XboxHacker BBS
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
May 22, 2013, 05:44:06 AM


Login with username, password and session length


Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 »
  Print  
Author Topic: Project to dump the new BenQ drive - VAD6038  (Read 191152 times)
MODFREAKz
Master Hacker
****
Posts: 440



View Profile
« Reply #120 on: August 26, 2007, 03:42:00 AM »

Is there any tutorial on how to dump the firmware and get the right key out of it, that i can spoof my hitachi or samsung to be a benq ?
@Team MODREAKZ
My drive is from June 2007 firmware 64930C
If you could tell me how to dump ... I could send you my dump then ...Would you be able to tell me the key then Huh
I WANT TO START MY XBOX ELITE  Cry Cry


try to write a howto tutorial this weekend, so please wait!!
Logged

zoogderrick2
Member
**
Posts: 11


View Profile
« Reply #121 on: August 26, 2007, 06:49:27 AM »

i just cracked open my BenQ VAD6038 drive and it looks a little different from the other photos. The drive was made in June 2007.



If anyone could confirm the 3.3v trace cut points on this board, I would appreciate it, I found where pin1 was in the upper right hand corner but its covered with glue and it looks like there is a chip soldered on it.
Logged
caster420
Master Hacker
****
Posts: 242



View Profile
« Reply #122 on: August 26, 2007, 06:56:44 AM »

That is the way it is supposed to look, as the photo above has the flash desoldered. The trace you are looking for is on the backside of the board.  Compare it to the pic TMF posted above and you'll see it.

I would recommend waiting until TMF posts a tutorial or fully tested diagram.

Caster.
« Last Edit: August 26, 2007, 07:02:50 AM by caster420 » Logged
zoogderrick2
Member
**
Posts: 11


View Profile
« Reply #123 on: August 26, 2007, 07:19:36 AM »

That is the way it is supposed to look, as the photo above has the flash desoldered. The trace you are looking for is on the backside of the board.  Compare it to the pic TMF posted above and you'll see it.

I would recommend waiting until TMF posts a tutorial or fully tested diagram.

Caster.

Thanks for you help i found it, but i just wanted to confirm you cut this (yellow) trace.


Logged
MODFREAKz
Master Hacker
****
Posts: 440



View Profile
« Reply #124 on: August 26, 2007, 07:35:05 AM »

if you can not wait then look here!

method #1 *fixed*



method #2 is more difficult
Logged

xry
Member
**
Posts: 10


View Profile
« Reply #125 on: August 26, 2007, 09:13:11 AM »

Method 1 seems easy enough, but do I need to remove any glue?
I have a 18w soldering iron, but I got really mad the other day and broke the tip, so I have to see if I can buy a better soldering station this week.

And, TMF, my drive is from June 07, do you have a firmware I can compare it to? Because I need to find the key, so I can inject it to an Samsung while waiting for the new firmware. Spoofing should be safe, or?
Logged
caster420
Master Hacker
****
Posts: 242



View Profile
« Reply #126 on: August 26, 2007, 09:36:08 AM »

There shouldnt be any glue on the back of the board for method #1.  Method #2 will require removing epoxy/resin on most retail drives. 

If you can dump your drive, your key will be easily found. 

Also, i can confirm that this works, as mine functions properly after the revision to Method #1.  However, i could not get it to dump in dos like TMF recommended.  I ended up dumping it in windows and it worked like a charm.  I will post details of my method with pics soon.

Caster.
Logged
xry
Member
**
Posts: 10


View Profile
« Reply #127 on: August 26, 2007, 09:51:02 AM »

Okey, did you scratch the trace first? Or did you just solder directly on the board?
Logged
MODFREAKz
Master Hacker
****
Posts: 440



View Profile
« Reply #128 on: August 26, 2007, 10:05:06 AM »

Okey, did you scratch the trace first? Or did you just solder directly on the board?

if you have no soldering skills, try to solder on old or broken parts first!!

and look at this pdf file, it will answer all your questions.
http://www.chilliflash.com/stepbystep.zip
Logged

xry
Member
**
Posts: 10


View Profile
« Reply #129 on: August 26, 2007, 10:11:27 AM »

I have, it's just, I've never tried traces before.
I've done Wii consoles and my own PS2, but haven't tried traces yet Wink
Logged
NEO_X
Member
**
Posts: 47


View Profile
« Reply #130 on: August 26, 2007, 12:40:02 PM »

modfreaksz this is nice you also have a pic with the switch installed
Logged
caster420
Master Hacker
****
Posts: 242



View Profile
« Reply #131 on: August 26, 2007, 02:27:07 PM »

modfreaksz this is nice you also have a pic with the switch installed

Here is what mine looked like prior to the additional cut trace being added.



Caster.
« Last Edit: August 26, 2007, 02:41:25 PM by caster420 » Logged
MODFREAKz
Master Hacker
****
Posts: 440



View Profile
« Reply #132 on: August 26, 2007, 02:43:52 PM »

ok the Tutorial is completed.

will upload and release it tonight.


Good luck!!
« Last Edit: August 26, 2007, 02:58:55 PM by Team MODFREAKz » Logged

NEO_X
Member
**
Posts: 47


View Profile
« Reply #133 on: August 26, 2007, 03:05:05 PM »

hmm this doesnt make really something clear for me can you make a picture of the whole board
Logged
caster420
Master Hacker
****
Posts: 242



View Profile
« Reply #134 on: August 26, 2007, 03:10:36 PM »

hmm this doesnt make really something clear for me can you make a picture of the whole board

Just wait for TMF's tutorial.  I'm sure he'll have more detailed information that you may be looking for.

Caster.
Logged
radsy
Hacker
***
Posts: 77


View Profile
« Reply #135 on: August 26, 2007, 03:39:03 PM »

my key was at @B030.    Grin
Logged
xry
Member
**
Posts: 10


View Profile
« Reply #136 on: August 26, 2007, 03:42:22 PM »

We really have to find out why the key is spread all over the place.
Anybody have suggestions? Different firmware versions?
Logged
MODFREAKz
Master Hacker
****
Posts: 440



View Profile
« Reply #137 on: August 26, 2007, 04:38:24 PM »

firmware 64930C (July 2007) is very new and not supported by maximus ToolBox
the key is stored @E030
now there are three dumps with different key offsets
@B040
@C020
@E030

ops typing error again!

known key offsets atm:
@B030  //64930C firmware
@E030  //64930C firmware
@C020  //62430C firmware

here you can download four different retail dumps.

Logged

NEO_X
Member
**
Posts: 47


View Profile
« Reply #138 on: August 26, 2007, 05:46:02 PM »

modfreaks when  do you post some pics 
Logged
Ma_junior
Newbie
*
Posts: 3


View Profile
« Reply #139 on: August 27, 2007, 02:11:38 AM »

Hi, I have a Benq of the 07/2007 with Flash MX25L2005 and he does not come recognized give DosFLASH, the program recognizes the drive but not the flash. I have used the trick brought back on method 1. How I can make in order to find the flash of the my Benq?
« Last Edit: August 27, 2007, 02:17:49 AM by Ma_junior » Logged
Pages: « 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM