RGH HELP

broomy79

Junior Member
Dec 11, 2011
17
0
Hi guys, i am need in a bit of help.

Over the last few weeks i have read all of the tuts associated with RGH ready for the delivery of some xecuter coolruner chips.
I have now succesfuuly done the hack on 4 consoles with no problem.

2 X falcons
1 x 512 Jasper and 1 x 16mb Jasper

Here is my problem.
I have just decided to do my own spare 360 which is a previously banned console.
Looking at the power it tells me its a jasper but when i went into console settings and memory it showed no internal memory therefore rightly or wrongly i presumed it to be a 16mb Jasper.

I read 2 clean dumps which i have saved. both were compared and identical i created the ecc through 360 multi builder v4 and wrote this back to the nand. Installed and flashed the coolrunner. Console booted to xell got my cpu key so all was going well.
I inserted the cpukey into notepad and saved to my360 in multibuilder, dropped in my orginal nand dump and ran 360 multi builder hoping that as normal it would generate the 2 files needed for a usb flash drive to complete the hack but instead i got this message................

--------------------------------------------------------------
ggBuild v0.33.273
---------------------------------------------------------------
data directory overridden from command line to '13604'
per build directory overridden from command line to 'my360'
file name overridden from command line to 'nandflash.bin'

------ parsing user ini at '.\my360\options.ini' ------
loading file...done!
pre-parsing and sanitizing
done!
User options.ini loaded, 0xe6 bytes in memory
loading cpukey.txt from .\my360\cpukey.txt
CPU Key set to: 0x552B751B72705BE0D47D17138B30DAA0
setting 1blkey from ini: 0xDD88AD0C9ED669E7B56794FB68563EFA
1BL Key set to: 0xDD88AD0C9ED669E7B56794FB68563EFA sum: 0x983 (expects: 0x983)
Using nonandmu option (ini file)
Using patchsmc option (ini file)

------ Checking .\my360\nanddump.bin ------
Loading NAND dump...done!
NAND dump is from a small block machine
NAND dump uses big block controller
parsing dump into user and spare...
done!
decrypting KeyVault at address 0x4000 of size 0x4000
keyvault decrypt failed, discarding
decrypting SMC at address 0x1000 of size 0x3000
SMC decrypted OK, will use if no external smc.bin is provided
seeking smc config in dump...found at offset 0xf7c000! Using if no smc config is provided.
CF slot 0 decrypted ok LDV 0x05 Pairing: 0x509d53
setting LDV from image to 5
setting pairing data from image to 0x509d53
MobileB.dat found at page 0x70dc, size 2048 (0x800) bytes
MobileC.dat found at page 0x6960, size 512 (0x200) bytes
MobileD.dat found at page 0x4e0, size 2048 (0x800) bytes
MobileE.dat found at page 0x4540, size 2048 (0x800) bytes

------ parsing ini at '.\13604\filelist.ini' ------
ini version 13604

ini: label [jasperbl] found
found (1) 'cb_6750.bin' crc: 0xf7afa8cc
found (2) 'cb_bnone.bin' crc: 0x00000000
found (3) 'cd_8453.bin' crc: 0x25e0acd0
found (4) 'ce_1888.bin' crc: 0xff9b60df
found (5) 'cf_13604.bin' crc: 0x639a4cd7
found (6) 'cg_13604.bin' crc: 0x7e9f5364

