09 December 2007

eMule v0.48a Titan Donkey 4.2 unpacked Exe Stealth 3.16 NTkrnl

0 comments
Spezial Features:

- AES 256 Bit Support
- Bzip2 Support
- improved customization 4 Highspeedcreditsystem
- Titandonkey Trust Center
- saves highspeed credits on shut down (24h)
- advanced ban protection
- clean Serverlist updater
- Titandonkey Slotmanagement
- improved passive source finding
- reduced CPU Usage
- increased Speed for Higspeed Credit downloads
- Ban some bad Mods (Titanesel Antileech)
- Comm Applejuice System
- Disabled Dead Source List to keep valuable sources
- Removed limitation of search results
- Uploaded data is compressed dynamically to save CPU
- Improved searching of passive sources
- TitanEsel Community
- TitanEsel Suche
- never show files as complete
- Look to Tray with password
- Webbrowser
- dual Serverconnect
- improved source finding for low id
- adjustable Highspeed Credit System (Applejuice)
--> Mehr Infos zu Applejuice
- improved Community Source Exchange
- Fakeresultsfilter 0.23

Remarks:
emule.exe is protected with: Exe Stealth Packer/Protector v.3.16 - www.webtoolmaster.com (NTkrnl)

To view code dump with:
Multi Generic Dumper v.1.1 (C) 2006 by Snow Panther [Unpacking Gods]
Download: Multi generic Dumper 1.1 mdg.exe G option mgd.zip or Download older Version: MULTI_GENERIC_DUMPER_v.1.0.zip

* Multi Generic Dumper v.1.1 (C) 2006 by Snow Panther [Unpacking Gods] *

* Loading process.........: ok
* Original entry point....: $00687976
* Time used for unpack....: 00:01:65480.79
* File EMULE_.EXE created...

* Press any key to continue...

Pre unpacked Titan Downkey 4.2: emule.exe
(EOP not recalc., will not run without future alloc. but you can see the code (emule.exe content, comms, dependence clients, blocked clients, urls,...) with hexedit / olydbg)

Download: eMule.0.48a.Titandonkey.v4.2-Bin.rar

Ollydbg unpacking script:
// WinXP SP2,OllyDbg V1.10,ODbgScript 1.48xxx1.60,FantOm plugin0,58
var br
var pt
var va

gpa "VirtualAlloc","kernel32.dll"
mov va, $RESULT


run

mov [eip],#CC#
mov br,[esp+8]
bp br
run
bc br
gpa "LoadLibraryA","kernel32.dll"
bp $RESULT
run
bc $RESULT
rtr
mov br,eip
bp br
loop:
cmp va,edi
je last
run
jmp loop

last:
bc br
sti
find eip,#8B????8B????74??#
mov pt,$RESULT+6
mov [pt],#EB#
find eip,#8944241C61FFE0#
cmp $RESULT,0
je quit
mov br,$RESULT
add br,5
bp br
run
bc br
sti
cmt eip, "This is the entry point"
MSG "OEP Faund ! IAT fixed! Dump it"
ret

quit:
ret


Download


Website: http://www.unpack.cn/viewthread.php?tid=19471&extra=page%3D1

08 December 2007

Net Transport v2.52 Build 386

0 comments
Multi Downloader Net Transport v2.52 Build 386
HTTP / HTTPS
FTP / SSL (Secure Sockets Layer) / SFTP (SSH File Transfer Protocol)
MMS (Microsoft Media Service)
RTSP (Real-Time Streaming Protocol)
PNM (rename PNM to RTSP)
BitTorrent
eMule

et Transport is a faster, exciting and the most powerful downloading tool that you ever saw, now support the most prevalent Internet protocols, including: HTTP / HTTPS, FTP / through SSL (Secure Sockets Layer) / SFTP (SSH File Transfer Protocol), MMS (Microsoft Media Services), RTSP (Real-Time Streaming Protocol), PNM (rename PNM to RTSP), BitTorrent, eMule.

With independently developed Enhanced Multi-Threading (EMT) technology, can download MMS and RTSP streaming by multiple threads with perfect video & audio quality. There are some other great features, like "Site Manager" which allows you to keep the active connection with the remote servers. In addition, the support for both SSL and SSH is hardly found in other upload/download tools.

