View Full Version : I have a question from DREAM TEAM
hossein1155
05-02-2008, 19:26
HI
Is it possible for this box to unlock a K800 phone which its IC FLASH have been changed when its IC flash isnt empty .
it means that an IC flash from another board has been used?
further more ,I havent been able to unlock it with other boxes
FullFLASHgSMPH
05-03-2008, 02:14
i think maybe
try it but BAckup GDFS first...
experement and post here
BR
not possible as for now...must use new flash chip
br
HI
Is it possible for this box to unlock a K800 phone which its IC FLASH have been changed when its IC flash isnt empty .
it means that an IC flash from another board has been used?
further more ,I havent been able to unlock it with other boxes
It is possible if You will use flash IC from SonyEriccson PCB. After changing flash IC just write Full_Flash then repair GDFS & write Main+FS+Cust...
.::Gsm Killer::.
05-03-2008, 12:33
It is possible if You will use flash IC from SonyEriccson PCB. After changing flash IC just write Full_Flash then repair GDFS & write Main+FS+Cust...
Yes 100% Right I tested it works 100%
..::AppleLinks::..
05-03-2008, 15:02
Use falsh frm any Pf Your Se Phones,Recom is,if u have db2020 the use any db20202 phonechip,place it.....Now do as Follows..........
Full Flash U R Phone Using Normal DB Cable.
Upload a good GDFS frm working Phone.
Now power on your phone it will not power on,do nt worry.
Do Security By Pass Mode using Testpoint Mode.
Unlock and reapier GDFS using,sec by pass mode.
power on phone,you will have a good runing phone.
if not then upload Full DUMP,using Sec by pass mode.
hossein1155
05-03-2008, 19:51
i think maybe
try it but BAckup GDFS first...
experement and post here
BR
at this time I dont have dream box I am just
doing some reserch about it
hossein1155
05-03-2008, 19:54
I want to thank every body who has given me the answer of my question
after buying this box I will let you know the result
hossein1155
06-08-2008, 21:12
HI
Is it possible for this box to unlock a K800 phone which its IC FLASH have been changed when its IC flash isnt empty .
it means that an IC flash from another board has been used?
further more ,I havent been able to unlock it with other boxes
another success for deram box.CONGRAJULATION!!!
after providing this production ,
I finally could solve my problem
while other boxes werent been able to do so.
--- Reading Info---------------------------------------------------------------
User selected phone K800 using Test Point boot mode
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Warning : Aborted by user.
--- Loading GDFS file----------------------------------------------------------
Loading "G:\File flash\dream\read gdfs\K800_359088019998451_0602-2036.dmap"...
Done.
--- Write GDFS-----------------------------------------------------------------
User selected phone K800 using Test Point boot mode
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Warning : Aborted by user.
--- Reading Info---------------------------------------------------------------
User selected phone K800 using Normal boot mode
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Starting CS Loader GDFS Service ...
GDFS Simlocks :
Lock 0 = OFF (00) [5/5] (Network)
Lock 1 = OFF (00) [5/5] (Network Subset)
Lock 2 = OFF (00) [5/5] (Service Provider)
Lock 3 = OFF (00) [5/5] (Corporate)
Lock 4 = OFF (00) [5/5] (SIM Card)
Lock 5 = OFF (00) [5/5] (Extended)
Operator code = 000-00
Done.
--- Security Bypass------------------------------------------------------------
User selected phone K800 using Security Bypass boot mode
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
Sending Application ...
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Baseband Chip ID = 9900
Phone ID = 2380B07A15F0CC6A
Flash Chip : Intel 48F50xxM0Y0
Flash Chip ID : 887E0089
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
Sending Application ...
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Baseband Chip ID = 9900
Phone ID = 2380B07A15F0CC6A
Finalizing ...
Done.
--- Unlock and Repair----------------------------------------------------------
User selected phone K800 using Security Bypass boot mode
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
Sending Application ...
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Baseband Chip ID = 9900
Phone ID = 2380B07A15F0CC6A
Reading GDFS...
Testing security ...
GDFS 0013 Hash Failed
GDFS 0006 Hash Failed
GDFS 000E Hash Failed
GDFS 001C Hash Failed
Unlocking ...
Testing security ...
GDFS 0013 Hash OK
GDFS 0006 Hash OK
GDFS 000E Hash OK
GDFS 001C Hash OK
Generating GDFS...
Writing GDFS...
Done.
--- Reading Info---------------------------------------------------------------
User selected phone K800 using Security Bypass boot mode
1) Turn OFF the phone.
2) Connect the phone to DreamBox cable.
Boot Responce = 5A
Processor ID = 99000301FFFFFFFF (DB2020 / DB2030)
Sending Application ...
NOR Flash ID = 897E
OTP Status = LOCKED
OTP IMEI = 359088-01-437455-9
OTP CID = 51
EROM Color = 4 : RED
EROM CID = 52
Baseband Chip ID = 9900
Phone ID = 2380B07A15F0CC6A
Flash Chip : Intel 48F50xxM0Y0
Flash Chip ID : 887E0089
Reading GDFS...
Testing security ...
GDFS 0013 Hash OK
GDFS 0006 Hash OK
GDFS 000E Hash OK
GDFS 001C Hash OK
Done.:eek::eek:
thank you vey much for your supper powerful production:):)
well,what about its update?:(
Flash IC completely trashed isnt common, why to replace flash IC and perform testpoint to rebuild GDFS ... that could be done without IC exchange with DreamBox
hossein1155
06-09-2008, 06:37
Flash IC completely trashed isnt common, why to replace flash IC and perform testpoint to rebuild GDFS ... that could be done without IC exchange with DreamBox
I havnt already had this producion and I used another production such as SETOOL and .... before