A9VG电玩部落论坛

 找回密码
 注册
搜索
查看: 4603|回复: 18

[求助] 求帮助!刷自制一红,恢复之前固件E71(已解决)

[复制链接]
该用户已被禁言

精华
0
帖子
70
威望
0 点
积分
77 点
种子
5 点
注册时间
2007-3-6
最后登录
2019-12-1
 楼主| 发表于 2013-4-5 12:28  ·  重庆 | 显示全部楼层 |阅读模式
本帖最后由 lei213 于 2013-4-5 17:48 编辑

各位大大帮帮忙啊,第一次自己升级固件,之前14719,提取CPUKEY和DVDKEY。提取固件时发现有个坏块,当时也没在意,合成16202固件,用NAND Flasher 360刷写后,开机LOGO之后就白屏,左下和右下都有LOGO的1/4,当时查了下网上,很多说可能是固件问题,于是用之前备份的14719固件放进U盘根目录,恢复之后报错E71 ,能进XELL。求帮助,在线等 !!
固件合成日志
<enter> key on completion suppressed
building glitch image
per build directory overridden from command line to 'data'
data directory overridden from command line to '.\16202\'
1BL key overridden from command line, not looking for 1blkey.txt
1BL Key set to: 0xDD88AD0C9ED669E7B56794FB68563EFA sum: 0x983 (expects: 0x983)
xex Key set to: 0x20B185A59D28FDC340583FBB0896BF91 sum: 0x800 (expects: 0x800)
CPU key overridden from command line, not looking for cpukey.txt
CPU Key set to: 0x860C2ED0DEB603CE95DE4C5DBA2C91A2
Using PATCHSMC option
file name overridden from command line to 'output.bin'

------ parsing user ini at '.\data\options.ini' ------

******* WARNING: could not open user ini at '.\data\options.ini', skipping
default console DVD eject button is being used to start xell

------ parsing ini at '.\16202\_glitch.ini' ------
ini version 16202

ini: label [jasperbl] found
found (1) 'cb_6750.bin' crc: 0xf7afa8cc
found (2) 'none' crc: 0x00000000
found (3) 'cd_8453.bin' crc: 0x25e0acd0
found (4) 'ce_1888.bin' crc: 0xff9b60df
found (5) 'cf_16202.bin' crc: 0x752bdf18
found (6) 'cg_16202.bin' crc: 0xd8bfe2ff

ini: label [flashfs] found
found (1) 'aac.xexp' crc: 0x280c416a
found (2) 'bootanim.xex' crc: 0x0817ebbe
found (3) 'createprofile.xex' crc: 0x29823ae3
found (4) 'dash.xex' crc: 0x40bbd9ab
found (5) 'deviceselector.xex' crc: 0xb982a6d4
found (6) 'gamerprofile.xex' crc: 0xd02321c0
found (7) 'hud.xex' crc: 0xa5493707
found (8) 'huduiskin.xex' crc: 0x77318862
found (9) 'mfgbootlauncher.xex' crc: 0x5ffbc69b
found (10) 'minimediaplayer.xex' crc: 0x38b0f35e
found (11) 'nomni.xexp' crc: 0xe71f0d4c
found (12) 'nomnifwk.xexp' crc: 0x1839b40e
found (13) 'nomnifwm.xexp' crc: 0x761e6e55
found (14) 'SegoeXbox-Light.xtt' crc: 0xe0ee6049
found (15) 'signin.xex' crc: 0x6ab06853
found (16) 'updater.xex' crc: 0x836a0696
found (17) 'vk.xex' crc: 0xbc79c266
found (18) 'xam.xex' crc: 0x2bbd918a
found (19) 'xenonclatin.xtt' crc: 0xd5d17ff5
found (20) 'xenonclatin.xttp' crc: 0x7a507ad1
found (21) 'xenonjklatin.xtt' crc: 0xdde4a14c
found (22) 'xenonjklatin.xttp' crc: 0xe2adddfb
found (23) 'ximecore.xex' crc: 0x52eee832
found (24) 'ximedic.xex' crc: 0x1d992bfb
found (25) 'ximedic.xexp' crc: 0xeb032195
found (26) '..\launch.xex' crc: 0x00000000
found (27) '..\lhelper.xex' crc: 0x00000000
found (28) '..\launch.ini' crc: 0x00000000

ini: label [security] found
found (1) 'crl.bin' crc: 0x00000000
found (2) 'dae.bin' crc: 0x00000000
found (3) 'extended.bin' crc: 0x00000000
found (4) 'fcrt.bin' crc: 0x00000000
found (5) 'secdata.bin' crc: 0x00000000
------ ini parsing completed ------

output name overridden to: output.bin


------ Checking .\data\nanddump.bin ------
.\data\nanddump.bin file size: 0x4200000
nanddump header checks passed OK!
Loading NAND dump (0x4200000 bytes)...done!
Detecting NAND controller type from dump data...
        NAND dump is from a big block machine
        NAND dump uses big block controller
parsing dump into user and spare...


****************  WARNING  *************************
  nanddump.bin has NAND memory unit data, make
  sure you back up any important data off the
  internal MU before flashing a new image!
****************************************************

***** WARNING: nanddump.bin has a bad LBA at block 0x16f (raw offset 0x2f4f000), block LBA ignored
copying nanddump data from block 0x1ff to block 0x16f for file extraction integrity
block 0x16f was remapped to block 0x1ff, entering remap instance 1
done!
cleaning up stray remaps
done!
--remap summary--
0: source: 0x016f dest: 0x01ff
-----------------
decrypting KeyVault at address 0x4000 of size 0x4000
keyvault decrypted OK, will use if no kv.bin is provided
decrypting SMC at address 0x1000 of size 0x3000
SMC decrypted OK, will use if no external smc.bin is provided
seeking smc config in dump...found at offset 0x3be0000! Using if no smc config is provided.
CF slot 0 decrypted ok LDV 0x07 Pairing: 0x000000
setting LDV from image to 7
setting pairing data from image to 0x000000
MobileB.dat found at page 0x1d20c, size 2048 (0x800) bytes
MobileC.dat found at page 0x1d200, size 512 (0x200) bytes
MobileD.dat found at page 0x1d204, size 2048 (0x800) bytes
MobileE.dat found at page 0x1d208, size 2048 (0x800) bytes
Statistics.settings found at page 0xef000, size 4096 (0x1000) bytes
seeking FSRoot...fsroot found at page 0x1d020 raw offset 0x6754200
seeking security files...
crl.bin found in sector 0x36b size 0xa00...verified! Will use if external file not found.
dae.bin found in sector 0x36c size 0xad30...verified! Will use if external file not found.
extended.bin found in sector 0x3a0 size 0x4000...verified! Will use if external file not found.
secdata.bin found in sector 0x390 size 0x400...verified! Will use if external file not found.
done!
Writing initial header to flash image

------ loading system update container ------
.\16202\su20076000_00000000 found, loading...done!
        Read 0xb2f000 bytes to memory
checking container integrity...
header seems valid, version 2.0.16202.00
header hash is OK, checking content hashes...
content hashes seem OK, everything looks good!
extracted SUPD\xboxupd.bin (0x79a50 bytes)
decrypting SUPD\xboxupd.bin\CF_16202.bin (0x4560 bytes)...done!
decrypting SUPD\xboxupd.bin\CG_16202.bin (0x754f0 bytes)...done!

