FIXED 16mb jasper /w demon R-JTAG - RROD 0022

The Pusher

VIP Member
Dec 20, 2012
32
0
You see a little stop in the rater/post monitor at 1E /20?

Try to use this point and put the reset wire up the fan tunnel

reset.jpg
 
  • Like
Reactions: trippy86

RF1911

VIP Member
Feb 2, 2011
157
0
I assume that since you have demon installed you are running the latest dash on stock nand, right? Can you tell if, by using post monitoring function, you can see a slow down on post 1D to 21?
 
  • Like
Reactions: trippy86

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
yes its the latest dash and stock, i wanted to boot a hacked dash to make sure everything was working correctly before reverting to stock and flashing the new hacked dash to my demon.
 
Last edited:

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
when you say can see a slow down on post 1D to 21? where are you refering to with 1D to 21?

i dont see it anywhere. sorry im new to rater features
 

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
ok i have different jumper with different dip settings andlots of other suggested settings. not booted once, but if i write stock back it boots no problem

im out of ideas
 

DreamZ

VIP Member
Dec 8, 2009
1,240
0
Essex UK
www.ixtreme.talktalk.net
When looking at your post codes its almost as if a point or two might be not connected on post qsb.

Have you tried doing a rater for say 3 boots per dip setting? And log them in a pastebin. Try 782 on rate and do 3 or 4 boots. Then 783 etc. Ending back at 781 and see what you get.
A0 is it just failing. Your wanting to see post21 and 22 alot etc.

Its frustrating I know . I had a jasper that wouldnt boot from coldboot. But was still getting the correct boot codes just froze on HWINIT. Also dips play a big part. I got errors like yours on dips 6 and 5 for example but on 2 and 3 it booted fine

Edit
From logs u got above there not for all dips but try keeping your dips on 78 and 2 and 783 area. 1.2v jumper. Double check post qsb points. They can bridge underneathe sometimes
 
Last edited:
  • Like
Reactions: trippy86

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
yes definetly 15574 or higher

ill check the post qsb but they look clean from here
 

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
ok i have tried everything i could think of.

different settings with different voltages

with and without aud_clamp

but still no jtag boot, but boots stock fine

anyone else any other ideas?
 

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
Console Type: Jasper
NAND size: 16
Dashboard version: 2.0.16203
CB version: 6754



J-Runner log:
===================================================
27 May 2013 13:40:23


J-Runner v0.2 Beta (288) Started

Checking Files
Finished Checking Files
Version: 10
Press Escape to exit

(monitor log - default voltage)

Waiting for POST to change
Post C0
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 40 - Entrypoint of CD reached
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6
Post 48 - SHA_COMPUTE
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 14 - FSB_CONFIG_TX_CREDITS
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 17 - VERIFY_HEADER
Post 18 - FETCH_CONTENTS
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6
Post 0D
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 14 - FSB_CONFIG_TX_CREDITS
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 17 - VERIFY_HEADER
Post 18 - FETCH_CONTENTS
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6

(monitor log - 1.2v jumper)

===================================================
27 May 2013 13:55:30


J-Runner v0.2 Beta (288) Started


Checking Files
Finished Checking Files
Version: 10
Press Escape to exit
Waiting for POST to change
Post 10 - Payload/1BL started
Post 40 - Entrypoint of CD reached
Post C0
Post F8
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post D0 - CB_A entry point reached
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post C0
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post D0 - CB_A entry point reached
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post E0
Post D0 - CB_A entry point reached
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post 10 - Payload/1BL started
Post 15 - FETCH_OFFSET
Post 18 - FETCH_CONTENTS
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post 10 - Payload/1BL started
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6
Post 80
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post F0 - Panic - VERIFY_OFFSET_CB_B
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6

(monitor log - 1.8v jumper)

