June 2005


palmOne - Support - Download & Install Treo 650 Updater for Sprint PCS

PalmOne 2 is releasing a software update for the popular Treo 650 Series smartphones. The update will allow Sprint users to use their Treo as a Bluetooth modem without having to hack the device. Audio quality should be a bit better and most importantly the memory management has improved a lot.

The Official DVD Decrypter Website

Dvd Decrypter is BACK!!

I just would like to spread the word and let everyone know, you can now find DVD Decrypter at: http://www.dvddecrypter.r8.org After a lot of hard work, I’ve brought the website back! The bad news is I lost all my programers which means until I find a new team I will only provide version 3.5.4.0 for download. If you have programming skills please e-mail me AS SOON AS POSSIBLE!! I’m looking for a wide range of people including reverse engineer, C++, C+ or anyone who knows how to update and maintain software programs!! If you have these skills, Please contact me immediately at: lightninguk.dvddecrypter@gmail.com and please know you will work out of the kindness of your heart as I can not pay you unless someone wants me to add a “Donate NOW” link to the web page! As you also know, I have lost rights to the domain name of: www.dvddecrypter.com I hope to set up a “Donate Now” link to get donations for a new domain or new host, what ever I can afford! I also had to redo the logo in the top left corner. I even lost the forum as well so it will be a while for me to redo the new one and you will have to reregister. It took a lot of time to get this site back up, and it would be nice if someone could help me find a new development team and more places to host DVD Decrypter for download!

Norman SandBox Information Center SandBox Live

The Norman SandBox information center (NSIC) is based on Norman’s unique SandBox technology which makes it possible to catch viruses and other malicious software before virus signatures have been released. This powerful tool gives you the opportunity to check if there is any malware (i.e. viruses, internet worms, trojans, etc) in the file submitted to the NSIC system.

Norman SandBox protects and serves millions of user daily through the antivirus program Norman Virus Control. The issue is not to monitor and stop possibly harmful actions at runtime, as is the case for many. The issue is to figure out what the program would have done if it had been allowed to run wild on an unprotected machine in an unprotected network.

If any of you deal with viruses, I am sure you have run into a file here or there that you know is suspicious, but the current AV scanners are not picking it up.

Now, I know most AV vendors allow you to submit a file, and get a result back to what it is.. But when you submit it to Norman’s Sandbox, not only will it try to identify it, but it will email you back exactly what the file does!

For Example, I submitted a zip file (WITH A PASSWORD) and the site was able to crack the zip and then break down each file inside, here were my results.

From: sandbox@eunet.no
To: hevnsnt
Date: Jun 16, 2005 10:08 AM
Subject: [SANDBOX] Uploaded from web [208.10.59.221]

Norman Scanner Engine 5.82. 1
Sandbox 05.82, dated 2/05-2005

Your message ID (for later reference): 2005061X-XXX

dzhxgety.exe : [SANDBOX] contains a security risk - W32/Malware (Signature: NO_VIRUS)
[ General information ]
* **IMPORTANT: PLEASE SEND THE SCANNED FILE TO: ANALYSIS@NORMAN.NO - REMEMBER TO ENCRYPT IT (E.G. ZIP WITH PASSWORD)**.
* File length: 74738 bytes.

[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\radmen32.exe.
* Deletes file C:\SAMPLE.EXE.

[ Changes to registry ]
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce”.
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKLM\Software\Microsoft\Windows\CurrentVersion\Run”.

[ Security issues ]
* Possible backdoor functionality [UNKNOWN] port 81.

[ Process/window information ]
* Will automatically restart after boot (I’ll be back…).
* Attemps to open C:\WINDOWS\SYSTEM\radmen32.exe mElTC:\SAMPLE.EXE.
* Creates a mutex radacalaoi.

dryttwbf.exe : [SANDBOX] contains a security risk - W32/Malware (Signature: NO_VIRUS)
[ General information ]
* **IMPORTANT: PLEASE SEND THE SCANNED FILE TO: ANALYSIS@NORMAN.NO - REMEMBER TO ENCRYPT IT (E.G. ZIP WITH PASSWORD)**.
* File length: 74738 bytes.

[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\radmen32.exe.
* Deletes file C:\SAMPLE.EXE.

[ Changes to registry ]
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce”.
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKLM\Software\Microsoft\Windows\CurrentVersion\Run”.

