View Single Post
Old 01-13-2011, 22:28   #1682 (permalink)
ptt
No Life Poster
 
ptt's Avatar
 
Join Date: Sep 2006
Location: RETIRED !
Age: 48
Posts: 3,327
Member: 348680
Status: Offline
Thanks Meter: 1,273
5800 XpressMusic Flash & Unlock

Flash:
Code:
MCU Version V ICPR72_09w02.3
MCU Date 26-01-09
Product  RM-428 (Nokia 5800 XpressMusic)
Manufacturer (c) Nokia
IMEI  359348023678030
Mastercode 2160727275
IMEI Spare 3A95430832760803
IMEI SV  3395430832760803F5000000
CNT  v 20.0.010_008_xxx_U01, 21-01-09, vanilla, RM356
PSN  GAK209782
Product Code 0580641
Basic Product Code 0559231
PSD  0000000000000000
LPSN  0
WLAN MAC 002668A21067
APE SW  V 20.2.014
APE Variant V 20.2.014V 52.50.2009.20.2.012 20.2.014.311.03
APE Test  2008wk50v0.013
APE HW  256
APE ADSP 256
RETU  16
TAHVO  22
AHNE  11
HW  1101
RFIC  17141715
DSP  sangalo_ICPR72_09w02
Simlock Server SIMLOCK SERVER
Simlock Key 7223400000000000
Simlock Profile 0000000000000000
Simlock Key Cnt 0
Simlock FBUS Cnt 0
Simlock [1,1] State: CLOSED Type: MCC-MNC Data: 72234F
Simlock [2,1] State: CLOSED Type: MCC-MNC Data: 72234F
Scanning avaiable products...
Processing C:\Archivos de programa\Nokia\Phoenix\Products\...
Processing C:\Archivos de programa\Archivos comunes\Nokia\DataPackage\Products\...
Found 30 products, Filtering BB5 Products - wait...
4 Products left after filtering. Ready.
Retrieving Variants for Product RM-428 (Nokia 5800 XpressMusic) - wait...
2 Variants Retrieved
Processing pre flash tasks...
Backing up RPL...
RPL Creation started...
Processing CMT Part...
Storing Product Code...
Storing PSN...
Storing HWID...
Trying to store Simlock...
Reading Configuration Key...
Hashing...
Reading SHA1-RSA Signature...
Reading SHA1-HMAC Signature...
Storing Simlock...
Trying to store WMDRM RPL...
Reading Keys...
Storing WMDRM PD...
Reading Security Block...
Security block OK and saved to "RM-428_359348023678030_12012011_032149 p.m..SecurityBlock.PM"
"21700103AE218B5265F9CEE0E2A945D0CF1F73A9.C00001CE" Exists, That is good...
Storing Additional Data...
Checking Superdongle Key...
Encrypting Superdongle Key...
Storing Superdongle Key...
Checking CMLA Key...
Storing CMLA Key...
Booting CMT...
CMT_SYSTEM_ASIC_ID: 000000010000022600010006400C192101031103
CMT_EM_ASIC_ID:  00000296
CMT_EM_ASIC_ID:  00000B22
CMT_PUBLIC_ID:  21700103AE218B5265F9CEE0E2A945D0CF1F73A9
CMT_ASIC_MODE_ID: 00
CMT_ROOT_KEY_HASH: CAEEBB65D3C48E6DC73B49DC5063A2EE
CMT_BOOT_ROM_CRC: 4B9B7510
CMT_SECURE_ROM_CRC: 3E691FF8
CMT Ready!
Searching for BootCode: DualLine 32Bit
RAPIDOv11_2nd.fg, Type: 2nd Boot Loader, Rev: 512.10.34.1, Algo: BB5
Flashbus Write baud set to 1.0Mbits
Flashbus Read baud set to 98Kbits
Using NEW BB5 FLASHING PROTOCOL
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
FlashChip[0,CMT]: 0x0000000000000000, Unknown, RAM
FlashChip[0,CMT]: 0xFFFF000000000000, Unknown, MMC
FlashChip[0,CMT]: 0x0400000000000000, Unknown, NOR
FlashChip[1,CMT]: 0x0000000100000000, Unknown, NOR
FlashChip[0,CMT]: 0x00EC004000000121, Samsung, ONENAND
Requested Algorithm: XSR 1.5 (CMT)
Searching for BootCode: DualLine 32Bit
FlashChip 0x00EC0040 (Samsung), Size: 256MBytes, VPP: Not Supported
RAPIDOv11_XSR15_alg.fg, Type: Algorithm, Rev: 512.10.34.1, Algo: XSR 1.5
Initializing TurboCache...
