TEMPLATE
PRODUCT USED - CR4 XL
CONSOLE TYPE - TRINITY
NAND SIZE - 16MB
DASHBOARD VERSION - 17150
CB VERSION - ?
WAS CONSOLE WORKING BEFORE - YES
DOES GREEN LIGHT APPEAR ON CR4 - NO
base path changed to C:\Documents and Settings\Laptop\Desktop\xbox slim\J-RUNNER\xeBuild
---- { Image Build Mode } ----
building glitch2 image
<enter> key on completion suppressed
data directory overridden from command line to '17150\'
per build directory overridden from command line to 'data\'
file name overridden from command line to 'C:\Documents and Settings\Laptop\Desktop\XBOX JTAG\J-RUNNER\150597103205\updflash.bin'
------ parsing user ini at 'data\options.ini' ------
loading file...done!
pre-parsing and sanitizing
done!
User options.ini loaded, 0x1a0 bytes in memory
loading cpukey.txt from data\cpukey.txt
CPU Key set to: 0x12A8A48DF3BCC52FA9FEC20B1CAEA7 (weight:0x35 valid; ecd: valid)
setting 1blkey from ini: 0xDD88AD0C9ED669E7B56794FB63EFA
1BL Key set to : 0xDD88AD0C9ED669E7B56794FB63EFA sum: 0x983 (expects: 0x983)
xex Key set to : 0x20B185A59D28FDC340583FBB08991 sum: 0x800 (expects: 0x800)
Using patchsmc option (ini file)
------ parsing ini at '17150\_glitch2.ini' ------
ini version 17150
ini: label [trinitybl] found
found (1) 'cba_9188.bin' crc: 0x5a76752d
found (2) 'cbb_9188.bin' crc: 0xfebb1074
found (3) 'cd_9452.bin' crc: 0x455fa02c
found (4) 'ce_1888.bin' crc: 0xff9b60df
found (5) 'cf_17150.bin' crc: 0x0a774268
found (6) 'cg_17150.bin' crc: 0xbe8ac817
ini dictates dual CB for this model
ini: label [flashfs] found
found (1) 'aac.xexp' crc: 0x899d7c53
found (2) 'bootanim.xex' crc: 0xe76c8e84
found (3) 'createprofile.xex' crc: 0x76c0f2c7
found (4) 'dash.xex' crc: 0xe1f07b1b
found (5) 'deviceselector.xex' crc: 0x99aff203
found (6) 'gamerprofile.xex' crc: 0x06185dc9
found (7) 'hud.xex' crc: 0x9f8dade0
found (8) 'huduiskin.xex' crc: 0xb186c353
found (9) 'mfgbootlauncher.xex' crc: 0xcb0b86e3
found (10) 'minimediaplayer.xex' crc: 0x81bb6500
found (11) 'nomni.xexp' crc: 0x7adef6f6
found (12) 'nomnifwk.xexp' crc: 0x6d7543f5
found (13) 'nomnifwm.xexp' crc: 0xa8a27e56
found (14) 'SegoeXbox-Light.xtt' crc: 0xe0ee6049
found (15) 'signin.xex' crc: 0x6dd20623
found (16) 'updater.xex' crc: 0x018dad7d
found (17) 'vk.xex' crc: 0x3edc0dbb
found (18) 'xam.xex' crc: 0x68767303
found (19) 'xenonclatin.xtt' crc: 0xd5d17ff5
found (20) 'xenonclatin.xttp' crc: 0x7a507ad1
found (21) 'xenonjklatin.xtt' crc: 0xdde4a14c
found (22) 'xenonjklatin.xttp' crc: 0xe2adddfb
found (23) 'ximecore.xex' crc: 0x6f9e8b97
found (24) 'ximedic.xex' crc: 0x1d992bfb
found (25) 'ximedic.xexp' crc: 0x1a4863a4
ini: label [security] found
found (1) 'crl.bin' crc: 0x00000000
found (2) 'dae.bin' crc: 0x00000000
found (3) 'extended.bin' crc: 0x00000000
found (4) 'fcrt.bin' crc: 0x00000000
found (5) 'secdata.bin' crc: 0x00000000
------ ini parsing completed ------
output name overridden to: C:\Documents and Settings\Laptop\Desktop\XBOX JTAG\J-RUNNER\150597103205\updflash.bin
1BL RSA pub key file is not available, signature checks will not be performed
PIRS RSA pub key file is not available, signature checks will not be performed
MASTER RSA pub key file is not available, signature checks will not be performed
------ Checking data\nanddump.bin ------
data\nanddump.bin file size: 0x1080000
nanddump header checks passed OK!