[ Security issues ]
* Possible backdoor functionality [UNKNOWN] port 81.

[ Process/window information ]
* Will automatically restart after boot (I’ll be back…).
* Attemps to open C:\WINDOWS\SYSTEM\radmen32.exe mElTC:\SAMPLE.EXE.
* Creates a mutex radacalaoi.

radmen32.exe : [SANDBOX] contains a security risk - W32/Malware (Signature: NO_VIRUS)
[ General information ]
* **IMPORTANT: PLEASE SEND THE SCANNED FILE TO: ANALYSIS@NORMAN.NO - REMEMBER TO ENCRYPT IT (E.G. ZIP WITH PASSWORD)**.
* File length: 74738 bytes.

[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\radmen32.exe.
* Deletes file C:\SAMPLE.EXE.

[ Changes to registry ]
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce”.
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKLM\Software\Microsoft\Windows\CurrentVersion\Run”.

[ Security issues ]
* Possible backdoor functionality [UNKNOWN] port 81.

[ Process/window information ]
* Will automatically restart after boot (I’ll be back…).
* Attemps to open C:\WINDOWS\SYSTEM\radmen32.exe mElTC:\SAMPLE.EXE.
* Creates a mutex radacalaoi.

(C) 2004 Norman ASA. All Rights Reserved.
The material presented is distributed by Norman ASA as an information source only.

Sent by hevnsnt to sandbox.
Received 16.June 2005 at 17.07 - processed 16.June 2005 at 17.08.

Norman SandBox Information Center SandBox Live

The Norman SandBox information center (NSIC) is based on Norman’s unique SandBox technology which makes it possible to catch viruses and other malicious software before virus signatures have been released. This powerful tool gives you the opportunity to check if there is any malware (i.e. viruses, internet worms, trojans, etc) in the file submitted to the NSIC system.

Norman SandBox protects and serves millions of user daily through the antivirus program Norman Virus Control. The issue is not to monitor and stop possibly harmful actions at runtime, as is the case for many. The issue is to figure out what the program would have done if it had been allowed to run wild on an unprotected machine in an unprotected network.

If any of you deal with viruses, I am sure you have run into a file here or there that you know is suspicious, but the current AV scanners are not picking it up. Submit it to Norman’s Sandbox, and not only will it try to identify it, but it will email you back exactly what the file does!

For Example, I submitted a zip file (WITH A PASSWORD) and the site was able to crack the zip and then break down each file inside, here were my results.

From: sandbox@eunet.no
To: hevnsnt
Date: Jun 16, 2005 10:08 AM
Subject: [SANDBOX] Uploaded from web [208.10.59.221]

Norman Scanner Engine 5.82. 1
Sandbox 05.82, dated 2/05-2005

Your message ID (for later reference): 2005061X-XXX

dzhxgety.exe : [SANDBOX] contains a security risk - W32/Malware (Signature: NO_VIRUS)
[ General information ]
* **IMPORTANT: PLEASE SEND THE SCANNED FILE TO: ANALYSIS@NORMAN.NO - REMEMBER TO ENCRYPT IT (E.G. ZIP WITH PASSWORD)**.
* File length: 74738 bytes.

[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\radmen32.exe.
* Deletes file C:\SAMPLE.EXE.

[ Changes to registry ]
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce”.
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKLM\Software\Microsoft\Windows\CurrentVersion\Run”.

[ Security issues ]
* Possible backdoor functionality [UNKNOWN] port 81.

[ Process/window information ]
* Will automatically restart after boot (I’ll be back…).
* Attemps to open C:\WINDOWS\SYSTEM\radmen32.exe mElTC:\SAMPLE.EXE.
* Creates a mutex radacalaoi.

dryttwbf.exe : [SANDBOX] contains a security risk - W32/Malware (Signature: NO_VIRUS)
[ General information ]
* **IMPORTANT: PLEASE SEND THE SCANNED FILE TO: ANALYSIS@NORMAN.NO - REMEMBER TO ENCRYPT IT (E.G. ZIP WITH PASSWORD)**.
* File length: 74738 bytes.

[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\radmen32.exe.
* Deletes file C:\SAMPLE.EXE.

[ Changes to registry ]
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce”.
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKLM\Software\Microsoft\Windows\CurrentVersion\Run”.

[ Security issues ]
* Possible backdoor functionality [UNKNOWN] port 81.

