Go Back  
Reply
 
Thread Tools
Old 12-23-2012   #31
bigfishbad
Member
 
Join Date: Jan 2012
Posts: 169
Likes: 38
Liked 121 Times in 32 Posts
Mentioned: 15 Post(s)
Tagged: 0 Thread(s)
Originally Posted by 0x00 View Post
I don't have a unbanned console ID to work with,
~0x00
if you need one just ask send a PM
bigfishbad is offline   Reply With Quote
Old 01-10-2013   #32
deanclaxton
Apprentice
 
Join Date: Jan 2013
Posts: 8
Likes: 0
Liked 0 Times in 0 Posts
Mentioned: 3 Post(s)
Tagged: 0 Thread(s)
Hi all,

I'm trying to patch up a bricked SEM-001 console that was running OFW 3.55. I have NAND dumps from the console, but one NAND has a bad block so I'm trying to locate all my console specific stuff and copy it into a known good NAND dump (which I dont have as yet!).

Do you think this approach would work?

If so, I was going to copy the data from :

metldr
======
Search interleaved nand dump for "metldr". Found at location 0x40820. Start of header is from 0x40840 - length 0xEDE0. (0x40840 - 0x4F61F)

IED
===
Search hex 0000000600001DD0000000000000000000000070000008 - found at 0x80800. select length 0x10000 (0x80800 - 0x907FF)

ISD
===
Seach hex 0000000300000270000000000000000000000040000000 - found at 0x90800. select length 0x800 (0x90800 - 0x9FFFF)

bootloader_0
============
found at address 0x0 - select length 0x400000. (0x0 - 0x3FFFFF)

bootloader_1
============
Search same header as bootloader_0 (00 00 2E F4 89 EF FD 15 B3 85 0E 3B 2A 73 44 84 in my case) - found at 0xF000000. Select length 0x400000.

(0xF000000 - 0xF3FFFFF

vtrm
====
search text "sceivtrm" - found at 0xEC0000 . select length 0x400000 (0xEC0000 - 0x12BFFFF).


These are all blocks of data that I have learned from other unbricking giudes.

Do you know whether this data would cover all the console specific stuff that you have mentioned with console ID etc etc??


Does anyone here have a working nand dump from OFW 3.55 on a SEM-001 console by any chance?

Many thanks!
deanclaxton is offline   Reply With Quote
Old 01-11-2013   #33
FaxiY
Member
 
FaxiY's Avatar
 
Join Date: Dec 2012
Location: Germany
Posts: 360
Likes: 4
Liked 43 Times in 39 Posts
Mentioned: 20 Post(s)
Tagged: 0 Thread(s)
Send a message via Skype™ to FaxiY
some russian already released a ps_unban homebrew wich patches the IDs in RAM
which works for me http://www.ps3hax.net/showthread.php...634#post518634

if i understand them right they only patch the console ID

Originally Posted by http://www.psjailbreak.ru/2013/01/10/ps_unban-for-421-355-cfw.html
google translated!

User with PS3HaX 0 × 00 released application PS_Unban, which allows unban your PS3 on 4.21 and 3.55 firmware.
PS_Unban application has been updated to version 0.3, fix black screen and added support firmware Rebug and Rogero.
Appendix PS_Unban updated user deneo24, new Console_ID.

instructions:
1. Set PS_Unban v0.2 (3.55). Pkg, PS_Unban v0.2 (4.21). Pkg or PS_Unban v0.2 (4.30). Pkg according to the firmware on your PS3.
2. Run the application and click PS_Unban (START), if you have a 3.55, the button , if you have firmware 4.21 or (square), when 4.30
3. This application will change your Console_ID * and closes automatically
4. If the authorization is an error 8002A231 (bank account), create a new local user account PSN
5. Log in to the PSN
__________________
FaxiY is offline   Reply With Quote
Old 01-12-2013   #34
Joonie86
Member
null
 
Joonie86's Avatar
 
Join Date: Aug 2012
Location: Dream
Posts: 37
Likes: 15
Liked 5 Times in 3 Posts
Mentioned: 2 Post(s)
Tagged: 0 Thread(s)
I've been working on perma unban method like the guy who post this thread and It seems like so hard to do it becuz what he and I are trying to change is eID0~5 including clSD and those are calculated by PerConsoleRootKey. I'm afraid if I swap the whole thing with PSN accessible console it may get bricked. But I'll try to give it a shot when I get a chance.
I spent three hours of doing this and I tried swapping all the offsets that he posted and so far all I got was changed mac and idps shows up on Multiman and still banned.

So tmrw I'm going to swap the whole EID data with working console.
Joonie86 is offline   Reply With Quote
Old 01-12-2013   #35
DANNY G
Member
 
DANNY G's Avatar
 
Join Date: Jan 2012
Location: on a building site
Posts: 611
Likes: 150
Liked 64 Times in 53 Posts
Mentioned: 34 Post(s)
Tagged: 0 Thread(s)
Originally Posted by Joonie86 View Post
I've been working on perma unban method like the guy who post this thread and It seems like so hard to do it becuz what he and I are trying to change is eID0~5 including clSD and those are calculated by PerConsoleRootKey. I'm afraid if I swap the whole thing with PSN accessible console it may get bricked. But I'll try to give it a shot when I get a chance.
I spent three hours of doing this and I tried swapping all the offsets that he posted and so far all I got was changed mac and idps shows up on Multiman and still banned.

