Yorch is infected with Backdoor.Trojan - MDA, XDA, 1010 Software Upgrading

I already have warned him. The WM2003 I have created yesterday on his site is infected with the Backdoor.Trojan virus. :!:

thanks for the heads up, I'll email Andy to see if he can fix it. I noticed also that there is a lot of files missing in the website. Sorry that I haven't maintained more often like I should, but I'm very close to get married, and work is hectic, and Xmas too, leaves me little time for the website.
I'll try to delete everything and restore a fresh and clean backup that I had.
in the meanwhile:
DO NOT DOWNLOAD ANYTHING FROM THE WEBSITE, AND IF YOU DO, USE IT AT YOUR OWN RISK!
that's why is always good to use a good Antivirus

siliconaddict said:
I already have warned him. The WM2003 I have created yesterday on his site is infected with the Backdoor.Trojan virus. :!:
Click to expand...
Click to collapse
Are you talking about a file from the kitchen or just from his website? I have scanned the server with both Norton and Trend and I don't get any virus alert on any of the files. Can you give me more details so I might can find the problem? Thanks

i had that today but with jeffs somthing about uploading flash files via bootloader but in the cradel tool thing i was looking though my s/w and all of a sudden pop norton found a backdoor virus in jeff...exe and has deleted the file ah well lol

Thanks for the headsup. I'm scanning my PCs as we speak, and will scan the PPCPE when they're done.
Yorch: Thanks again for your community service. Hopefully things will be back to normal soon.
PDH

Slightly off topic here but gazzaman2k mention Jeff's - Is Jeff's kitchen still up? I can't get to it anymore from the links I've found on here. Yorch and all - Thanks for all your hard work and Happy Holidays - Jim

na jeffs kitchen closed down i read somewhere the database got messed up or summin and he didnt have time to keep maintaining it anymore so it closed down shame really as that was the only kitchen online that had v4.00.11 for all the uk members of this site

gazzaman2k said:
na jeffs kitchen closed down i read somewhere the database got messed up or summin and he didnt have time to keep maintaining it anymore so it closed down shame really as that was the only kitchen online that had v4.00.11 for all the uk members of this site
Click to expand...
Click to collapse
Yeah I really liked the 4.00.11 as well. If I just had all the files necessary to add that one to the kitchen I would for ya.

i got a cooked v4.00.11 but its got the security rom on it linking to my dads mobile so i cant really upload it to my webspace for peeps to download as it would kain their credit and my dad would be going nuts with all the texts comming in lol.
its in the .exe form so if you can use any of the files from that lmk and ill see what i can do
gaz

got a barebone 4.00.11
I have one, if you have a site I can upload it to I will.

i've already uploaded on my ftp the 4.00.11 rom (uncoocked)
The FTP is also open to upload other versions.
Hope to see one day the 4.00.11 rom in the kitchen ;-)
Cheers,

with the FTP server adress :roll:
ftp:\\server268.com
username:xda
password:myxda

Back on topic - I scanned the laptop andthe sektop - the laptop came back with Backdoor.Trojan in XDATools.exe - BUT I think I got that program from xda-developers and not from Yorch.
I've been poking around both sites in the last couple of weeks so I may be mistaken, but the key is that EVERYONE OUGHT TO UPDATE THEIR VIRUS DEF FILES AND DO A SCAN!
PDH

I'm not sure that virus alert is a legitimate one. I've had a version of XDATools for at leat 2 months that never offended Norton AV. When I upgraded to the 2004 NAV it complained about XDATools (and deleted it without letting me confirm or fix :evil: ). So I downloaded it again, which is promptly complained about again (and deleted :evil: ). I think the tool just may have an unfortunate byte pattern or the low level calls it makes to the PDA might be interperted incorrectly by the new NAV. Anybody have any definitive information about this?

