First DS Trojan

Just recently, we have seen the possiblity
of infecting the Sony Playstation Portable.

Now, malwares has extended again its infection vector, the Nintendo
DS.

The said trojan disguises as a roamloader by the name of
r0mloader.zip. But, when used it attempts to remove critical parts
of the DSes firmware. Some said that it is also capable of
infecting the GBAMP firmware and SuperCard firmware. This only
proves that DS is also vulnerable to such hacks.

This new trojan was said to be created by the name of DarkFader and
the first copy of this trojan has the name taihen.zip that has been
noted to have hentai images rom. No wonder why it spreads so
fast!

Update (Jovs, 12 October 2005 01:47:29)
After some googling I managed to find a
solution for the bricker.

Here is something I got from an article.

“Luckily, if you use the FlashMe Firmware replacement for the
Nintendo DS you can recover from this deadly attack by booting up
the system any holding “A+B+START+SELECT” then loading the Firmware
from a flashcart other then your SuperCard (as it’s most likely
been destroyed).”

Update (Jovs, 12 October 2005 08:12:30)
We now currently have the two variants and
have made detections as
TROJ_DSBRICK.A
and
TROJ_DSBRICK.B
.