So tmrw I'm going to swap the whole EID data with working console.
i did what your thinking of doing and it did brick my console.
proceed with caution bro.
__________________
DANNY G is offline   Reply With Quote
Old 01-12-2013   #36
Joonie86
Member
null
 
Joonie86's Avatar
 
Join Date: Aug 2012
Location: Dream
Posts: 37
Likes: 15
Liked 5 Times in 3 Posts
Mentioned: 2 Post(s)
Tagged: 0 Thread(s)
I see! Thanks for the info

I wish I could re-cod PSID PATCH 1.6 that was made by Stocker25

All I need to do is to fix the rule for changing new offsets for 4.30 rebug / Rogero. but I can't figure out how. If that works We don't really need to wait for UNBAN everytime it's patched. PSID Patch allows you customize your Console ID and PSID however you want. So if we have vaild working console ID our own we can come up with our own version of UNBAN also we don't have to re-launch homebrew everytime PS3 boots up becuz changed offsets remains in LV1/LV2 unless ps3 gets firmware updated..

Originally Posted by DANNY G View Post
i did what your thinking of doing and it did brick my console.
proceed with caution bro.
Joonie86 is offline   Reply With Quote
Old 01-13-2013   #37
tomazzzi
Member
null
 
Join Date: Oct 2012
Posts: 30
Likes: 1
Liked 2 Times in 2 Posts
Mentioned: 3 Post(s)
Tagged: 0 Thread(s)
Hi,

Interesting topic !

Thx !

Last edited by tomazzzi; 01-24-2013 at 03:03 AM.
tomazzzi is offline   Reply With Quote
Old 01-27-2013   #38
replicator
Apprentice
 
Join Date: Jan 2011
Posts: 16
Likes: 0
Liked 0 Times in 0 Posts
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Originally Posted by 0x00 View Post
Okay just wondering where the console ID / PSID offsets are in say rebug cfw 4.21, this is the offsets location in 3.55:


psidoffset = 0x800000000045218C;
conidoffset = 0x80000000003C2EF0;
conidoffset2 = 0x8000000000452174;
conidoffset3 = 0x80000000005B8794;
conidoffset4 = 0x80000000005C0194;

(Props to stoker25)

~0x00
tried contacting you, your inbox is full, please pm me or email me at markpa999 @hotmail .com
replicator is offline   Reply With Quote
Old 01-28-2013   #39
arj1231
Member
null
 
Join Date: Jan 2008
Posts: 34
Likes: 4
Liked 23 Times in 8 Posts
Mentioned: 7 Post(s)
Tagged: 0 Thread(s)
Originally Posted by Joonie86 View Post
I wish I could re-cod PSID PATCH 1.6 that was made by Stocker25
already made http://www.mediafire.com/?ngbr9t5uvgrtxvx
arj1231 is offline   Reply With Quote
Likes: (1)
Old 01-28-2013   #40
jamesst20
Member
 
Join Date: Jan 2011
Posts: 224
Likes: 24
Liked 27 Times in 20 Posts
Mentioned: 10 Post(s)
Tagged: 0 Thread(s)
Hey A lot of interesting stuffs here

@0x00
My console is banned but jailbroken on CFW 4.30 v2.05 Rogero. I have a working console ID (which I set using PSIDPatcher).

Now I've read that the Console ID was saved in Nor so if I replace it from there, that would permanently patch my Console ID, would it? If so, I would be more then greatfull if you could tell me where it is exactly so I'm gonna go ahead and patch it

if i understood correctly, we can't get gthe console ID from a dump on a OFW right?

Edit : Wow I got it! From a Backup of 4.31 OFW!

PS: My console is banned so useless to try it

Console ID :

00000001008400091001367f07518c82 00000000000000000000000000000000 (From PSIDPatch)
From Nor Backup : 00 00 00 01 00 84 00 09 10 01 36 7F 07 51 8C 82 (Offset 0x02F070 & 0x0303D0)

Can I edit this and flash back my backup :o ?

************* [ - Post Merged - ] *************
Will give it a try soon, I've got a backup anyway so whatever happen, I can unbrick right ? (Assuming I have Nor Tristate)

Last edited by jamesst20; 01-29-2013 at 07:23 PM.
jamesst20 is offline   Reply With Quote
Reply

Bookmarks

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump



PS3Hax.net is Copyright © 2010-2013.
Use of this site is governed by our Terms of Use and Privacy Policy. All Trademarks and images are owned by their respected owners.
Posts and links are subject to each author on this forum and are no way affiliated with the operations and/or opinions of ps3hax.net
All times are GMT -5. The time now is 06:05 PM.