RGH create glitch image with no original dump

moody_007

Full Member
Oct 21, 2012
63
0
hello guys i have corona v4 its drive me crazy it was Lifted Alt CPU_RST point FT3T10 i already fixed it by using the other point on the topside wrote the correct ecc to nand booted to xell successfully and got my LDV it was FF000000.... aka "2" so i used Martin's TUT how to build image i made the glitch image with latest Glitch Dash 16547 and wrote the correct CPU key but when i write the glitch image the Cool Runner debug light starts but its not the normal way its debugging every 2-3 sec it looks like i don't bridge the R2C6 & R2C7 but when i write the ECC again it glitch normally 4-5 sec and boot to xell every time, wrote the glitch again infinity glitch with 2-3 debug light i will post logs when i reach my pc im outside now but did anyone have any idea on this case
i don't care about the retail i want it to be Glitch

Logs
******* WARNING: could not verify pre-decrypted keyvault, please be sure your provided a valid kv.bin!

******WARNING: 'data\fcrt.bin' is a 0 byte file, loading skipped!


***** ERROR: fcrt.bin not found, keyvault has this file flagged as required but it's being skipped *****
note - on hacked images a nofcrt patch should allow the drive and machine to function
---------------------------------------------------------------
C:\Users\USER\Downloads\Compressed\J-Runner v02 Beta (284) Core Pack\J-Runner v02 Beta (284) Core Pack\J-Runner v02 Beta (284) Core Pack\output\115842710708\updflash.bin image built, info:
---------------------------------------------------------------
Kernel : 2.0.16547.0
Console : Corona
NAND size : 48MiB MMC (system only)
Build : Glitch (v2)
Xell : power on console with console eject button
Serial : 115842710708
ConsoleId : 006424880596
MoboSerial: 9827353204211078
Mfg Date : 02/12/2011
CPU Key : 11111111111111111111111111111111
1BL Key : DD88AD0C9ED669E7B56794FB68563EFA
DVD Key : 1AE8A7925F30099FA936818B27D91E9B
CF LDV : 2
KV type : type2 (hashed - unchecked, master key not available)
---------------------------------------------------------------
xeBuild Finished. Have a nice day.
 
Last edited:

moody_007

Full Member
Oct 21, 2012
63
0
There is absolutely no way you have that as your CPU key.
if you mean that the 11111 cpu key i already know that im not an idiot to write that cpu key i edited it, I already said in OP that i booted to xell and grabbed my CORRECT CPU_KEY and made the glitch image
 

Slayertex6

VIP Member
Jan 30, 2011
1,199
0
Galveston, Texas
Back in the day, you could swap kv's or spoof them. Not possible nowadays. With your cpukey, stock or RGH, it will only work with the cpu it came from anyways.
 

Martin C

VIP Member
Jan 10, 2004
35,981
0
Scotland, UK
www.team-xecuter.com
if you mean that the 11111 cpu key i already know that im not an idiot to write that cpu key i edited it, I already said in OP that i booted to xell and grabbed my CORRECT CPU_KEY and made the glitch image
Then please fill out the help template to include images of your soldering etc.
 

moody_007

Full Member
Oct 21, 2012
63
0
apologize right now i don't have a camera to take pics for my soldering i will when i get it but can anybody make me a Corona 4gb rgh2 image with my cpu key and ldv

89BB250B5D9470C595DC47BB3CB04698
LDV 2
i appreciate it
 

playingmax

Staff member
Troll Eating Dogs
apologize right now i don't have a camera to take pics for my soldering i will when i get it but can anybody make me a Corona 4gb rgh2 image with my cpu key and ldv



i appreciate it
NO! we cant.

like martin said "Then please fill out the help template to include images of your soldering etc."

help us help you!
 

moody_007

Full Member
Oct 21, 2012
63
0
sorry for delay here is my soldering pics
i know my cpu rst is too long but its boot to xell in in 30 sec or less also i already tried shorter cpu_rst on the other 2 points

here is my cpu rst fixed trace by the topside point

IMG_1396.jpg

IMG_1398.jpg

IMG_1397.jpg

IMG_1399.jpg

------ adding 5 security files ------<- Processing crl.bin ->
reading data\crl.bin (0xa00 bytes)
crl appears crypted, attempting to decrypt with CPU key...failed! Trying alternate key...success!
adding as crl.bin at raw offset 0xe30000 len 0x00000a00 (end 0x00e30a00)


<- Processing dae.bin ->
reading data\dae.bin (0xad30 bytes)
dae appears encrypted, attempting to decrypt with CPU key...failed! Attempting to decrypt with alternate key...
success!
adding as dae.bin at raw offset 0xe34000 len 0x0000ad30 (end 0x00e3ed30)


<- Processing extended.bin ->
reading data\extended.bin (0x4000 bytes)
adding as extended.bin at raw offset 0xe40000 len 0x00004000 (end 0x00e44000)


<- Processing fcrt.bin ->


******WARNING: 'data\fcrt.bin' is a 0 byte file, loading skipped!




***** ERROR: fcrt.bin not found, keyvault has this file flagged as required but it's being skipped *****
note - on hacked images a nofcrt patch should allow the drive and machine to function


<- Processing secdata.bin ->
reading data\secdata.bin (0x400 bytes)
adding as secdata.bin at raw offset 0xe44000 len 0x00000400 (end 0x00e44400)


------ checking for Mobile*.dat ------


------ adding smc_config.bin ------
adding smc config to offset 0x02ffc000, len 0x400


------ finalizing image ------
Fixing up empty FS block entries...done!
Writing FS table to image offset 0xe48000 len 0x4000 (end 0xe4c000)...done!
copying anchor block 1 to offset 0x2fe8000
copying anchor block 2 to offset 0x2fec000


------ writing image to disk ------
writing file 'D:\Jrunner\output\001292715109\updflash.bin' to disk...done!
---------------------------------------------------------------
D:\Jrunner\output\001292715109\updflash.bin image built, info:
---------------------------------------------------------------
Kernel : 2.0.16547.0
Console : Corona
NAND size : 48MiB MMC (system only)
Build : Glitch (v2)
Xell : power on console with console eject button
Serial : 001292715109
ConsoleId : 548660104431
MoboSerial: 9910251200241509
Mfg Date : 12/12/2011
CPU Key : 89BB250B5D9470C595DC47BB3CB04698
1BL Key : DD88AD0C9ED669E7B56794FB68563EFA
DVD Key : F36BAF798F859295CACA5F47D324F6C8
CF LDV : 2
KV type : type2 (hashed - unchecked, master key not available)
---------------------------------------------------------------
xeBuild Finished. Have a nice day.
---------------------------------------------------------------
and here is the xell com port showing my correct CPU KEY & LDV

fuseset 00: c0fffffffffffffffuseset 01: 0f0f0f0f0f0ff0f0
fuseset 02: 000f000000000000
fuseset 03: 89bb250b5d9470c5
fuseset 04: 89bb250b5d9470c5
fuseset 05: 95dc47bb3cb04698
fuseset 06: 95dc47bb3cb04698
fuseset 07: ff00000000000000
fuseset 08: 0000000000000000
fuseset 09: 0000000000000000
fuseset 10: 0000000000000000
fuseset 11: 0000000000000000


* your cpu key: 89BB250B5D9470C595DC47BB3CB04698
! kv_get_dvd_key Failure: kv_read
 

ezzda1

VIP Member
Jul 8, 2009
773
0
Bolton, UK
I think you're missing a few pictures. You need to post a pic of every point you have soldered to and a clear picture of the coolrunner.
 

15432

VIP Member
Nov 14, 2010
703
68
Russia

unkn0wn.92

VIP Member
Jun 30, 2011
662
48
AMM,Jordan
RLY? CPU Key spoof is still possible. You can use it (and kv), then go to Live on Freeboot and get BAN
For example, this freeboot image will works or ANY corona (yes, topic starter can write this and check):
http://dfiles.ru/files/e25m7p5yi (4GB)
http://dfiles.ru/files/4gzpw8tvm (16BM)
Im with you about spoofig kv on rgh'd consoles but the freeboot you uploaded is empty it doesn't have any kv data so it useless it won't let the console to glitch