===================================================27 May 2013 14:01:30


J-Runner v0.2 Beta (288) Started


Checking Files
Finished Checking Files
Version: 10
Press Escape to exit
Waiting for POST to change
Post 10 - Payload/1BL started
Post C0
Post 40 - Entrypoint of CD reached
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 14 - FSB_CONFIG_TX_CREDITS
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 17 - VERIFY_HEADER
Post 18 - FETCH_CONTENTS
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 14 - FSB_CONFIG_TX_CREDITS
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 17 - VERIFY_HEADER
Post 18 - FETCH_CONTENTS
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 01
Post 80
Post E0
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 14 - FSB_CONFIG_TX_CREDITS
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 17 - VERIFY_HEADER
Post 18 - FETCH_CONTENTS
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 01
Post A0 - Panic - VERIFY_SECOTP_6
Post 10 - Payload/1BL started
Post 11 - FSB_CONFIG_PHY_CONTROL
Post 12 - FSB_CONFIG_RX_STATE
Post 13 - FSB_CONFIG_TX_STATE
Post 14 - FSB_CONFIG_TX_CREDITS
Post 15 - FETCH_OFFSET
Post 16 - FETCH_HEADER
Post 17 - VERIFY_HEADER
Post 18 - FETCH_CONTENTS
Post 19 - HMACSHA_COMPUTE
Post 1A - RC4_INITIALIZE
Post 1B - RC4_DECRYPT
Post 1C - SHA_COMPUTE
Post 1D - SIG_VERIFY
Post 1E - BRANCH
Post 20 - CB entry point reached
Post 21 - INIT_SECOTP
Post A0 - Panic - VERIFY_SECOTP_6


updflash.bin log

--------------------------------------------------------------- xeBuild v1.07.561
---------------------------------------------------------------
building jtag image
<enter> key on completion suppressed
data directory overridden from command line to '.\xeBuild\16203\'
per build directory overridden from command line to 'xeBuild\data'
file name overridden from command line to 'C:\Users\Trippy\Desktop\New folder\J-Runner v02 Beta (288) Core Pack\J-Runner v02 Beta (288) Core Pack\313275792305\updflash.bin'


------ parsing user ini at '.\xeBuild\data\options.ini' ------
loading file...done!
pre-parsing and sanitizing
done!
User options.ini loaded, 0x1b0 bytes in memory
loading cpukey.txt from .\xeBuild\data\cpukey.txt
CPU Key set to: 0xE159739176961B9D383FA1309E7CEA98
setting 1blkey from ini: 0xDD88AD0C9ED669E7B56794FB68563EFA
1BL Key set to: 0xDD88AD0C9ED669E7B56794FB68563EFA sum: 0x983 (expects: 0x983)
xex Key set to: 0x20B185A59D28FDC340583FBB0896BF91 sum: 0x800 (expects: 0x800)
Using patchsmc option (ini file)


------ parsing ini at '.\xeBuild\16203\_jtag.ini' ------
ini version 16203


ini: label [jasperbl] found
found (1) 'cb_6723.bin' crc: 0xe9292b90
found (2) 'cd_6723.bin' crc: 0x0fcff305
found (3) 'ce_1888.bin' crc: 0xff9b60df
found (4) 'cf_4532.bin' crc: 0xd28ef722
found (5) 'cg_4532.bin' crc: 0x2530f8ce
found (6) 'cb_6750.bin' crc: 0xf7afa8cc
found (7) 'cd_8453.bin' crc: 0x25e0acd0
found (8) 'cf_16203.bin' crc: 0xc4c27121
found (9) 'cg_16203.bin' crc: 0xcbb44eac


ini: label [flashfs] found
found (1) 'aac.xexp' crc: 0x62924e10
found (2) 'bootanim.xex' crc: 0xc8b660b2
found (3) 'createprofile.xex' crc: 0x9f6efee2
found (4) 'dash.xex' crc: 0x18ea6c7e
found (5) 'deviceselector.xex' crc: 0x75c32b5b
found (6) 'gamerprofile.xex' crc: 0xec9746f7
found (7) 'hud.xex' crc: 0xabf19107
found (8) 'huduiskin.xex' crc: 0xf3563a5c
found (9) 'mfgbootlauncher.xex' crc: 0x763c73fe
found (10) 'minimediaplayer.xex' crc: 0xda1d0a4a
found (11) 'nomni.xexp' crc: 0xaae9ad36
found (12) 'nomnifwk.xexp' crc: 0xb3c2c31b
found (13) 'nomnifwm.xexp' crc: 0xf69cf9fc
found (14) 'SegoeXbox-Light.xtt' crc: 0xe0ee6049
found (15) 'signin.xex' crc: 0xc1d7185d
found (16) 'updater.xex' crc: 0x19286110
found (17) 'vk.xex' crc: 0xefcbab82
found (18) 'xam.xex' crc: 0xf8db3557
found (19) 'xenonclatin.xtt' crc: 0xd5d17ff5
found (20) 'xenonclatin.xttp' crc: 0x7a507ad1
found (21) 'xenonjklatin.xtt' crc: 0xdde4a14c
found (22) 'xenonjklatin.xttp' crc: 0xe2adddfb
found (23) 'ximecore.xex' crc: 0xe85e813b
found (24) 'ximedic.xex' crc: 0x1d992bfb
found (25) 'ximedic.xexp' crc: 0xfb2bb58c
found (26) '..\launch.xex' crc: 0x00000000
found (27) '..\lhelper.xex' crc: 0x00000000
found (28) '..\launch.ini' crc: 0x00000000


