[TOOL][VIDEO] One click Radio S-OFF, SimUnlock (Easy Root & S-OFF Guide) - Desire HD Android Development

NOT COMPATIBLE WITH DEVICES SHIPPED WITH GINGERBREAD 2.3
One click Radio S-OFF tool
YouTube video​HTC - Quietly Unlocked​
About:
This tool will make a Desire HD Radio S-OFF after it has been permrooted with Visionary. After running this tool, you can flash any ROM and kernel to your device using ClockworkMod. No bootloader S-OFF needed! You use this tool at your own risk!
What's the difference to other methods?
First of all, this is easy. The steps are straightforward, you do not need to tinker with complicated command line stuff. Radio S-OFF is the way these devices are meant to be made S-OFF, it is a safe way. If you use this method, reverting to stock is very easy! Unfortunately without ENG bootloader (my other tool) you cannot use fastboot commands (advanced stuff) and, for example, my Kernel Update Utility. To make a raw comparison, this tool is for everybody including new users and the eng hboot S-OFF version is for enthusiasts. Many experienced users have both, because having both allows supreme flexibility.
I recommend to use Radio S-OFF instead of traditional bootloader ENG S-OFF, because this can be more easily removed and is much much safer!
System requirements:
Windows XP SP2 or higher
.NET Framework 4.0
HTC Sync (or ADB drivers)
Desire HD with stock kernel (or Apache14's 1.0.7 / 1.1.4 Sense)
It will not work on 1.72.405.3 or higher build, or new radio (12.28b.60.140e_26.03.02.26_M is ok). Downgrade first!!
So, in detail, the Root & S-OFF process goes like this:
Install Visionary
Open Visionary and tap temproot, then attempt permroot now. Your device will reboot.
Connect your phone to a computer (make sure you have USB Debugging enabled. Connect charge only!)
Download the Radio S-OFF tool and place it in the root of your hard drive (c:\[tool folder goes here])
Open my "Desire HD easy radio tool.exe" (Windows 7, right click & run as administrator), choose the first option, click "Do it"! There may be a SuperUser request on your phone, allow it.
Done. (Remember to click the thanks button)
But you might want to continue if you are a new user:
If you want to flash a radio (to improve signal and battery life) some day, do ENG S-OFF (no need to use Visionary again, just run the tool)
To flash a custom rom: Get Rom manager from the market, which will install a ClockWorkMod recovery for you. Just open it up and tap "Flash ClockworkMod recovery"
Download a custom ROM, put it to your SD, and flash it using Rom manager or ClockworkMod itself. You can access ClockworkMod through Rom manager. It is recommended to do "wipe data / factory reset" in ClockworkMod before installing ROM from SD card.
It will create a backup of your phone partition 7 (radio config) to the root of your sdcard, I recommend to keep that somewhere really safe!
To go back to S-ON:
Flash stock ROM (RUU, not over 1.7)
Temproot using Visionary
Use my tool, do Stock CID and S-ON (enter brand CID if you had a branded device, see second post)
Enjoy your factory-state phone
If you like my work, please consider: (or just hit the thanks button )
Thanks: Paul O'Brien for visionary, scotty2 and others who found the method to patch P7, Guhl and everyone else who has worked on the G2 root, gfree and wpthis, link to the source code, those have been released under GPL
Download link is in the end of the second post​

