View Single Post
Old 02-24-2010, 17:50   #760 (permalink)
snakebreeder
No Life Poster
 
snakebreeder's Avatar
 
Join Date: Apr 2008
Location: PILIPINAS
Posts: 759
Member: 759375
Status: Offline
Sonork: www.GSMPIONEER.com
Thanks Meter: 895
6120c simlock invalid (wrong unlocking) FIXED

Code:
Handling device: [Cyclone Team], [Cyclone Bootloader]
Handling device: [Cyclone Team], [Cyclone Box]
Initializing box...
Box Firmware: Cyclone Nokia Application v01.21, (Feb 12 2010 23:32:03, gcc v4.3.2, RTOS V6.0.1), Type: Signed Production Application, (C) KarwosSoft 2010 wk6
Box Serial Number: C00016ED
HW Revision: A, Suitable for: Production, Case: First Plastic Case, MCU Manufacture Time: 2009, wk19
Initializing security card...
Card Serial Number: D2000364
Card Firmware Revision: 0109
Card is activated
Box is activated
Super DCT4 Activation: TRUE
Initializing FBUS...
All initialized - Ready to work
Started Phone Security Analysis...
MCU Version    V 05.11
MCU Date    21-04-08
Product        RM-243
Manufacturer    (c) Nokia
IMEI        359807016113750
Mastercode    540155340
Reading Security Block...
Security block OK and saved to "RM-243_359807016113750_2242010_34918 PM.SecurityBlock.PM"
Step 1 : Testing SIMLOCK
-- SECURITY PROBLEM --

Phone have failed SIMLOCK Test, that means Simlock Area is DAMAGED!
To repair simlock area, Select Unlock method : "RPL CALCULATION",
And then click DIRECT UNLOCK. SL Area will be re-formatted.
If security problem still exists - check CCC and HWC Certificates.

-- SECURITY PROBLEM --
Step 2 : Testing SECURITY
-- SECURITY PROBLEM --


Phone have failed SECURITY Test, that means Superdongle Area is DAMAGED!
To repair it, simply slick "SX4 Authorization / SD Repair" button.
After SX4/SD Repair, don't forget to write PM file with fields 1,309

-- SECURITY PROBLEM --
Step 3 : Analyzing Security Block
WARNING: "11900005919F005842439D4200E918FE94007DE3.C00016ED" Not Exists, Will read it...
Reading CYC file from phone...
Booting RAP...
CMT_SYSTEM_ASIC_ID:    000000010000022600010006400C192101021103
CMT_EM_ASIC_ID:        00000295
CMT_EM_ASIC_ID:        00000B22
CMT_PUBLIC_ID:        11900005919F005842439D4200E918FE94007DE3
CMT_ASIC_MODE_ID:    00
CMT_ROOT_KEY_HASH:    CAEEBB65D3C48E6DC73B49DC5063A2EE
CMT_BOOT_ROM_CRC:    A8C1D671
CMT_SECURE_ROM_CRC:    3E691FF8
HERE is the solution... no need INTERNET CONNECTION


here are some PINOUTS COLLECTION
http://www.4shared.com/file/22240272...R_MOBILES.html

1.) open bb5 tab... choose "SECURITY" then
CLICK " AUTHORIZE/REPAIR SD KEYS"





Code:
RAPIDOv11_2nd.fg, Type: 2nd Boot Loader, Rev: 0.1.30.0, Algo: BB5
Flashbus Write baud set to 1.0Mbits
Flashbus Read baud set to 98Kbits
Using OLD BB5 FLASHING PROTOCOL
Exploiting - running preloader...
Preloader running OK, Running Custom Loader...
Custom loader running OK! Working...
Readed OK, Saving to "11900005919F005842439D4200E918FE94007DE3.C00016ED"
Checking SUPERDONGLE...
SUPERDONGLE FOUND AND CHECKSUM OK! PASSED!
Checking SIMLOCK...
SIMLOCK FOUND AND CHECKSUM OK! PASSED!
Checking MCU&DSP TIMESTAMPS...
MCU&DSP TIMESTAMPS FOUND AND CHECKSUM OK! PASSED!
Checking CMLA KEYS...
Failed to decode Security Section, Box Reported: Security Section Not Found (SL3 phone?)
Checking ECC KEYS...
Failed to decode Security Section, Box Reported: Security Section Not Found (SL3 phone?)
Checking DIV KEYS...
DIV KEYS FOUND AND CHECKSUM OK! PASSED!
Analyze finished!
SX4 Authorization / SD Repair Procedure Started....
"11900005919F005842439D4200E918FE94007DE3.C00016ED" Exists, That is good...
MCU Version    V 05.11
MCU Date    21-04-08
Product        RM-243
Manufacturer    (c) Nokia
IMEI        359807016113750
Mastercode    540155340
Reading Security Block...
Security block OK and saved to "RM-243_359807016113750_2242010_34937 PM.SecurityBlock.PM"
SX4 Status: Not authorized (76)
Started mutual authenthication with card...
Receiving Phone Seed 1...
Phone Seed 1 Received
Sending calculated Data 1, and expecting Seed 2...
Calculated Data 1 accepted, Phone Seed 2 Received
Sending calculated Data 2
Calculated Data 2 sent, Checking Authorization Status again
Authorization successfully finished!
2.) WRITE PM FIELD without field 1 and 309



here is the PM file that i used
http://www.4shared.com/file/22866224...73/RM-243.html



WRITE NOW VIRGIN SX4 PM which CONTAINS PM FIELDS 1 and 309!