ini: label [flashfs] found
found (1) 'aac.xexp' crc: 0xdaed8bc7
found (2) 'bootanim.xex' crc: 0x8a7ab1b4
found (3) 'createprofile.xex' crc: 0xe19ca8c4
found (4) 'dash.xex' crc: 0xecdaf6c0
found (5) 'deviceselector.xex' crc: 0xaa4579d1
found (6) 'gamerprofile.xex' crc: 0xebc5fec3
found (7) 'hud.xex' crc: 0xe2410ee1
found (8) 'huduiskin.xex' crc: 0x390eac39
found (9) 'mfgbootlauncher.xex' crc: 0xf3637ed9
found (10) 'minimediaplayer.xex' crc: 0x23d28bb8
found (11) 'nomni.xexp' crc: 0xed7cd3f5
found (12) 'nomnifwk.xexp' crc: 0x2c6fd7e8
found (13) 'nomnifwm.xexp' crc: 0xaa978831
found (14) 'signin.xex' crc: 0xf7436a62
found (15) 'updater.xex' crc: 0xd0cd6753
found (16) 'vk.xex' crc: 0x65f4eec0
found (17) 'xam.xex' crc: 0x2a74ee0f
found (18) 'xenonclatin.xtt' crc: 0xd5d17ff5
found (19) 'xenonclatin.xttp' crc: 0x7a507ad1
found (20) 'xenonjklatin.xtt' crc: 0xdde4a14c
found (21) 'xenonjklatin.xttp' crc: 0x945b7092
found (22) 'ximecore.xex' crc: 0xccb87938
found (23) 'ximedic.xex' crc: 0x1d992bfb
found (24) 'ximedic.xexp' crc: 0x47a55af9
found (25) 'launch.xex' crc: 0x00000000
found (26) 'lhelper.xex' crc: 0x00000000

ini: label [security] found
found (1) 'crl.bin' crc: 0x00000000
found (2) 'dae.bin' crc: 0x00000000
found (3) 'extended.bin' crc: 0x00000000
found (4) 'fcrt.bin' crc: 0x00000000
found (5) 'secdata.bin' crc: 0x00000000
------ ini parsing completed ------

output name overridden to: nandflash.bin

Writing initial header to flash image

------ Loading bootloaders and required security files ------
reading .\my360\smc.bin failed, using smc.bin from nand dump


**** could not read kv.bin (-1) ****

******* ERROR: critical bootloader files are missing, cannot proceed!



***** FATAL BUILD ERROR: -1 unable to complete NAND image

---------------------------------------------------------------
ggBuild Finished. Have a nice day.
---------------------------------------------------------------

My soldering is good as i am pretty competent at it and obviously the coolrunner is working.

I just need to know what i need to do to overcome this problem.
I have the original nands and cpukey.txt if anyone could have a look at it for me.
I have looked at how to extract the kv.bin but to be honest its just over my head due to the fact that my head is just burned out with this.
Have i read the wrong size nand, should i have read 256mb?
Can i read the nand again even thought i have written the ecc image to it?

if anyone can help me they can have a falcon motherboard that is suffering from RROD but due to bad system update. I will post it out first class i think it maybe just needs someone in the know to sort out the problem. It is defo not hardware..


Hope someone can help me

cheers
 

broomy79

Junior Member
Dec 11, 2011
17
0
its got the split power connector at the top so as the pictures suggest its a jasper.

my head is wrecked with it lol

---------- Post added at 02:58 ---------- Previous post was at 02:55 ----------

i have made 2 dumps in jtag tool as if it were a 256mb jasper compared and compared the 2. this was after the ecc has been written but i stiill get the same error message in multi builder using the 256mb dump.
 

WestCoastConsoles

VIP Member
Dec 29, 2010
1,339
0
Portland, OR
get the flash config it will determine the mobo revision

also can you decrypt kv with cpu key

easiest way to detect is to plug in nand x with mobo connected open up xnand healer and hit detect make sure usb or lpt is ticked depending on your method
 
Last edited:

broomy79

Junior Member
Dec 11, 2011
17
0
this is where it starts to confuse me as i have had no dealings with flashconfig
and decrypting the kv with cpukey

sorry for my ignorance
 

broomy79

Junior Member
Dec 11, 2011
17
0
just sent you nanddump2

the only other ones i have are 256mb dumps after i had written the ecc.

is it possible that because its a banned console the cpu key is [email protected]@ked up?
 

broomy79

Junior Member
Dec 11, 2011
17
0
looks like i will have to do some reading on how to do a donor then

---------- Post added at 03:57 ---------- Previous post was at 03:56 ----------

any idea where i can get one from?