[TOOL][VIDEO] One click Radio S-OFF, SimUnlock (Easy Root Guide)
FAQ:
Q: Why is this Radio Tool, does it flash a radio?
- From end user's view, it has nothing to do with radios, the name comes from the S-OFF technique this tool uses.
Q: I cannot find "System Info" in SHIP bootloader
- That is normal, just refer to the CID list when reverting to stock.
Q: How can I revert to full stock, I have ClockworkMod and/or ENG S-OFF too?
- Just follow the S-ON instructions.
Q: Can I use ENG S-OFF with this one? Which one first?
- Yes you can, it does not really matter, but I would do Radio S-OFF first.
Q: Does no fastboot stuff mean slow device startup (no HTC Fastboot)?
- No, I am talking about issuing commands to the bootloader through USB.
Q: Is this Radio S-OFF permanent, does it go away if I flash RUU/factory reset?
- It is permanent until you remove it using this tool.
Q: I already had ENG S-OFF and I ran the tool, how do I find out if it worked?
- If you used the first option, see bootloader system info. There should be CID-11111111.
Q: I have now ENG S-OFF and Radio S-OFF, how do I get to stock?
- Just follow the S-ON instructions, everything will be back to stock.
Q: I have 1.72 or higher system, what should I do??
- Downgrade using this guide, or flash Raidroid if you already have ENG S-OFF & ClockworkMod.
Q: I tried to flash a radio, but it says not allowed!
- You will also need ENG S-OFF to flash radios, because ENG S-OFF enables fastboot commands.
Q: I want to make my device stock, I cannot find the RUU but I have a backup of the stock rom.
- Follow these instructions.
Click to expand...
Click to collapse
Checking the device state:
- Go to the bootloader (turn fastboot off, turn off phone, hold vol- and power)
- If it says ACE PVT SHIP S-OFF in the first line, your device is Radio S-OFF
- If it says ACE PVT ENG S-OFF, you have ENG S-OFF, go to System info
- If system info CID is 11111111, your device is SuperCID
- And if you can verify either Radio S-OFF or SuperCID (and you did both), it worked fine and you have both of them
- You can check your original CID by going to radio tool folder with cmd and typing: "adb shell getprop ro.cid"
Click to expand...
Click to collapse
CID list:
- Unbranded: "HTC__001"
- O2: "O2___102"
- Orange: "ORANG001"
- German T-Mobile: "T-MOB101"
- Vodaphone UK: "VODAP001"
- More here
Click to expand...
Click to collapse
Troubleshooting:
- "Unknown error, probably connection"? See here, try with WiFi enabled.
- If that^ did not help, open a command window, go to the tool folder, and type: "adb shell" and "su". Then leave the window in the background, and run the tool again.
- "SD card failed"? When phone is connected to PC, check with some file manager that SD is accessible and works. Try another SD.
- Make sure you are rooted by downloading Terminal emulator from the market, write "su", '#' should appear.
- Check all the requirements. Twice. HTC Sync is mandatory!
- Keep your phone awake when you are running the tool, a superuser window might appear. You have to allow.
- Check your SD card, and tell us in the thread if a p7backup appeared on it.
- If it says Done and the CID does not change in ENG bootloader, you have most likely flashed too new radio.
Click to expand...
Click to collapse
Downloadcount:
v1: 1402 downloads
v2: 322 downloads
v2.1: 2396 downloads
Please do not re-upload the file anywhere.

WHOA! i just used your last tool to get s-off!
is this better? will it work over the previous one?

It will work over the S-OFF bootloader, I tested it myself

jkoljo said:
It will work over the S-OFF bootloader, I tested it myself
Click to expand...
Click to collapse
I can confirm that.

Hi,
how can i back to original?
My previous attempts have failed.
with friendly greet
starbase64

You will have to wait until Apache14 releases his kernel, which allows you to use command line to flash back the backup that is on your sdcard. The kernel works, so it is just a matter or time

Hi,
can not flash clockworkmod also.
with friendly greet
starbase64

So, this patches radio?
So if we run an oficial RUU or OTA, it overwrites the radio, thus restoring back to S-ON?

ttav said:
I can confirm that.
Click to expand...
Click to collapse
Yep, right on !

Eddie1506 said:
So, this patches radio?
So if we run an oficial RUU or OTA, it overwrites the radio, thus restoring back to S-ON?
Click to expand...
Click to collapse
Nope, will still be S-OFF, it will be 'ACE PVT SHIP S-OFF'

afrcom15 said:
Nope, will still be S-OFF, it will be 'ACE PVT SHIP S-OFF'
Click to expand...
Click to collapse
There is a partition 7 backup. Just restore that!
Sent from my Desire HD using XDA App

afrcom15 said:
Nope, will still be S-OFF, it will be 'ACE PVT SHIP S-OFF'
Click to expand...
Click to collapse
How's that possible?

Sorry I'm confused what this is. What difference to the other s-off tool ?
Sent from my Desire HD using XDA App

vimto25 said:
Sorry I'm confused what this is. What difference to the other s-off tool ?
Sent from my Desire HD using XDA App
Click to expand...
Click to collapse
yes tell us pls

This is permanent radio S-OFF as opposed to just ENG HBOOT S-OFF which can be wiped if you flash a standard ROM/RRU.
Flash this and you'll keep S-OFF no matter what you flash

JonnyFoxtrot said:
This is permanent radio S-OFF as opposed to just ENG HBOOT S-OFF which can be wiped if you flash a standard ROM/RRU.
Flash this and you'll keep S-OFF no matter what you flash
Click to expand...
Click to collapse
wow thanks
cool story!
THIS ROCKS!!!!!!!

If you use this one, you cannot use fastboot commands. If you like to play with your phone, then use the another one. This one is somewhat safer, however. In worst case scenario it is not possible to brick a device by using this tool, although to be honest, the other one has very very strict safety measures, too.
Jonny, the ENG bootloader will also survive a RUU if you do not have radio s-off.

jkoljo said:
If you use this one, you cannot use fastboot commands. If you like to play with your phone, then use the another one. This one is somewhat safer, however. In worst case scenario it is not possible to brick a device by using this tool, although to be honest, the other one has very very strict safety measures, too.
Jonny, the ENG bootloader will also survive a RUU if you do not have radio s-off.
Click to expand...
Click to collapse
so should we flash yes or no?
and why?

I have a backup with my stock ROM but when I go back to it everything still these such as root,s-off,Rom manager . So if I downloaded a clean stock ROM it will take everything off like it was when I first started phone up? And if I use this tool I can use stock ROM and my device is always s-off no matter what I do? Ifso how would you take s-off if needed for warranty issue. Thanks
Sent from my Desire HD using XDA App

Related

[GUIDE] Get back to HTC Stock ROM (from anything) [UNDER CONSTRUCTION]

