XboxHacker BBS
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
May 21, 2013, 11:39:20 PM


Login with username, password and session length


Pages: 1
  Print  
Author Topic: Help to recover an Hitachi  (Read 1822 times)
CyberPK
Member
**
Posts: 17


View Profile
« on: January 27, 2012, 09:21:52 PM »

Trying to apply an update an Hitachi 47dj my pc freezed and rebooted without giving me the possibility to save the key.
The drive stopped working and was unresponsive to the pc.
I've checked the keydb without success.
So i desoldered the flash and dumped with the willem.
The content was good. It appeared to be XTRM:MAX:47:v23 but the key was all 747474747474...
So i've downloaded the Maximus-Garyopa_XTRM-HITACHI_v2_3_Stealth_Rev2 package and compared with the 47_23.bin file
Well, no differences apart:
4f00: dumped was 74747474774.... ; 47_23 zeroed
4f80: dumped contains the serial(?); 47_23 zeroed
33c32 to 33c3c: 11 bytes differed

These are the only differences.
What is in 33c32 to 33c3c ? A checksum? Can I try to use it to recover the old key?
Any idea on what is possible to do to recover the key? There is anywhere a temporany location for jungleflasher session log?
I remember that JF read the key, but i didn't have the time to save it!
The RGH isn't possibile beacuse it is a xenon.

Thank you for any idea.
« Last Edit: January 27, 2012, 09:59:41 PM by CyberPK » Logged
HOMiE7
Master Hacker
****
Posts: 113



View Profile
« Reply #1 on: February 15, 2012, 04:03:38 PM »

hitachi cannot be bricked when you read the flash content. It can only be bricked when you're write something to the flash afaik.

There is 3 possibilities:

1. Your story is a bull$#!t and you've bricked it while you tried to wrote something on the flash.

2. You can transplantate cpu+nand from your xenon to zephyr, glitch it and retrieve the cpukey to decrypt the kv from your nand to extract the dvdkey. Then put cpu+nand back on xenon.

3. You can wait if x360glitchip for corona (that doesn't require HANA-chip to launch the hack) will be updated for xenon support (it has ANA-chip, not the HANA-chip).

...
« Last Edit: February 19, 2012, 04:26:48 PM by HOMiE7 » Logged
CyberPK
Member
**
Posts: 17


View Profile
« Reply #2 on: February 15, 2012, 07:53:16 PM »

No bull$#!t. Only the truth Sad
Thank you for your answer. I'll wait for the solution #3 Smiley
Logged
HOMiE7
Master Hacker
****
Posts: 113



View Profile
« Reply #3 on: February 16, 2012, 05:52:41 AM »

I also heard on russian forums that one guy has successfully unbriked his hitachi with maximus lizard, but I don't think that it's true. Anyway I don't have bricked hitachi to check this out... If you or your friends have maximus lizard - you can try this. Who knows, maybe it's real...
« Last Edit: February 19, 2012, 04:22:06 PM by HOMiE7 » Logged
CyberPK
Member
**
Posts: 17


View Profile
« Reply #4 on: February 16, 2012, 06:26:37 AM »

I don't know think it's true.
Before my pc freezed i saw the key but jf didn't store in keystore.
After pc freeze the drive was unresponsive. So i've dumped the flash with the willem to try to recover the key. But it was full of 74 Sad
So, i was only trying to understand if the 33c32 to 33c3c with 11 bytes different was a checksum or somethink of similar to try a bruteforce to recover the key.

I'll wait for the simpler solution you post, the n.3 Smiley
Logged
Xumpy
Master Hacker
****
Posts: 310


View Profile
« Reply #5 on: February 16, 2012, 06:55:41 AM »

Lol, this is why I previously asked help when I had the same problem with my hitachi. To learn from what had happened. :p

I hooked my hitachi onto the pc like I did honderds of times before with other drives and I red the key. It turned out to be all 74.

When I hooked it again to the xbox the drive wouldn't play games anymore. I successfully unbricked it with the rgh (lucky for me it was a zephyr).

I retried all of this afterwards with the same method and all went well this time. It's very strange but I think that jungleflasher might be writing something to the flash under some circumstances.

O well, I didn't know you could retrieve a xenon cpu key when you transplant it to a zephyr. That's good to know...

At least I'm convinced that it's not bull$#!t... For the rest think what you want to believe, I don't trust these drives anymore Wink

Regards
Logged

Once your mind is running, returning to its original state feels like standing still.
HOMiE7
Master Hacker
****
Posts: 113



View Profile
« Reply #6 on: February 16, 2012, 03:33:16 PM »

Transplanting to zephyr and rgh should help. My friend from Kursk did it once if I've understood him correct...
Logged
CyberPK
Member
**
Posts: 17


View Profile
« Reply #7 on: February 17, 2012, 03:32:58 AM »

Yes, i'm sure it will be successfull, but i haven't a zephyr and the effort required isn't giustified by the value of the console Smiley
I'll wait the rgh for xenon. I heard that something is moving. Almost to recover the keys keeping the cpu @ 520 khz without speeding up the cpu again.
Unusable to boot unsigned code, but useful to recover the keys Wink
Logged
HOMiE7
Master Hacker
****
Posts: 113



View Profile
« Reply #8 on: February 19, 2012, 04:25:25 PM »

Good news for you! Solution #3 is coming! Wink

Check this out: http://www.xbox-scene.com/xbox1data/sep/EFkAuuApZEOevdwBEQ.php

Quote
In the meantime Xecuter has welcomed several new colleagues on to the team due to the current massive workload. Current projects include the 1175 fw, Xenon RGH, Corona RGH & 6752 CB along with several new hardware projects.
Logged
DragonSlayer
Member
**
Posts: 49


View Profile WWW
« Reply #9 on: February 21, 2012, 08:17:42 AM »

Jungleflasher bricked a hitachi for me too.. while reading from it...
Luckely it did not tuch the key so i was able to read it with willem
Logged

HOMiE7
Master Hacker
****
Posts: 113



View Profile
« Reply #10 on: February 24, 2012, 06:18:56 PM »

I can't understand how JF can brick it while you reading flash... Can you guys post your logs here?
Logged
Pages: 1
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM