|
MODFREAKz
|
 |
« Reply #120 on: August 26, 2007, 03:42:00 AM » |
|
Is there any tutorial on how to dump the firmware and get the right key out of it, that i can spoof my hitachi or samsung to be a benq ? @Team MODREAKZ My drive is from June 2007 firmware 64930C If you could tell me how to dump ... I could send you my dump then ...Would you be able to tell me the key then  I WANT TO START MY XBOX ELITE  try to write a howto tutorial this weekend, so please wait!!
|
|
|
|
|
Logged
|
|
|
|
|
zoogderrick2
|
 |
« Reply #121 on: August 26, 2007, 06:49:27 AM » |
|
i just cracked open my BenQ VAD6038 drive and it looks a little different from the other photos. The drive was made in June 2007.  If anyone could confirm the 3.3v trace cut points on this board, I would appreciate it, I found where pin1 was in the upper right hand corner but its covered with glue and it looks like there is a chip soldered on it.
|
|
|
|
|
Logged
|
|
|
|
|
caster420
|
 |
« Reply #122 on: August 26, 2007, 06:56:44 AM » |
|
That is the way it is supposed to look, as the photo above has the flash desoldered. The trace you are looking for is on the backside of the board. Compare it to the pic TMF posted above and you'll see it.
I would recommend waiting until TMF posts a tutorial or fully tested diagram.
Caster.
|
|
|
|
« Last Edit: August 26, 2007, 07:02:50 AM by caster420 »
|
Logged
|
|
|
|
|
zoogderrick2
|
 |
« Reply #123 on: August 26, 2007, 07:19:36 AM » |
|
That is the way it is supposed to look, as the photo above has the flash desoldered. The trace you are looking for is on the backside of the board. Compare it to the pic TMF posted above and you'll see it.
I would recommend waiting until TMF posts a tutorial or fully tested diagram.
Caster.
Thanks for you help i found it, but i just wanted to confirm you cut this (yellow) trace. 
|
|
|
|
|
Logged
|
|
|
|
|
MODFREAKz
|
 |
« Reply #124 on: August 26, 2007, 07:35:05 AM » |
|
if you can not wait then look here! method #1 *fixed*  method #2 is more difficult 
|
|
|
|
|
Logged
|
|
|
|
|
xry
|
 |
« Reply #125 on: August 26, 2007, 09:13:11 AM » |
|
Method 1 seems easy enough, but do I need to remove any glue? I have a 18w soldering iron, but I got really mad the other day and broke the tip, so I have to see if I can buy a better soldering station this week.
And, TMF, my drive is from June 07, do you have a firmware I can compare it to? Because I need to find the key, so I can inject it to an Samsung while waiting for the new firmware. Spoofing should be safe, or?
|
|
|
|
|
Logged
|
|
|
|
|
caster420
|
 |
« Reply #126 on: August 26, 2007, 09:36:08 AM » |
|
There shouldnt be any glue on the back of the board for method #1. Method #2 will require removing epoxy/resin on most retail drives.
If you can dump your drive, your key will be easily found.
Also, i can confirm that this works, as mine functions properly after the revision to Method #1. However, i could not get it to dump in dos like TMF recommended. I ended up dumping it in windows and it worked like a charm. I will post details of my method with pics soon.
Caster.
|
|
|
|
|
Logged
|
|
|
|
|
xry
|
 |
« Reply #127 on: August 26, 2007, 09:51:02 AM » |
|
Okey, did you scratch the trace first? Or did you just solder directly on the board?
|
|
|
|
|
Logged
|
|
|
|
|
MODFREAKz
|
 |
« Reply #128 on: August 26, 2007, 10:05:06 AM » |
|
Okey, did you scratch the trace first? Or did you just solder directly on the board?
if you have no soldering skills, try to solder on old or broken parts first!! and look at this pdf file, it will answer all your questions. http://www.chilliflash.com/stepbystep.zip
|
|
|
|
|
Logged
|
|
|
|
|
xry
|
 |
« Reply #129 on: August 26, 2007, 10:11:27 AM » |
|
I have, it's just, I've never tried traces before. I've done Wii consoles and my own PS2, but haven't tried traces yet 
|
|
|
|
|
Logged
|
|
|
|
|
NEO_X
|
 |
« Reply #130 on: August 26, 2007, 12:40:02 PM » |
|
modfreaksz this is nice you also have a pic with the switch installed
|
|
|
|
|
Logged
|
|
|
|
|
caster420
|
 |
« Reply #131 on: August 26, 2007, 02:27:07 PM » |
|
modfreaksz this is nice you also have a pic with the switch installed
Here is what mine looked like prior to the additional cut trace being added.  Caster.
|
|
|
|
« Last Edit: August 26, 2007, 02:41:25 PM by caster420 »
|
Logged
|
|
|
|
|
MODFREAKz
|
 |
« Reply #132 on: August 26, 2007, 02:43:52 PM » |
|
ok the Tutorial is completed.
will upload and release it tonight.
Good luck!!
|
|
|
|
« Last Edit: August 26, 2007, 02:58:55 PM by Team MODFREAKz »
|
Logged
|
|
|
|
|
NEO_X
|
 |
« Reply #133 on: August 26, 2007, 03:05:05 PM » |
|
hmm this doesnt make really something clear for me can you make a picture of the whole board
|
|
|
|
|
Logged
|
|
|
|
|
caster420
|
 |
« Reply #134 on: August 26, 2007, 03:10:36 PM » |
|
hmm this doesnt make really something clear for me can you make a picture of the whole board
Just wait for TMF's tutorial. I'm sure he'll have more detailed information that you may be looking for. Caster.
|
|
|
|
|
Logged
|
|
|
|
|
radsy
|
 |
« Reply #135 on: August 26, 2007, 03:39:03 PM » |
|
my key was at @B030. 
|
|
|
|
|
Logged
|
|
|
|
|
xry
|
 |
« Reply #136 on: August 26, 2007, 03:42:22 PM » |
|
We really have to find out why the key is spread all over the place. Anybody have suggestions? Different firmware versions?
|
|
|
|
|
Logged
|
|
|
|
|
MODFREAKz
|
 |
« Reply #137 on: August 26, 2007, 04:38:24 PM » |
|
firmware 64930C (July 2007) is very new and not supported by maximus ToolBox the key is stored @E030 now there are three dumps with different key offsets @B040 @C020 @E030 ops typing error again! known key offsets atm: @B030 //64930C firmware @E030 //64930C firmware @C020 //62430C firmware here you can download four different retail dumps.
|
|
|
|
|
Logged
|
|
|
|
|
NEO_X
|
 |
« Reply #138 on: August 26, 2007, 05:46:02 PM » |
|
modfreaks when do you post some pics
|
|
|
|
|
Logged
|
|
|
|
Ma_junior
Newbie

Posts: 3
|
 |
« Reply #139 on: August 27, 2007, 02:11:38 AM » |
|
Hi, I have a Benq of the 07/2007 with Flash MX25L2005 and he does not come recognized give DosFLASH, the program recognizes the drive but not the flash. I have used the trick brought back on method 1. How I can make in order to find the flash of the my Benq?
|
|
|
|
« Last Edit: August 27, 2007, 02:17:49 AM by Ma_junior »
|
Logged
|
|
|
|
|