TurboCache Loaded!
Writing CMT PASUBTOC Certificate...
Writing CMT ALG Certificate...
CMT Algorithm Ready!
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
Adding FUR Client (CMT, State: Ready)...
CMT FUR Ready!
Box VPP disabled
Internal CMT Phone VPP Enabled
PAPUBKEYS Hash for CMT: 76A20187051C30162EE91C77AE5E6011F5F1BA61
APE Subsystem Not Found
Flashbus Write baud set to 5.0Mbits
Storing NPC...
Storing CCC...
Storing HWC...
CMT VARIANT Not Found
Restarting MCU...
RPL Saved OK
RPL backup thread finished, continuing...
Backing up simlock...
MCU Version V ICPR72_09w02.3
MCU Date 26-01-09
Product  RM-428 (Nokia 5800 XpressMusic)
Manufacturer (c) Nokia
IMEI  359348023678030
Mastercode 2160727275
Simlock backup OK, saved to RM-428_359348023678030_12012011_032159 p.m..SLBackup.PM
Backup simlock thread finished, continuing...
Pre flash tasks finished, continuing...
Processing RM-428_51.2.007_prd.core.C00 (CMT)...
Booting CMT...
CMT_SYSTEM_ASIC_ID: 000000010000022600010006400C192101031103
CMT_EM_ASIC_ID:  00000296
CMT_EM_ASIC_ID:  00000B22
CMT_PUBLIC_ID:  21700103AE218B5265F9CEE0E2A945D0CF1F73A9
CMT_ASIC_MODE_ID: 00
CMT_ROOT_KEY_HASH: CAEEBB65D3C48E6DC73B49DC5063A2EE
CMT_BOOT_ROM_CRC: 4B9B7510
CMT_SECURE_ROM_CRC: 3E691FF8
CMT Ready!
RM-428_51.2.007_prd.core.C00, Type: Flash Image, Algo: XSR 1.5, BB5
Searching for BootCode: DualLine 32Bit
RAPIDOv11_2nd.fg, Type: 2nd Boot Loader, Rev: 512.10.34.1, Algo: BB5
Flashbus Write baud set to 650Kbits
Flashbus Read baud set to 98Kbits
Using NEW BB5 FLASHING PROTOCOL
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
FlashChip[0,CMT]: 0x0000000000000000, Unknown, RAM
FlashChip[0,CMT]: 0xFFFF000000000000, Unknown, MMC
FlashChip[0,CMT]: 0x0400000000000000, Unknown, NOR
FlashChip[1,CMT]: 0x0000000100000000, Unknown, NOR
FlashChip[0,CMT]: 0x00EC004000000121, Samsung, ONENAND
Requested Algorithm: XSR 1.5 (CMT)
Searching for BootCode: DualLine 32Bit
FlashChip 0x00EC0040 (Samsung), Size: 256MBytes, VPP: Not Supported
RAPIDOv11_XSR15_alg.fg, Type: Algorithm, Rev: 512.10.34.1, Algo: XSR 1.5
Initializing TurboCache...
TurboCache Loaded!
Writing CMT PASUBTOC Certificate...
Writing CMT ALG Certificate...
CMT Algorithm Ready!
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
Adding FUR Client (CMT, State: Ready)...
CMT FUR Ready!
Box VPP disabled
Internal CMT Phone VPP Enabled
PAPUBKEYS Hash for CMT: 76A20187051C30162EE91C77AE5E6011F5F1BA61
Flashbus Write baud set to 5.0Mbits
Sending Certificates...
Certificates OK
Partitioning...
Partitioning OK
Started group flash erase
EraseArea[0,CMT]: 0x00040000-0x00082FFF, ONENAND
EraseArea[0,CMT]: 0x00083400-0x003FFFFF, ONENAND
EraseArea[0,CMT]: 0x00400000-0x007FFFFF, ONENAND
EraseArea[0,CMT]: 0x00800000-0x00D5FFFF, ONENAND
EraseArea[0,CMT]: 0x00D60000-0x09E5FFFF, ONENAND
Erase Partition (CMT)
Waiting 320s for erasure finish...
Erase taken 0.922s
Writing all blocks...
Initializing TurboCache...
TurboCache Loaded!
Writing CMT ADA Certificate...
Writing CMT KEYS Certificate...
Writing CMT PRIMAPP Certificate...
Writing CMT RAP3NAND Certificate...
Writing CMT PASUBTOC Certificate...
Writing CMT PAPUBKEYS Certificate...
Writing CMT SOS*UPDAPP Certificate...
Writing CMT SOS*ENO Certificate...
Writing CMT SOS*DSP0 Certificate...
Writing CMT SOS*ISASW Certificate...
Writing CMT SOS+CORE Certificate...
Writing CMT SOS+ROFS1 Certificate...
Programming Status OK!
All blocks written OK! Time taken 153.281s
Flashing Speed: 6016,80 kBit/S
Restarting MCU...
Processing RM-428_51.2.007_prd.core.C00 (APE)...
Processing RM-428_51.2.007_prd.rofs2.V16 (CMT)...
Booting CMT...
CMT_SYSTEM_ASIC_ID: 000000010000022600010006400C192101031103
CMT_EM_ASIC_ID:  00000296
CMT_EM_ASIC_ID:  00000B22
CMT_PUBLIC_ID:  21700103AE218B5265F9CEE0E2A945D0CF1F73A9
CMT_ASIC_MODE_ID: 00
CMT_ROOT_KEY_HASH: CAEEBB65D3C48E6DC73B49DC5063A2EE
CMT_BOOT_ROM_CRC: 4B9B7510
CMT_SECURE_ROM_CRC: 3E691FF8
CMT Ready!
RM-428_51.2.007_prd.rofs2.V16, Type: Flash Image, Algo: XSR 1.5, BB5
Searching for BootCode: DualLine 32Bit
RAPIDOv11_2nd.fg, Type: 2nd Boot Loader, Rev: 512.10.34.1, Algo: BB5
Flashbus Write baud set to 650Kbits
Flashbus Read baud set to 98Kbits
Using NEW BB5 FLASHING PROTOCOL
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
FlashChip[0,CMT]: 0x0000000000000000, Unknown, RAM
FlashChip[0,CMT]: 0xFFFF000000000000, Unknown, MMC
FlashChip[0,CMT]: 0x0400000000000000, Unknown, NOR
FlashChip[1,CMT]: 0x0000000100000000, Unknown, NOR
FlashChip[0,CMT]: 0x00EC004000000121, Samsung, ONENAND
Requested Algorithm: XSR 1.5 (CMT)
Searching for BootCode: DualLine 32Bit
FlashChip 0x00EC0040 (Samsung), Size: 256MBytes, VPP: Not Supported
RAPIDOv11_XSR15_alg.fg, Type: Algorithm, Rev: 512.10.34.1, Algo: XSR 1.5
Initializing TurboCache...
TurboCache Loaded!
Writing CMT PASUBTOC Certificate...
Writing CMT ALG Certificate...
CMT Algorithm Ready!
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
Adding FUR Client (CMT, State: Ready)...
CMT FUR Ready!
Box VPP disabled
Internal CMT Phone VPP Enabled
PAPUBKEYS Hash for CMT: 76A20187051C30162EE91C77AE5E6011F5F1BA61
Flashbus Write baud set to 5.0Mbits
Started group flash erase
EraseArea[0,CMT]: 0x07360000-0x0915FFFF, ONENAND
Waiting 320s for erasure finish...
Erase taken 0.172s
Writing all blocks...
Initializing TurboCache...
TurboCache Loaded!
Writing CMT SOS+ROFS2 Certificate...
Programming Status OK!
All blocks written OK! Time taken 31.594s
Flashing Speed: 5836,66 kBit/S
Restarting MCU...
Processing RM-428_51.2.007_prd.rofs2.V16 (APE)...
Processing RM-428_51.2.007_C03_prd.rofs3.fpsx (CMT)...
Booting CMT...
CMT_SYSTEM_ASIC_ID: 000000010000022600010006400C192101031103
CMT_EM_ASIC_ID:  00000296
CMT_EM_ASIC_ID:  00000B22
CMT_PUBLIC_ID:  21700103AE218B5265F9CEE0E2A945D0CF1F73A9
CMT_ASIC_MODE_ID: 00
CMT_ROOT_KEY_HASH: CAEEBB65D3C48E6DC73B49DC5063A2EE
CMT_BOOT_ROM_CRC: 4B9B7510
CMT_SECURE_ROM_CRC: 3E691FF8
CMT Ready!