I mentioned a few times I would be happy to host a fast kitchen online with all of the roms available if someone would help/donate a functioning kitchen. Let me know.

downloaded from Yorch before WITHOUT virus warning!
I have created ROMS on Yorch's kitchen before, without ever getting a virus warning. Last Thursday I have created a WM2003 .EXE file, with the trojan. Luckily Norton AntiVirus 2003 -the same version I've been using for like a year now- was working well.

Re: downloaded from Yorch before WITHOUT virus warning!
siliconaddict said:
I have created ROMS on Yorch's kitchen before, without ever getting a virus warning. Last Thursday I have created a WM2003 .EXE file, with the trojan. Luckily Norton AntiVirus 2003 -the same version I've been using for like a year now- was working well.
Click to expand...
Click to collapse
If you still have the rom send it to me and I'll check it. The virus you are saying it's detecting is not found on Linux boxes. The kitchen is running on Linux. I have downloaded and scanned the source and haven't found anything. I believe like someone else mentioned that it is a false positive.

no infected ROM
NAV2003 blocked access to it and quarantained it and then I deleted it. Sorry.

I'm thinking along the lines of a false positive as I don't have any alerts going off.... :?:

???
Good for you, but what does that tell me :?: That you antivirus software is no good or mine?

Related

Announcing XDA-developers Special Edition ROM v1.1

Version 1.1 of the Special Edition ROM is now out:
Fixed:
- Based on O2 3.17.03 ROM: annoying reply to SMS bug fixed
- Everyone can now use GPRS
- Pocket IE opens GPRS connection
- Serial ActiveSync now works
- Minor issues and cosmetics
New:
- Brand new version of dbView tool
- EzWAP2
- Our own band switch tool for US users, switch between all three bands
(no guarantee your hardware supports it, but at least you can now try)
This is now officially the coolest ROM for you, no matter where you live...
See the mkrom page for details on how to build this ROM (difficult), or wait for some kind soul to build the EXE, and just download and run it (easy).
Thanks a lot for your effort. I've really enjoyed the possibility to create my own ROM.
Is it possible to get a look on the source code of that welcome.exe app? So far it 's the only closed thing in your package.
thanks
XDA-developers ROM v1.1 installer
Thanks to Andre, who was online during the announcement and who sent me a message, I must have broken some speed records:
Click here to download a new and tested version of Special Edition ROM v1.1. Simply run the exe and presto...
This version fixes most if not all of the problems some people had with the 1.0 release. Thanks to the XDA-developers for doing such cool work, and for making their instructions easy to follow...
uds said:
Thanks a lot for your effort. I've really enjoyed the possibility to create my own ROM.
Click to expand...
Click to collapse
We're glad you appreciate it. That's what we work for...
Is it possible to get a look on the source code of that welcome.exe app? So far it 's the only closed thing in your package.
Click to expand...
Click to collapse
The source is online: http://xda-developers.com/mkrom/welcome101-src.zip . The source for the welcome in the previous ROM was available too. Look at the mkrom page for details...
Let us know if you come across cool tricks we could incorporate in our ROMs too.
oh, to my previous post:
nevermind, my wish is granted, found the sources on the mkrom page.
thanks
update
jeff summers, you are a prince amongst men! Ta!
This is wonderful.
My PIE & ActiveSync over GPRS are now working well with this ROM + AT&T SX56 radion on my T-mobile USA device.
Thanks again XDA Developers, and Jeff for being so 'quick' with his help!
cheers,
..lance
Jeff you're like greased lightning!!! Well done to the boys and girls at xda-developers for this update, it seriously rocks!! MaxIreland and "guest" refered to a prog called sms-char-counter....
freeware tool written from a user at a german xda forum. it's an sms-char-counter
Click to expand...
Click to collapse
Any more genious people out there who know where to get this from?? I'll learn german if I have to! Maybe it would be a good addition to the next version of the ROM!!
Respect to you all at xda-developers.com
Tim
Hoorah, the SMS caller identity thing has been fixed
O2 3.17.03 ROM
Where can I find O2 3.17.03 ROM?
Re: O2 3.17.03 ROM
ericon said:
Where can I find O2 3.17.03 ROM?
Click to expand...
Click to collapse
Take a llok at www.source02.com
Stefan
Thank you
thank you
OK silly question...
I am here in the uk...
Last time i tried to flash my xda with the radio upgrade i lost all functions on the device and had to send it back to the service centre to be repaired...
If i run the exe that has beed kindly created is there any chance of screwing up my device again!...
I would be running via USB and the docking station that came with the decive!..
I want to do this but am a little worried after the last incident!...
Thannks
M0rph
thx for your great work.
is there any "diff" tool for ce, so that i know what ezwap2.5 or other programs (like an sms-counter) are installing exactly for using with mkrom?
if i got you right, then i need all files installed and all registry-entries?
is there any install-tracker on ce?
Jabba
Two questions:
Is EzWap version 2.5 MMS or 2
When you say:
"- Everyone can now use GPRS"
What do you mean exactly by this ?
Because we have a serious problem with our local operator: they "upgraded" the GPRS system (by Erickson) last week, and since then, all GPRS on Pocket PC's stopped connecting. Is the new ROM the solution ?
ezwap 2.5 has got MMS
is there a program on the new ROM which can open pdf files instead of acrobat reader?
Thanks Jeff and you wonderfull developers, This ROM is great and I didn't have to mess arround in UNIX to install it.
thx man gonna try it soon !
installed it but the autoconfig still doesn't work on my xda ?
SMS-Counter Software to include in ROM
u'll find it here (german thread in forum):
http://www.ppc-welt-community.de/showthread.php?s=&threadid=21372&highlight=smscounter
Try it.... it sits as small programm in the taskbar naming "start" (because it's right over the start button).. it runs always... taking nearly no cpu-time. when u start to write a sms then it begins to count (like nokia).
Jabba

I have 4.0.0.21 rom - who will put it on a kitchen?

I have a T-Mobile 4.0.0.21 ROM that I would like someone to put on a kitchen for public usage. If you can do this, please let me know...
Thanks
I will!, please email me at [email protected]
:shock:
Oooh a new rom, eh? Give us the scoop. Is it another T-Mobile one? What's new? What's different? Equiring minds want to know!
me too
me too, me too
@Yorch, where is your kitchen? I remember you talking about building one with someone else's help but never saw a link. What is the address?
Great!
Please, give us the link for download
Thanks
the kitchen is ready, we are working to set it up in its own linux box, ('cause when is live it will be pretty popular we assume), the kitchen is not a one man's work, there are various fellow users with me. Patience, we are getting closer and closer, (we actually have the box already, and we are setting it up).
Believe it will be worth the wait!
Hi
That good news , please send to me , i will put it some where to every one
Is it up somewhere?
GMoney said:
I have a T-Mobile 4.0.0.21 ROM that I would like someone to put on a kitchen for public usage. If you can do this, please let me know...
Thanks
Click to expand...
Click to collapse
why not post a download link ?
Thanks
I don't have a place where I can make it publicly available, so I've sent it to Yorch - he should have his kitchen up soon.
Thanks!
you could upload the file to my new created Pocket PC phone Group in Yahoo.
So everybody could test it
http://groups.yahoo.com/group/pocketpcphone
thanks
Ok, ready to download!
go to my website and check the downloads section!
I extracted the ROM only, since I don't want to try the whole Radio upgrade until, I know that it is for the T-mobile and is safe to install.
I can tell you that the difference so far, is that there is no AIM, there is an icon for Synchrologic I hope they don't charge for this.
also there is a screen that tells you about the GPRS connection at the beginning.
Any other findings, let us all know!
differences
The full structure analysis between T-Mobile' 16 and 21 versions in PDF format.
The analysis is based on CRC and content.
http://www.op.ro/xda/analysis t16 - t21.pdf
Glad it's smaller and leaves more room for personalization.
Decebal
TMO 4.0.0.21
Well I've looked @ Yorch & I can't find it. Has it been removed again??
Its there, look under Software!
HTH
thanks
just make a new ROM based on 4.00.21 and succesfully stiched:
* sbp gprs monitor
* resco explorer 2003
* vbirthday
* ewallet
* ssnap, ipaqovrclk, cabinstl
still figuring how to remove some files and add others
for the people that cannot find this out:
params config
wincever=4
start1=81740000
size1=00040000
start2=81c00000
size2=00300000
startbmp=81ec0000
startop=81c00000
Decebal
Still no WModem.... I wonder when we will see a PPC2003 release with the WModem.
If you provide me with a link to download (use Private Message if needed), I will make sure everyone can get cookin'.
--
Jeff
Credit to Yorch for putting this up:
http://www.yorch.net/downloads/ROMS/T-mobileROM40021.rar

