Howdy. a man with a good heart
God help you
I locked my samsung note 10 plus phone
I used a wrong cfg taken from a website
and I need a person who knows how to create a correct cfg
I have sboot.bin extracted from firmware correctly
but I don't know how to create cfg
please in the name of god
please very much
this is boot, ok
what exactly is the problem? what hexeditor you are using? what files you have created so far? taken from which offsets? god won't help you with this.
aIecxs said:
what exactly is the problem? what hexeditor you are using? what files you have created so far? taken from which offsets? god won't help you with this.
Click to expand...
Click to collapse
I didn't make cfg because I don't know, I don't know how to use it
hexeditor and I don't know how to use offsets
I am new in the field
I found it on YouTube at this address
and I downloaded N975F Combination Flashing Without Etoken
but the cfg is wrong and my phone died
but when I connect it to the laptop, it sees it as an exynos driver
only that
and I found that the cfg is old and a cfg must be created from sboot.bin that was on the phone. i posted sboot bin
but I have no idea how to make the correct cfg
if you want and you know and you can
help me please
aIecxs said:
what exactly is the problem? what hexeditor you are using? what files you have created so far? taken from which offsets? god won't help you with this.
Click to expand...
Click to collapse
this is the sboot.bin extracted from the bl of the firmware that is on the phone
aIecxs said:
what exactly is the problem? what hexeditor you are using? what files you have created so far? taken from which offsets? god won't help you with this.
Click to expand...
Click to collapse
I tried and struggled for 10 days to document myself and create cfg from sboot.bin but I didn't succeed
if you want to have it, make the cfg from sboot.bin, please
aIecxs said:
what exactly is the problem? what hexeditor you are using? what files you have created so far? taken from which offsets? god won't help you with this.
Click to expand...
Click to collapse
Nu am facut cfg pentru ca nu stiu, nu stiu sa il folosesc
hexeditor și nu știu cum să folosesc offset
-eri sunt noi în domeniu
L-am găsit pe YouTube la această adresă
și am descărcat N975F Combination Flashing fără Etoken
, dar cfg este greșit și telefonul meu a murit
, dar când îl conectez la laptop, îl vede ca pe un driver exynos
doar asta
și a constatat că cfg-ul este vechi și trebuie creat un cfg din sboot.bin care era pe telefon. Am postat sboot bin
dar nu am idee cum să corectez cfg-ul
daca vrei si stii si poti eu
ajutati-ma va rog
Mod edit: English please!
Google translation:
I didn't make cfg because I don't know, I don't know how to use it
hexeditor and I don't know how to use offset
-ers are new in the field
I found it on YouTube at this address
and I downloaded N975F Combination Flashing without Etoken
, but the cfg is wrong and my phone died
, but when I connect it to my laptop, it sees it as an exynos driver
only this
and found that the cfg is old and a cfg needs to be created from the sboot.bin that was on the phone. I posted sboot bin
but i have no idea how to correct the cfg
if you want and know and I can
help me please
aIecxs said:
what exactly is the problem? what hexeditor you are using? what files you have created so far? taken from which offsets? god won't help you with this.
Click to expand...
Click to collapse
help me please
that I've been fighting for 10 days and I'm not succeeding
- stop uploading the same files over and over again.
- use english language.
- no support via pm.
get yourself a hexeditor and open the file. for windows it can be HxD for example.
aIecxs said:
- stop uploading the same files over and over again.
- use english language.
- no support via pm.
get yourself a hexeditor and open the file. for windows it can be HxD for example.
Click to expand...
Click to collapse
ami I apologize for my messages
but I'm desperate because no one is helping me
and I don't know what else to do
I don't know how to use HxD hexeditor
of this
because of this I am desperate and asked for help
maybe I can find a person with a good soul who can help me
and let him create a cfg from sboot.bin that I posted
if you know please help me
if you don't know how to use Hexeditor, XDA is the wrong place for you. I recommend to find professional service center repair shop.
aIecxs said:
if you don't know how to use Hexeditor, XDA is the wrong place for you. I recommend to find professional service center repair shop.
Click to expand...
Click to collapse
you help me
Pretty please
God will help you
because you helped me and did a good deed
I found some offsets matching your sboot.
https://gist.github.com/astarasikov...6fa0ea842e4b#file-exynos9810_sboot_layout-txt
thank you for help
but honestly, please let me believe that I don't know how to do CFG
Please create the cfg
aIecxs said:
I found some offsets matching your sboot.
https://gist.github.com/astarasikov...6fa0ea842e4b#file-exynos9810_sboot_layout-txt
Click to expand...
Click to collapse
i need CFG for samsung note 10+
writing CFG is the easy part, just add file names with proper offsets. the offsets of Exynos9820 and Exynos9825 are identical. but you need to extract the files from sboot, first.
you don't have the files, have you?
aIecxs said:
I found some offsets matching your sboot.
https://gist.github.com/astarasikov...6fa0ea842e4b#file-exynos9810_sboot_layout-txt
Click to expand...
Click to collapse
this is what happens with the wrong cfg
and I need the correct cfg from sboot.bin that I posted
but I don't know how to make cfg from sboot.bin
please help me if you know how to do cfg
Pretty please
aIecxs said:
Am găsit niște compensații care se potrivesc cu cizma ta.
https://gist.github.com/astarasikov...6fa0ea842e4b#file-exynos9810_sboot_layout-txt
Click to expand...
Click to collapse
asta se întâmplă cu cfg greșit
și am nevoie de cfg corect de la sboot.bin pe care l-am postat
dar nu știu cum să fac cfg din sboot.bin
va rog sa ma ajutati daca stiti cum sa fac cfg
Te rog frumos
**Mod translation**
this happens with wrong cfg and i need the correct cfg from the sboot.bin i posted but i don't know how to make cfg from sboot.bin please help me if you know how to make cfg Pretty please
aIecxs said:
writing CFG is the easy part, just add file names with proper offsets. the offsets of Exynos9820 and Exynos9825 are identical. but you need to extract the files from sboot, first.
you don't have the files, have you?
Click to expand...
Click to collapse
I don't know how to divide sboot.bin into files and I don't know how to extract from cfg files
I am new in the field
I made a mistake when I found that post and messed with the cfg that was in the post on you tube
now I don't know how to bring the note 10 plus back to life
and I'm begging you, if you know how to do it, make that cfg. from sboot.bin
which I posted
I am desperate for 10 days looking for help
help me please
I can see bl1, epbl.bin, SM-N975F.cfg files on your screenshot, so obviously you have these files. where you got these files from (link)? I am not going to watch youtube...
aIecxs said:
I can see bl1, epbl.bin, SM-N975F.cfg files on your screenshot, so obviously you have these files. where you got these files from (link)? I am not going to watch youtube...
Click to expand...
Click to collapse
this is what i downloaded from youtube
but it is wrong cfg
it is a cfg from older firmware
from u2 binary firmware
I need a u8 binary cfg
and I extracted and posted the sboot.bin which is extracted from the firmware that was on the phone
but
I post what I downloaded from YouTube
aIecxs said:
I can see bl1, epbl.bin, SM-N975F.cfg files on your screenshot, so obviously you have these files. where you got these files from (link)? I am not going to watch youtube...
Click to expand...
Click to collapse
from here I downloaded the file, the cfg file that killed my note 10+ phone
Related
With PSAS (only FULLversion) it is possible to "decompress" apps_compressed.bin for investigation.
It uses Algo:
TkToolVer:1.6.3
I don't know way to make own apps_compressed.bin.
As Multiloader for instance not accept decrypted apps_compressed.bin
As example some older apps_compressed.bin from S8500.
http://www.megaupload.com/?d=2JIKS8QD
Best Regards
u reache some limit bro........... cant download from RS........but good going
can u write a tutorial
so that other members too can find something
thanx!
gr8 gng mate
PSAS can only decrypt in Full Version.
Costs 30 Euro...
BUT I can upload via Request some decrypted files for study.
I'm not an Seller of PSAS nor I force you to buy PSAS.
But this is the only Tool I know, which decrypt these apps_compressed.bin and bootloader.mbn. Tested by me with:
S5250
S5330
S5750
S7230
S8500
S8530
http://forum.revskills.de/viewtopic.php?f=14&t=700
Wait few minutes. I will upload to megaupload... from S8500 as example.
Best Regards
Edit:
Download example apps_compressed.bin taken from S8500:
http://www.megaupload.com/?d=2JIKS8QD
Same as in first post.
So what did u get inside that?? What was compressed in layman terms pls.......
Expect not too much. Depend on knowledge...
Now file is "human readable"... Ready for Reverse engineering.
Minimum Requirement HEX Editor...
Then you can find Text like this:
Please receive DB2 by TkFileExplorer.exe !!primaryRecord
Click to expand...
Click to collapse
Remember where u saw TkFileExplorer.exe else...
You could search for Textstrings... like:
widget
bondi
.
.
.
So many things to explore.
Best Regards
hi guys I'm working on some bada's modding projects...
is it possible to have an example of uncompressed files?
thank you in advance
edit : I have now seen the uploaded uncompressed file...
I hoped it was more "human" readable...
http://www.megaupload.com/?d=PFWCKTGZ
This is from XXJID... bada 1.2 S8500 stuff.
Best Regards
adfree said:
But this is the only Tool I know, which decrypt these apps_compressed.bin and bootloader.mbn.
Click to expand...
Click to collapse
Hi,
could you upload the decrypted bootloader, too? Maybe someone here will find some exploitable code in that will help "jailbrake"-ing the system, or allow booting unencrypted OS (modified Bada or Android from Galaxy S for exmaple...)
TIA!
@ anghelyi
http://forum.xda-developers.com/showpost.php?p=10304951&postcount=3
Here I have attached some more things about Bootloader... some ELF files included... maybe "easier" for Reversing.
Best Regards
adfree said:
@ anghelyi
http://forum.xda-developers.com/showpost.php?p=10304951&postcount=3
Here I have attached some more things about Bootloader... some ELF files included... maybe "easier" for Reversing.
Best Regards
Click to expand...
Click to collapse
Thanks! I'll check it!
Little overview...
Best Regards
Hi adfree,
Can you say me the name of PSAS software please?
http://psas.revskills.de/
RevSkills is the new name of PSAS.
This feature only in registered Fullversion possible.
NOT in Trial Version.
Best Regards
Thanks but seems to be not compatible with windows 7 64 bits
Will try later, Have a good night adfree
look like that apps_compressed.bin contains a big secret
i flashed amss.bin file & apps_compressed.bin file from spoofable fw as an update for non spoofable fw and the result was getting a spoofable fw with its code name in the about phone menu but i lost all the updates made in the non spoofable fw
can anyone know where is the part in the app_compessed.bin that allow spoofed games run or not?????
To clarify:
I'm NOT support spoofing.
Prior files were not decompressed, "only" decrypted.
But now.
http://rapidshare.com/files/453882158/XXJL2decrypted_apps_decompressed.rar
File is from XXJL2.
Maybe we can find other usefull infos.
Best Regards
Now we can encrypt.
Thanx to ho1od
Any suggestions?
Mabye few things can be enabled or disabled...
TRUE can be found 600 x
FALSE over 700 x
Best Regards
I'm working on decompression QMD, thanks to mijoma
I was looking for the decompressed files of apps_compressed.bin (S8500XXJL2 and S8500XEKC1 only), but the link does not work.
If anyone (or you, adree) can decompress (not only decrypt) those files and upload them somewhere, that would be very kind/nice. Maybe I can work something out and if we are ever able to encrypt the files back, we may have a new better cleaned up version by that time.
Btw, thanks for the efforts, adree and ho1od.
This is a my program for viewing of bada firmware.
This source code
Thanks ho
tried it with simple test
dumped a ShpApp file then save it to another location
and here is the surprise
i did a hash check between both files and they didn't match!!!!!!!
have the same size same name differs in dates and differs in hash check
i think you have to work on your beta app more
keep the good work
and by the way the UI is more simple than trix so i pet it will beat it when it is finished
mylove90 said:
i did a hash check between both files and they didn't match!!!!!!!
Click to expand...
Click to collapse
Thank you for the test
Hash should be different. Programs use different ways to sort the directory
The file will be correct
@ mylove90
Multiloader 5.62 for instance checks without attached handset.
Best Regards
adfree said:
@ mylove90
Multiloader 5.62 for instance checks without attached handset.
Best Regards
Click to expand...
Click to collapse
ok adfree you are so right
i can't argue with you off course
who am i to do it?
sorry but i just wanted to tell the app maker about that maybe he can try to improve that point
MD5 Hash is only "mandatory" for Multiloader. But you can also disable MD5...
NO MD5 Hash needed.
Important is only that structure of created files is valid and content files are not corrupt...
But for instance sort Order from A to Z or from 1-10 or versa vi is not important.
I mean position from content files in created files like FFS...
Example, 3 files:
1
2
3
Second attempt with different sort order:
3
2
1
Both created files are valid, but MD5 differs, NOT equal...
Generally. Hashes like MD5... if only 1 Byte is different. Then Hash complete different.
Sorry, bad english description but I hope you understand what I mean...
Forget MD5.
Anyway. Thank you for testing mylove90.
Best Regards
adfree said:
MD5 Hash is only "mandatory" for Multiloader. But you can also disable MD5...
Click to expand...
Click to collapse
Multiloader does not check the MD5 hash, it checks the signature on the offset 440 bytes from the end of the file. My program calculates and corrects the signature.
New version 0.0.1
New features:
Added drag and drop files to the dump
Added drag and drop files to add the firmware
Added preview ini, txt, xml, jpg, png files
The program can be downloaded in the first post
@ ho1od
Maybe if you have time. You could integrate also RC2.