RM-428_51.2.007_C03_prd.rofs3.fpsx, Type: Flash Image, Algo: XSR 1.5, BB5
Searching for BootCode: DualLine 32Bit
RAPIDOv11_2nd.fg, Type: 2nd Boot Loader, Rev: 512.10.34.1, Algo: BB5
Flashbus Write baud set to 650Kbits
Flashbus Read baud set to 98Kbits
Using NEW BB5 FLASHING PROTOCOL
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
FlashChip[0,CMT]: 0x0000000000000000, Unknown, RAM
FlashChip[0,CMT]: 0xFFFF000000000000, Unknown, MMC
FlashChip[0,CMT]: 0x0400000000000000, Unknown, NOR
FlashChip[1,CMT]: 0x0000000100000000, Unknown, NOR
FlashChip[0,CMT]: 0x00EC004000000121, Samsung, ONENAND
Requested Algorithm: XSR 1.5 (CMT)
Searching for BootCode: DualLine 32Bit
FlashChip 0x00EC0040 (Samsung), Size: 256MBytes, VPP: Not Supported
RAPIDOv11_XSR15_alg.fg, Type: Algorithm, Rev: 512.10.34.1, Algo: XSR 1.5
Initializing TurboCache...
TurboCache Loaded!
Writing CMT PASUBTOC Certificate...
Writing CMT ALG Certificate...
CMT Algorithm Ready!
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
Adding FUR Client (CMT, State: Ready)...
CMT FUR Ready!
Box VPP disabled
Internal CMT Phone VPP Enabled
PAPUBKEYS Hash for CMT: 76A20187051C30162EE91C77AE5E6011F5F1BA61
Flashbus Write baud set to 5.0Mbits
Started group flash erase
EraseArea[0,CMT]: 0x09160000-0x09E5FFFF, ONENAND
Waiting 320s for erasure finish...
Erase taken 0.78s
Writing all blocks...
Initializing TurboCache...
TurboCache Loaded!
Writing CMT SOS+ROFS3 Certificate...
Programming Status OK!
All blocks written OK! Time taken 1.47s
Flashing Speed: 5505,13 kBit/S
Restarting MCU...
Processing RM-428_51.2.007_C03_prd.rofs3.fpsx (APE)...
Processing RM-428_51.2.007_001_000_U02.uda.fpsx (CMT)...
Booting CMT...
CMT_SYSTEM_ASIC_ID: 000000010000022600010006400C192101031103
CMT_EM_ASIC_ID:  00000296
CMT_EM_ASIC_ID:  00000B22
CMT_PUBLIC_ID:  21700103AE218B5265F9CEE0E2A945D0CF1F73A9
CMT_ASIC_MODE_ID: 00
CMT_ROOT_KEY_HASH: CAEEBB65D3C48E6DC73B49DC5063A2EE
CMT_BOOT_ROM_CRC: 4B9B7510
CMT_SECURE_ROM_CRC: 3E691FF8
CMT Ready!
RM-428_51.2.007_001_000_U02.uda.fpsx, Type: Flash Image, Algo: XSR 1.5, BB5
Searching for BootCode: DualLine 32Bit
RAPIDOv11_2nd.fg, Type: 2nd Boot Loader, Rev: 512.10.34.1, Algo: BB5
Flashbus Write baud set to 650Kbits
Flashbus Read baud set to 98Kbits
Using NEW BB5 FLASHING PROTOCOL
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
FlashChip[0,CMT]: 0x0000000000000000, Unknown, RAM
FlashChip[0,CMT]: 0xFFFF000000000000, Unknown, MMC
FlashChip[0,CMT]: 0x0400000000000000, Unknown, NOR
FlashChip[1,CMT]: 0x0000000100000000, Unknown, NOR
FlashChip[0,CMT]: 0x00EC004000000121, Samsung, ONENAND
Requested Algorithm: XSR 1.5 (CMT)
Searching for BootCode: DualLine 32Bit
FlashChip 0x00EC0040 (Samsung), Size: 256MBytes, VPP: Not Supported
RAPIDOv11_XSR15_alg.fg, Type: Algorithm, Rev: 512.10.34.1, Algo: XSR 1.5
Initializing TurboCache...
TurboCache Loaded!
Writing CMT PASUBTOC Certificate...
Writing CMT ALG Certificate...
CMT Algorithm Ready!
Default Transmission Mode Requested by Loader: Dual Line, 32 bit, Overriding
Transmission Mode Requested: Dual Line, 32 bit, Accepted: Dual Line, 32 bit
Box TX2 Data Pin set to: Service Pin 3
Adding FUR Client (CMT, State: Ready)...
CMT FUR Ready!