Jeff's Kitchen

What's wrong with Jeff's Kitchen? Says access forbidden
I experience the same problem - anyone knows
try my kitchen, although experimental, is usable
Yorch said:
try my kitchen, although experimental, is usable
Click to expand...
Click to collapse
Hmmm..... Just a quick question. IF i sent you a bootloader pic and a theme (all in proper format) would you be willing to add it to your kitchen?
It's a Star Trek Theme/bootpic I created.
I can't for the life of me get my kitchen to work at all.
yeah, of course, your contributions are always welcome! send it to: [email protected]
Hi all,
For some reason php is acting funny on my friend's box, using 100% of the available processor cycles every time it is invoked. We're working on fixing this, but I must say I have very little time these next few weeks. I suggest everyone that needs to cook using Yorch's kitchen for now.
Yorch: shall I just forward to yours for now?
--
Jeff
not a problem Jeff, yeah, you can forward to mine. Hey I also need your help, I'm trying to add ROM 4.00.21 to my kitchen, We can't figure out how, if you could please email me or pm
Hi Jeff and York, im a newbie, and also want to make a kitchen too. can you show me how to download and install on my Linux Server?
thanks. [email protected]
Hi Yorch
Please add in yours ROM-kitchen - O2 ROM WM2003 4.00.11
i went to http://www.yorch.net and customised a rom but was not able to find how to download it.
can any one help me.
I want to run XDAunlock.exe on my phone when i run it now it says unable to get unlock code. some one said that i should upgrade my rom to xda-special rom-1.2 but i dont have linux. i downloaded jeffs executable rom but it was giving errors cannot find rom image.
Can you add a PPC 2002 Siemens SX56 rom to your kitchen (www.yorch.net), I tried the T-mobile but it doesn't have the same feel.
Can I unlock the phone using XDA unlock from the ROM created in your kitchen?
Is any one working on cooked 4.00.21 roms with working programs in the rom? :mrgreen:
Yorch's site is good
havent checked up on Jeff's since its not ben lettig me in
JUICEe said:
Is any one working on cooked 4.00.21 roms with working programs in the rom? :mrgreen:
Yorch's site is good
havent checked up on Jeff's since its not ben lettig me in
Click to expand...
Click to collapse
If someone can help me get the necessary files to add that rom to the kitchen I will get it added. I just haven't been able to figure out how to get the necessary files.

MDA and XDA extended ROMs : Where to get ?

