A9VG电玩部落论坛

 找回密码
 注册
搜索
查看: 30534|回复: 130

[破解]How To Uncripple A Banned 360 (not Unban!)[修复已经BAN硬盘的X360的翻译中

[复制链接]
该用户已被禁言

精华
0
帖子
3356
威望
0 点
积分
3407 点
种子
0 点
注册时间
2009-1-11
最后登录
2015-11-20
 楼主| 发表于 2009-11-24 19:37  ·  广东 | 显示全部楼层 |阅读模式
How To Uncripple A Banned 360 (not Unban!)
[如何修复已经BAN的360全部功能中英文教程][含硬盘安装修复]

注意:
先送上英文原版教程...(刚刚新鲜出炉的...)
中文翻译教程在第二楼...
因为微软这次BAN机是修改了NAND里面相关数据,让系统无法进行硬盘安装的,所以必须焊线读取NAND来进行修复...
这是一个技术活,请楼下那些回帖就不要再回那些"不懂啊,不会啊,不怎么搞的啊,那麻烦的啊"这些...如果是这样的话,那我的小学文化英文翻译就不写了!!!
(真的不懂焊接的...就等高手帮忙吧!)

                                                                          LiRuiSheng 上

(为了方便想自己修改的朋友们有个交流地方,请自行PM)

转载于Xbox-scene
原帖地址:http://forums.xbox-scene.com/index.php?showtopic=697231

How To Uncripple A Banned 360 (not Unban!)

Did your 360 get banned in this wave of bans? HD install not working? Gamertag and saves keep corrupting?

This is how to fix this (aka 'uncrippling').

To start with, you'll need to know a few things. This is going to involve a small amount of soldering, and a little knowledge of Nandpro and Hex (and a lot of patience if you've got a 256/512mb Jasper). Also, and an important point: THIS WILL NOT UNBAN YOUR 360 - ALL THIS DOES IS TO ALLOW TRUSTED CONTENT ON YOUR CONSOLE. That out of the way, lets get on with the tut.


Part 1: Cable creation, and hooking it up:

You will need:

1. DB25 25-way male plug + wires - or the male end from a printer cable leave the wires attached, cut off the female end.
2. 5 X 100 ohm resistors.
3. 1 X Switching diode.
4. Soldering iron, flux and solder.
5. A PC running Windows (32bit XP worked for me), and with a Parallel Printer Port.
6. NandPro - Dwnld here: http://rapidshare.de/files/48149176/NandPro20.rar.html
7. Hex Workshop - Dwnload here: http://www.hexworkshop.com/

Now, you need to make your cable, and solder it to your 360 motherboard. These threads in the forum will show you how to do this - read them carefully and choose the method you want to use - YOU DO NOT NEED TO USE JTAG WIRES - THESE ARE THE ONES WITH THE 330OHM RESISTORS ATTACHED AND THEIR CONNECTIONS TO THE J2D2 AREA OF THE MOBO!

http://forums.xbox-scene.com/index.php?showtopic=690493

http://forums.xbox-scene.com/ind ... 7&#entry4523337

http://forums.xbox-scene.com/index.php?showtopic=691873

Just hook up the wires as shown colour to colour, 360 to DB25, not forgetting the resistors where it tells you to put them, and the switching diode with it's black band facing the 360 mobo).


Part 2: Dumping Your NAND.

Now back to your PC. Unrar NandPro, and if you're PC's like mine, unrar it to C:\Documents and Settings\Administrator.

Double click 'port95nt.exe', let it do it's thing, you may need to reboot. Now restart your PC, and go into the PC's bios. This differs from PC to PC, but make sure your Parallel Printer Port (Or LPT) is ON. Boot into Windows.Take your now wires up 360, and plug in it's power supply (DO NOT TURN THE 360 ON) and hook up its AV/VGA or which ever cable you use. Now plug the DB25 plug thats attached to your 360, and plug it in to your PC's printer port.

Now go to the START button on your PC, and click on the 'Run' button. A 'Run' window will pop up. Type 'CMD' and click 'OK' A DOS promt window will open:



You see it's pointing to my folder where I installed NandPro to? If yours defaults to another address, install NandPro in that folder. We are now going to dump your NAND.

Type into the DOS prompt window:

nandpro lpt: -r16 nand.bin

and press 'enter' NandPro will now start to read the NAND of the 360. If you have a 256 or 512mb Jasper, replace the '16' in the above command line with 256 or 512. One thing to know - if you've got a 256 or 512 Jasper this

will take hours just for one dump, and you're gonna need at least two dumps. You might be better off building a USB reader device, see this thread on how to (yes it involves a bit of reading).

You may get errors reading or it just won't read. You will need to first - check your LTP settings in your PC's bios - change them and re-try dumping. If you've tried all configs in the bios, try another PC. If it still doesn't work, try removing the resistors and/or switching diode and then try dumping. It will work eventually, but if not - TRY ANOTHER PC!

Right, we've got our first NAND dump - congrats! It'll be in the folder you install NAndPro to (in my case C:\Documents and Settings\Administrator) and it's called nand.bin. Now dump your nand a second time using this command line in the DOS prompt window:

nandpro lpt: -r16 nand2.bin

Leave this dumping (grab a beer/coffee). You should now have nand2.bin in the same folder as nand.bin. Brilliant.

Now you need to check the qualiy of the dumps. See here on how to do this:



[url]http://www.free60.org/Reading_out_NAND#Step_7:_Checking_for_errors
[/url]

This guide uses various bits of software to check the NAND dumps. Some of them need a bit of a prompt to work- Getting Degraded to work: Degraded v1.1 won't open NAND files without the string "2004-2005 Micros... ect" at the begining of the hex. Open your NAND file with Hex Workshop, look at the writing on the left - where it reads '2004-200X' if the X is a 5 you're fine and can open it in Degraded; if not highlight the X number, and type 5 then save the .bin. It'll open in Degraded (REMEMBER this is just to validate your dump, not part of the hex editing to get the Hard Drive functions back! You'll have to google for the 1BL number, and this is just for checking that the NAND dump is OK - when you save it in the Hex editor, don't overwrite your NAND, call it summit like Degnand.bin).

Anyhow, now you've verified your dumps are all tickity-boo - SAVE THEM ONTO DISC/USB STICK IN THEIR UNALTERED STATE - IF YOU EVER NEED TO RESTORE YOUR NAND BECAUSE YOU BORK IT IN THE NEXT SECTION YOU WILL NEED THESE AS THEY WERE!

Part 3: Unlocking Teh Power Of Trusted Content - Or Hex Editing Your NAND.

Now you've got your NAND.bin or whatever you called it, open it up in Hex Workshop (click on the 'open file' icon, or go to 'File – Open'). It'll look similar to this:



Welcome to the world of Hex........ Now go to 'Edit' in the drop down menu, and select 'Find'. A box will appear, in the first drop down, select 'Text String' tick the 'Find All Instances' box, and enter 'secdata.bin' in the 'Value' box. Click OK.

It will scan NAND.bin for all occurances of sectdata.bin, and in the box in the bottom right corner, it will list how many of these there are. Click on the first one. You'll see it will go to the secdata hex you've clicked on. It'll look something like this:



Now look at the hex highlighted in the lovely 'salmon' colour in this picture:



The four block number 3B 5C 93 1B – this is the date stamp of the authoring of the secdata, and it always appears after the 00 00 04 00 hex after the secdat.bin hex number.

Go through all of the occurrances of secdata and note these date stamp hex's down under their address headings (in the pictures case its 00487E10) If your secdata starts midway through a line, you HAVE to use that address.Now you need to understand Hex a bit. The blocks go up in numeric and then text value, so it'll start at 00 and go through to FF, with FF being the highest value, meaning that hex 0F is a higher value than 09, and B1 is higher than A8. So in this example the value is 3B 5C 93 1B (if there was another secdata with 3B 6A 4E 93, that would be the higher value). Look at the hex values of the date stamps from all of the secdata and the highest value one is the latest bad HD corrupting hex!