Loading NAND dump (0x1080000 bytes)...done!
Detecting NAND controller type from dump data...
NAND dump is from a small block machine
NAND dump uses big block controller
parsing dump into user and spare...
done!
decrypting KeyVault at address 0x4000 of size 0x4000
keyvault decrypted OK, will use if no kv.bin is provided
decrypting SMC at address 0x1000 of size 0x3000
SMC decrypted OK, will use if no external smc.bin is provided
seeking smc config in dump...found at offset 0xf7c000! Using if no smc config is provided.
CF slot 0 decrypted ok LDV 0x0b Pairing: 0xfc351c
CF slot 1 decrypted ok LDV 0x0c Pairing: 0xfc351c
setting LDV from image to 12
setting pairing data from image to 0xfc351c
pairing set to: fc 35 1c
MobileB.dat found at block 0xc8, page 0x8 (page 0x1908), size 2048 (0x800) bytes
MobileC.dat found at block 0x113, page 0x18 (page 0x2278), size 512 (0x200) bytes
MobileD.dat found at block 0x7a, page 0x8 (page 0xf48), size 2048 (0x800) bytes
MobileE.dat found at block 0xad, page 0x14 (page 0x15b4), size 2048 (0x800) bytes
Statistics.settings found at page 0x7bc0, size 4096 (0x1000) bytes
seeking FSRoot...fsroot found at block 0xa3, page 0x0 (page 0x1460) raw offset 0x1460
seeking security files...
crl.bin found in sector 0x10b size 0xa00...verified! Will use if external file not found.
dae.bin found in sector 0x106 size 0xde60...verified! Will use if external file not found.
extended.bin found in sector 0xb6 size 0x4000...verified! Will use if external file not found.
secdata.bin found in sector 0x104 size 0x400...verified! Will use if external file not found.
done!
Writing initial header to flash image
------ loading system update container ------
17150\su20076000_00000000 found, loading...done!
Read 0xb37000 bytes to memory
checking integrity...
header seems valid, version 2.0.17150.0
header hash is OK, checking content hashes...
content hashes seem OK, everything looks good!
extracted SUPD\xboxupd.bin (0x79fe0 bytes)
decrypting SUPD\xboxupd.bin\CF_17150.bin (0x4560 bytes)...done!
decrypting SUPD\xboxupd.bin\CG_17150.bin (0x75a80 bytes)...done!
------ Loading bootloaders and required security files ------
reading data\SMC.bin (0x3000 bytes)
reset smc load address to 0x1000 size 0x3000
reading data\kv.bin failed, using kv.bin from nand dump
reading .\common\cba_9188.bin (0x1ac0 bytes)
loaded cba_9188.bin, could not check signature rsa key not present!
reading .\common\cbb_9188.bin (0x7800 bytes)
reading .\common\cd_9452.bin (0x4f20 bytes)
reading .\common\ce_1888.bin (0x5606a b pad 0x56070 b)
reading data\xell-gggggg.bin (0x40000 bytes)
extracted SUPD\xboxupd.bin\CF_17150.bin (0x4560 bytes)
extracted SUPD\xboxupd.bin\CG_17150.bin (0x75a80 bytes)
reading 17150\bin\patches_g2trinity.bin (0x910 bytes)
reading data\smc_config.bin failed, using smc_config.bin from nand dump
-------------------
checking smc_config
-------------------
extracting config
------------------
SMC config info:
------------------
Target temps: Cpu: 82øC Gpu: 78øC Edram: 76øC
Max temps : Cpu: 89øC Gpu: 82øC Edram: 82øC
Cpu Fan : (auto)
Gpu Fan : (auto)
MAC Address : 00:25:ae:eb:ed:fd
AVRegion : 0x00000300 (PAL50)
GameRegion : 0x02fe (PAL/EU)
DVDRegion : 2
resetKey : LLDX
---------------------
Checking for smc config data patches
smc config was not patched
---------------------
could not check signature of cba_9188.bin, 1BL RSA key not present!
done!
patch slot offset reset to: 0xb0000
------ Patching BLs and modifying patches ------
Patching BLs...Done!