ini: label [security] found
found (1) 'crl.bin' crc: 0x00000000
found (2) 'dae.bin' crc: 0x00000000
found (3) 'extended.bin' crc: 0x00000000
found (4) 'secdata.bin' crc: 0x00000000
------ ini parsing completed ------


output name overridden to: C:\Users\Trippy\Desktop\New folder\J-Runner v02 Beta (288) Core Pack\J-Runner v02 Beta (288) Core Pack\313275792305\updflash.bin




------ Checking .\xeBuild\data\nanddump.bin ------
.\xeBuild\data\nanddump.bin file size: 0x1080000
nanddump header checks passed OK!
Loading NAND dump (0x1080000 bytes)...done!
Detecting NAND controller type from dump data...
NAND dump is from a small block machine
NAND dump uses big block controller
parsing dump into user and spare...
done!
decrypting KeyVault at address 0x4000 of size 0x4000
keyvault decrypted OK, will use if no kv.bin is provided
decrypting SMC at address 0x1000 of size 0x3000
SMC decrypted OK, will use if no external smc.bin is provided
seeking smc config in dump...found at offset 0xf7c000! Using if no smc config is provided.
CF slot 0 decrypted ok LDV 0x05 Pairing: 0xf7f05e
CF slot 1 decrypted ok LDV 0x04 Pairing: 0xf7f05e
setting LDV from image to 5
setting pairing data from image to 0xf7f05e
MobileB.dat found at page 0x6ac0, size 2048 (0x800) bytes
MobileC.dat found at page 0x3720, size 512 (0x200) bytes
MobileD.dat found at page 0x6960, size 2048 (0x800) bytes
MobileE.dat found at page 0x2820, size 1536 (0x600) bytes
Statistics.settings found at page 0x7bc0, size 4096 (0x1000) bytes
seeking FSRoot...fsroot found at page 0x4700 raw offset 0x927000
seeking security files...
crl.bin found in sector 0x355 size 0xa00...verified! Will use if external file not found.
dae.bin found in sector 0x232 size 0xde60...verified! Will use if external file not found.
extended.bin found in sector 0x352 size 0x4000...verified! Will use if external file not found.
secdata.bin found in sector 0x237 size 0x400...verified! Will use if external file not found.
done!
Writing initial header to flash image


------ loading system update container ------
.\xeBuild\16203\su20076000_00000000 found, loading...done!
Read 0xb31000 bytes to memory
checking container integrity...
header seems valid, version 2.0.16203.00
header hash is OK, checking content hashes...
content hashes seem OK, everything looks good!
extracted SUPD\xboxupd.bin (0x79a60 bytes)
decrypting SUPD\xboxupd.bin\CF_16203.bin (0x4560 bytes)...done!
decrypting SUPD\xboxupd.bin\CG_16203.bin (0x754f2 bytes)...done!