Write the address of the highest secdata block down! (In this case its 00487E10). Use this:

http://www.mrcalculator.com/hexdec.html

It's a hex calculator if this one doesn't work google and find one that can to hex division, click the 'Hex' button and enter the address value (ie in this case 00487E10) and divide by 04200. Note down the number before the decimal point, which will be a three figure hex number - say 11D or 158 etc depending on your NAND.

Now go back to NANDPRO, and with your 360 still hooked up enter:

NandPro lpt:-r16 nandfile.bin 0x0158 1

(change 158 to whatever address line you came up with in your calculation, remember the -r16 should be -r256 or -

r512 if you've got a 256mb or 512mb Jasper)

This will dump this sector of your NAND. Now with the freshly dumped NAND piece, open it up in Hex Workshop, and check that it starts with 1F FB and repeats for a bit. It should also have a single secdata.bin if you search....also the last none filled line should be 4200. It should look like this:



Highlight all of the hex like this:



and select 'Edit – Fill' from the drop down menu. Make sure that in the 'Fill with the following hex byte' the value is '0' and click 'OK'. Now save this file and call it 'nandzero'.

Open up NANDPRO again, and this time, enter:

NandPro lpt:-w16 nandzero.bin 0x0158 1

change 0158 to whatever address line you came up with in your hex division calculation (and again, the -r256 or -

r512 if you've got a mighty Jasper)

this will write the zero'd 4200 size file to address 0158 (or which ever address you came up with in your calculation). Disconnect 360 from PC (leave your NAND wires attached in case it goes wrong), boot 360 and you're away  

Cheers to Bannzzay - also there's a tool about called FSTool - haven't teste it, but I think it works, and it's a

lot less hassle - JUST MAKE SURE YOU KEEP YOUR NAND BACKUPS BEFORE USING!
This is dedicated to the non-sharers of this info that were charging to do this for others....*raspberry*
.
该用户已被禁言

精华
0
帖子
3356
威望
0 点
积分
3407 点
种子
0 点
注册时间
2009-1-11
最后登录
2015-11-20
 楼主| 发表于 2009-11-24 19:37  ·  广东 | 显示全部楼层
占楼准备翻译稿........
(带一点个人翻译色彩,但我会尽量忠于原著的了...呵呵)
(转载的话,请写上LiRuiSheng本人名字,谢谢...)
请问你的XBOX360是否在这次BAN机大活动下离开LIVE呢?
硬盘安装是不是已经无法工作呢?玩家设定档和存档是否已经瘫痪下来呢?
现在跟我一起来修复这些问题吧!(应该是承救瘫痪的XBOX360...呵呵).

首先,你需要了解一下事情,接下来的步骤是需要涉及一些的焊接,和少量的NANDPRO和HEX的操作方法(当然还有就是阁下的XBOX360和强大的耐心)...还有一个重点说明:这不是解除BAN机的教程,你的XBOX360还是无法登陆的LIVE的,虽然如此,但你还是可以使用回XBOX360应有的全部功能,这个教程是目前唯一可知道的解决方法.

第一步骤:制作电缆
你需要准备以下东西:
1. 25孔打印机母头
2. 5只100欧姆的电阻
3. 1只开关二极管
4. 电烙铁和相关焊接材料
5. 一台可以运行Windows的电脑(教程者的电脑是32bit XP)和一个并口打印机口
6. NandPro(下载地址请看顶楼)
7. 二进制修改软件 Hex Workshop(下载地址请看顶楼)

现在,你需要准备好你的电缆,并连接到XBOX360主板相关接口.具体如何焊接,请看帖子链接:

http://forums.xbox-scene.com/index.php?showtopic=690493

http://forums.xbox-scene.com/ind ... 7&#entry4523337

http://forums.xbox-scene.com/index.php?showtopic=691873

只要对着相关接口接好,就可以了...哦,对了,开关二极管的黑色圈是对着360主板喔.

第二步骤:导出你的NAND
现在回到你的电脑,解压缩NandPRO,对了,建议你的解压路径和我一样,这样可以对着图片来做了!
(解压路径C:Documents and SettingsAdministrator)

双击port95nt.exe,运行的时候可能会要你重启电脑,重启吧!哦,对了,你还要在BISO里面打开LPT打印机并口为开启状态,最后进入Windows即可!

现在检查一下你的连接电缆,注意:不要打开XBOX360的电源和AV/VGA线等等,不要有任何连接!之后把LPT接口接入电脑主板上面即可.

现在启动你的电脑,进入Windows,进入CMD环境.
图片一(请看主贴图片)

进入你的NandPro文件夹(不会DOS操作?不会吧!?),现在我们要导出NAND,输入下面命令:
nandpro lpt: -r16 nand.bin

现在Nandpro开始导出NAND的了,如果你的主板是256MB或512MB,那就把上面的16修改成你的主板数字.记得,如果256MB或者512MB,可能导出时间非常长,可能需要1个小时左右,而且还需要导出两次以确保文件是否正确,如果可以的话,建议你用USB接口来Dump,具体方法,请你自己找了...

如果你导出的时候出现错误的话,请你检查一下BIOS的LPT设置是否正确,尝试更换设置,如果你查看了全部设置都没有的话,那就更换另外一台PC再试试了...如果还是不行,那尝试把电缆重新焊接过一次并检查其连通性了再来导出了.

呵呵,如果全部链接都正确的话,那我们就可以获得第一个导出的NAND文件,现在你还继续备份NAND的文件,这样你可以核对一下两个NAND文件是否完全正确了...

nandpro lpt: -r16 nand2.bin

如果完成之后,请检查一下nand和nand2文件,具体检查方法可以参考:
http://www.free60.org/Reading_ou ... Checking_for_errors
由于个人原因,暂时现在停止翻译...或者等其他高手帮忙翻译吧!

20091125:感谢74楼的firstfancy同志帮忙翻译...呵呵...全部教程已经完成了!有能力的大伙就开工吧!
上述教程使用了多种检查dump出啦的NAND的正确性的软件,有些软件还有点不足,比如Degraded v1.1就只有当NAND的Dump file以"2004-2005 Micros... ect"开头时才回去检查NAND的完整性。如果能用Hex Workshop打开你dump的NAND的时候看到的"2004-200X”其中的X大于5,那么你需要将X改为5并保存,再进行NAND检查,你最好吧把要把原始的NAND备份,再修改其副本,如果检查通过了,证明那个原始的是完整的,使用原始的就行了。

好了,现在你有了你的完整的NAND备份了,强烈建议将其保存在能够写保护的介质里面,比如写了保护的U盘,或者刻盘,因为后面你要做的工作需要修改(破坏)你主机了的NAND内容,你必须完好的保存你的原始NAND!!!

用Hex Workshop打开你的NAND.bin,就会出现如下界面:

欢迎进入Hex的世界!!点Eidt->Find,这时会弹出一个对话框,选择Text String,并且在Value这栏里输入 secdata.bin,那么在软件的右下角会显示一共存在多少个secdata.bin,点击第一个,你会跳转到第一个secdata.bin处去,会以Hex方式显示,你会看到如下图所示的情况:

现在看看下面这张图,看看那种salmon颜色标出的字段:

这四个字段3B 5C 93 1B就是secdata的数据标签(是这么翻译吧),很有规律的,授权标签通常出现在00 00 04 00字段后面。

遍历每一个NAND***现的secdata.bin,并找到每个secdata.bin的头地址,就如上图中的00487E10,就算你的secdata.bin字段是出现在一行的中间部分,你也需要使用头地址。

下面你需要了解一下16进制的相关知识,2位的16进数制将会从00开始递增到FF,也就是说2位的16进制数种FF最大的,同理0F比09要大,B1比A8要大。就如上图的3B 5C 93 1B,如果你找到了一个SECDATA.BIN的数据标签是3B 6A 4E 93,那么后面这个要更大。

你需要找到所有的SECDATA.BIN中数据标签组大的一个,记下头地址,比如上图的00487E10。
你可以使用 http://www.mrcalculator.com/hexdec.html 的16进制计算器节能型下面的工作。输入你的地址值,比如00487E10,然后 除以 04200,你会得到一个3位的16进制数值,记下它。根据每人NAND的不同,结果可能是11D或者158等等。

