Ok I tried every possible combination of USB<<>>Serial interfaces, along with onenand_downloaders along with z3x soft versions... on a different PC's
And can't DUMP single HEX nor EEP from two different E251 one with no network and one fully functional!!!!
Code:
Selected model: E251
Selected com port: COM2
Selected speed port: 921600
Please, connect phone and press shortly power button
Phone Detected
Sending loader1... OK
ARM version 3721
Sending loader2... OK
Flash ID: 00EC2206000100000024
timeout
Read EEP - fail
Elapsed time: 86 second, sw ver: 3.5.0030
Selected model: E251
Selected com port: COM2
Selected speed port: 921600
Please, connect phone and press shortly power button
Phone Detected
Sending loader1... OK
ARM version 3721
Sending loader2... OK
Flash ID: 00EC2206000100000024
timeout
Read EEP - fail
Elapsed time: 83 second, sw ver: 3.5.0040
-------------------------------------------------------------------------------
** Wait for Connect Request from Mobile...
** (POWER ON the PHONE!)
** Send '0x44' to SWIFT Chip
** Connection granted from SWIFT Chip
** Received 16 bytes from SWIFT chip
** Sending the customer ID and the same 16 bytes to SWIFT chip... OK!
** Try to change Timeout !
** Ok! Timout Changed(1600 mSecond)
** Setting downloading address (SCRAM: 0x1C000000)... OK!
** Downloading the pre-Loader (1856 bytes)... OK!
** Set the start address of pre-Loader (SCRAM:0x1C000000)... OK!
Start Pre-Loader... OK!
Trying to change the baudrate...
Change Baudrate 115200 -> 921600... OK!
BB Chip version(00003721)
Downloading the Boot-Loader (237348 bytes)... OK!
Jump to Boot-Loader (RAM:0x30000000)... OK!
Sending the base address of CS0 (0x20000000)... OK!
Checking FLASH ID...
Detected (KAP29SN00M),OneNandID(24)
Nand flash ID = ONE 512M NAND FLASH
** Now you can do the followings. **
1. Download the BINARY and/or TFS files
2. Dump NOR-Flash
3. Erase NOR-Flash
4. Format Nand-Flash
5. Dump TFS files
6. Check the status of NAND-Flash
** Checking TFS system (NAND Flash)... OK!
< Result >
1. FileSystem Type( f_type ) : 12EE94
2. Optimal transfer block size( f_bsize ) : 2010467276 (0x77D54BCC)
3. block size in bits( f_bsizebits ) : 6501872 (0x6335F0)
4. total data blocks in file system( f_blocks ) : 874 (0x36A)
5. free blocks in file system( f_bfree ) : 9194 (0x23EA)
6. free blocks avail to non-superuser( f_bavail ) : 9194 (0x23EA)
7. total file nodes in file system( f_files ) : 1176832 (0x11F500)
8. free file nodes in file system( f_ffree ) : 0 (0x0)
9. file system id( f_fsid ) : FATF
10. maximum file size( f_maxfilesize ) : 61132800 (0x3A4D000)
11. maximum length of filenames( f_namelen ) : 255 (0xFF)
Dumping sector ( SectorNum = 220 )... OK!
Dumping sector ( SectorNum = 221 )... OK!
Dumping sector ( SectorNum = 222 )...
** Wait for Connect Request from Mobile...
** (POWER ON the PHONE!)
** Send '0x44' to SWIFT Chip
** Connection granted from SWIFT Chip
** Received 16 bytes from SWIFT chip
** Sending the customer ID and the same 16 bytes to SWIFT chip... OK!
** Try to change Timeout !
** Ok! Timout Changed(1600 mSecond)
** Setting downloading address (SCRAM: 0x0C000000)... OK!
** Downloading the pre-Loader (1840 bytes)... Bad response(0xFE) from SWIFT Chip
Anyone ever managed to made hex dump with one of downloaders???
Is it some buggy samsung $HIT or what? Cant even restart procedure when stopped, without restarting whole sw!!!!
Ideas?
Haltec