can anyone tell me where to get these ROMs ?
they're not on the ftp server any more.
Thanks
XDA:
ftp://xda:[email protected]/Uploads/Universal/Extended ROMs/O2_XDA_Exec_Extended_ROM.zip
MDA:
ftp://xda:[email protected]/Uploads/Universal/Extended ROMs/mda_pro_eng_uk_extrom.zip
What are extended roms ?
The file you have listed below is there, problem with your url, try:
ftp://ftp.xda-developers.com/Uploads/Universal/
then manually click extended roms etc ....
ROMs GONE
I must be awfully thick - I've tried Filezilla, IE6 and Opera, the only directory I see at ftp://ftp.xda-developers.com/Uploads/Universal/ is Shipped Rom and then Xda_Exec_LaunchROM_v113139.exe, nothing else.
I've done a bit of searching and it appears some unkind person has deleted a lot of the Universal files.
Can some kind soul re-upload them or provide somewhere where I can download them?
This sort of stuff is good to distribute using BitTorrent don't you think?
ROMs Gone. Yes
I agree, been looking for the Radio Update and you're right only one ROM in the upload site
looks like they have been deleted by a selfish person :
http://forum.xda-developers.com/viewtopic.php?p=100072#100072
can someone re upload them ? or perhaps seed them using bit torrent?
please ?
I am just in the process of uploading the MDA, XDA and jasjar extended ROMs back since I had downloaded them a while ago
edit>>done, but I can only see the files if I use xdaupload as login...odd
thanks!
bluesign2k
found the ROMs you uploaded, they've ended up in the /universal/upload area.
THANKS ! :lol:
I'm looking for JASJAR_WWE_11353_137_10301.rar
which contains the File: MaUpgradeUt_noID.exe for the rom. been deleted