[ Process/window information ]
* Will automatically restart after boot (I’ll be back…).
* Attemps to open C:\WINDOWS\SYSTEM\radmen32.exe mElTC:\SAMPLE.EXE.
* Creates a mutex radacalaoi.

radmen32.exe : [SANDBOX] contains a security risk - W32/Malware (Signature: NO_VIRUS)
[ General information ]
* **IMPORTANT: PLEASE SEND THE SCANNED FILE TO: ANALYSIS@NORMAN.NO - REMEMBER TO ENCRYPT IT (E.G. ZIP WITH PASSWORD)**.
* File length: 74738 bytes.

[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\radmen32.exe.
* Deletes file C:\SAMPLE.EXE.

[ Changes to registry ]
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce”.
* Creates value “RadmenDriverKey”=”radmen32.exe” in key “HKLM\Software\Microsoft\Windows\CurrentVersion\Run”.

[ Security issues ]
* Possible backdoor functionality [UNKNOWN] port 81.

[ Process/window information ]
* Will automatically restart after boot (I’ll be back…).
* Attemps to open C:\WINDOWS\SYSTEM\radmen32.exe mElTC:\SAMPLE.EXE.
* Creates a mutex radacalaoi.

(C) 2004 Norman ASA. All Rights Reserved.
The material presented is distributed by Norman ASA as an information source only.

Sent by hevnsnt to sandbox.
Received 16.June 2005 at 17.07 - processed 16.June 2005 at 17.08.

Real Tech News - Independent Tech » Apple Files for Trademark. Chooses “Mactel”

Noooooooooooooooo. It’s worse than cloning. It’s Mactel.

“A CNet article notes that Apple applied for a trademark for the term “Mactel” through the US Trademark and Patent Office. The Mactel trademark is described as follows:

“computers, computer hardware, computer peripherals, computer software, integrated circuits, circuit boards, microprocessors, semiconductors”

“Whether or not Apple is planning on using this term or is simply protecting it from future generic use is unknown. A recent poll revealed that users were generally split on what term to use to describe (in conversation) the upcoming Intel Based Macs.” Source: Mac Rumors via CNET

Microsoft post RAW thumbnailer and viewer: Digital Photography Review

Microsoft has today made their RAW Image Thumbnailer and Viewer PowerToy available for download. This utility provides for viewing of Canon (CRW & CR2) RAW and Nikon (NEF) RAW files as well as TIFF images and other standard image formats (BMP, GIF, PNG, JPEG etc.). The utility is split into a Windows XP shell extension which provides preview / edit / print commands for RAW files as well as a RAW viewer application. It weighs in as a 47 MB download!

Get the file at one of the Mirrors

Finally we can run Homebrew on our 1.5’s!

How to Use it:
1. Download any homebrew app/game
2. Load up the MSwap Tool
3. Select the EBOOT.PBP you wish to use
4. Select an Output directory
5. Click “Generate files”
6. You’re now left with two directories - MS1 and MS2
7. Copy the EBOOT.PBP from the MS1 directory to your first memory stick (MS) - X:\PSP\GAME\
8. Remove the first MS and insert the second
9. Copy the EBOOT.PBP from the MS2 directory into X:\PSP\GAME\”
10. Remove MS2 and insert MS1
11. Go to the Game menu on your PSP and select Memory Stick
12. Select the PSP-Dev Launcher
13. The moment PSP logo screen comes on, swap memory sticks
14. Vola! You’re playing homebrew on your 1.50 PSP!

Its been confirmed working. It involves a swapping technique, so you require two memory sticks to utilize this exploit. Please read the included tutorial on how to use the exploit properly.

*Update: As I expected when I heard it was a swap trick, A LOT of people are not happy. Why did they wait so long to release this? In the video, we didnt see any swapping… There *Might be potential of hurting your PSP doing this & plenty of other complaints.

People, this is just one more step getting us closer to breaking the PSP, yeah I dont think the hype was worth it, but regardless — you can run homebrew on a 1.5 now, no matter how hard it is to do it.

HAHAHA check out this site.. Countdown till launch. If you dont know what I am talking about, see a few stories down..

Here’s the interview with the creator of the PSP Launcher, translated from spanish:

Interview with killer-x form elotrolado.net

Why and when PSP-DEV was born?

PSP-DEV was born in May. The founder members were Cybblade & Pawstick. Our porpuse was made full functionality the PSP, and that it will be able to run Homebrew.

