
     
  9. Bornung1

    Bornung1 MDL Member

    Oct 9, 2010
    148
    39
    10
    Hey FreeStyler ;)

    Any new news about the "Win 8 Hyper-V VM KMS Host"?
     
  10. Mr Jinje

    Mr Jinje MDL Expert

    Aug 19, 2009
    1,770
    1,101
    60
    #110 Mr Jinje, Sep 11, 2012
    Last edited: Sep 11, 2012
    Patience young grasshopper. All will be revealed in time.

    kung-fu_tv-master_po-young_grasshopper.jpg
     
  11. Bornung1

    Bornung1 MDL Member

    Oct 9, 2010
    148
    39
    10
    :cheers: very nice respons Mr. Jingle :D and thanks. ;)
     
  12. Mr Jinje

    Mr Jinje MDL Expert

    Aug 19, 2009
    1,770
    1,101
    60
  13. hbhb

    hbhb MDL Expert

    Dec 15, 2010
    1,017
    263
    60
    Jin Jaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaay, how did I do:worthy:
     
  14. jarod75

    jarod75 MDL Novice

    Oct 29, 2009
    27
    21
    0
    #114 jarod75, Sep 11, 2012
    Last edited: Sep 11, 2012
    You are so arrogant, haughty and stupid, that when I show You a SBOX/PBOX function, you are just able to be sarcastic and contemptuous.

    “When a finger points to the moon, the imbecile looks at the finger”

    I hate "large mouth, no results" guys like you ...

    This will be my last post here mister Follower !, I'am tired of guys like You ...

    Mr Genius, Now the community count on You to prove your talent !
     
  15. gheealwa

    gheealwa MDL Novice

    Sep 11, 2012
    4
    0
    0
    How about make a KMS server with the capture of whireshark responding locally
     
  16. Garbellano

    Garbellano MDL Addicted

    Aug 13, 2012
    947
    248
    30
    #116 Garbellano, Sep 11, 2012
    Last edited: Sep 11, 2012
    Thats exactly what I though, a month ago. But seems like everytime it sends and receive different data.

    and

    In this case, you are pointing to a routine that does NOTHING. If you really know what you are talking about, show US, every single step where you think whats doing and the function. If you cant, you proof my point.
     
  17. hack

    hack MDL Senior Member

    Sep 14, 2009
    293
    252
    10
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  18. Mr Jinje

    Mr Jinje MDL Expert

    Aug 19, 2009
    1,770
    1,101
    60
  19. 100

    100 MDL Expert

    May 17, 2011
    1,349
    1,576
    60
    Support for Office 2013 perhaps, since it also uses Windows 8's SPP? Just requires using the Office activation ID (87d2b5bf-d47b-41fb-af62-71c382f5cc85) with the slmgr commands.
     
  20. Mr Jinje

    Mr Jinje MDL Expert

    Aug 19, 2009
    1,770
    1,101
    60
    @Freestyler, just wait for wzor to release their w8 compatible mini KMS then no one will care about our full-sized version.