------ Patching boot reasons and options into flash header ------
Patching header for xell power reason
------ Encrypting and finalizing bootloaders ------
encoding SMC.bin size 0x3000
SMC checksum: c69f53a0
unknown SMC found, type: Xenon v1.2(1.51)
patching SMC reset limit at offset: 0x1180
SMC reset limit patched successfully!
encoding kv.bin size 0x4000
decrypted keyvault has been set for reference
Master RSA pub not available, not checking hash
encoding cba_9188.bin size 0x1ac0
encoding cbb_9188.bin size 0x7800
CB 9188 seq 0x03010001 type: 0x03 cseq: 0x01 allow: 0x0001
expected fuses:
fuseset 00: C0FFFFFFFFFFFFFF
fuseset 01: 0F0F0F0F0F0FF0F0 (retail slim)
fuseset 02: F000000000000000 (sequence)
fuseset 02: F000000000000000 (allow cseq 1)
**dual CB flag detected!**
encoding cd_9452.bin size 0x5290
encoding ce_1888.bin size 0x56070
encoding xell-gggggg.bin size 0x40000
encoding cf_17150.bin size 0x4560
encoding cg_17150.bin size 0x75a80
encoding patches_g2trinity.bin size 0x544
done!
------ Adding bootloaders to flash image ------
adding SMC.bin at raw offset 0x00001000 len 0x3000 (end 0x4000)
adding kv.bin at raw offset 0x00004000 len 0x4000 (end 0x8000)
adding cba_9188.bin at raw offset 0x00008000 len 0x1ac0 (end 0x9ac0)
adding cbb_9188.bin at raw offset 0x00009ac0 len 0x7800 (end 0x112c0)
adding cd_9452.bin at raw offset 0x000112c0 len 0x5290 (end 0x16550)
adding ce_1888.bin at raw offset 0x00016550 len 0x56070 (end 0x6c5c0)
adding xell-gggggg.bin at raw offset 0x00070000 len 0x40000 (end 0xb0000)
adding cf_17150.bin at raw offset 0x000b0000 len 0x4560 (end 0xb4560)
adding cg_17150.bin at raw offset 0x000b4560 len 0x75a80 (end 0xc0000, rest in fs)
adding patches_g2trinity.bin at raw offset 0x000c0010 len 0x544 (end 0xc0554)
Fixing up FS table...done!
Writing zeropair CG patch slot overflow data to sysupdate.xexp1
at raw offset 0xd0000 len 0x00069fe0 (end: 0x00139fe0)...done!
------ adding 25 firmware files ------
extracted SUPD\aac.xexp (0x14000 bytes) (crc32: 0x899d7c53 ini: 0x899d7c53)
adding as aac.xexp1 at raw offset 0x139fe0 len 0x00014000 (end 0x0014dfe0)
extracted SUPD\bootanim.xex (0x61000 bytes) (crc32: 0xe76c8e84 ini: 0xe76c8e84)
adding as bootanim.xex at raw offset 0x150000 len 0x00061000 (end 0x001b1000)
extracted SUPD\createprofile.xex (0xc000 bytes) (crc32: 0x76c0f2c7 ini: 0x76c0f2c7)
adding as createprofile.xex at raw offset 0x1b1000 len 0x0000c000 (end 0x001bd000)
extracted SUPD\dash.xex (0x59b000 bytes) (crc32: 0xe1f07b1b ini: 0xe1f07b1b)
adding as dash.xex at raw offset 0x1c0000 len 0x0059b000 (end 0x0075b000)
extracted SUPD\deviceselector.xex (0xa000 bytes) (crc32: 0x99aff203 ini: 0x99aff203)
adding as deviceselector.xex at raw offset 0x75b000 len 0x0000a000 (end 0x00765000)
extracted SUPD\gamerprofile.xex (0x1b000 bytes) (crc32: 0x06185dc9 ini: 0x06185dc9)
adding as gamerprofile.xex at raw offset 0x766000 len 0x0001b000 (end 0x00781000)
extracted SUPD\hud.xex (0x1d000 bytes) (crc32: 0x9f8dade0 ini: 0x9f8dade0)
adding as hud.xex at raw offset 0x783000 len 0x0001d000 (end 0x007a0000)