Box VPP disabled
Internal CMT Phone VPP Enabled
PAPUBKEYS Hash for CMT: 76A20187051C30162EE91C77AE5E6011F5F1BA61
Flashbus Write baud set to 5.0Mbits
Started group flash erase
EraseArea[0,CMT]: 0x09E60000-0x0F71FFFF, ONENAND
Waiting 320s for erasure finish...
Erase taken 0.485s
Writing all blocks...
Initializing TurboCache...
TurboCache Loaded!
Programming Status OK!
All blocks written OK! Time taken 11.63s
Flashing Speed: 5272,83 kBit/S
Restarting MCU...
Processing RM-428_51.2.007_001_000_U02.uda.fpsx (APE)...
All images processed OK! Processing post flash tasks...
Setting Factory Defaults...
Factory defaults OK
Reading info...
MCU Version V ICPR72_10w21.4
MCU Date 19-07-10
Product  RM-428 (Nokia 5800 XpressMusic)
Manufacturer (c) Nokia
IMEI  359348023678030
Mastercode 2160727275
IMEI Spare 3A95430832760803
IMEI SV  3395430832760813F6000000
CNT  v 50.2010.06.1_001_000_U01, 02-03-10, vanilla, RM356
PSN  GAK209782
Product Code 0580641
Basic Product Code 0559231
PSD  0000000000000000
LPSN  0
WLAN MAC 002668A21067
APE SW  V 51.2.007
APE Variant V 51.2.007??????
APE Test  eno_version
APE HW  256
APE ADSP 256
RETU  16
TAHVO  22
AHNE  11
HW  1101
RFIC  17141715
DSP  sangalo_ICPR72_10w16_1
Simlock Server SIMLOCK SERVER
Simlock Key 7223400000000000
Simlock Profile 0000000000000000
Simlock Key Cnt 0
Simlock FBUS Cnt 0
Simlock [1,1] State: CLOSED Type: MCC-MNC Data: 72234F
Simlock [2,1] State: CLOSED Type: MCC-MNC Data: 72234F
Read info thread finished, continuing...
Post flash tasks finished!
Flashing successfully finished!

Unlock ( in less than 3 seconds ):
Code:
BB5 Unlock Started...
MCU Version V ICPR72_10w21.4
MCU Date 19-07-10
Product  RM-428 (Nokia 5800 XpressMusic)
Manufacturer (c) Nokia
IMEI  359348023678030
Mastercode 2160727275
Simlock Server SIMLOCK SERVER
Simlock Key 7223400000000000
Simlock Profile 0000000000000000
Simlock Key Cnt 0
Simlock FBUS Cnt 0
Simlock [1,1] State: CLOSED Type: MCC-MNC Data: 72234F
Simlock [2,1] State: CLOSED Type: MCC-MNC Data: 72234F
Reading Security Block...
Security block OK and saved to "RM-428_359348023678030_12012011_032656 p.m..SecurityBlock.PM"
"21700103AE218B5265F9CEE0E2A945D0CF1F73A9.C00001CE" Exists, That is good...
Checking for Rootkey Hash support with selected Unlock Method...
Selected Unlock Method: NCK Calculation (new method)
Performing new SL2 Algo...
#pw+669063352208690+1#
#pw+263745080782559+2#
#pw+864106481241848+3#
#pw+443767207530173+4#
#pw+697956062179429+5#
#pw+904095582607295+6#
#pw+921041127656204+7#
Sending NCK Codes..
NCK[1] - ACCEPTED
NCK[2] - Too fast between tries (bruteforce protection)
NCK[3] - Too fast between tries (bruteforce protection)
NCK[4] - Too fast between tries (bruteforce protection)
NCK[5] - Too fast between tries (bruteforce protection)
NCK[6] - Too fast between tries (bruteforce protection)
NCK[7] - Too fast between tries (bruteforce protection)
MCU Version V ICPR72_10w21.4
MCU Date 19-07-10
Product  RM-428 (Nokia 5800 XpressMusic)
Manufacturer (c) Nokia
IMEI  359348023678030
Mastercode 2160727275
Simlock Server SIMLOCK SERVER
Simlock Key 7223400000000000
Simlock Profile 0000000000000000
Simlock Key Cnt 0
Simlock FBUS Cnt 0
Simlock [1,1] State: OPENED Type: MCC-MNC Data: 72234F
Simlock [2,1] State: OPENED Type: MCC-MNC Data: 72234F
Simlock NCK #pw+669063352208690+1#
Unlock finished! Time taken 2.578s
 
 
Page generated in 0.11679 seconds with 7 queries