使用NANDPRO,记得360要插上电,输入:
NandPro lpt:-r16 nandfile.bin 0x0158 1
(256或者512的jesper将r16 改为 r256 或r512)

NANDPRO会dump你的NAND种这部分数据,使用Hex Workshop打开你新dump出的NAND片段,检查一下,它的开头将会是一些1F FB 不断循环。如果你搜索secdata.bin的话,仅会有一个结果,如下图:

全选

选择Edit,在TextBox中输入0,即把所有数据些微0,保存,可存为nandzero

使用NANDPRO 输入 NandPro lpt:-w16 nandzero.bin 0x0158 1 (256或者512的jesper将r16 改为 r256 或r512) 将修改了的NAND片段写回NAND。

断开360与PC的连接,在打开360,欢呼吧!!

切记:备份你的原始NAND

弑神者

潛水者

精华
0
帖子
135956
威望
0 点
积分
146221 点
种子
359 点
注册时间
2008-11-14
最后登录
2024-9-28
发表于 2009-11-24 20:00  ·  辽宁 | 显示全部楼层
等LZ的详细教程好了。。。
该用户已被禁言

精华
0
帖子
787
威望
0 点
积分
952 点
种子
0 点
注册时间
2006-4-23
最后登录
2020-1-16
发表于 2009-11-24 20:02  ·  上海 | 显示全部楼层
希望普通玩家也能操作~~~~~~感谢楼主的付出
该用户已被禁言

精华
0
帖子
184
威望
0 点
积分
134 点
种子
0 点
注册时间
2009-11-15
最后登录
2012-2-28
发表于 2009-11-24 20:24  ·  北京 | 显示全部楼层

Re:[破解]How To Uncripple A Banned 360 (not Unb

好复杂~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
xlg

精华
0
帖子
342
威望
0 点
积分
350 点
种子
0 点
注册时间
2009-10-23
最后登录
2010-6-16
发表于 2009-11-24 20:27  ·  上海 | 显示全部楼层
强烈建议先备份flash的数据。再改写
该用户已被禁言

精华
0
帖子
3356
威望
0 点
积分
3407 点
种子
0 点
注册时间
2009-1-11
最后登录
2015-11-20
 楼主| 发表于 2009-11-24 20:34  ·  广东 | 显示全部楼层
下面是引用xlg于2009-11-24 20:27发表的:
强烈建议先备份flash的数据。再改写
请参考第一步骤...必须导出Nand文件到电脑里面...在电脑里面改写的...
所以备份早就已经做好了...

精华
0
帖子
2696
威望
0 点
积分
2811 点
种子
47 点
注册时间
2009-8-13
最后登录
2024-9-18
发表于 2009-11-24 20:43  ·  江苏 | 显示全部楼层
事先没导出NAND被Ban后,难道不能解禁了?

精华
0
帖子
372
威望
0 点
积分
394 点
种子
0 点
注册时间
2009-2-8
最后登录
2012-6-27
发表于 2009-11-24 20:44  ·  四川 | 显示全部楼层
对我来说自己是不能亲自破解的
期望JS的破解
该用户已被禁言

精华
0
帖子
3356
威望
0 点
积分
3407 点
种子
0 点
注册时间
2009-1-11
最后登录
2015-11-20
 楼主| 发表于 2009-11-24 20:48  ·  广东 | 显示全部楼层
下面是引用cs83729146于2009-11-24 20:43发表的:
事先没导出NAND被Ban后,难道不能解禁了?
晕...
这教程就是在BAN机之后,你可以导出已经BAN的NAND,修改里面的数据,让你的XBOX360恢复硬盘安装功能...这是目前唯一知道恢复硬盘安装的途径....
您需要登录后才可以回帖 登录 | 注册

本版积分规则

Archiver|手机版|A9VG电玩部落 川公网安备 51019002005286号

GMT+8, 2024-9-28 15:30 , Processed in 0.195613 second(s), 16 queries , Redis On.

Powered by Discuz! X3.4

Copyright © 2001-2020, Tencent Cloud.

返回顶部