XboxHacker BBS
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
June 18, 2013, 12:44:40 AM


Login with username, password and session length


Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 »
  Print  
Author Topic: NandPro: LPT and USB nand flash programmer with only 7 wires  (Read 199000 times)
dtrmad2004
Master Hacker
****
Posts: 138


View Profile
« Reply #60 on: August 20, 2009, 02:45:41 PM »

Sorry for the triple posts.

I am getting this error

Testing LPT device address:0378
Using LPT device at address:0378
FlashConfig:01198010
Starting Block:0x000000
Ending   Block:0x0003FF
Error: 258 reading block 3DE
Error: 258 reading block 3FF


Logged
utar
Master Hacker
****
Posts: 328


View Profile
« Reply #61 on: August 20, 2009, 02:49:01 PM »

Do you get the exact same errors on each read?  If so perhaps those are just bad blocks in the nand.

Only guessing though,  I'm planning on attempting myself this weekend.


Utar
« Last Edit: August 20, 2009, 02:51:27 PM by utar » Logged
tmbinc
Global Moderator
Master Hacker
*****
Posts: 286


View Profile
« Reply #62 on: August 20, 2009, 03:22:36 PM »

those single 0x258 errors should be nothing to worry about.
Logged

Please don't copy/quote full text outside this board. Instead, summarize and link to this post. Thanks! This lets me keep information updated and doesn't pull things out of context.
sandungas
Master Hacker
****
Posts: 212



View Profile
« Reply #63 on: August 20, 2009, 05:50:20 PM »

Great stuff tiros & tmbinc

I have a xenon that gets bricked while swapping nands (between board nand and a XD card).. Im not sure, but i think the board nand contents is corrupted (i dont remember the error number.. maybe 079 the screen shows an error number + 3LOD)
But thanks to tmbincdump i have a valid dump made previously from KK exploit + linux

My question is:
¿there is needed the "bridge" with 330 ohm resistors between J1F1 and J2D2 for write/read capabilities?
« Last Edit: August 20, 2009, 05:53:18 PM by sandungas » Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #64 on: August 21, 2009, 01:46:34 AM »

the 330 ohm resistors are ONLY needed for the exploit, not for flashing or dumping.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
dave_birdi
Newbie
*
Posts: 9


View Profile
« Reply #65 on: August 21, 2009, 06:40:02 AM »

How do I go about extracting the CPU key with the xell flash installation? I'm attempting to decrypt my original nand dump and extract drive key. If I'm succesful with this I could potentially breath life into 3 bricked consoles...:s This is all very exciting. I may even be tempted to buy up bricked consoles.
Logged
tmbinc
Global Moderator
Master Hacker
*****
Posts: 286


View Profile
« Reply #66 on: August 21, 2009, 06:47:38 AM »

right, and once they have a valid flashed dvd-drive, update them, and sell them. That's how it works.
Logged

Please don't copy/quote full text outside this board. Instead, summarize and link to this post. Thanks! This lets me keep information updated and doesn't pull things out of context.
utar
Master Hacker
****
Posts: 328


View Profile
« Reply #67 on: August 21, 2009, 07:39:02 AM »

Hoax: My understanding is that you can use last summer's NXE but if you update to the latest NXE you will no longer be able to use the hack, even if you have your CPU key.


Utar
Logged
logi
Newbie
*
Posts: 8


View Profile
« Reply #68 on: August 21, 2009, 08:34:32 AM »

oh no.. this cant be for real.

WITH diode (PH4148) i get flash config 12000.. without i won't (but then i never get an identical dump)

edit: diode needs to be at the xbox board side of the lpt cable. so don't put it into the connector. worked for me.
« Last Edit: August 21, 2009, 04:03:16 PM by logi » Logged
Hoax
Hacker
***
Posts: 87



View Profile
« Reply #69 on: August 21, 2009, 08:42:20 AM »

Hoax: My understanding is that you can use last summer's NXE but if you update to the latest NXE you will no longer be able to use the hack, even if you have your CPU key.


Utar

I know.. My question was if I am able to restore my dump to use the box as before.. this box isn't online so no 849x update needed for me Wink just wanted to know if its possible to restore my dump.

One other question.. When I solder the points to dump my nand (without the 3 exploit points).. am i still able to play with the box (will the box boot without any issues?) And how is it after soldering the 3 330 ohm resistors too ? still be able to play via nxe (when R6T3 not removed)

thanks Wink
Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #70 on: August 21, 2009, 08:51:00 AM »

should still work fine. I've been able to use the console with an older dash at least just fine with the resistors in place.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
l_oliveira
Xbox Hacker
*****
Posts: 1342


View Profile
« Reply #71 on: August 21, 2009, 10:12:02 AM »

It's nice how you can just mount the whole DB25 connector with short piece of cable and hide it behind the DVD drive as there's enough room there.
Then you close the console and nobody can tell there's a cable with a connector for SPI flashing in it.
Also I like how it switches to "factory mode" when you hook the connector to the printer port.

