chabrus
30.01.2012, 21:20
Принесли данный ТА с просьбой прошить. Работы было не впроворот, потому по запарке, не проверив телефон, подключил его к Best через UFS.
Проставил версию RM43_V3.10.023.05 и начал прошивку.
Selected FlashSettings : Manual
Files Set for Flashing :
MCU : rm43_v3.10.023.core
PPM : RM43_V3.10.023.05.variant
Check FlashFiles, Please, wait...
-> SWversion check skipped : Dead mode selected
Backup enabled, Will read Certificates now...
Setting FlashMode
FlashMode set Ok
1st boot Ok, C0
APE part info :
APE ASICID : 17100708
APE MODE ID : 00
APE PUB ID : B3F49EFC9358B6F1EA3EC39484C3A944674ECA7A
APE R_HASH : 49A97E826B93BA20B7ED0B082475C005
APE ROM ID : 1DFD66132C872FD4
CMT part info :
CMT ASICID : 000000010000022600010006000C192101002200
CMT EM0 ID : 00000232
CMT EM1 ID : 00000352
CMT PUB ID : 18200212E08F4951A968714EF698539663668887
CMT MODE ID : 00
CMT R_HASH : E9EFF4BFAA5393217CA6B17755FC3E14
CMT ROM ID : F28A211FCEA7B19D
CMT : Sending 2nd loader...
Use : RAP3Gv2_2nd.fg , Rev : 0.0 Ver : 1.21.0
CMT Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 225000EC , CMT , NOR
CMT Flash ID : 225000EC < SAMSUNG [SEC] => K8S6415ETB
FLCNT : 00000000000000000000000000000000000000
FLASHID : 0000FFFF , CMT , MMC , EXT
CMT Flash ID : 0000FFFF < Bad Flash Type , if MMC - It Ok
Sending ALGO....
Use : RAP3Gv3_algo.fg , Rev : 0.0 Ver : 10.40.0
CMT Algo sent
CMT PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243595
Transmission mode : Dual (Ddr, TX2)
APE : Sending 2nd loader...
Use : helen3_2nd.fg , Rev : 0.0 Ver : 1.35.0
APE Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 003600EC , APE ,
APE Flash ID : 003600EC < SAMSUNG [SEC] => K5E1212ACM [NAND]
ReqAlgo : APE , OMAP1710 UNISTORE-II-1.2.1 ALG јрFLCNT : 01010000020000000600000000000000000000
Sending ALGO....
Use : h3_sam_nand_xsr.fg , Rev : 0.0 Ver : 1.47.0
APE Algo sent
APE PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243594
Transmission mode : Dual (Ddr, TX2)
Boot Done!
CMT : Read NPC certificate...
Cert size : 20480 byte(s)
IMEI : 358353000421215
CMT : Read CCC certificate...
Cert size : 0 byte(s)
CMT : Read HWC certificate...
Cert size : 0 byte(s)
CMT : Read VARIANT certificate...
Cert size : 20480 byte(s)
APE : Read NPC certificate...
Cert size : 0 byte(s)
APE : Read CCC certificate...
Cert size : 0 byte(s)
APE : Read HWC certificate...
Cert size : 0 byte(s)
APE : Read VARIANT certificate...
Cert size : 0 byte(s)
Cert Read done!
Init Service mode... Wait...
Init Service Mode Failed!
NPC Certificate saved...
VARIANT Certificate saved...
RPL saved : c:\InfinityBox\BEST\Backup\Cert\358353000421215_CR T.rpl
Setting FlashMode
FlashMode set Ok
1st boot Ok, C0
APE part info :
APE ASICID : 17100708
APE MODE ID : 00
APE PUB ID : B3F49EFC9358B6F1EA3EC39484C3A944674ECA7A
APE R_HASH : 49A97E826B93BA20B7ED0B082475C005
APE ROM ID : 1DFD66132C872FD4
CMT part info :
CMT ASICID : 000000010000022600010006000C192101002200
CMT EM0 ID : 00000232
CMT EM1 ID : 00000352
CMT PUB ID : 18200212E08F4951A968714EF698539663668887
CMT MODE ID : 00
CMT R_HASH : E9EFF4BFAA5393217CA6B17755FC3E14
CMT ROM ID : F28A211FCEA7B19D
CMT : Sending 2nd loader...
Use : RAP3Gv2_2nd.fg , Rev : 0.0 Ver : 1.21.0
CMT Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 225000EC , CMT , NOR
CMT Flash ID : 225000EC < SAMSUNG [SEC] => K8S6415ETB
FLCNT : 00000000000000000000000000000000000000
FLASHID : 0000FFFF , CMT , MMC , EXT
CMT Flash ID : 0000FFFF < Bad Flash Type , if MMC - It Ok
Sending ALGO....
Use : RAP3Gv3_algo.fg , Rev : 0.0 Ver : 10.40.0
CMT Algo sent
CMT PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243595
Transmission mode : Dual (Ddr, TX2)
APE : Sending 2nd loader...
Use : helen3_2nd.fg , Rev : 0.0 Ver : 1.35.0
APE Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 003600EC , APE ,
APE Flash ID : 003600EC < SAMSUNG [SEC] => K5E1212ACM [NAND]
ReqAlgo : APE , OMAP1710 UNISTORE-II-1.2.1 ALG 3 FLCNT : 01010000020000000600000000000000000000
Sending ALGO....
Use : h3_sam_nand_xsr.fg , Rev : 0.0 Ver : 1.47.0
APE Algo sent
APE PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243594
Transmission mode : Dual (Ddr, TX2)
Boot Done!
Partitioning....
Partitioning Ok...
Transmission mode : Dual (Ddr, TX2)
Erase : Processing rm43_v3.10.023.core
Found 4 areas to erase, erase group
Asic : CMT , Sub : NOR
CMT , NOR , Area : 0x00000000 - 0x00530561
CMT , NOR , Area : 0x006A0000 - 0x006BFFFF
CMT , NOR , Area : 0x006DF000 - 0x006EFFFF
CMT , NOR , Area : 0x00700000 - 0x007EFFFF
Using TimeOut : 7 min ( 430 sec )
Erasing, wait.....
CMT : Group erase Ok
Found 4 areas to erase, erase group
Asic : APE , Sub : NAND
APE , NAND , Area : 0x00000000 - 0x0000FFFF
APE , NAND , Area : 0x00010000 - 0x0001FFFF
APE , NAND , Area : 0x00020000 - 0x000203FF
APE , NAND , Area : 0x00028000 - 0x02F3CFFF
Erasing, wait.....
APE : Group erase Ok
TIME : Erase time : 00:00:48
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Transmission mode : Dual (Ddr, TX2)
Write : Processing rm43_v3.10.023.core
CMT: Writing Hash CERT [NOLO]
CMT: Writing Hash CERT [KEYS]
CMT: Writing Hash CERT [PRIMAPP]
CMT: Writing Hash CERT [DSP0]
CMT: Writing Hash CERT [MCUSW]
CMT: Writing Hash CERT [ADL]
CMT: Writing Hash CERT [PASUBTOC]
CMT: Writing Hash CERT [PAPUBKEYS]
APE: Writing Hash CERT [KEYS]
APE: Writing Hash CERT [X-LOADER]
APE: Writing Hash CERT [PRIMAPP]
APE: Writing Hash CERT [SOS+LOADER]
APE: Writing Hash CERT [ADL]
APE: Writing Hash CERT [SOS+XZIP]
APE: Writing Hash CERT [PASUBTOC]
APE: Writing Hash CERT [PAPUBKEYS]
APE: Writing Hash CERT [SOS*CORE]
APE: Writing Hash CERT [SOS+ROFS]
APE: Writing Hash CERT [SOS+ROFX]
Total writen 1295 blocks
TIME : Write time : 00:03:37
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Partitioning....
Partitioning Ok...
Transmission mode : Dual (Ddr, TX2)
Erase : Processing RM43_V3.10.023.05.variant
Found 1 areas to erase, erase group
Asic : APE , Sub : NAND
APE , NAND , Area : 0x01F90000 - 0x02F3CFFF
Erasing, wait.....
APE : Group erase Ok
TIME : Erase time : 00:00:01
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Transmission mode : Dual (Ddr, TX2)
Write : Processing RM43_V3.10.023.05.variant
APE: Writing Hash CERT [SOS+ROFX]
Total writen 1955 blocks
TIME : Write time : 00:02:11
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Init Service mode... Wait...
Init Service mode Failed! Skip AfterFlash :(
Connect phone on selected interface...
Connect phone on selected interface...
Был уверен в Best на все 100, потому не потрудился слить бекапы.
Как видно из лога, они сохранились, и imei телефона до прошивки был на месте.
Сбросы после прошивки не прошли.
При включении телефона появилось знакомое Phone start up filed, contact the retailer.
Снова подцепил тело к боксу, и проверка выдала это:
Checking StartUp data ...
-----------------------
IMEI Validation : IMEI Damaged!!!!
- > SIMLOCK , SECURITY Info can be wrong!
- > Need restore NPC backup or RPL
SDD Key status : SDData Damaged!!!!! :(
- > Do REPAIR SDD , Local SX4 if needed
SimLock status : SimLock is Ok
Security status : Security Damaged!!!!! :(
- > Do Local SX4 or Server SX4 , Upload Tune ( checkbox or manual )
А попытка восстановить imei выглядит примерно так:
PA_SimLock Version :
PA_SL phone detected
Done!
Phone disconected!
Connect phone on selected interface...
Will Write RPL keys now...
Check RPL file...
NPC Data found! (CMT)
Variant Data found!
Setting FlashMode
FlashMode set Ok
1st boot Ok, C0
APE part info :
APE ASICID : 17100708
APE MODE ID : 00
APE PUB ID : B3F49EFC9358B6F1EA3EC39484C3A944674ECA7A
APE R_HASH : 49A97E826B93BA20B7ED0B082475C005
APE ROM ID : 1DFD66132C872FD4
CMT part info :
CMT ASICID : 000000010000022600010006000C192101002200
CMT EM0 ID : 00000232
CMT EM1 ID : 00000352
CMT PUB ID : 18200212E08F4951A968714EF698539663668887
CMT MODE ID : 00
CMT R_HASH : E9EFF4BFAA5393217CA6B17755FC3E14
CMT ROM ID : F28A211FCEA7B19D
CMT : Sending 2nd loader...
Use : RAP3Gv2_2nd.fg , Rev : 0.0 Ver : 1.21.0
CMT Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 225000EC , CMT , NOR
CMT Flash ID : 225000EC < SAMSUNG [SEC] => K8S6415ETB
FLCNT : 00000000000000000000000000000000000000
FLASHID : 0000FFFF , CMT , MMC , EXT
CMT Flash ID : 0000FFFF < Bad Flash Type , if MMC - It Ok
Sending ALGO....
Use : RAP3Gv3_algo.fg , Rev : 0.0 Ver : 10.40.0
CMT Algo sent
PAPUBkeys blank (erased or HW failure)
Transmission mode : Dual (Ddr, TX2)
Boot Done!
Preparing for write certificates...
Switching to CMT...
CMT : NPC erase Ok
Writing NPC... Ok
CMT : VARIANT erase Ok
Writing VARIANT... Ok
Done!
Открыл слитый бекап блокнотом, там вроде все нормально. Нужные сертификаты присутствуют.
Или Best криво слил RPL, или у меня под вечер руки кривые стали.
Прикладываю бекап. Паша посмотрите его, может еще можно с ним что то сделать.
Проставил версию RM43_V3.10.023.05 и начал прошивку.
Selected FlashSettings : Manual
Files Set for Flashing :
MCU : rm43_v3.10.023.core
PPM : RM43_V3.10.023.05.variant
Check FlashFiles, Please, wait...
-> SWversion check skipped : Dead mode selected
Backup enabled, Will read Certificates now...
Setting FlashMode
FlashMode set Ok
1st boot Ok, C0
APE part info :
APE ASICID : 17100708
APE MODE ID : 00
APE PUB ID : B3F49EFC9358B6F1EA3EC39484C3A944674ECA7A
APE R_HASH : 49A97E826B93BA20B7ED0B082475C005
APE ROM ID : 1DFD66132C872FD4
CMT part info :
CMT ASICID : 000000010000022600010006000C192101002200
CMT EM0 ID : 00000232
CMT EM1 ID : 00000352
CMT PUB ID : 18200212E08F4951A968714EF698539663668887
CMT MODE ID : 00
CMT R_HASH : E9EFF4BFAA5393217CA6B17755FC3E14
CMT ROM ID : F28A211FCEA7B19D
CMT : Sending 2nd loader...
Use : RAP3Gv2_2nd.fg , Rev : 0.0 Ver : 1.21.0
CMT Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 225000EC , CMT , NOR
CMT Flash ID : 225000EC < SAMSUNG [SEC] => K8S6415ETB
FLCNT : 00000000000000000000000000000000000000
FLASHID : 0000FFFF , CMT , MMC , EXT
CMT Flash ID : 0000FFFF < Bad Flash Type , if MMC - It Ok
Sending ALGO....
Use : RAP3Gv3_algo.fg , Rev : 0.0 Ver : 10.40.0
CMT Algo sent
CMT PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243595
Transmission mode : Dual (Ddr, TX2)
APE : Sending 2nd loader...
Use : helen3_2nd.fg , Rev : 0.0 Ver : 1.35.0
APE Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 003600EC , APE ,
APE Flash ID : 003600EC < SAMSUNG [SEC] => K5E1212ACM [NAND]
ReqAlgo : APE , OMAP1710 UNISTORE-II-1.2.1 ALG јрFLCNT : 01010000020000000600000000000000000000
Sending ALGO....
Use : h3_sam_nand_xsr.fg , Rev : 0.0 Ver : 1.47.0
APE Algo sent
APE PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243594
Transmission mode : Dual (Ddr, TX2)
Boot Done!
CMT : Read NPC certificate...
Cert size : 20480 byte(s)
IMEI : 358353000421215
CMT : Read CCC certificate...
Cert size : 0 byte(s)
CMT : Read HWC certificate...
Cert size : 0 byte(s)
CMT : Read VARIANT certificate...
Cert size : 20480 byte(s)
APE : Read NPC certificate...
Cert size : 0 byte(s)
APE : Read CCC certificate...
Cert size : 0 byte(s)
APE : Read HWC certificate...
Cert size : 0 byte(s)
APE : Read VARIANT certificate...
Cert size : 0 byte(s)
Cert Read done!
Init Service mode... Wait...
Init Service Mode Failed!
NPC Certificate saved...
VARIANT Certificate saved...
RPL saved : c:\InfinityBox\BEST\Backup\Cert\358353000421215_CR T.rpl
Setting FlashMode
FlashMode set Ok
1st boot Ok, C0
APE part info :
APE ASICID : 17100708
APE MODE ID : 00
APE PUB ID : B3F49EFC9358B6F1EA3EC39484C3A944674ECA7A
APE R_HASH : 49A97E826B93BA20B7ED0B082475C005
APE ROM ID : 1DFD66132C872FD4
CMT part info :
CMT ASICID : 000000010000022600010006000C192101002200
CMT EM0 ID : 00000232
CMT EM1 ID : 00000352
CMT PUB ID : 18200212E08F4951A968714EF698539663668887
CMT MODE ID : 00
CMT R_HASH : E9EFF4BFAA5393217CA6B17755FC3E14
CMT ROM ID : F28A211FCEA7B19D
CMT : Sending 2nd loader...
Use : RAP3Gv2_2nd.fg , Rev : 0.0 Ver : 1.21.0
CMT Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 225000EC , CMT , NOR
CMT Flash ID : 225000EC < SAMSUNG [SEC] => K8S6415ETB
FLCNT : 00000000000000000000000000000000000000
FLASHID : 0000FFFF , CMT , MMC , EXT
CMT Flash ID : 0000FFFF < Bad Flash Type , if MMC - It Ok
Sending ALGO....
Use : RAP3Gv3_algo.fg , Rev : 0.0 Ver : 10.40.0
CMT Algo sent
CMT PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243595
Transmission mode : Dual (Ddr, TX2)
APE : Sending 2nd loader...
Use : helen3_2nd.fg , Rev : 0.0 Ver : 1.35.0
APE Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 003600EC , APE ,
APE Flash ID : 003600EC < SAMSUNG [SEC] => K5E1212ACM [NAND]
ReqAlgo : APE , OMAP1710 UNISTORE-II-1.2.1 ALG 3 FLCNT : 01010000020000000600000000000000000000
Sending ALGO....
Use : h3_sam_nand_xsr.fg , Rev : 0.0 Ver : 1.47.0
APE Algo sent
APE PAPUB : B2E0D53F2FDDF1FC8E55510130F0D0677135243594
Transmission mode : Dual (Ddr, TX2)
Boot Done!
Partitioning....
Partitioning Ok...
Transmission mode : Dual (Ddr, TX2)
Erase : Processing rm43_v3.10.023.core
Found 4 areas to erase, erase group
Asic : CMT , Sub : NOR
CMT , NOR , Area : 0x00000000 - 0x00530561
CMT , NOR , Area : 0x006A0000 - 0x006BFFFF
CMT , NOR , Area : 0x006DF000 - 0x006EFFFF
CMT , NOR , Area : 0x00700000 - 0x007EFFFF
Using TimeOut : 7 min ( 430 sec )
Erasing, wait.....
CMT : Group erase Ok
Found 4 areas to erase, erase group
Asic : APE , Sub : NAND
APE , NAND , Area : 0x00000000 - 0x0000FFFF
APE , NAND , Area : 0x00010000 - 0x0001FFFF
APE , NAND , Area : 0x00020000 - 0x000203FF
APE , NAND , Area : 0x00028000 - 0x02F3CFFF
Erasing, wait.....
APE : Group erase Ok
TIME : Erase time : 00:00:48
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Transmission mode : Dual (Ddr, TX2)
Write : Processing rm43_v3.10.023.core
CMT: Writing Hash CERT [NOLO]
CMT: Writing Hash CERT [KEYS]
CMT: Writing Hash CERT [PRIMAPP]
CMT: Writing Hash CERT [DSP0]
CMT: Writing Hash CERT [MCUSW]
CMT: Writing Hash CERT [ADL]
CMT: Writing Hash CERT [PASUBTOC]
CMT: Writing Hash CERT [PAPUBKEYS]
APE: Writing Hash CERT [KEYS]
APE: Writing Hash CERT [X-LOADER]
APE: Writing Hash CERT [PRIMAPP]
APE: Writing Hash CERT [SOS+LOADER]
APE: Writing Hash CERT [ADL]
APE: Writing Hash CERT [SOS+XZIP]
APE: Writing Hash CERT [PASUBTOC]
APE: Writing Hash CERT [PAPUBKEYS]
APE: Writing Hash CERT [SOS*CORE]
APE: Writing Hash CERT [SOS+ROFS]
APE: Writing Hash CERT [SOS+ROFX]
Total writen 1295 blocks
TIME : Write time : 00:03:37
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Partitioning....
Partitioning Ok...
Transmission mode : Dual (Ddr, TX2)
Erase : Processing RM43_V3.10.023.05.variant
Found 1 areas to erase, erase group
Asic : APE , Sub : NAND
APE , NAND , Area : 0x01F90000 - 0x02F3CFFF
Erasing, wait.....
APE : Group erase Ok
TIME : Erase time : 00:00:01
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Transmission mode : Dual (Ddr, TX2)
Write : Processing RM43_V3.10.023.05.variant
APE: Writing Hash CERT [SOS+ROFX]
Total writen 1955 blocks
TIME : Write time : 00:02:11
PrReq : NOR , 00
PrReq : NAND , 010300003F2FDD00FC8E55000130F0
Init Service mode... Wait...
Init Service mode Failed! Skip AfterFlash :(
Connect phone on selected interface...
Connect phone on selected interface...
Был уверен в Best на все 100, потому не потрудился слить бекапы.
Как видно из лога, они сохранились, и imei телефона до прошивки был на месте.
Сбросы после прошивки не прошли.
При включении телефона появилось знакомое Phone start up filed, contact the retailer.
Снова подцепил тело к боксу, и проверка выдала это:
Checking StartUp data ...
-----------------------
IMEI Validation : IMEI Damaged!!!!
- > SIMLOCK , SECURITY Info can be wrong!
- > Need restore NPC backup or RPL
SDD Key status : SDData Damaged!!!!! :(
- > Do REPAIR SDD , Local SX4 if needed
SimLock status : SimLock is Ok
Security status : Security Damaged!!!!! :(
- > Do Local SX4 or Server SX4 , Upload Tune ( checkbox or manual )
А попытка восстановить imei выглядит примерно так:
PA_SimLock Version :
PA_SL phone detected
Done!
Phone disconected!
Connect phone on selected interface...
Will Write RPL keys now...
Check RPL file...
NPC Data found! (CMT)
Variant Data found!
Setting FlashMode
FlashMode set Ok
1st boot Ok, C0
APE part info :
APE ASICID : 17100708
APE MODE ID : 00
APE PUB ID : B3F49EFC9358B6F1EA3EC39484C3A944674ECA7A
APE R_HASH : 49A97E826B93BA20B7ED0B082475C005
APE ROM ID : 1DFD66132C872FD4
CMT part info :
CMT ASICID : 000000010000022600010006000C192101002200
CMT EM0 ID : 00000232
CMT EM1 ID : 00000352
CMT PUB ID : 18200212E08F4951A968714EF698539663668887
CMT MODE ID : 00
CMT R_HASH : E9EFF4BFAA5393217CA6B17755FC3E14
CMT ROM ID : F28A211FCEA7B19D
CMT : Sending 2nd loader...
Use : RAP3Gv2_2nd.fg , Rev : 0.0 Ver : 1.21.0
CMT Loader sent, Boot Ok
MCU Configuration
MCU Cfg Ok , 03
FLASHID : 225000EC , CMT , NOR
CMT Flash ID : 225000EC < SAMSUNG [SEC] => K8S6415ETB
FLCNT : 00000000000000000000000000000000000000
FLASHID : 0000FFFF , CMT , MMC , EXT
CMT Flash ID : 0000FFFF < Bad Flash Type , if MMC - It Ok
Sending ALGO....
Use : RAP3Gv3_algo.fg , Rev : 0.0 Ver : 10.40.0
CMT Algo sent
PAPUBkeys blank (erased or HW failure)
Transmission mode : Dual (Ddr, TX2)
Boot Done!
Preparing for write certificates...
Switching to CMT...
CMT : NPC erase Ok
Writing NPC... Ok
CMT : VARIANT erase Ok
Writing VARIANT... Ok
Done!
Открыл слитый бекап блокнотом, там вроде все нормально. Нужные сертификаты присутствуют.
Или Best криво слил RPL, или у меня под вечер руки кривые стали.
Прикладываю бекап. Паша посмотрите его, может еще можно с ним что то сделать.