Hi there,
This is a guide under construction that gather different ways to get (back) to HTC stock ROM from almost everything : branded ROM, custom ROM, ROOTed/S-OFFed/etc. DHD.
Whatever you do with your phone, I cannot be responsible for it. Don't blame me if you brick it. I'll try to keep this up to date.
How to read this ?
Colors :
This answer is known and working
This answer still needs some testing/feedback
This answer is probably wrong or untested, help me correcting it
Letters : This is a change of situation. Multiple case possible, choose your path and skip the others
Numbers : This is a step or a question, go through them one by one
Here we go for the GUIDE part :
I have never ROOTed/S-OFFed/Radio S-OFFed/CWMed my phone
In this case you have either a stock HTC ROM or a branded ROM (SFR/Vodaphone UK/T-Mobile/...)
1) How do I know that I have a branded ROM or an HTC stock ROM ?
HTC Stock ROMs are often up to date if you do all the OTAs so, update your phone OTA and check your version number, it should be the last one. Moreover, branded ROMs often have a custom boot screen (with awful logo) and custom (unremovable) apps.
1.A) I have DHD with stock ROM !
You have nothing to do in this thread then. Bye bye
1.B) Damn, I have a branded ROM...
Don't cry, we'll go through it together
1.B.1) Will RUUs work ?
Sometimes it will, sometimes it won't, the best thing to do is to try. The worst that could happen is... nothing.
Warning : At this point, if RUU works, you'll have a stock ROM on your HTC and you won't be able to go back to your branded ROM (except for T-Mobile phones as a RUU is available for them). No turning back ! Anyway, that shouldn't be a problem for warranty as RUUs are "public and official".
1.B.2) Why RUUs wouldn't work ?
HTC allow brands to put their own custom firmware that we call here a "branded ROM". Those include brand promotional items such as specific apps and boot screen. Plus, they have their specific OTA that could be on a very different schedule than official ones (from HTC). For this reason and to avoid county-specific (chineese) to be converted in WWE phones, HTC RUUs check for a specific number in your phone called CID. This CID tells if you can use RUUs and if yes, wich one (WWE, chineese, etc.)
1.B.3.a) RUU worked !
Lucky boy, we're done with you. Bye bye
1.B.3.b) RUU didn't work...
Please, hold you're tears, we're still not done here. (More to come)
1.B.3.b.1) Now you have a few solutions
The zip trick :This is a method that uses a test RUU (that doesn't check for the CID). Then you fake it replacing the test ROM by the one of your choice (here an official one). This method is described here but not tested on branded phone. This may not allow OTAs (need feedback).
ROOT & Radio S-OFF/SuperCID/Unlock your phone :By changing the Radio with this guide you will be allowed to flash all RUUs. No revert tool so far to restore the Radio but this is coming soon.​
The F.A.Q. part :
1) Is that possible to find a stock ROM extracted from RUU without any cooking and flash it with CWM ?
Yes
2) Where can I find the zip to use with CWM ?
Here (link needed)​
Glossary :
CWM or CM : ClockworkMod
Random stuff :
http://forum.xda-developers.com/showthread.php?t=835595 : Maybe a way to flash a RUU without changing the CID ? Need confirmation
http://forum.xda-developers.com/showthread.php?t=841890 : Same here
http://forum.xda-developers.com/showthread.php?t=835595&page=4#edit9551194 : Working exemple without goldcard ?
Working on this thread... Any help is welcome
Please submit your questions/answers in this thread, i'll add them.
If giving answers, please, also give a source or guide (link) if possible and the color (green or orange, no red accepted as red cannot be trusted)
for later use
same as above
I can confirm that with Radio S-OFF it is possible to flash a RUU and get OTAs work. Everything will go back to stock except the Radio S-OFF, which will remain. If the device had also a bootloader S-OFF (ENG hboot), it will be replaced with the stock one.
If a device has only bootloader S-OFF, flashing a RUU is not recommended, as it will fail at version checking (because of no SuperCID). Eng bootloader has a higher version number than stock bootloader, and without Radio S-OFF the system will not allow downgrading.
jkoljo said:
I can confirm that with Radio S-OFF it is possible to flash a RUU and get OTAs work. Everything will go back to stock except the Radio S-OFF, which will remain. If the device had also a bootloader S-OFF (ENG hboot), it will be replaced with the stock one.
If a device has only bootloader S-OFF, flashing a RUU is not recommended, as it will fail at version checking (because of no SuperCID). Eng bootloader has a higher version number than stock bootloader, and without Radio S-OFF the system will not allow downgrading.
Click to expand...
Click to collapse
Is there a way to flash back the Radio S-OFF to the original one ? As far as I know, Radio S-OFF creates a backup of the partition it changes but I didn't see any tool that can change back this partition.
Edit: Seems I'm not the only one asking this question : http://forum.xda-developers.com/showpost.php?p=9642351&postcount=64
Also, when you say "not recommended" it's because it'll always fail or it has a little chance to fail ?