Code:
[1,0] Written, Length: 114 bytes, Status: OK
[1,1] Written, Length: 4 bytes, Status: OK
[1,2] Written, Length: 98 bytes, Status: OK
[1,4] Written, Length: 110 bytes, Status: OK
[1,5] Written, Length: 4 bytes, Status: OK
[1,6] Written, Length: 98 bytes, Status: OK
[1,8] Written, Length: 110 bytes, Status: OK
[1,13] Written, Length: 98 bytes, Status: OK
[1,15] Written, Length: 4 bytes, Status: OK
[1,16] Written, Length: 98 bytes, Status: OK
[1,18] Written, Length: 98 bytes, Status: OK
[1,20] Written, Length: 98 bytes, Status: OK
[1,22] Written, Length: 16 bytes, Status: OK
[1,23] Written, Length: 4 bytes, Status: OK
[1,24] Written, Length: 84 bytes, Status: OK
[1,25] Written, Length: 4 bytes, Status: OK
[1,26] Written, Length: 110 bytes, Status: OK
[1,27] Written, Length: 4 bytes, Status: OK
[1,28] Written, Length: 98 bytes, Status: OK
[1,29] Written, Length: 10 bytes, Status: OK
[1,31] Written, Length: 98 bytes, Status: OK
[1,33] Written, Length: 36 bytes, Status: OK
[1,34] Written, Length: 80 bytes, Status: OK
[1,40] Written, Length: 16 bytes, Status: OK
[1,41] Written, Length: 182 bytes, Status: OK
[1,42] Written, Length: 4 bytes, Status: OK
[1,43] Written, Length: 36 bytes, Status: OK
[1,44] Written, Length: 182 bytes, Status: OK
[1,46] Written, Length: 64 bytes, Status: OK
[309,0] Written, Length: 4 bytes, Status: OK
[309,1] Written, Length: 2 bytes, Status: OK
[309,2] Written, Length: 12 bytes, Status: OK
[309,4] Written, Length: 12 bytes, Status: OK
[309,5] Written, Length: 12 bytes, Status: OK
[309,7] Written, Length: 12 bytes, Status: OK
[309,8] Written, Length: 12 bytes, Status: OK
[309,17] Written, Length: 12 bytes, Status: OK
Write PM Finished, Record written OK: 37, Record written NOT OK: 0
Started Phone Security Analysis...
MCU Version    V 05.11
MCU Date    21-04-08
Product        RM-243
Manufacturer    (c) Nokia
IMEI        359807016113750
Mastercode    540155340
Reading Security Block...
Security block OK and saved to "RM-243_359807016113750_2242010_35036 PM.SecurityBlock.PM"
Step 1 : Testing SIMLOCK
-- SECURITY PROBLEM --

Phone have failed SIMLOCK Test, that means Simlock Area is DAMAGED!
To repair simlock area, Select Unlock method : "RPL CALCULATION",
And then click DIRECT UNLOCK. SL Area will be re-formatted.
If security problem still exists - check CCC and HWC Certificates.

-- SECURITY PROBLEM --
Step 2 : Testing SECURITY
SECURITY SEFLTEST PASSED OK!
Step 3 : Analyzing Security Block
"11900005919F005842439D4200E918FE94007DE3.C00016ED" Exists, That is good...
Checking SUPERDONGLE...
SUPERDONGLE FOUND AND CHECKSUM OK! PASSED!
Checking SIMLOCK...
SIMLOCK FOUND AND CHECKSUM OK! PASSED!
Checking MCU&DSP TIMESTAMPS...
MCU&DSP TIMESTAMPS FOUND AND CHECKSUM OK! PASSED!
Checking CMLA KEYS...
Failed to decode Security Section, Box Reported: Security Section Not Found (SL3 phone?)
Checking ECC KEYS...
Failed to decode Security Section, Box Reported: Security Section Not Found (SL3 phone?)
Checking DIV KEYS...
DIV KEYS FOUND AND CHECKSUM OK! PASSED!
Analyze finished!


DONE DONE DONE

Last edited by ptt; 02-24-2010 at 22:08. Reason: add code tag
 
The Following 2 Users Say Thank You to snakebreeder For This Useful Post:
 
Page generated in 0.10735 seconds with 7 queries