PDA

View Full Version : Thanks to RCE


lcx2005
July 20th, 2006, 04:14
Thank you to bring back that old treasure box (RCE-CD) hehe:

I though i missed them but now i a happy man, you know why

Please never throw this kind of treasure again!

I'm happy to be in RCE

JMI
July 20th, 2006, 06:28
No one "threw it away." We just didn't have the link showing for a time.

Regards,

MarcElBichon
July 29th, 2006, 08:06
I just compare Woodman's archives with my old CD (burnt and sent for free ).

CrackZ's site is newer on Woodmann's server
+
Few files are corrupted

SFV for checking (+ list of archives with CRC error) : http://rapidshare.de/files/27436061/Rce_cd_SFV.7z.html
Good files from my CD : http://rapidshare.de/files/27436130/RCE-good.7z.html (there are also few malwares removed from Woodmann's version, PM me if you want these files)
Files to verify : http://rapidshare.de/files/27436304/RCE-verify.7z.html
And many files are corrupted on both copies (CD are copy of copy of ...)

Help us to rebuild original CD
If you have the Rce_cd, check your files !

Bonus
CD's Menu : http://rapidshare.de/files/27435934/Rce_cd_MENU.7z.html


http://img136.imageshack.us/img136/8863/rcecd01ax5.png (http://imageshack.us)

http://img220.imageshack.us/img220/4106/rcecd02fp5.png (http://imageshack.us)

http://img136.imageshack.us/img136/707/rcecd03wt1.png (http://imageshack.us)


Good Ol' days

Screenshots of RCE Messageboard's Regroupment from UBB Times :


http://img136.imageshack.us/img136/9238/woodmannubb01tx6.th.png (http://img136.imageshack.us/my.php?image=woodmannubb01tx6.png)
http://img132.imageshack.us/img132/1157/woodmannubb01iw3.png

http://img97.imageshack.us/img97/6245/woodmannubb02iu7.th.png (http://img97.imageshack.us/my.php?image=woodmannubb02iu7.png)
http://img97.imageshack.us/img97/6245/woodmannubb02iu7.png

Woodmann
July 29th, 2006, 15:35
Howdy,

I know the files that wont pass todays AV. It's just the way they are coded,
nothing evil.

And yes Crackz does update his sight occasionally.

Woodmann

MarcElBichon
July 29th, 2006, 15:59
I'm not talking of false alarms but old hack tools collected by +greythorne.

netwar.zip
netwar2.zip
scanners.zip
spoof.zip
symbiote.zip

Code:
D:\RCE\Gthorne\reopsahl\netwar.zip/Bs.exe infected: Nuker.Win16.BitchSlap
D:\RCE\Gthorne\reopsahl\netwar.zip/vzmnuker.exe infected: Nuker.Win32.VZM
D:\RCE\Gthorne\reopsahl\netwar.zip/reaper.exe infected: Flooder.Win32.Pestil.20
D:\RCE\Gthorne\reopsahl\netwar.zip/PORTFUCK.EXE infected: Nuker.Win32.Portfu
D:\RCE\Gthorne\reopsahl\netwar.zip/Wnuke95.exe infected: Nuker.Win32.Pixel
D:\RCE\Gthorne\reopsahl\netwar.zip/winnuke2.zip/WinNuke 2.exe infected: Nuker.Win32.WinNuke.b
D:\RCE\Gthorne\reopsahl\netwar.zip/WinGenocide.exe infected: Nuker.Win32.Genocide
D:\RCE\Gthorne\reopsahl\netwar.zip/snuke.zip/SNUKE.EXE infected: Nuker.Win32.Snuke
D:\RCE\Gthorne\reopsahl\netwar.zip/PNUKEX.EXE infected: Nuker.Win32.Pnuke.10
D:\RCE\Gthorne\reopsahl\netwar.zip/IRCKILL.EXE infected: Flooder.IRC.IRCKill
D:\RCE\Gthorne\reopsahl\netwar.zip/divint.zip/DIVINT.EXE infected: Nuker.Win32.Divine.2
D:\RCE\Gthorne\reopsahl\netwar.zip/DEVILWR.EXE infected: DoS.Win32.WarClone
D:\RCE\Gthorne\reopsahl\netwar.zip/CG_OOB.exe infected: Nuker.Win32.CGSi
D:\RCE\Gthorne\reopsahl\netwar.zip/ASSAULT.EXE infected: Flooder.Win32.Assault.10
D:\RCE\Gthorne\reopsahl\netwar.zip/Iwd-icmp.exe infected: Flooder.Win32.IWD
D:\RCE\Gthorne\reopsahl\netwar.zip/Icmp.exe infected: not-a-virus:NetTool.Win32.ICMPPing
D:\RCE\Gthorne\reopsahl\netwar.zip/gimp.exe infected: Nuker.Win32.ConnectionReset
D:\RCE\Gthorne\reopsahl\netwar.zip/BATTLEPO.EXE infected: Nuker.Win32.BattlePong.10
D:\RCE\Gthorne\reopsahl\netwar.zip/ansi20b.zip/ANSIB20.EXE infected: Constructor.DOS.DarkBomb.20
D:\RCE\Gthorne\reopsahl\netwar.zip/ansibomb.zip/Ansi Bomb/ANSIB20.ARJ/ANSIB20.EXE Infected Constructor.DOS.DarkBomb.20
D:\RCE\Gthorne\reopsahl\netwar.zip/ansibomb.zip/Ansi Bomb/ANSIB20.EXE Infected Constructor.DOS.DarkBomb.20
D:\RCE\Gthorne\reopsahl\netwar2.zip/ircflood.zip/FLOODS.EXE infected: Flooder.Win16.Dicon.240
D:\RCE\Gthorne\reopsahl\netwar2.zip/UDPSPAM.EXE infected: Flooder.Win32.Spam
D:\RCE\Gthorne\reopsahl\netwar2.zip/BOOM.EXE infected: DoS.Win32.Boom
D:\RCE\Gthorne\reopsahl\netwar2.zip/UDP666.EXE infected: IM-Flooder.Win32.VB.bc
D:\RCE\Gthorne\reopsahl\netwar2.zip/portpro.exe infected: Flooder.Win32.PortPro.093
D:\RCE\Gthorne\reopsahl\netwar2.zip/Pnewq97o.exe infected: Nuker.Win32.Pnewq.097
D:\RCE\Gthorne\reopsahl\netwar2.zip/Kl0ne-X.eXe infected: Flooder.IRC.Klone.152
D:\RCE\Gthorne\reopsahl\netwar2.zip/IPT.EXE infected: Flooder.Win32.Ipt
D:\RCE\Gthorne\reopsahl\netwar2.zip/Immortal.exe infected: Backdoor.Win32.Imort
D:\RCE\Gthorne\reopsahl\netwar2.zip/dccnewk.exe infected: Nuker.Win32.Newker.013
D:\RCE\Gthorne\reopsahl\netwar2.zip/udppro2.exe infected: DoS.Win32.Neonix.20
D:\RCE\Gthorne\reopsahl\openpass.zip/OPENPASS.EXE infected: not-a-virus:PSWTool.Win32.OpenPass.11
D:\RCE\Gthorne\reopsahl\scanners.zip/TOSSER.EXE infected: Flooder.Win32.Tosser
D:\RCE\Gthorne\reopsahl\spoof.zip/IPSPOOF.EXE infected: Spoofer.Win32.VB.d
D:\RCE\Gthorne\reopsahl\spoof.zip/MYSPOOF.EXE infected: Spoofer.Win32.VB.a
D:\RCE\Gthorne\reopsahl\symbiote.zip/SYM.COM infected: Virus.DOS.PS-MPC.186
D:\RCE\Hutch\DOWNLOAD\Symbiote.zip/Sym.com infected: Virus.DOS.PS-MPC.186