Main Features:
1. You can use the simple but powerful "File Manager" to categorize and manage downloaded files more efficiently.
2. Simple multi-user management. You can maintain several databases by logging on Windows with different username.
3. You can use the inbuilt "Site Explorer" to list the directory structure of the remote server, and easily select the desired files. FTP is the most powerful item in NetXfer.
4. FTP reuse mechanism allows you to use one connection to get different files from the same site. If you like, you can use accessory FTP client tool called "FTP Transport (FtpXfer)".
5. The "Multiple Proxies mode" allows you to assign every working thread a different proxy to break certain site restrictions, like only one connection per IP.
6. Proxies with NTLM authentication can penetrate local firewall, like Microsoft ISA 2000.
7. You can adjust the bandwidth usage of Net Transport to ensure surf at the same time.
8. Monitor browser click. And you can add links through Internet Explorer extended context menu, or drag links to the "drop zone" window, etc.
9. Net Transport can automatically shutdown the system or hang up the modem once all downloads are completed.
10. Multilingual support for the user interface. I will be glad if you help me localize NetXfer.
11. NTLM authentication is supported for both MMS and RTSP. In addition, RN5 authentication works for RTSP.
12. You can use multi-threads for both MMS and RTSP to significantly reduce the time of downloads.
13. Automatically parse streaming script such as .asx, .smi to acquire real URLs.
14. Support SSL encryption for both HTTP and FTP, which is called https and ftps. Also support one-time password to protect your authentication information. Normally password is in the form of clear text, which is easily stolen by IP packet monitor tools. Presently NetXfer is the only one can download https streaming via SOCKS5.
15. Support SSH encryption, which is hardly found in other upload/download tools for Windows.
16. The flexible "Scheduler Manager" is also most powerful item in NetXfer. Even you can record the dynamic URL according to time and save it as your desire filename.
17. In version 2, you can record the clip with range.
18. On BitTorrent protocol, you can use proxy to download, upload by UPnP. NetXfer supports HTTP/HTTPS/UDP Tracker.

Net Transport 2.52 (2007.12.09):
* Added disk cache buffer for P2P task, the default size is 20M per task.
* Fixed that RealMedia file had occasional glitches, a second or two of silence.
* Modified site matching handler, the task without username would do matching process.
* Fixed that you could not click "Connect" button after all eMule servers were disconnected.
* Fixed that NetTransport could not connect to any site under certain condition.

Homepage: http://www.xi-soft.com

Downloads:
Vista x86 (Also including 2000/XP/2003)
http://www.xi-soft.com/downloads/NXSetup_Vista(x86).zip

UNICODE (NT/2000/XP/2003)
http://www.xi-soft.com/downloads/NXSetup_multi.zip

ANSI (95/98/ME)
http://www.xi-soft.com/downloads/NXSetup(9x)_multi.zip

Patch:
Net.Transport.Patch.rar

Prevx CSI Malware Scanner v1.2.101.108 Free and Business License Free

0 comments
Prevx CSI Free Malware Scanner v1.2.101.108Prevx CSI - FREE Malware Scanner - fast effective scanning and real-time checking against the most comprehensive malware database in the world. Prevx CSI is click-and-go and requires no installation or reboot, which makes it quick and easy to use. Its small size allows you to take it anywhere, use it as many times as you like and even copy or send it to your friends.

Prevx CSI allows you to benefit from the knowledge gained from the entire Prevx community.

- Totally Free
- Instantly scans for all forms of malware to let you know if you're infected
- No Install required
- Runs completely independently and as many times as you like!
- Always up-to-date - checks with the up-to-the-second Prevx community database for the very latest threats

Are you responsible for your company's security? Prevx CSI for Business can be used free of charge in low volume (up to 250 PCs) by business users and large enterprises, subject to a simple registration process. Prevx CSI for Business may also be configured to run in silent mode allowing companies to deploy it easily using a simple login script. Business users also
benefit from a web based console which provides a summary view of all PCs scanned by Prevx CSI with clear details of which ones are infected.

Homepage: http://www.prevx.com/freescan.asp
Download: http://pxnow.prevx.com/zeroL/PREVXCSIFREE.EXE

Register for Free (for Business user)
http://www.prevx.com/registration.asp?

After Registration Login and Download / Take your License:
enter your registration email and password: http://www.prevx.com/csilogon.asp

Business Edition include a 364 Day Free license:
prevxbbfull

PR Text:
With Prevx CSI you can easily check out hundreds of PCs in a day. The scanner is a simple click and go program. It does not need any installation or system reboot and it can be run silently from a simple login script.

Once you have verified your registration you are only a few clicks away from being able to run the scanner in your environment. The steps are very simple.

Simply visit the login page: http://www.prevx.com/csilogon.asp enter your registered email and password.

Here you can do the following things:

DOWNLOAD THE PREVX CSI SCANNER

The Prevx CSI scanner is just 650K bytes in size. Each scanner is customized to report into your own CSI web console. Up to 50 PCs may be scanned an unlimited number of times, and completely free of charge. If you wish to extend your CSI coverage for more than 50 PCs, or you wish to include cleanup ability, then this can be provided through our simple upgrade process. Note that Prevx CSI may also be used on servers too.

ACCESS YOUR PREVX CSI WEB CONSOLE

The web console provides you with a real time view of the scan results for all of your PCs. You can access it at any time. However, as this is a free service data is usually not retained for more than one month.

DAILY EMAILS HIGHLIGHTING INFECTED SYSTEMS

The Prevx CSI Web Console will automatically email you once a day if any infected PCs report in for the first time. The system will only generate an email to you if there are newly infected systems that you have not already been informed about. The email will show the Report Group and PC host names of those systems affected. You can logon to the web console to review the PC results in more detail when it is convenient.

