Author Topic: Tek 4 Series Hack  (Read 2921 times)

0 Members and 1 Guest are viewing this topic.

Offline ghidaTopic starter

  • Newbie
  • Posts: 5
  • Country: hn
Tek 4 Series Hack
« on: November 07, 2020, 01:26:18 am »
Hi there,

Anyone here working on/interested in unlocking options on the Tek 4 5 6 series ?

I started working on it but I need help. Also I do not currently have one of these scopes.

Any interest ?

G.
« Last Edit: November 07, 2020, 06:23:20 am by ghida »
 

Offline darkstar49

  • Frequent Contributor
  • **
  • Posts: 309
Re: Tek 4 5 6 Series Hack
« Reply #1 on: November 07, 2020, 05:32:36 am »

Very different beasts... series 3 & 4 are iMx6 based and run a derivate of the former MDO3K/4K firmware, I think series 5 & 6 are Intel-based, but just as you, I don’t have any of these... and they remain pretty expensive on the (2nd hand) market, somehow out of range, even for the ‘advanced’ hobbyists...
 

Offline ghidaTopic starter

  • Newbie
  • Posts: 5
  • Country: hn
Re: Tek 4 5 6 Series Hack
« Reply #2 on: November 07, 2020, 05:36:13 am »
I would buy one right away... but only if it could be cracked.

I somehow got confused and thought the firmwares were the same, but you are right, not the same hardware.
My interest is in the series 4 and specifically the MSO44.

I have found how most of the licensing works...
It uses an RSA signature in the license file. There is a license database in the scope and the signature is verified in multiple modules.
So it is not really possible to do a keygen unless there is a flaw in the way the signature is verified.

However... just like the Rigol MSO5000 hack, the firmware could be cracked... I am 99% sure I found what to change.
But I would need someone with a MSO44 or MSO46 and some knowledge, to test it.

PS: If there are people with more reverse engineering experience around, you are welcome to join the effort.
Look for the tek::okdb namespace, InstrumentManager object, "verify" function...
« Last Edit: November 07, 2020, 06:22:02 am by ghida »
 

Offline salviador

  • Regular Contributor
  • *
  • Posts: 105
  • Country: it
    • https://www.youtube.com/user/mancio92M
Re: Tek 4 Series Hack
« Reply #3 on: May 19, 2021, 01:25:33 pm »

have anyone ever tried on the tek4 series, news about it?
 

Offline P51256SL-07

  • Newbie
  • Posts: 1
  • Country: it
Re: Tek 4 Series Hack
« Reply #4 on: May 27, 2021, 06:10:26 am »
I'm intestered too, but probably the series 4 is too much expensive to make test on it and I didn't see any good opportunity on ebay..  ::)
 

Offline maxwelllls

  • Contributor
  • Posts: 21
  • Country: cn
Re: Tek 4 Series Hack
« Reply #5 on: November 30, 2021, 08:17:32 am »
I have an MSO54 and win10 option. I have made a GHOST image of the system, which can run in VitrualBox VM, but cannot start ScopeApp. Dynamic debugging will try to read data from a specific memory address when the software is started, most likely the value of a hardware peripheral(probably  HostId). Since the VM has no associated hardware, return 0x0000000000000000 and the program crashes.
I grab full memory dump by triggering WIN10 blue screen, but don't know how to analyze it.
As for Tek :: OKDB Namespace ghida mentioned, I'm not a professional reverse engineer(just a EE guy), so I don't know how to do it.
Anyone interested please PM me
« Last Edit: November 30, 2021, 08:28:23 am by maxwelllls »
 


Share me

Digg  Facebook  SlashDot  Delicious  Technorati  Twitter  Google  Yahoo
Smf