esther
July 29th, 2006, 22:01
Hi

Yes you are right the files have infected by some backdoor trojan . Don't play with it if you aren't sure about it Anyway check this site
http://home.online.no/~reopsahl/files/netwar.htm

Woodmann
July 29th, 2006, 22:47
Howdy,

I am usually very cautious when it comes to this stuff BUT,
Most of those exe's were written 8+ years ago.

Since we have discussed them openly here, please delete these
files if you download the RCE-CD.

We dont need the scripty ones to exploit some old shit.

Woodmann

I will check the server to make sure they have been deleted.

MarcElBichon
July 30th, 2006, 02:40
Woodmann no worry, as i said you already removed these files on server

esther
July 30th, 2006, 10:11
This is what I found I have downloaded (of coz its a long time ago
RCE\tornado\crackmes\sol1_4.zip (id20kg.exe) HLLP.4631
RCE\Tools\Sam Spade\spade114.exe PE_CHAMPAGNE
RCE\L2C\adenozin\sdv95pro.exe (UTILS\REAPER.EXE) TROJ_REAPER
RCE\L2C\adenozin\sdv95pro.exe (UTILS\SUMO.EXE) TROJ_SUMO_V1.1
RCE\L2C\adenozin\sdv95pro.exe (UTILS\CLICK.EXE TROJ_CLICK
RCE\ImmortalDesendant\WINDOWS\Desktop\ID Site... HLLP.4631
RCE\Gthorne\reopsahl\netwar.zip (click.exe) TROJ_CLICK
RCE\Gthorne\reopsahl\netwar.zip (CG_OOB.exe) TROJ_CCGSO.OOB
RCE\Gthorne\reopsahl\netwar.zip (PNUKEX.EXE) TROJ_PNUKE.139
RCE\Gthorne\reopsahl\netwar.zip (Wnuke95.exe) TROJ_WINNUKE.139
RCE\Gthorne\reopsahl\netwar.zip (PORTFUCK.EXE) TROJ_PORTFCK.10
RCE\Gthorne\reopsahl\netwar.zip (Pstlnce.exe) TROJ_CHICO
RCE\Gthorne\reopsahl\netwar.zip (reaper.exe) TROJ_REAPER
RCE\Gthorne\reopsahl\macros.zip (DMVEXCEL.XLS) XM_DMV
RCE\Gthorne\reopsahl\macros.zip (DMV.DOC) WM_DEMONSTRA...
RCE\+Sandman\files\xara3d2n.exe PE_CHAMPAGNE
RCE\+Sandman\files\sitrial11.exe PE_CHAMPAGNE
RCE\+Sandman\files\TheFileChopper.exe PE_CHAMPAGNE

lcx2005
August 7th, 2006, 01:41
Thank you all of you.

Yes I know they are old and for oldwares, but a newbie like me need these precious gems to follow your step in Reversing.You know todays "target" are too much to start for us.Sometimes old things are understanable than new one.

Thanks MarcElBichon for your generousity.i'll get them.

Happy hunt.