Worked on 1st attempt for me.
Logged


It's a Rough World
DarkstarTM
Member
**
Posts: 45


View Profile
« Reply #72 on: August 21, 2009, 11:23:04 AM »

I just dumped a Jasper board with 16 MB flash (Elite Box) via LPT on a Thinkpad T61 with dock and I _think_ it worked fine because

- I got no error messages
- I dumped 3 times and got 3 times the same file
- The file content looks sane (Copyright message)
- My wiring is pretty solid (level converter, connectors, etc).

However, if I try to open the dump with the Flash Dump Tool 0.88, I get "Can't read file".

Any Idea what the problem could be?
Try SPP, or ECP.
The ports are searched for controller on 378, 278, 3bc
Try with this LPT modes (in the PC bios config), and compare the resulting dumps

It doesn't matter if I set SPP, EPP or ECP - I always get the same file.
My flashconfig is 0x00023010 which is wrong according to Tiros.  Sad

I will probably try another PC and another xbox now.

Update: When I dump a Xenon Flash, the flashconfig is 0x1198010. I am using the same hardware as I did when dumping the Jasper.

Update II: The Xenon dump is good and I can open it with the Flash Tool. Did anyone else try to open a dump from a Jasper Box with the Flash Tool?

Update III: Xell is running on the Xenon. Cool!  Smiley

Update IV: I can dump a Falcon and open it with the Flash Tool, too.
« Last Edit: August 22, 2009, 05:27:39 AM by DarkstarTM » Logged
Lethal435
Newbie
*
Posts: 6


View Profile
« Reply #73 on: August 21, 2009, 01:33:48 PM »

hi guys i looked on radioshack.com for all the stuff needed

which one of these can i use out of these 3 resistors can i use?
http://www.radioshack.com/search/index.jsp?kwCatId=&kw=330%20ohm%20resistors&origkw=330%20ohm%20resistors&sr=1

and is this the right Diode?

http://www.radioshack.com/product/index.jsp?productId=2062576

and i'm assuming this is what i need 25 pin D-Sub Connector
http://www.radioshack.com/product/index.jsp?productId=2103239&clickid=cart

i am thankful for all your work guys thanks for the help


Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #74 on: August 21, 2009, 01:41:18 PM »

any of them will work. standard is the top one, 1/4W.
the others should be ok, although wait for tiros to confirm the diode type.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
rotoku
Newbie
*
Posts: 8


View Profile
« Reply #75 on: August 21, 2009, 03:38:00 PM »

any of them will work. standard is the top one, 1/4W.
the others should be ok, although wait for tiros to confirm the diode type.

I used the same 4148 as represented on the picture. Even if they happened not to be the good type ones at least it worked transparently for me. I didn't try without the diode though.
« Last Edit: August 21, 2009, 04:11:36 PM by rotoku » Logged
rotoku
Newbie
*
Posts: 8


View Profile
« Reply #76 on: August 21, 2009, 04:01:12 PM »

i just tried again to confirm this, so:

with 1N914/4148 = OK
W/o 1N914/4148=  KO


for what is the diode needed ?

Considering the way it is soldered on the blueprint i assume it is meant to only allow signal/current IN the pin 11 of pc's lpt port and nothing from said pin 11 to the gpios.
« Last Edit: August 21, 2009, 04:03:10 PM by rotoku » Logged
logi
Newbie
*
Posts: 8


View Profile
« Reply #77 on: August 21, 2009, 04:04:56 PM »

well, this is my setup FOR READING THE NAND (not doing all the other stuff, which is available for xenon only), which is quite naughty, but it works fine so far.

http://img44.imageshack.us/gal.php?g=kaltw.jpg

it's a zephyr and i didn't use any resistors at all, but soldered everything at the bottom side (except gnd) and cutted the pins really short, so nothing will touch the case.

instead of j1d2.6 i use a screwhole as GND (thx tmbinc), because i messed j1d2.6 up and in addition, it's way more comfortable do it that way Wink

moreover i used winxp 32bit and all in all a quite old computer... normal mode bi-directional mode

cheers,
kote

edit: opening with 360 flash tool doesn't work properly so far.. got to do some other dumps.. but at least it doesn't display any errors.

edit2: normal mode didnt work 100% properly... bi-directional did it

finally a diode (PH4148) soldered on the board solved the problem. lpt mode doesn't seem to matter.
Logged
Hoax
Hacker
***
Posts: 87



View Profile
« Reply #78 on: August 21, 2009, 04:12:21 PM »

If I understood you right this is optional for lpt? Can anyone confirm this ?


Heres another thing I was wondering about: If I load my dump into the Flash Tool, theres an option to patch the consoles region by patching the KV. Will this work correctly? Am I able to i.ex. change the region from EU to US and restore the dump onto the NAND ?

Sorry for some noobish questions Smiley
« Last Edit: August 21, 2009, 04:22:16 PM by Hoax » Logged
logi
Newbie
*
Posts: 8


View Profile
« Reply #79 on: August 21, 2009, 04:22:19 PM »

"If I understood you right this is optional? Can anyone confirm this ?"

yup, it's optional, but for many people it doesn't work without a diode.
Logged
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM