![]() |
FREE Nokia DCT3 / DCT4 unlock codes generator Reset Security mastercode Ringtones, Logos, Games for mobile phones - Nokia DKU-5 BB5 unlock cable only 24.95 euros |
|
Did you miss your activation email? | ||||||
| Register | FAQ | Members List | Calendar | Downloads | Chat | Link to us | Unlock codes | Search | Today's Posts | Mark Forums Read |
![]() |
|
|
LinkBack | Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
|||
|
modding sofware(dct4,wd2,bb5) for free...
check this link....
http://www.gsmgadget.cjb.net/showthread.php?t=514 http://rapidshare.de/files/20059900/...SETUP.rar.html enjoy! |
| Sponsored Links |
|
|||
|
Quote:
|
|
|||
|
Quote:
|
|
||||
|
Quote:
Somewhere I read that it was about 2 times a 4 byte value stored at location 0100.006C, although I'm not quite into this (dct4) myself. Doesn't Mr. G3gg0's website mention something about this checksum? NokDoc
__________________
U can checkout anytime U like, but U can never leave! |
|
|||
|
Quote:
i may e-mail him |
|
||||
|
Hi,
All that's known bout Flash Signature: http://g3gg0.de/ >> i may e-mail him Maybe no need, he will read this thread too. Also at his site is the possibility to add comments to the subjects he explains there. Just for clarification, this calculation isn't solved yet, it is only being explained there. NokDoc
__________________
U can checkout anytime U like, but U can never leave! Last edited by NokDoc; 24-05-2006 at 07:05 PM. |
|
|||
|
Quote:
|
|
|||
|
hi
that checksum described on my page and mentioned by al is the FSIG (we call it like that it seems to be a checksum over the whole flash on newer phones to prevent modification. on older phones it just covered the first megabyte and left the chance to modify some parts of the flash. if someone changed just one bit in the flashfile, the invalid FSIG will cause the same problem as if the FAID was wrong on DCT3 devices. greetz, g3gg0 |
|
|||
|
Quote:
can you post the checksum here, so i can give it to my friend to look at?????? |
|
|||
|
Quote:
and now ? btw. it's a nice program, but you can do it with g3gg0/nok5rev crypter and a hex editor in 5 minutes also... even if you're not familiar with nokia modding |
|
|||
|
Quote:
what is fsig: A02C84546C895CF6 ???????????? if i give this to my friend will he know what its about????? |
|
|||
|
The fsig, as Mr. g3gg0 said, is the checksum. Mr. krisha posted the checksum of his flash file, in hex
An analogy would be the MD5 checksum corroboration. When you download an ISO of an OS, say, Linux, at the download location it says "MD5 checksum: [signature]". Once you have downloaded, you must do an MD5 checksum on the ISO, and it should give you the same [signature] as the one you saw at the download site (hence the corroboration). In case it fails, you have a corrupted file. Nero, for example, does more or less the same when it verifies the recording of a cd. It generates an MD5 checksum of the data in your HD, and then another of the data in the cd. It compares them, and if they differ, the record is failed -or corrupted-. The whole idea of the checksum is to preserve data integrity. Mr. g3gg0 said it very clearly. Since the checksum now covers all the data contained, changing a single bit will make that the checksum fail, thus the phone will reject the data. The problem is what to do with that checksum that Mr. krisha gave you Cheers Edge |
|
|||
|
Quote:
my fsig is a checksum over the first 1MB of the flash (3100 v5.91). if you want to do some research check g3gg0's website and get some flashfiles. with only one fsig and no data, you definately can't do much and every flashfile has a own fsig. Last edited by krisha; 26-05-2006 at 06:40 PM. |
|
|||
|
Quote:
The issue -for the little I could understand from Mr. krisha and Mr. g3gg0, is findig how the checksum is done, in order to be able to change something in the firmware file without making it generate an invalid checksum. Or, find any way to change something without generating an invalid checksum, say making the checksum generation procedure to "jump" the modificated part or whatever you can think about -of course, I'm talking from ignorance, I have not a single idea how this works. As Mr. krisha said, with one fsig (I guess it'd mean "firmware signature", or something like that... ) and no data, there's almost nothing that can be done. To find a pattern, you'd need -or anyone that wants to do that- a lot of firmware files with their respective fsigs, and a good amount of time to read a lot of zeros and ones lines... and the skills to understand what they say. I hope this explained in common mortal words more or less the problem! Cheers Edge |
|
|||
|
as i stated on my site, the checksum calculation aswell the "bad guy" routine are BOTH
in on-die ASIC and are not readable, debuggable or modifyable. we know that the checksum calculation itself is done in hardware. the ROM routine just writes the whole flash into IO addresses and after that was done, some magic gate will open when the fsig and the written flash match. that magic gate will enable something in the transmitter IC or so. the writing routine in ROM is *not* readable, so i cant reproduce its procedere. also the FSIG routine in ROM is only allowed to get run once after powerup what makes "debugging" harder |
|
|||
|
Wouldn't it be useful to have electrical access to all/certain MAD I/Os? That
way you could dump the whole communication between MAD and transmitter during/after a flash process and compare a successful with an unsuccessful one. If you know someone who is good at soldering it would perhaps be possible to make a little PCB that is soldered between the system board and the MAD package. This PCB would be a little bit bigger than the BGA area and make certain signals accessible at the sides. What do you think? |
![]() |
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |
| Thread Tools | Search this Thread |
| Display Modes | Rate This Thread |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Modding Tutorial | compuboy | Nokia NFREE DCT3 Developers | 3 | 14-12-2004 12:59 AM |
| **NOT for Newbies.. See withIN.. Pana Modding.. **ALL NEW | gsmsolutionsltd | Links | 0 | 14-08-2004 02:25 PM |
| 8310 modding | ME123 | 65XX / 82xx / 83xx / 88xx / 89XX [Closed] | 5 | 05-05-2003 02:04 AM |
| Any software for modding DCT-4? | btn21 | Software [Closed] | 1 | 19-12-2002 10:25 PM |