|
Welcome to the GSM-Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. Only registered members may post questions, contact other members or search our database of over 8 million posts. Registration is fast, simple and absolutely free so please - Click to REGISTER! If you have any problems with the registration process or your account login, please contact contact us . |
|
Register | FAQ | Donate | Forum Rules | Root any Device | ★iPhone Unlock★ | ★ Direct Codes ★ | Direct Unlock Source |
GSM Programming & Reverse Engineering Here you can post all Kind of GSM Programming and Reverse Engineering tools and Secrets. |
| LinkBack | Thread Tools | Display Modes |
05-05-2011, 22:08 | #1 (permalink) |
Junior Member Join Date: Jan 2011 Location: Poland
Posts: 3
Member: 1488550 Status: Offline Thanks Meter: 0 | BB5 S40 MCU modyfing? I tried to modify mcusw in nokia (*#0000# - change name of mcu etc). Flashing process ok but effect? Phone doesn't boot up. Some controllers? I think any byte in mcu is not codded by any security (faid, fsig and fsig_ext probably are not used, only rsa/aes but where?). Some areas in mcu should can be modded without any problems. Next attempt - I modify any byte in mcu. when i flashing: Code: Asic CMT: Start programming 49221 KB... Asic CMT: Programming data sent: 0% Asic CMT: Programming data sent: 10% Asic CMT: Programming data sent: 20% Asic CMT: Programming data sent: 30% Asic CMT: Programming data sent: 40% FUR: ALGO reported error in Control Frame. Unable to continue. ERROR: Programming error reported for asic CMT -- Error Type 0x05 -- Error Specifier 0x08 -- Of*****ng Addr 0x01A8C400 -- Expected content 0x00008683 -- Detected content 0x0000868D Error sending programming command 0x8400A814 ERROR Sending status request to Algo! 0x8400A814 Error while programming CMT! Error when flashing Algo (0x84012283) Unable to flash phone 0x84012283 Mcusw is file with some sectors: Every sector as you seen on screen has a hash - it is rap hash, but 11 sector - papubkeys has one more hash - I don't know what hash it's. Sector 11 is not mapped in memory. Sectors which haven't hashes are I think block headers. Generally: I think papubkeys is "controller" for the mcu, which not allow to boot phone. Any ideas? Tips? Corrects for me? Thanks a lot and sorry for my language. |
09-03-2011, 02:50 | #8 (permalink) |
No Life Poster Join Date: Nov 2009 Location: Syberia Age: 34
Posts: 12,508
Member: 1157320 Status: Offline Thanks Meter: 6,192 | ROFS repack done funny If we made TOC change - phone will no longer check it in new FW versions. I already check some parts - as usual nokia not cover full certs with it, just ROFS1, ROFS2 and ROFS3 part can be changed. If we make other change - phone dead. And most important - rofs is just a fs image, not a FW part, so, it not secured as weel. Last edited by Dzirt; 09-03-2011 at 03:00. |
The Following User Says Thank You to Dzirt For This Useful Post: |
Bookmarks |
| |
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
Need full flash 6110 newest mcu | Mr_Skoku | Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) | 4 | 09-11-2001 09:28 |
PPM and MCU flash boxes - lower prices | Zorz | Main Sales Section | 1 | 04-14-2001 22:49 |
MCU EEPROM contents: failed | phr3ak | Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) | 0 | 02-12-2001 15:58 |
NSB-1 PPM+MCU Sw needed | JBU-5_PKD-1 | Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) | 0 | 01-29-2001 12:55 |
I want to Byi Solution for Flashing MCU Nokia , for change Version Software!!!!! | TNT | Wanted Products | 0 | 09-26-2000 17:48 |
|