The Adresses for RAW Pics from S8500 are floating around here.
For the others smaller bada we could little bit research... also S8530 have little differences. But Algo should be the same...
http://forum.xda-developers.com/showpost.php?p=11919036&postcount=24
Thanx in advance.
Minimum support for RC2 could be change Value for Debug Level...
0 1 or 2
Best Regards
Ok, I'll do it
a request for ho1od
can you please examine S8500XXJB6 and make your tool able to extract it??
trix can't do it so if your app could it will be super
any file from that fw will be enough for me
Meanwhile for XXJB6
http://forum.xda-developers.com/showpost.php?p=11070379&postcount=5
To extract *.img take an while...
I do it for every Frame from 48 + 1 Pics... via WinHex.
Best Regards
mylove90 said:
can you please examine S8500XXJB6 and make your tool able to extract it??
Click to expand...
Click to collapse
Where can I download S8500XXJB6 ?
ho1od said:
Where can I download S8500XXJB6 ?
Click to expand...
Click to collapse
Here friend: http://netload.in/datei0M2CPM5V3x.htm
Best Regards, XaToR BadaItalia
Update v 0.0.2
New features:
View images in a file RC2
Replacing images in this file. The file must be BMP 24bpp format
Change debug level
The program can be downloaded in the first post
I used your tool to create a custom SHPApp.app file. But I think multiloader checks the MD5 hash and does not enable me to upload it to the phone. I have read adfree's post on disabling it but I couldn't understand him. So if you could help me in detail, I would be grateful.
Thanks.
astrotom said:
I used your tool to create a custom SHPApp.app file. But I think multiloader checks the MD5 hash and does not enable me to upload it to the phone. I have read adfree's post on disabling it but I couldn't understand him. So if you could help me in detail, I would be grateful.
Thanks.
Click to expand...
Click to collapse
I tested the program and flash the modified files via multiloader V5.64. Everything works fine. Upload your file and give me a link, I'll check it
PS. Signature at end of file, it is not MD5 hash, this is another hash function. I disassemble it from multiloader and inserted into the program. The file is signed correctly
ho1od said:
I tested the program and flash the modified files via multiloader V5.64. Everything works fine. Upload your file and give me a link, I'll check it
PS. Signature at end of file, it is not MD5 hash, this is another hash function. I disassemble it from multiloader and inserted into the program. The file is signed correctly
Click to expand...
Click to collapse
One doubt. Will I have to extract and recompile using your software itself? Because I had extracted the software earlier using trix. So maybe that's making your software not sign it correctly? Also I don't see how I can extract amss and csc files with your software. When I select on your AMSS and CSC tabs, there's nothing. I can't find the fie button which is there on the FFS, PFS and SHPAPP tab.
I can make a separate menu item, for signing the files created in Trix. If need be.
Working with CSC and AMSS files will be in next update
i need csc edit tool for wave y
bcz not edit All Wave Remaker so plz give me a any idea how to edit wave y F W
Please.
1.
Firmwarename
example...
S5380... INU ?
2.
Later ...
Best Regards
[QUOTE=adfree;
this FW S5380FXXKL_OXEKL2 bczz this FW no call recoding so i want add call recoding so i need edit csc file
stune not show System file not sow nv file so i want edit direct F W csc file plz help me which tool edit csc file
Wave_Remaker... can do this...
S8600, S7250, S5380 have more ""Security""...
But for extraction Wave_Remaker...
Version is mandatory or additional steps required.
Later more...
Best Regards
adfree said:
Wave_Remaker... can do this...
S8600, S7250, S5380 have more ""Security""...
But for extraction Wave_Remaker...
Version is mandatory or additional steps required.
Later more...
Best Regards
Click to expand...
Click to collapse
where i learn help me sir and thanx for reply
CSC_S5380K_India_ODD.CSC
Short tested with this file...
You are right. Wave_Remaker can NOT with 1 click...
Are you able to work with HEX Editor ?
I have NOT much time for other handsets...
Maybe easiest way to replace last 1024 Byte from S8600 or something similar...
Can't remember if S7250 same problem...
But short on S5380 I can find encrypted part... cut... decrypt...
Best Regards
Anyone know any links or Downloads to Pit / CSC Files as they would be handy to have for this device
Thanks
EwOkie said:
Anyone know any links or Downloads to Pit / CSC Files as they would be handy to have for this device
Thanks
Click to expand...
Click to collapse
Isn't Pit/CSC part of EFS?
I've just learned how to upload rom recently. Who can help me define what the DA file and AUTH file are, and where should I find them ? If anyone has auth and DA file of redmi note 8, please give me
Thank you very much