(adsbygoogle = window.adsbygoogle || []).push({});
So i was messing around with commview and I thought I should post my findings.
I loaded up cod4 and started sniffing as I entered "Multiplayer" and found some interesting stuff (I am from the UK so results may be different elsewhere). The PS3 establishes connections to the following:
1. fuk01.ps3.update.playstation.net (PS3 firmware check)
2. cod4-ps3.auth.mmp3.demonware.net (COD4 SERVER AUTHENICATION)
3. cod4mw-ps3update.charlieoscardelta.com (COD4 PATCH CHECK?)
4. cod4-ps3-live.lsg.mmp3.demonware.net (COD4 SERVER ??)
Ok. So, number 1. fuk01.ps3.update.playstation.net, this is the firmware check. I did a bit of research and found out that the PS3 connects to this DNS and locates a text file on that DNS, which is located here = fuk01.ps3.update.playstation.net/update/ps3/list/us/ps3-updatelist.txt
It then compares the information in that file with your PS3 firmware version. It is basically checking if the firmware is up to date. NOW THE INTERESTING PART. The firmware check can be bypassed, SOURCES:
1. [url]www.haxnetwork.net/showthread.php?t=9745[/url]
2. [url]www.ps3news.com/forums/ps3-online-news/ps3-firmware-version-check-bypassed-thread-55789.html[/url]
3. [url]www.ps3-hacks.com/forums/about930.html[/url]
Read those sources before you continue reading.
These people found a way to bypass the firmware so you can still play PS3 games online without updating the firmware.
So the firmware check is at fuk01.ps3.update.playstation.net and the text file it checks with the ps3 is located at fuk01.ps3.update.playstation.net/update/ps3/list/us/ps3-updatelist.txt
IMPORTANT:
The PS3 COD4 Patch check only happens once, and thats when you load up COD4 and go to multiplayer to play online.
SO we know that the game is connecting to:
cod4mw-ps3update.charlieoscardelta.com
WHAT IF WE CAN BYPASS THE GAME PATCH CHECK USING THE SAME METHOD FOR BYPASSING THE FIRMWARE CHECK?
What we need to know is the path to the text file hosted on at cod4mw-ps3update.charlieoscardelta.com. IF we can find out the location of the "Patch check file" we can easily manipulate this using DNS spoofing and we can get online with our hacks on the memory stick and play in PUBLIC GAMES.
I assume its something like this cod4mw-ps3update.charlieoscardelta.com/blahblah/somedirectory/blah/update.txt
Now if you have any information about this or you have any information/findings about packet sniffing, any ideas regarding dns spoofing or packet injection please do contact me on [email]
[email protected][/email]
UPDATE: I checked commview and the file that the PS3 is trying to get from cod4mw-ps3update.charlieoscardelta.com is :
/BLES00148/1.3/GAME.VER
However, I cannot view the file because when I browse to
cod4mw-ps3update.charlieoscardelta.com/BLES00148/1.3/GAME.VER
It says file not found. So im guessing only the PS3 has the rights to get that file. Somehow we need to get this file onto our hard drives or maybe we could just block the update check from happening?
psn: abz_left_360