THE SCAN DATA AND DATA PROTECTION

Prevx CSI operates a centralized malware research facility. The results of each scan performed by Prevx CSI are uploaded in real time to this database. We use this data to assist in our malware research which in turn improves the detection rate of our products. We already see many new infections days or even weeks ahead of our competitors and as our database grows we will see more malware and see it even earlier. The information we collect is limited to Hashes of files (signatures), path and file names, execution registry keys, the system's host name and the first 3 octets of the IP address of the system being scanned.

WHY IS PREVX OFFERING SO MUCH FUNCTIONALITY FREE OF CHARGE

PC Security is now about managing scale. The growth of malicious software and the advanced technologies being used by the Cyber criminals is staggering. We have spent the last 3 years developing and preparing a range of products and technologies that can cope with the volumes and increasing sophistication of malicious software. Prevx CSI will help us leverage and showcase our technology. We believe that Prevx CSI will boost our information and intelligence about malicious software while allowing businesses and consumers to understand our technology and the advantages it offers. We also firmly believe that Prevx CSI will raise questions about the ability of many other security technologies to cope in this climate.

Yahoo! Messenger Preview for Windows Vista and Mac OSX

0 comments
Yahoo! Messenger Version 9.0 Ads free
Yahoo! Messenger Version 9.0 Beta
Yahoo is the leading global Internet company Yahoo (Yahoo!) Launched the immediate chatting tool, it has its own unique chat scene (IMViroment); voice chat rooms; super video, and so on function, which allows you to friends, family, colleagues interesting and others to engage in full immediately exchange.
Here’s a list of the features included today:

- Entirely new interface that harnesses the power of WPF, the graphics subsystem in Windows Vista
- Organize your conversations into tabs, or drag and drop a tab out to create a new window
- Keep up with your favorite contacts by dragging them into the Windows Sidebar gadget
- Send enhanced emoticons that have some extra oomph
- Change the color of your IM windows with a built-in skin chooser. Go crazy with a different skin for every IM window!

- Adjust the display size of your contacts with a handy slider
- Arrange your contact list into multiple columns just by resizing your window
- Send instant messages to your Yahoo! and Windows Live Messenger contacts
- Send files to friends as large as 2 GB
- Find contacts quickly with the contact search bar. Type in a few letters of the contact’s name or ID and they’ll come up in filtered results.
- As-you-type spell checker that’s smart enough to know that “LOL” is not something to correct
- A preferences menu you can access by right-clicking anywhere at the top of the main Messenger window

Download: Yahoo! Messenger Preview for Windows Vista
Download: Yahoo! Messenger 9.0.0.907 Beta for Windows
Download: Yahoo! Messenger 3.0 Build 78326 for Mac OS X Beta 2
Download: Yahoo! Messenger 8.1.0.421 DE for Windows

Ads Patch for Beta and Finals. Pre version are Ads free! Ad remover Patch

News source: http://blog.messenger.yahoo.com/

BitComet v0.97 Final 2007.12.07 Release

0 comments
Changelog:
GUI Improved: improve BC link support when download all links from web page
GUI Improved: add overwrite prompt when save torrent file of a BT task to another location
GUI Improved: new command in Tools menu: Show eMule plugin
GUI Bugfix: after sort URL list in download all links dialog, the downloaded links do not match the selected links
GUI Bugfix: torrent file association icon cannot display
GUI Bugfix: install package compatible with Windows Vista
GUI Bugfix: invaild input prompt for save location in BT/HTTP task properties dialog
GUI Bugfix: status bar language not changed after switch UI language
Core Bugfix: program may crash when download HTTP file from redirected server
Core Bugfix: task added at eMule plugin startup will not be created successfully
Core Bugfix: cannot connect to certain tracker that forbid web browser connection
Core Bugfix: v0.96 cannot load configuration file bitcomet.xml in Windows Vista/2

Homepage: http://www.bitcomet.com/
Download:
Installer: BitComet_0.97_setup.exe
Archive: BitComet_0.97.zip
Plugins: BitComet_0.97_plugin.exe

07 December 2007

Sun Java 7 (1.7) Build b24 - December 04, 2007

0 comments
Sun Java 7 (1.7) Build b24 - December 04, 2007Sun Java SE 7 Runtime Environment PRE-Release (Contains JDK and JRE) The JDK Development Kit can be uninstalled.
Summary of changes in JDK 7 build b24

Windows Offline Installation, Multi-language JDK file
jdk-7-ea-bin-b24-windows-i586-04_dec_2007.exe, 53.17 MB
Windows AMD64 self-extracting JDK file
jdk-7-ea-bin-b24-windows-amd64-04_dec_2007.exe, 38.92 MB
Other OS and Website:
http://download.java.net/jdk7/binaries/

Archive