Evilcry's Dark Cave

 

In this simple page you can find my works (tutorials, tools, sources)

E-Mail: evilcry (at) gmail (dot) com (PLEASE NO CRACK REQUESTS)

Chan: irc.azzurranet.org #crack-it #cryptorev irc.efnet.nl #RET

Website: My Blog Weekly and sometimes Daily Updated EvilCodeCave

Citations

The digital realm is a truly magical one indeed. Where else can an object be conjured out of thin air, be teleported across vast distances, be duplicated in its exact form, be rendered invisible at the blink of an eye, and be cast back into oblivion?

There are two major products that came out of Berkeley: LSD and BSD. We don't believe this to be a coincidence.

News

19/10/2008 - [Malware] - Reverse Engineering of Trojan-Zhelatin.pk (NEW)

11/10/2008 [Misc] - An (In)security Overview on Analysis of Client-Server Software Applications (NEW)

15/09/2008 [Tool] Debugger Detection via NtSystemDebugControl

13/07/2008 CartellaUnicaTasse Italian Trojan Downloader Analysis

16/05/2008 - Trojan-DownloaderWin32Small / Win32.PolyCrypt Reversing

24/03/2008 - Hamachi and TheGreenBow Advisories Released.

24/03/2008 - ProcessMemoryDumper Released, available for Download.

24/03/2008 - OPENED Evilcry's FORUM Access HERE

02/03/2008 - Evilcry's Dark Cave is Alive, and will mantain the Minimalist OldSchool Style, with some basical changes.

02/03/2008 - Added the Tutorial Differentiation - Crypto, Malware, Advisories, Misc sections.

02/03/2008 - Malware Section updated.

02/03/2008 - SunOs 5.10 Remote ICMP Kernel Crasher into Tools Section.

02/03/2008 - Added Reversity Speech Guidelines into Crypto Section.

04/11/2007 - In this month I'll change something in the site, due to a light restyle, the essential Concept of Old School will remain unchanged.

04/11/2007 - GuestBook added at the End Of Page.

04/11/2007 - Visit Counter Added at the Start Of Page.

(NEW)(NEW)(NEW) Forum (NEW)(NEW)(NEW)


Tutorials

Crypto and General Reversing

CryptoReversing Reversity 2008 Speech Guidelines

StrongCrypto(IT) (ENG) Reverse Engineering of Strong Crypto Signatures Schemes

Kswasek6 Polymorphic code, modified Ruby Hash, TEA (modified + mmx version)

ArturDends Truly easy crackme

Bishop2 SMC code

FusS Registry based protection modified in autovalue generator

Crackme1Cyrex Linux crackme with AntiDbg trick

PassMe Code-Inside Crk3 (PassMe)

Randomness Tests RndBlocks Public version of my "Compaired randomness analysis"

Rsa study'n rev(IT) (ENG) Study 'n reversing of applications that uses RSA

Blowfish an analitic approach (IT) (ENG) Blowfish analysis and reversing of BLOWFISH implementations

Substitution Cipher An overview of SUBSTITUTION CIPHER

Elgamal Study 'n Reversing

TEA An oveview of TEA (TinyEncryptionAlgorithm)

Psion5 PDA Weak Encryption System

Math4crypto#1[M4C.zip - MISSING] Applied Math for cryptography

GeneticAlgorithms#1[Genetic.zip - MISSING] Basis of genetic algorithms

Winimage Serial fishing

Fant0m 5 differents protections

Detten12 Grid like crackme

Keyfile Crackme with keyfile protection

Bpxchk Truly easy crackme with a BpxCheck

DevilzKg5[DevilzKg5.zip - MISSING] Crc32 + Floating point operations reversing

RndNumbers [RndNumbers.zip - MISSING] A study about radomness, security tests and weakness analysis


Malware Analysis

99g Multiple Exploits Website Analysis

Backdoor.Win32.Rbot.clj Reversing

HappyYear2008#1 HappyYear2008#2 Trojan-Rootkit Reversing

Orer#1 Orer#2 Trojan Reversing

W32/Threat-HLLIN Slipper-based!Maximus Reversing

Trojan-PSW.Win32.OnLineGames.eos Reversing

Trojan-DownloaderWin32Small Reversing

CartellaUnicaTasse Italian Trojan Downloader Analysis

Trojan-Zhelatin.pk Reverse Engineering (NEW)


Advisories

aMSN Input Validation Error

HamachiVPN Client - Login Credentials Disclosure

TheGreenBowVPN Client - Login Credentials Disclosure


Misc.

fork( ) How fork( ) works

Process Little overview of linux process architecture

Cd#1 Cd#2 Cd#3 Cd#4 A journey into CD-ROM/CD Drive structures

HoneyPot#1 - Considerations upon HoneyPots

CSAnalysis - An (In)security Overview on Analysis of Client-Server Software Applications (NEW)


 

Tools/Sources

LittleBigNumCalc High Speed operations with BigNumbers

GARnd[GaRnd.zip - MISSING] Easy application that generates random numbers with a genetic algorithm

STRNG[StrRng.zip - MISSING] A strong random number generator

Md5Validator[Md5Validator.zip - MISSING] An easy Md5 File Hash Verifier

FiloTamperCheck[FileTamper.zip - MISSING] An MD5 Based File Tampering Checker

SunOs 5.10 ICMP[SunIcmpCrasher.zip - MISSING]

ProcessMemoryDumper, it makes a file dump of the entire Process Memory Image

AntiDbgNtsd Debugger Detection Via NtSystemDebugControl (NEW, Released!)

OLEScanner v. 1.1 Compound File Format Preliminar Inspector (NEW, Released!)