extracted SUPD\huduiskin.xex (0x14000 bytes) (crc32: 0xb186c353 ini: 0xb186c353)
adding as huduiskin.xex at raw offset 0x7a1000 len 0x00014000 (end 0x007b5000)
extracted SUPD\mfgbootlauncher.xex (0x8000 bytes) (crc32: 0xcb0b86e3 ini: 0xcb0b86e3)
adding as mfgbootlauncher.xex at raw offset 0x7b8000 len 0x00008000 (end 0x007c0000)
extracted SUPD\minimediaplayer.xex (0xc000 bytes) (crc32: 0x81bb6500 ini: 0x81bb6500)
adding as minimediaplayer.xex at raw offset 0x7c0000 len 0x0000c000 (end 0x007cc000)
extracted SUPD\nomni.xexp (0xc800 bytes) (crc32: 0x7adef6f6 ini: 0x7adef6f6)
adding as nomni.xexp1 at raw offset 0x7cc000 len 0x0000c800 (end 0x007d8800)
extracted SUPD\nomnifwk.xexp (0x2000 bytes) (crc32: 0x6d7543f5 ini: 0x6d7543f5)
adding as nomnifwk.xexp1 at raw offset 0x7d8800 len 0x00002000 (end 0x007da800)
extracted SUPD\nomnifwm.xexp (0x5000 bytes) (crc32: 0xa8a27e56 ini: 0xa8a27e56)
adding as nomnifwm.xexp1 at raw offset 0x7de000 len 0x00005000 (end 0x007e3000)
extracted SUPD\SegoeXbox-Light.xtt (0x6000 bytes) (crc32: 0xe0ee6049 ini: 0xe0ee6049)
adding as SegoeXbox-Light.xtt at raw offset 0x7e5000 len 0x00006000 (end 0x007eb000)
extracted SUPD\signin.xex (0x19000 bytes) (crc32: 0x6dd20623 ini: 0x6dd20623)
adding as signin.xex at raw offset 0x7ee000 len 0x00019000 (end 0x00807000)
extracted SUPD\updater.xex (0x7000 bytes) (crc32: 0x018dad7d ini: 0x018dad7d)
adding as updater.xex at raw offset 0x809000 len 0x00007000 (end 0x00810000)
extracted SUPD\vk.xex (0xb000 bytes) (crc32: 0x3edc0dbb ini: 0x3edc0dbb)
adding as vk.xex at raw offset 0x813000 len 0x0000b000 (end 0x0081e000)
extracted SUPD\xam.xex (0x253000 bytes) (crc32: 0x68767303 ini: 0x68767303)
adding as xam.xex at raw offset 0x81f000 len 0x00253000 (end 0x00a72000)
extracted nanddump\xenonclatin.xtt (0x11b000 bytes) (crc32: 0xd5d17ff5 ini: 0xd5d17ff5)
adding as xenonclatin.xtt at raw offset 0xa73000 len 0x0011b000 (end 0x00b8e000)
extracted SUPD\xenonclatin.xttp (0x18000 bytes) (crc32: 0x7a507ad1 ini: 0x7a507ad1)
adding as xenonclatin.xttp1 at raw offset 0xb8f000 len 0x00018000 (end 0x00ba7000)
extracted nanddump\xenonjklatin.xtt (0x1a8000 bytes) (crc32: 0xdde4a14c ini: 0xdde4a14c)
adding as xenonjklatin.xtt at raw offset 0xba8000 len 0x001a8000 (end 0x00d50000)
extracted SUPD\xenonjklatin.xttp (0x7000 bytes) (crc32: 0xe2adddfb ini: 0xe2adddfb)
adding as xenonjklatin.xttp1 at raw offset 0xd50000 len 0x00007000 (end 0x00d57000)
extracted SUPD\ximecore.xex (0x17000 bytes) (crc32: 0x6f9e8b97 ini: 0x6f9e8b97)
adding as ximecore.xex at raw offset 0xd57000 len 0x00017000 (end 0x00d6e000)
extracted nanddump\ximedic.xex (0x90000 bytes) (crc32: 0x1d992bfb ini: 0x1d992bfb)
adding as ximedic.xex at raw offset 0xd6f000 len 0x00090000 (end 0x00dff000)
extracted SUPD\ximedic.xexp (0x2800 bytes) (crc32: 0x1a4863a4 ini: 0x1a4863a4)
adding as ximedic.xexp1 at raw offset 0xe00000 len 0x00002800 (end 0x00e02800)
------ adding 5 security files ------
<- Processing crl.bin ->
reading data\crl.bin (0xa00 bytes)
crl appears crypted, attempting to decrypt with CPU key...failed! Trying alternate key...success!