------ Loading bootloaders and required security files ------
reading .\data\smc.bin failed, using smc.bin from nand dump
reset smc load address to 0x1000 size 0x3000
reading .\data\kv.bin failed, using kv.bin from nand dump
reading .\common\cb_6750.bin (0x9a40 bytes)
reading .\common\cd_8453.bin (0x5780 bytes)
reading .\common\ce_1888.bin (0x5606a b pad 0x56070 b)
xell not found in perbuild directory, checking firmware /bin folder
xell not found in firmware /bin folder, checking base path
reading xell-gggggg.bin (0x40000 bytes)
extracted SUPD\xboxupd.bin\CF_16202.bin (0x4560 bytes)
extracted SUPD\xboxupd.bin\CG_16202.bin (0x754f0 bytes)
reading .\16202\bin\patches_fat.bin (0x858 bytes)
reading .\data\smc_config.bin failed, using smc_config.bin from nand dump
-------------------
checking smc_config
-------------------
extracting config
------------------
SMC config info:
------------------
Target temps: Cpu:  80鳦 Gpu:  75鳦 Edram:  77鳦
Max temps   : Cpu:  95鳦 Gpu:  90鳦 Edram:  92鳦
Cpu Fan     : (auto)
Gpu Fan     : (auto)
MAC Address : 00:22:48:a6:b4:0b
AVRegion    : 0x00000200 (NTSC-J)
GameRegion  : 0x0101 (NTSC/HK)
DVDRegion   : 2
resetKey    : RXYU
---------------------
Checking for smc config data patches
smc config was not patched
---------------------
done!
patch slot offset reset to: 0xc0000

------ Patching BLs and modifying patches ------
        Patching header for xell power reason
Patching BLs...Done!

------ Encrypting and finalizing bootloaders ------
encoding smc.bin size 0x3000
SMC checksum: 5b3aed00
known clean SMC found, type: Jasper v4.1(2.03)
patching smc at offset: 0x12ba
SMC glitch hacked successfully!
encoding kv.bin size 0x4000
decrypted keyvault has been set for reference
encoding cb_6750.bin size 0x9a40
CB 6750 seq 0x01070050 type: 0x01 cseq: 0x07 allow: 0x0050
        expected fuses:
        fuseset 00: C0FFFFFFFFFFFFFF
        fuseset 01: 0F0F0F0F0F0F0FF0
        fuseset 02: 000000F000000000 (sequence)
        fuseset 02: 0000F00000000000 (allow cseq 5)
        fuseset 02: 000000F000000000 (allow cseq 7)
encoding cd_8453.bin size 0x5b00
encoding ce_1888.bin size 0x56070
encoding xell-gggggg.bin size 0x40000
encoding cf_16202.bin size 0x4560
encoding cg_16202.bin size 0x754f0
encoding patches_fat.bin size 0x49c
done!

------ Adding bootloaders to flash image ------
adding smc.bin at raw offset 0x00001000 len 0x3000 (end 0x4000)
adding kv.bin at raw offset 0x00004000 len 0x4000 (end 0x8000)
adding cb_6750.bin at raw offset 0x00008000 len 0x9a40 (end 0x11a40)
adding cd_8453.bin at raw offset 0x00011a40 len 0x5b00 (end 0x17540)
adding ce_1888.bin at raw offset 0x00017540 len 0x56070 (end 0x6d5b0)
adding xell-gggggg.bin at raw offset 0x00070000 len 0x40000 (end 0xb0000)
adding cf_16202.bin at raw offset 0x000c0000 len 0x4560 (end 0xc4560)
adding cg_16202.bin at raw offset 0x000c4560 len 0x754f0 (end 0xe0000, rest in fs)
adding patches_fat.bin at raw offset 0x000e0010 len 0x49c (end 0xe04ac)
Writing zeropair CG patch slot overflow data to sysupdate.xexp1
        at raw offset 0x2b80000 len 0x00059a50 (end: 0x02bd9a50)...done!

------ adding 28 firmware files ------
extracted SUPD\aac.xexp (0x14000 bytes) (crc32: 0x280c416a ini: 0x280c416a)
        adding as aac.xexp1 at raw offset 0x2bd9a50 len 0x00014000 (end 0x02beda50)
extracted SUPD\bootanim.xex (0x61000 bytes) (crc32: 0x0817ebbe ini: 0x0817ebbe)
        adding as bootanim.xex at raw offset 0x2bf0000 len 0x00061000 (end 0x02c51000)
extracted SUPD\createprofile.xex (0xc000 bytes) (crc32: 0x29823ae3 ini: 0x29823ae3)
        adding as createprofile.xex at raw offset 0x2c51000 len 0x0000c000 (end 0x02c5d000)
extracted SUPD\dash.xex (0x59b000 bytes) (crc32: 0x40bbd9ab ini: 0x40bbd9ab)
        adding as dash.xex at raw offset 0x2c60000 len 0x0059b000 (end 0x031fb000)
extracted SUPD\deviceselector.xex (0xa000 bytes) (crc32: 0xb982a6d4 ini: 0xb982a6d4)
        adding as deviceselector.xex at raw offset 0x31fb000 len 0x0000a000 (end 0x03205000)
extracted SUPD\gamerprofile.xex (0x1b000 bytes) (crc32: 0xd02321c0 ini: 0xd02321c0)
        adding as gamerprofile.xex at raw offset 0x3206000 len 0x0001b000 (end 0x03221000)
extracted SUPD\hud.xex (0x1d000 bytes) (crc32: 0xa5493707 ini: 0xa5493707)
        adding as hud.xex at raw offset 0x3223000 len 0x0001d000 (end 0x03240000)
extracted SUPD\huduiskin.xex (0x14000 bytes) (crc32: 0x77318862 ini: 0x77318862)
        adding as huduiskin.xex at raw offset 0x3241000 len 0x00014000 (end 0x03255000)
extracted SUPD\mfgbootlauncher.xex (0x8000 bytes) (crc32: 0x5ffbc69b ini: 0x5ffbc69b)
        adding as mfgbootlauncher.xex at raw offset 0x3258000 len 0x00008000 (end 0x03260000)
extracted SUPD\minimediaplayer.xex (0xb000 bytes) (crc32: 0x38b0f35e ini: 0x38b0f35e)
        adding as minimediaplayer.xex at raw offset 0x3260000 len 0x0000b000 (end 0x0326b000)
extracted SUPD\nomni.xexp (0xe000 bytes) (crc32: 0xe71f0d4c ini: 0xe71f0d4c)
        adding as nomni.xexp1 at raw offset 0x326b000 len 0x0000e000 (end 0x03279000)
extracted SUPD\nomnifwk.xexp (0x2000 bytes) (crc32: 0x1839b40e ini: 0x1839b40e)
        adding as nomnifwk.xexp1 at raw offset 0x327a000 len 0x00002000 (end 0x0327c000)
extracted SUPD\nomnifwm.xexp (0x5000 bytes) (crc32: 0x761e6e55 ini: 0x761e6e55)
        adding as nomnifwm.xexp1 at raw offset 0x327e000 len 0x00005000 (end 0x03283000)
extracted SUPD\SegoeXbox-Light.xtt (0x6000 bytes) (crc32: 0xe0ee6049 ini: 0xe0ee6049)
        adding as SegoeXbox-Light.xtt at raw offset 0x3285000 len 0x00006000 (end 0x0328b000)
extracted SUPD\signin.xex (0x16000 bytes) (crc32: 0x6ab06853 ini: 0x6ab06853)
        adding as signin.xex at raw offset 0x328e000 len 0x00016000 (end 0x032a4000)
extracted SUPD\updater.xex (0x7000 bytes) (crc32: 0x836a0696 ini: 0x836a0696)
        adding as updater.xex at raw offset 0x32a6000 len 0x00007000 (end 0x032ad000)
extracted SUPD\vk.xex (0xb000 bytes) (crc32: 0xbc79c266 ini: 0xbc79c266)
        adding as vk.xex at raw offset 0x32af000 len 0x0000b000 (end 0x032ba000)
extracted SUPD\xam.xex (0x24e000 bytes) (crc32: 0x2bbd918a ini: 0x2bbd918a)
        adding as xam.xex at raw offset 0x32bb000 len 0x0024e000 (end 0x03509000)
extracted nanddump\xenonclatin.xtt (0x11b000 bytes) (crc32: 0xd5d17ff5 ini: 0xd5d17ff5)
        adding as xenonclatin.xtt at raw offset 0x350a000 len 0x0011b000 (end 0x03625000)
extracted SUPD\xenonclatin.xttp (0x18000 bytes) (crc32: 0x7a507ad1 ini: 0x7a507ad1)
        adding as xenonclatin.xttp1 at raw offset 0x3627000 len 0x00018000 (end 0x0363f000)
extracted nanddump\xenonjklatin.xtt (0x1a8000 bytes) (crc32: 0xdde4a14c ini: 0xdde4a14c)
        adding as xenonjklatin.xtt at raw offset 0x3640000 len 0x001a8000 (end 0x037e8000)
extracted SUPD\xenonjklatin.xttp (0x7000 bytes) (crc32: 0xe2adddfb ini: 0xe2adddfb)
        adding as xenonjklatin.xttp1 at raw offset 0x37e8000 len 0x00007000 (end 0x037ef000)
extracted SUPD\ximecore.xex (0x17000 bytes) (crc32: 0x52eee832 ini: 0x52eee832)
        adding as ximecore.xex at raw offset 0x37ef000 len 0x00017000 (end 0x03806000)
extracted nanddump\ximedic.xex (0x90000 bytes) (crc32: 0x1d992bfb ini: 0x1d992bfb)
        adding as ximedic.xex at raw offset 0x3807000 len 0x00090000 (end 0x03897000)
extracted SUPD\ximedic.xexp (0x2800 bytes) (crc32: 0xeb032195 ini: 0xeb032195)
        adding as ximedic.xexp1 at raw offset 0x3898000 len 0x00002800 (end 0x0389a800)
reading .\16202\..\launch.xex (0xc800 bytes)
        adding as launch.xex at raw offset 0x389a800 len 0x0000c800 (end 0x038a7000)
reading .\16202\..\lhelper.xex (0x6000 bytes)
        adding as lhelper.xex at raw offset 0x38a8800 len 0x00006000 (end 0x038ae800)
reading .\16202\..\launch.ini (0x2b06 bytes)
        adding as launch.ini at raw offset 0x38b2000 len 0x00002b06 (end 0x038b4b06)

------ adding 5 security files ------
<- Processing crl.bin ->
reading .\data\crl.bin (0xa00 bytes)
crl appears crypted, attempting to decrypt with CPU key...failed! Trying alternate key...success!
        adding as crl.bin at raw offset 0x38b8000 len 0x00000a00 (end 0x038b8a00)

<- Processing dae.bin ->
reading .\data\dae.bin (0xad30 bytes)
dae appears encrypted, attempting to decrypt with CPU key...failed! Attempting to decrypt with alternate key...
success!
        adding as dae.bin at raw offset 0x38bc000 len 0x0000ad30 (end 0x038c6d30)

<- Processing extended.bin ->
reading .\data\extended.bin (0x4000 bytes)
        adding as extended.bin at raw offset 0x38c8000 len 0x00004000 (end 0x038cc000)

<- Processing fcrt.bin ->
        fcrt.bin not found and not required by keyvault, skipped

<- Processing secdata.bin ->
reading .\data\secdata.bin (0x400 bytes)
        adding as secdata.bin at raw offset 0x38cc000 len 0x00000400 (end 0x038cc400)

------ checking for Mobile*.dat ------
MobileB.dat found, adding from nanddump.bin
        adding MobileB.dat as type 0x31 at raw offset 0x38e0000 len 0x800 (end 0x38e0800)
MobileC.dat found, adding from nanddump.bin
        adding MobileC.dat as type 0x32 at raw offset 0x38e0800 len 0x200 (end 0x38e0a00)
MobileD.dat found, adding from nanddump.bin
        adding MobileD.dat as type 0x33 at raw offset 0x38e1000 len 0x800 (end 0x38e1800)
MobileE.dat found, adding from nanddump.bin
        adding MobileE.dat as type 0x34 at raw offset 0x38e1800 len 0x800 (end 0x38e2000)
Statistics.settings found, adding from nanddump.bin
        adding Statistics.settings at raw offset 0x3bc0000 len 0x1000 (end 0x3bc1000)

------ adding smc_config.bin ------
adding smc config to offset 0x03be0000, len 0x400

------ finalizing image ------
Fixing up empty FS block entries...done!
Writing FS table to image offset 0x3900000 len 0x4000 (end 0x3904000)...done!
fixing up big block LBA numbers in spare...done!
calculating ECD bytes and assembling raw image...done!
remapping 1 blocks
    copying 0x21000 bytes of LBA 0x16f to block 0x1ff...zero fill origin...done!
done!
writing file 'output.bin' to disk...done!
output.bin written OK