------ Loading bootloaders and required security files ------
could not read .\xeBuild\16203\bin\payload.bin, using built in payload (0x200 bytes)
reading .\xeBuild\data\SMC.bin (0x3000 bytes)
reset smc load address to 0x1000 size 0x3000
reading .\xeBuild\data\kv.bin failed, using kv.bin from nand dump
reading .\common\cb_6723.bin (0x9550 bytes)
reading .\common\cd_6723.bin (0x56f0 bytes)
reading .\common\ce_1888.bin (0x5606a b pad 0x56070 b)
reading .\common\cf_4532.bin (0x44c0 bytes)
reading .\common\cg_4532.bin (0x2ef40 bytes)
extracted SUPD\xboxupd.bin\CF_16203.bin (0x4560 bytes)
extracted SUPD\xboxupd.bin\CG_16203.bin (0x754f2 bytes)
could not read .\xeBuild\16203\bin\freeboot.bin, using built in core (0xd80 bytes)
reading .\xeBuild\16203\bin\patches_jasper.bin (0x9a4 bytes)
reading .\xeBuild\data\xell-2f.bin (0x40000 bytes)
reading .\common\cb_6750.bin (0x9a40 bytes)
reading .\common\cd_8453.bin (0x5780 bytes)
reading .\xeBuild\data\smc_config.bin failed, using smc_config.bin from nand dump
-------------------
checking smc_config
-------------------
extracting config
------------------
SMC config info:
------------------
Target temps: Cpu: 80øC Gpu: 71øC Edram: 73øC
Max temps : Cpu: 95øC Gpu: 90øC Edram: 92øC
Cpu Fan : (auto)
Gpu Fan : (auto)
MAC Address : 00:22:48:b1:c3:4e
AVRegion : 0x00000300 (PAL50)
GameRegion : 0x02fe (PAL/EU)
DVDRegion : 2
resetKey : LLDX
---------------------
Checking for smc config data patches
smc config was not patched
---------------------
done!


------ Encrypting and finalizing bootloaders ------
initializing random nonces
Fuse CPU Key set to: 0xE159739176961B9D383FA1309E7CEA98
Fuse CF LDV set to : 0xFFFFF000000000000000000000000000
encoding payload.bin size 0x200 (JTAG)
patching payload.bin to load size 0xd80 (0x360 reps)
encoding SMC.bin size 0x3000 (JTAG)
SMC checksum: 260eed31
unknown SMC found, type: Jasper v4.1(2.03)
jtag hack found in smc.bin!
patching SMC reset limit at offset: 0x12ba
SMC reset limit patched successfully!
encoding kv.bin size 0x4000 (JTAG)
decrypted keyvault has been set for reference
encoding cb_6723.bin size 0x9550 (JTAG)
CB 6723 seq 0x01050010 type: 0x01 cseq: 0x05 allow: 0x0010
expected fuses:
fuseset 00: C0FFFFFFFFFFFFFF
fuseset 01: 0F0F0F0F0F0F0FF0
fuseset 02: 0000F00000000000 (sequence)
fuseset 02: 0000F00000000000 (allow cseq 5)
encoding cd_6723.bin size 0x56f0 (JTAG)
encoding ce_1888.bin size 0x56070 (JTAG)
encoding cf_4532.bin size 0x44c0 (JTAG)
encoding cg_4532.bin size 0x2ef40 (JTAG)
encoding cf_16203.bin size 0x4560 (JTAG)
encoding cg_16203.bin size 0x75500 (JTAG)
encoding freeboot.bin size 0xd80 (JTAG)
patching freeboot.bin with option mask 0x4 and kernel version string '16203'
Options set:
- console DVD eject button is being used to start xell
- alternate xell button disabled
encoding patches_jasper.bin size 0x9a8 (JTAG)
encoding fuses.bin size 0x60 (JTAG)
encoding xell-2f.bin size 0x40000 (JTAG)
encoding cb_6750.bin size 0x9a40 (JTAG)
CB 6750 seq 0x01070050 type: 0x01 cseq: 0x07 allow: 0x0050
expected fuses:
fuseset 00: C0FFFFFFFFFFFFFF
fuseset 01: 0F0F0F0F0F0F0FF0
fuseset 02: 000000F000000000 (sequence)
fuseset 02: 0000F00000000000 (allow cseq 5)
fuseset 02: 000000F000000000 (allow cseq 7)
encoding cd_8453.bin size 0x5780 (JTAG)


Virtual Fuses set to:
fuseset 00: C0FFFFFFFFFFFFFF
fuseset 01: 0F0F0F0F0F0F0FF0
fuseset 02: 000000F000000000
fuseset 03: E159739176961B9D
fuseset 04: E159739176961B9D
fuseset 05: 383FA1309E7CEA98
fuseset 06: 383FA1309E7CEA98
fuseset 07: FFFFF00000000000
fuseset 08: 0000000000000000
fuseset 09: 0000000000000000
fuseset 10: 0000000000000000
fuseset 11: 0000000000000000
done!


------ Adding bootloaders to flash image ------
adding payload.bin at raw offset 0x00000200 len 0x200 (end 0x400)
adding SMC.bin at raw offset 0x00001000 len 0x3000 (end 0x4000)
adding kv.bin at raw offset 0x00004000 len 0x4000 (end 0x8000)
adding cb_6723.bin at raw offset 0x00008000 len 0x9550 (end 0x11550)
adding cd_6723.bin at raw offset 0x00011550 len 0x56f0 (end 0x16c40)
adding ce_1888.bin at raw offset 0x00016c40 len 0x56070 (end 0x6ccb0)
adding cf_4532.bin at raw offset 0x00070000 len 0x44c0 (end 0x744c0)
adding cg_4532.bin at raw offset 0x000744c0 len 0x2ef40 (end 0x80000, rest in fs)
adding cf_16203.bin at raw offset 0x00080000 len 0x4560 (end 0x84560)
adding cg_16203.bin at raw offset 0x00084560 len 0x75500 (end 0x90000, rest in fs)
adding freeboot.bin at raw offset 0x00090000 len 0xd80 (end 0x90d80)
adding patches_jasper.bin at raw offset 0x00091000 len 0x9a8 (end 0x919a8)
adding fuses.bin at raw offset 0x00095000 len 0x60 (end 0x95060)
adding xell-2f.bin at raw offset 0x00095060 len 0x40000 (end 0xd5060)
adding cb_6750.bin at raw offset 0x000d5060 len 0x9a40 (end 0xdeaa0)
adding cd_8453.bin at raw offset 0x000deaa0 len 0x5780 (end 0xe4220)
Fixing up FS table...done!
Writing zeropair CG patch slot overflow data to sysupdate.xexp1
at raw offset 0xe8000 len 0x00023400 (end: 0x0010b400)...done!
Writing target CG patch slot overflow data to sysupdate.xexp2
at raw offset 0xe8000 len 0x00069a60 (end: 0x00151a60)...done!


------ adding 28 firmware files ------
extracted SUPD\aac.xexp (0x14000 bytes) (crc32: 0x62924e10 ini: 0x62924e10)
adding as aac.xexp2 at raw offset 0x175a60 len 0x00014000 (end 0x00189a60)
extracted SUPD\bootanim.xex (0x61000 bytes) (crc32: 0xc8b660b2 ini: 0xc8b660b2)
adding as bootanim.xex at raw offset 0x18c000 len 0x00061000 (end 0x001ed000)
extracted SUPD\createprofile.xex (0xc000 bytes) (crc32: 0x9f6efee2 ini: 0x9f6efee2)
adding as createprofile.xex at raw offset 0x1ed000 len 0x0000c000 (end 0x001f9000)
extracted SUPD\dash.xex (0x59c000 bytes) (crc32: 0x18ea6c7e ini: 0x18ea6c7e)
adding as dash.xex at raw offset 0x1fc000 len 0x0059c000 (end 0x00798000)
extracted SUPD\deviceselector.xex (0xa000 bytes) (crc32: 0x75c32b5b ini: 0x75c32b5b)
adding as deviceselector.xex at raw offset 0x798000 len 0x0000a000 (end 0x007a2000)
extracted SUPD\gamerprofile.xex (0x1b000 bytes) (crc32: 0xec9746f7 ini: 0xec9746f7)
adding as gamerprofile.xex at raw offset 0x7a2000 len 0x0001b000 (end 0x007bd000)
extracted SUPD\hud.xex (0x1d000 bytes) (crc32: 0xabf19107 ini: 0xabf19107)
adding as hud.xex at raw offset 0x7bf000 len 0x0001d000 (end 0x007dc000)
extracted SUPD\huduiskin.xex (0x14000 bytes) (crc32: 0xf3563a5c ini: 0xf3563a5c)
adding as huduiskin.xex at raw offset 0x7dd000 len 0x00014000 (end 0x007f1000)
extracted SUPD\mfgbootlauncher.xex (0x8000 bytes) (crc32: 0x763c73fe ini: 0x763c73fe)
adding as mfgbootlauncher.xex at raw offset 0x7f4000 len 0x00008000 (end 0x007fc000)
extracted SUPD\minimediaplayer.xex (0xb000 bytes) (crc32: 0xda1d0a4a ini: 0xda1d0a4a)
adding as minimediaplayer.xex at raw offset 0x7fc000 len 0x0000b000 (end 0x00807000)
extracted SUPD\nomni.xexp (0xe000 bytes) (crc32: 0xaae9ad36 ini: 0xaae9ad36)
adding as nomni.xexp2 at raw offset 0x807000 len 0x0000e000 (end 0x00815000)
extracted SUPD\nomnifwk.xexp (0x2000 bytes) (crc32: 0xb3c2c31b ini: 0xb3c2c31b)
adding as nomnifwk.xexp2 at raw offset 0x816000 len 0x00002000 (end 0x00818000)
extracted SUPD\nomnifwm.xexp (0x5000 bytes) (crc32: 0xf69cf9fc ini: 0xf69cf9fc)
adding as nomnifwm.xexp2 at raw offset 0x81a000 len 0x00005000 (end 0x0081f000)
extracted SUPD\SegoeXbox-Light.xtt (0x6000 bytes) (crc32: 0xe0ee6049 ini: 0xe0ee6049)
adding as SegoeXbox-Light.xtt at raw offset 0x821000 len 0x00006000 (end 0x00827000)
extracted SUPD\signin.xex (0x16000 bytes) (crc32: 0xc1d7185d ini: 0xc1d7185d)
adding as signin.xex at raw offset 0x82a000 len 0x00016000 (end 0x00840000)
extracted SUPD\updater.xex (0x7000 bytes) (crc32: 0x19286110 ini: 0x19286110)
adding as updater.xex at raw offset 0x842000 len 0x00007000 (end 0x00849000)
extracted SUPD\vk.xex (0xb000 bytes) (crc32: 0xefcbab82 ini: 0xefcbab82)
adding as vk.xex at raw offset 0x84b000 len 0x0000b000 (end 0x00856000)
extracted SUPD\xam.xex (0x24f000 bytes) (crc32: 0xf8db3557 ini: 0xf8db3557)
adding as xam.xex at raw offset 0x857000 len 0x0024f000 (end 0x00aa6000)
reading .\xeBuild\16203\xenonclatin.xtt (0x11b000 bytes) (crc32: 0xd5d17ff5 ini: 0xd5d17ff5)
adding as xenonclatin.xtt at raw offset 0xaa7000 len 0x0011b000 (end 0x00bc2000)
extracted SUPD\xenonclatin.xttp (0x18000 bytes) (crc32: 0x7a507ad1 ini: 0x7a507ad1)
adding as xenonclatin.xttp2 at raw offset 0xbc3000 len 0x00018000 (end 0x00bdb000)
reading .\xeBuild\16203\xenonjklatin.xtt (0x1a8000 bytes) (crc32: 0xdde4a14c ini: 0xdde4a14c)
adding as xenonjklatin.xtt at raw offset 0xbdc000 len 0x001a8000 (end 0x00d84000)
extracted SUPD\xenonjklatin.xttp (0x7000 bytes) (crc32: 0xe2adddfb ini: 0xe2adddfb)
adding as xenonjklatin.xttp2 at raw offset 0xd84000 len 0x00007000 (end 0x00d8b000)
extracted SUPD\ximecore.xex (0x17000 bytes) (crc32: 0xe85e813b ini: 0xe85e813b)
adding as ximecore.xex at raw offset 0xd8b000 len 0x00017000 (end 0x00da2000)
reading .\xeBuild\16203\ximedic.xex (0x90000 bytes) (crc32: 0x1d992bfb ini: 0x1d992bfb)
adding as ximedic.xex at raw offset 0xda3000 len 0x00090000 (end 0x00e33000)
extracted SUPD\ximedic.xexp (0x2800 bytes) (crc32: 0xfb2bb58c ini: 0xfb2bb58c)
adding as ximedic.xexp2 at raw offset 0xe34000 len 0x00002800 (end 0x00e36800)
reading .\xeBuild\16203\..\launch.xex (0xc800 bytes)
adding as launch.xex at raw offset 0xe36800 len 0x0000c800 (end 0x00e43000)
reading .\xeBuild\16203\..\lhelper.xex (0x6000 bytes)
adding as lhelper.xex at raw offset 0xe44800 len 0x00006000 (end 0x00e4a800)
***** could not read file '..\launch.ini', skipping *****


------ adding 4 security files ------
<- Processing crl.bin ->
reading .\xeBuild\data\crl.bin (0xa00 bytes)
crl appears crypted, attempting to decrypt with CPU key...failed! Trying alternate key...success!
adding as crl.bin at raw offset 0xe50000 len 0x00000a00 (end 0x00e50a00)