adding as crl.bin at raw offset 0xe04000 len 0x00000a00 (end 0x00e04a00)
<- Processing dae.bin ->
reading data\dae.bin (0xad30 bytes)
dae appears encrypted, attempting to decrypt with CPU key...failed! Attempting to decrypt with alternate key...
success!
adding as dae.bin at raw offset 0xe08000 len 0x0000ad30 (end 0x00e12d30)
<- Processing extended.bin ->
reading data\extended.bin (0x4000 bytes)
adding as extended.bin at raw offset 0xe14000 len 0x00004000 (end 0x00e18000)
<- Processing fcrt.bin ->
fcrt.bin not found and not required by keyvault, skipped
<- Processing secdata.bin ->
reading data\secdata.bin (0x400 bytes)
adding as secdata.bin at raw offset 0xe18000 len 0x00000400 (end 0x00e18400)
------ checking for Mobile*.dat ------
MobileB.dat found, adding from previous parse
adding MobileB.dat as type 0x31 at raw offset 0xe1c000 len 0x800 (end 0xe1c800)
MobileC.dat found, adding from previous parse
adding MobileC.dat as type 0x32 at raw offset 0xe20000 len 0x200 (end 0xe20200)
MobileD.dat found, adding from previous parse
adding MobileD.dat as type 0x33 at raw offset 0xe24000 len 0x800 (end 0xe24800)
MobileE.dat found, adding from previous parse
adding MobileE.dat as type 0x34 at raw offset 0xe28000 len 0x800 (end 0xe28800)
Statistics.settings found, adding from previous parse
adding Statistics.settings at raw offset 0xf78000 len 0x1000 (end 0xf79000)
------ adding smc_config.bin ------
adding smc config to offset 0x00f7c000, len 0x400
------ finalizing image ------
Fixing up empty FS block entries...done!
Writing FS table to image offset 0xe2c000 len 0x4000 (end 0xe30000)...done!
fixing up big block controller on small block NAND LBA numbers...done!
calculating ECD bytes and assembling raw image...done!
done remapping!
------ writing image to disk ------
writing file 'C:\Documents and Settings\Laptop\Desktop\XBOX JTAG\J-RUNNER\150597103205\updflash.bin' to disk...done!
---------------------------------------------------------------
C:\Documents and Settings\Laptop\Desktop\XBOX JTAG\J-RUNNER\150597103205\updflash.bin image built, info:
---------------------------------------------------------------
Kernel : 2.0.17150.0
Console : Trinity
NAND size : 16MiB
Build : Glitch (v2)
Xell : power on console with console eject button
Serial : 150597103205
ConsoleId : 022468316136
MoboSerial: 725626D211880315
Mfg Date : 08/01/2010
CPU Key : 12A8A48DF3BCC527*********
1BL Key : DD88AD*******************
DVD Key : EF7B7C3AC7B314C59********
CF LDV : 12
KV type : type2 (hashed - unchecked, master key not available)
---------------------------------------------------------------
xeBuild Finished. Have a nice day.
---------------------------------------------------------------
the problem i am having is that i installed the chip booted to xell got the cpu key and made freeboot image, when it asked to delete smc.bin i said no and it produced a udpflash, i placed this on a pen drive and in the xbox using xell to flash once complete i turned off the box like it asked, when i came to start up it would no longer power at all sounds like a bad flash how do i recover from this, i used lpt flasher to flash the nand in the first place but now i am only getting cannot detect flash controller. it was working up until flashing udpflash, even set the tuning on the chip to one glitch