Released: 3 UK Ext ROM

Find attached the Extended ROM of 3 UK.
Dont think that it's incomplete due to the small size, u ll find out that it contains several cabs.
I m sure many will find it usefull.
BTW i m still waiting someone's reply on how to dump a rom. I already tried few things with the tools mentioned in wiki but i m not quite sure if i m doing this right. I will really apreciate a feedback on this. Pls feel free to PM me...
Regards
Z£Y$
Many thanks mate. This is really appreciated. wish I could help with the rom dump but I am still learning myself. good luck with it.
Regards,
Psi
Umm this is a slightly modded version that does NOT remove the wireless section from the today screen as the original does, and adds a few freeware apps that I use every day. The apps being:
Tcpmp
Total Commander
PS Shut XP
HTC Xbutton
PHM Regedit
and RAR Archive manager.
This is still in the same format as the above (the files only) and not in .nbf format as I simply don't know how to dump it / compile it. So it's for unlocked extended roms only.
For a guide to cooking your unlocked extended rom have a lookee here
I am using this rom on top of an original O2 Exec rom not the QTec rom used by 3UK and it installs fine. So it should work with any universal variant.
Happy 3'ing!
Psi
Have now made the ms_.nbf file for of the original files from Z£Y$ for flashing via RUU.
http://rapidshare.com/files/66799675/3uk_ext_rom.zip.html
And here is the ms_.nbf extended rom file for my own version that includes the apps above.
http://rapidshare.com/files/66989609/3uk_ext_rom_psidoc.zip.html
And here is the rom with all the streaming media bits n bobs already in with the browser string modded to suit 3 as well.
http://rapidshare.com/files/67367054/3uk_extrom_wirelesstoday_streaming.zip.html
Psi
Thanks for these Guys.
I wish I could help with dumping the ROM too. I've been looking for the 3 ROM for months.
The 3 rom is a standard Qtek rom with the 3 bits n bobs added in the extended rom.
Basically you can use any WM5 (or 6 if you don't want videocall) of your choice and all the 3 stuff is in the extended roms above.
@Z£Y$ what version of Qtek rom is your 9000 using.
Psi
Re:
PSIDOC thanks for confirming this m8.
F***k the ROM dump then lol
BTW i m on:
ROM version:1.30.77 WWE
Radio version: 1.09
ExtROM version: 1.30.246 WWE
Is this the latest Qtek ROM version?
Regards
Z£Y$
Ah, I didn't realise this.
I had gone back to the basic Qtek rom quite some time ago to sort out issues with the web connection dropping out all the time.
I still have issues with being unable to get to My3 with the E61 block. I think this is something to do with certificates. I have no idea how to solve this.
I've asked 3 if they can provide it. Don't hold your breath though.
I contacted them today, they said they would get back to me.
Z£Y$ said:
PSIDOC thanks for confirming this m8.
BTW i m on:
ROM version:1.30.77 WWE
Is this the latest Qtek ROM version?
Click to expand...
Click to collapse
Welcome mate. Re having the latest, I think you are, however have a lookee here (requires you to register.)
http://www.myqtek.com/europe/myqtek.aspx
@ Lakota,
The reason for the E61 block page is because you are using a web browser, not a WAP browser to view the pages on 3. I found this out eventually on my old nokia E61. Sadly the Uni doesn't have a Wap browser. Please refer to This post here for Z£Y$ method of getting around that. Personally I use Opera for a browser so i don't get the problem. You could alway just click the services icon and viola you get past the E61 block.
Psi
A Response To Your Find
An Interesting Find
www.DeserteDNJ.com
@ PsiDOC
Do you get all the services using opera? such as "today on 3" and access to all "services" such as mobile TV??? I was not able to do so with opera untill few minutes ago hence i decided to release a guide.
@Lakota
I had very lenghty discussions with 3UK and the outcome of the numerous callbacks is that Qtek 9000 is not compatible by 3UK to use planet3. So do not expect a solution by them. However there is a workarond as i m describing here: http://forum.xda-developers.com/showthread.php?t=341755
Thanks very much for the extended rom and for your guides, Z£Y$. It might finally be time to ditch my Orange sim and get a 3 contract sim I think!
Quick question though, as I don't know too much about the services 3 provides - are ALL the various services that are available on 3 working on the Universal with your guides/workarounds or are there still things that don't work 100%?
Z£Y$ said:
@ PsiDOC
Do you get all the services using opera? such as "today on 3" and access to all "services" such as mobile TV??? I was not able to do so with opera untill few minutes ago hence i decided to release a guide.
Click to expand...
Click to collapse
With regard to services I only really browse the 3 uk site to check what I owe and get the news etc so yes today on 3 does work. I haven't used the Mobile TV so cant comment on that. Opera is fine for doing that. I usually go in on mobile.three.co.uk and it automatically redirects me without the E61 block page.
With regards your fix for the streaming media most of the files for getting it to work should already be in WM5. If you like I can add the rest into the Extended Rom and have that do the registry change as well, so when you first setup and the customisation is performed it's all done for you. No fuss no hassle then.
If you want it, give me a day or 2 as it's a bit manic here today.
Psi
@PsiDOC
Yes m8 if we can add the procedure i.e registry fixes and files to the Ext ROM will be excellent. I m gonna give this a go myself as well if i have some time... BTW HTC streaming media is not included in my wm5.
@XTCrefugee
All of the services from 3 are working now!!!
Many thanks guys.
Some very useful information posted here. Much Appreciated.
Cheers.
Ok peeps, I would have had the streaming tv ext rom sorted by now, however I am having problrms putting the coredll.dll file into a .cab file for the extended rom. It's sending my PC into a 100% CPU loop. Everything else packs up ok, it's just this little monster that's giving me a headache.
Bear with me on this I will sort it.
Psi
m8 one thing to consider is that these dll files for the streaming media need only to be ADDED if missing. In my case i added only few of them and ignored the rest without to overwrite the existing ones. So if you ll make a cab file it will install all of them rather than installing only the missing ones .....correct me if i m wrong.
Ideally during instalation u should be promted about the existing dll files.
Regards
Z£Y$
I appreciate that mate. However what we have to consider is the varying configurations for user installations. I can set a .cab file for "if exists = skip install" on files which will bypass on install if the file is alrady present.
It's just that I cannot get this bloody file into a .cab file....
It's annoying me now. Been trying all night. GRRRRRR!
Psi
Streaming Extended rom is now done and uploaded to rapidshare.
http://rapidshare.com/files/67367054/3uk_extrom_wirelesstoday_streaming.zip.html
Psi

Categories

Resources