Meta 
Meta



Trojan.PSPBrick has been named by Symantec as a class 1 virus. It was discovered today (Oct 6th). See it here

 

The payload is described as: “Deletes files which are required for the Playstation Portable device to restart correctly.” It goes on to say it deletes 4 files. This rendes the PSP USELESS.

Here is the Technical Details:

Trojan.PSPBrick arrives as an archive file named EXPLOIT 2G PSP Team V1.RAR which consists of the files overflow.tif and h.bin. Instructions call for the file h.bin to be placed in the root of a USB device and overflow.tif in the folder /PSP/PHOTO/. This archive may also contain a text file called PSPTEAM.NFO.

When executed, Trojan.PSPBrick performs the following actions:

  1. Deletes the following critical system files:

    • /vsh/etc/index.dat
    • /kd/loadcore.prx
    • /kd/loadexec.prx
    • flash6:/kd/init.prx

      Notes:

    • These files are required for restarting the Playstation Portable device correctly.
  2. Displays the following message:

    “Your 2.0[REMOVED]oot “
    “Thank you P[REMOVED]ch team”
    “Fu[REMOVED]ooser”

  3. Displays the following message, when the file overflow.tif uses an exploit to cause the execution of h.bin:

    “PS[REMOVED]2.0 firmware”
    “Thank’s t[REMOVED]2.0 exploit :)

  4. Prevents the Playstation Portable device from restarting correctly once the Trojan is executed.

We at PSPBrew will be adding some information that will help you avoid losers that do this crap. Please be careful with what you download and always run a virus scan.

Posted in PSP | No Comments »

There are no comments yet for this post.


You must be logged in to post a comment.