<- Processing dae.bin ->
reading .\xeBuild\data\dae.bin (0xad30 bytes)
dae appears encrypted, attempting to decrypt with CPU key...failed! Attempting to decrypt with alternate key...
success!
adding as dae.bin at raw offset 0xe54000 len 0x0000ad30 (end 0x00e5ed30)


<- Processing extended.bin ->
reading .\xeBuild\data\extended.bin (0x4000 bytes)
adding as extended.bin at raw offset 0xe60000 len 0x00004000 (end 0x00e64000)


<- Processing secdata.bin ->
reading .\xeBuild\data\secdata.bin (0x400 bytes)
adding as secdata.bin at raw offset 0xe64000 len 0x00000400 (end 0x00e64400)


------ checking for Mobile*.dat ------
MobileB.dat found, adding from nanddump.bin
adding MobileB.dat as type 0x31 at raw offset 0xe68000 len 0x800 (end 0xe68800)
MobileC.dat found, adding from nanddump.bin
adding MobileC.dat as type 0x32 at raw offset 0xe6c000 len 0x200 (end 0xe6c200)
MobileD.dat found, adding from nanddump.bin
adding MobileD.dat as type 0x33 at raw offset 0xe70000 len 0x800 (end 0xe70800)
MobileE.dat found, adding from nanddump.bin
adding MobileE.dat as type 0x34 at raw offset 0xe74000 len 0x600 (end 0xe74600)
Statistics.settings found, adding from nanddump.bin
adding Statistics.settings at raw offset 0xf78000 len 0x1000 (end 0xf79000)


------ adding smc_config.bin ------
adding smc config to offset 0x00f7c000, len 0x400


------ finalizing image ------
Fixing up empty FS block entries...done!
Writing FS table to image offset 0xe78000 len 0x4000 (end 0xe7c000)...done!
fixing up big block controller on small block NAND LBA numbers...done!
calculating ECD bytes and assembling raw image...done!
writing file 'C:\Users\Trippy\Desktop\New folder\J-Runner v02 Beta (288) Core Pack\J-Runner v02 Beta (288) Core Pack\313275792305\updflash.bin' to disk...done!
C:\Users\Trippy\Desktop\New folder\J-Runner v02 Beta (288) Core Pack\J-Runner v02 Beta (288) Core Pack\313275792305\updflash.bin written OK


---------------------------------------------------------------
C:\Users\Trippy\Desktop\New folder\J-Runner v02 Beta (288) Core Pack\J-Runner v02 Beta (288) Core Pack\313275792305\updflash.bin image built, info:
---------------------------------------------------------------
Console : Jasper
NAND size : 16MiB
Build : JTAG
Xell : power on console with console eject button
Serial : 313275792305
ConsoleId : 016893714706
MoboSerial: 792183A123089235
Mfg Date : 06/02/2009
CPU Key : E159739176961B9D383FA1309E7CEA98
1BL Key : DD88AD0C9ED669E7B56794FB68563EFA
DVD Key : 09749B4BA7822E6964BA13A24F00A4B4
CF LDV : 5
KV type : type2 (hashed)
---------------------------------------------------------------
xeBuild Finished. Have a nice day.
---------------------------------------------------------------


Ignore the cr_en wire, its not installed anymore











Description of problem:

tried every setting possible (i think) but just cant get jtag image to boot, stock nand still boots perfectly. used both underside and top option for cpu_rst

Was the console working before you started: Y
 
Last edited:

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
Have you gone through all DIP settings from 1-6, one at a time?
i just did again. setup the console settings to the tx guide. then set on dips 7 & 8 and one at a time tried with 6 - 1. i did this for all 3 r-jtag voltage settings (default, 1.2 & 1.8)

still no boot
 

akawtu

Full Member
Dec 13, 2012
98
0
UK
The J-Runner screenshot shows 16203 and 15574 but the LDV is at 5 and 4.

Could that be the problem?
 

trippy86

VIP Member
Nov 30, 2011
597
33
London
www.youtube.com
isnt really a delay

here i uploaded a video while using post monitor

[video=youtube;_JtXkg4RLZY]http://www.youtube.com/watch?v=_JtXkg4RLZY[/video]​