
查看: 1609|回复: 0

DARK_ALEX发布HEN FOR 2.71 (Revision B) 第2版!!目前测试成功率99.9%!!!


0 点
1846 点
49 点
 楼主| 发表于 2006-9-26 02:23  ·  广东 | 显示全部楼层 |阅读模式

Homebrew Enabler for 2.71 revision B

This program enables homebrew to be run in 2.71 through the XMB. It makes a patch that remains
permanent until hardwar reset. Sleep mode won't remove the patch.

Note: this program writes some small files in the flash, ONLY the first time is executed.
IT does NOY rewrite any existing file in the system, it writes new files, so the probabilities of
bricking are practically null.

Update Instruction for people with revision A installed
To update from HEN revision A to B, hard reset your psp (to make sure that hen is not running).
Then copy the new files to the memory stick and run the tif. The new files will be automatically

People without any version of hen installed, just follow the instructions below.


- Copy all contents inside MS_ROOT to the root of your memory stick.
- Go to the PHOTO viewer of the XMB and enter in the folder "HENB".
- If the psp just freeze, reboot your psp and try again. Currently the tiff is very unstable and it
is only executed sometimes. I'll try to improve that in the future.

- The first time you run the program, you will see quickly a blue screen, and after that a screen
  that can be of two colors:

  * Red: the files couldn't be written to the flash (it hapens a few times). Just keep trying.
  * Green: The files were written succesfully. After that, the xmb will be rebooted. Now you can run
   the homebrew in format prepared for 2.71. (see details below).

- As mentioned before, the patch will remain resident in memory, and even entering sleep mode
  won't delete it. Only a hardware reset will remove the program from memory.

- When you do a hardware reset, you'll have to run the tiff again.
  This time there won't be green or red screen, just a blue screen and xmb reboot, since
  this time there is no need to write to the flash.

Note: the files pspbtknf.txt, pspbtknf_game.txt, pspbtknf_updater, and systemctrl.prx in the root
of the memory stick are only needed the first time the program is executed. After that you
can delete those. However, don't delete patch.bin, h.bin and the folder with the tiff, since
you will need those the next time you do a hard reset and want to run the program again.

Note2: Once the program is loaded, it is independant of the memory stick contents. So you can
freely swap memory sticks.

Notes about homebrew running

- Current homebrews are not supported. Since current homebrews are in static elf format,  they
  won't run (they are rejected by the 2.71 kernel). Homebrews for 2.71 have to be in prx format.
  Programmers see the programming notes.
  In future versions i may patch the kernel to allow it to accept static elf's.

- There are some samples in the "GAME" directory, all of them ported from the pspsdk samples,
  except the nanddumper written by me.

* polyphonic, pspsdk sample (user mode).
* cube, pspsdk sample (user mode). It shows a cube rotating.
* kdumper, pspsdk sample (kernel mode). It dumps kernel memory to the memory stick.
* ipldumper, pspsdk sample (kernel mode). It dumps the ipl to the memory stick.
* systemparam, pspsdk sample  (user mode). It displays info about the system
* nanddumper, by me. (kernel mode). It dumps the full nand content to the  file
  "nandimage.flash" in the memory stick. The format of the dump is compliant with u.p. chip.
  (It requires 33 MB of free space in the memory stick).

Programming notes for developers

- As mentioned before, homebrew has to be in prx format, at least atm. Furthermore, the main prx, the one in
  the pbp, has to be an user prx. However this user prx can load unsigned kernel modules from
  the memory stick, allowing kernel mode apps.

- There is no need for noplainmodule check patch or nodevicecheck patch, since those are done
  by the homebrew enabler.

- Try to use USE_KERNEL_LIBS = 1 in your kernel prx's. In 2.XX, the separation between user
  and kernel mode is higher than in 1.XX.
  Some functions in "*ForUser" are now totally separated (different address) from their
  "*ForKernel" equivalents. A good example is ModuleMgr. If you are in a kernel prx and
  you call the sceKernelLoadModule of ModuleMgrForUser, you will get a "ILLEGA_PERMANENT_CALL" error.

- Currently devhook emulated 2.71 is not supported. I'll try to add support to devhook, so
  programs for 2.71 can be developed in a 1.50

- See the source code of the samples to have a hint on how to program for 2.71.

Credits and thanks.

- Coded by Dark_AleX

Thanks to:

- Booster for creating devhook. HEN reboot method is based on devhook one.

- Nopx86, psp250, fanjita and all the others of the tiff exploit.

- hitchhikr for the kernel exploit of 2.50-2.71.

- Mathieulh for the help provided these two months that i was without psp.

Anticredits: ps2nfo for impersonating me in their forums. I don't believe your circus..
您需要登录后才可以回帖 登录 | 注册


Archiver|手机版|A9VG电玩部落 川公网安备 51019002005286号

GMT+8, 2025-3-7 10:32 , Processed in 0.130727 second(s), 10 queries , Redis On.

Powered by Discuz! X3.4

Copyright © 2001-2020, Tencent Cloud.