---------------------------------------------------------------
output.bin image built, info:
---------------------------------------------------------------
Console   : Jasper (big block)
NAND size : 64MiB + NAND MU area
Build     : Glitch
Xell      : power on console with console eject button
Serial    : 073341394507
ConsoleId : 030308239479
MoboSerial: 8060364106439457
Mfg Date  : 11/06/2009
CPU Key   : 860C2ED0DEB603CE95DE4C5DBA2C91A2
1BL Key   : DD88AD0C9ED669E7B56794FB68563EFA
DVD Key   : 938CA07C864171417F41A05E8F98561F
CF LDV    : 7
KV type   : type2 (hashed)
---------------------------------------------------------------
    xeBuild Finished. Have a nice day.
---------------------------------------------------------------

选择的FREEBOOT 1.X,合成,还是白屏,一红。求助啊,还是不行
XELL刷固件后,显示 0X16F 0X1FF seems bad,status 0X00000250

精华
0
帖子
1686
威望
0 点
积分
1890 点
种子
10 点
注册时间
2012-12-7
最后登录
2022-1-21
发表于 2013-4-5 12:39  ·  北京 | 显示全部楼层
一个坏块应该没有问题,你再刷一次看看,行不行,不行的话,你看看狼的教程改个固件看看,问题应该不大

精华
0
帖子
738
威望
0 点
积分
748 点
种子
5 点
注册时间
2005-9-10
最后登录
2019-3-8
发表于 2013-4-5 12:53  ·  广东 | 显示全部楼层
要是直接用jr写进去能行吗

精华
0
帖子
1686
威望
0 点
积分
1890 点
种子
10 点
注册时间
2012-12-7
最后登录
2022-1-21
发表于 2013-4-5 13:00  ·  北京 | 显示全部楼层
可以,没有问题。。。。。。。。。
该用户已被禁言

精华
0
帖子
70
威望
0 点
积分
77 点
种子
5 点
注册时间
2007-3-6
最后登录
2019-12-1
 楼主| 发表于 2013-4-5 13:01  ·  重庆 | 显示全部楼层
我的双65脉冲自制,选择的FREEBOOT 1.X,合成,还是白屏,一红。
该用户已被禁言

精华
0
帖子
70
威望
0 点
积分
77 点
种子
5 点
注册时间
2007-3-6
最后登录
2019-12-1
 楼主| 发表于 2013-4-5 13:30  ·  重庆 | 显示全部楼层
自顶,求帮助啊!!

精华
0
帖子
153
威望
0 点
积分
159 点
种子
5 点
注册时间
2007-6-3
最后登录
2016-12-12
发表于 2013-4-5 13:42  ·  上海 | 显示全部楼层
用JR直接2148写入看看
该用户已被禁言

精华
0
帖子
70
威望
0 点
积分
77 点
种子
5 点
注册时间
2007-3-6
最后登录
2019-12-1
 楼主| 发表于 2013-4-5 13:44  ·  重庆 | 显示全部楼层
目前只能进入XELL刷了,我去试下
该用户已被禁言

精华
0
帖子
70
威望
0 点
积分
77 点
种子
5 点
注册时间
2007-3-6
最后登录
2019-12-1
 楼主| 发表于 2013-4-5 13:47  ·  重庆 | 显示全部楼层
没找到2148,新手啊,求大大详细点
该用户已被禁言

精华
0
帖子
70
威望
0 点
积分
77 点
种子
5 点
注册时间
2007-3-6
最后登录
2019-12-1
 楼主| 发表于 2013-4-5 13:51  ·  重庆 | 显示全部楼层
XELL刷固件后,显示 0X16F 0X1FF seems bad,status 0X00000250
您需要登录后才可以回帖 登录 | 注册

本版积分规则

Archiver|手机版|A9VG电玩部落 川公网安备 51019002005286号

GMT+8, 2024-12-27 12:02 , Processed in 0.221248 second(s), 21 queries , Redis On.

Powered by Discuz! X3.4

Copyright © 2001-2020, Tencent Cloud.

返回顶部