When did you join the PSP-DEV Team?

I join the group in one or two days; before that I was a Scene freelance.

Who make possible this Firmware 1.5 Project?

Cybblade, Pawstick and me were the basics. There were a lot of people that help us along this way; It´s imposible to put all of them on a list.

Who are the Fantastic Four?

There are more than four people, i think. As I said before, a lot of people help us, working hard to make the launch possible May 15th, people of EOL as Ferdopa, MrSiir, Alejo, Jixo, etc.
The proyect itself is reduced to a very small high security group to avoid leaks. I think that they are 6 people, so we are talking about the Fantastic Six.

What is an Exploit?

It´s a code or security door thats make possible use the failures of a system. You can use it to run not allowed code or to do things that are usually not allowed, but not necesarely negative or destructive.

Who discovered that Exploit in the 1.5 Firmware?

I discovered it. I don´t know if I was lucky or it was the result of working a lot of time, searching all posible failure issues. I thinks that it would be the second option; the lucky it´s no enough, bacause if it was only lucky, the exploit maybe was be discovered before, Dont´t you?


When was the moment?

Saturday 11th at 16:00 horas; My face cahnged when i saw that it was working. That day i told myself “if I don´t get it, i leave the proyect for a while”; I left away a lor of things of my normal life in order to work in this project.

As soon as you discover the Exploit, you made it public, Didn´t you?

It´s was made a few hours later. First we made a video. The news was public Saturday night at Spain.
It was a very happy moment for all of us, and we couldn´t wait more. I think that it was not for less

Why the project will not be public until tomorrow?

We have to finish a lot of thigs. In the beggining, the project will be public Saturday 19th, but we decided to work hard and have the project ready to go public before.
Today we are finishing all the details in a hurry. Only the web servers issues (22000 visits in 2 days) are taking a lot of time.

Did you use Sony Tools or Protected Code (copyrighted) in this proyect ?

Absolutely none. All the tools and code esed are totaly free, as well the console loader. So, the project will be in all the sites without problems; there is nothing ilegal in it. I don´t want get troubles with Sony

What Homebrew will be run?

All of them; the homebrew aplicattions will be run as well or as bad as the run in the 1.0 Firmware.

Dou you want to say anything more?

Well, tomorrow will be a great day, and a lot of people will be very sorry about the things that they were writting this days, like this project is a fake.
A lot of people thinks that only the same people make this kind of scene work, and this people are dissapointed when another people, like us, get good results.
But the real thing is this: if I can get it, everyone can get it. I am not smarter than othe secene people; it about work hard and no surrender.
From here i support all the scene people to investigate and help the Spanish Scene; we will fail a lot of times, but we get the get good results the same times.
No one is perfect; neither people, neither machines.
I hope all of you will enjoy the console and the project; that is our only wish.

Microsoft joins Yahoo!, Google in censoring China’s web

BEIJING (AFP) - Users of Microsoft’s new China-based Internet portal were blocked from using the words “democracy”, “freedom” and “human rights” in an apparent move by the US software giant to appease Beijing.

Other words that could not be used on Microsoft’s free online blog service MSN Spaces include “Taiwan independence” and “demonstration”.


Something Awful

Hey, it’s Mayor Wilkins again with another Goldmine.

You’ve all seen the annoying iPod ads with the shadowy dancers who are hopping around the screen like total jackasses, with the only thing standing out from their shadowy form is the distinctive white iPod headphone cord? Yeah. Well, forum goon pacwanker recently made a thread where he dressed all in black, covered his face in black, and took a photographic journey through an “iPod man’s iBig Day.”

From this beautiful thread, forum goon kalocin got a great idea…

Thanks to pacwanker and his brilliant thread, a couple of non-goon friends and I took it to the next level by rocking out in an Apple Store (this one in Novi, Michigan.)

Two things:

1. Sorry for the utterly crappy footage and the white balance jumps. I have a Canon ZR60 as a camcorder.

2. The manager kicked us out. She totally bitched out my friends. (The person I pointed at a couple of times was the manager.)

3. I dropped the iPod, sorta recovered.

4. I did the best I can at a black outfit. It’s impossible to find winter stuff on an 82 degree day.

But here you go anyway. The funny thing is that most people didn’t even react.

See the video here:

*Note: This is not i-hacked doing this, this is from SomethingAweful.. I just found it funny

« Previous PageNext Page »