If you are S-OFF (not radio) there is no way to flash RUU again ? What about extracting the ROM from the RUU and flashing it with CWM ? same problem ?
Thanks
As stated in my Radio S-OFF thread somewhere in the last few pages (forum search is recommended), tools for Radio S-OFF removal are coming, but you just have to wait a bit longer. The backup that has been made is vital for the process, so do not lose it!
Not recommended, as it will most likely (probably always) fail. Without Radio S-OFF RUU is indeed not possible, unless you manually flash back the original bootloader using the original way of getting it in there (wpthis.ko + dd image). You would have to be in the stock ROM for that to work. Extracting a ROM should be possible, but I am not a ROM chef, so do not believe me
See my thread here for how to extract the rom.zip [i.e: update.zip] out of an RUU. RUU will write practically all partitions, but won't overwrite a radio-set S-OFF (i.e done through radio, not through hboot)
ivolol said:
See my thread here for how to extract the rom.zip [i.e: update.zip] out of an RUU. RUU will write practically all partitions, but won't overwrite a radio-set S-OFF (i.e done through radio, not through hboot)
Click to expand...
Click to collapse
Thanks, will add this to the FAQ/GUIDE
ivolol said:
See my thread here for how to extract the rom.zip [i.e: update.zip] out of an RUU. RUU will write practically all partitions, but won't overwrite a radio-set S-OFF (i.e done through radio, not through hboot)
Click to expand...
Click to collapse
ivolol said:
note: This is mainly for stock phones, for vendor-derived ones (e.g Vodafone DHDs in Australia) you will also need a goldcard.
Click to expand...
Click to collapse
I understood that it'll wipe everything except Radio S-OFF but what if this is done (method A or B) with a vendor-derived DHD ? Will that work ? Why wouldn't it ? Will OTAs be possible ?
Thread re-open. Follow the OP's rules and suggestions please.
Cheers,
M_T_M
jkoljo said:
As stated in my Radio S-OFF thread somewhere in the last few pages (forum search is recommended), tools for Radio S-OFF removal are coming, but you just have to wait a bit longer. The backup that has been made is vital for the process, so do not lose it!
Not recommended, as it will most likely (probably always) fail. Without Radio S-OFF RUU is indeed not possible, unless you manually flash back the original bootloader using the original way of getting it in there (wpthis.ko + dd image). You would have to be in the stock ROM for that to work. Extracting a ROM should be possible, but I am not a ROM chef, so do not believe me
Click to expand...
Click to collapse
Are there any issues with the wpthis.ko + dd image method to write the original hboot over the engineering? I've returned system, boot, recovery, etc. to their branded originals. I don't see why there would be a problem but just seeing if anyone's tried this.
The other option is 'fastboot flash hboot'. With this method, I'm not sure if I'd have to 'fastboot erase hboot' first and frankly doing that seems a bit risky because if the fastboot flash fails, you're really screwed.
No, dd can overwrite it just fine.
BUT I would do it like this (now that my tool can do radio s-on):
Radio S-OFF (if not already)
Run stock RUU
Do stock cid and radio s-on with my tool
And your device is stock.
jkoljo said:
No, dd can overwrite it just fine.
BUT I would do it like this (now that my tool can do radio s-on):
Radio S-OFF (if not already)
Run stock RUU
Do stock cid and radio s-on with my tool
And your device is stock.
Click to expand...
Click to collapse
I was thinking about this solution which works flawlessly it seems. I made this guide for ppl that wanted their HTC Stock for real and your tool wasn't able to S-ON ^^
Anyway, still missing the feature to restore the CID as it was BEFORE your tool makes radio S-OFF.
I follow your thread and so far, as I understood, there's a field where we can put the string we want but nothing to restore as it was before. Right ?
For ppl who want to restore to their branded ROM (if they made a backup with CWM) what do they have to do ?
My guess :
1) Root + Radio S-OFF
2) Remove S-OFF if any (not Radio S-OFF !) by flashing any RUU
3) Root again (as root is lost by flashing RUU)
4) Reinstall CWM
5) Now the phone is still S-OFF and SuperCID, right ?
6) Restore ROM via CWM (does this restore the S-OFF we had when we made the backup via CWM ?)
7) Remove S-OFF if still here (how ?)
8) Radio S-ON with the tool (with previous CID)
9) Done, happy branded stock ROM fully functional
Diaoul said:
6) Restore ROM via CWM (does this restore the S-OFF we had when we made the backup via CWM ?)
7) Remove S-OFF if still here (how ?)
...
9) Done, happy branded stock ROM fully functional
Click to expand...
Click to collapse
6) CWM/Nandroid doesn't backup/restore hboot so we'll still have stock S-ON hboot from RUU.
7) See above
9) Except you still have CWM recovery as this would have been flashed when you made the ROM backup (either replace recovery.img in CWM backup with stock recovery before restoring? or overwrite with dd after?). Also, the ROM you restored might still be rooted (unroot with Visionary?).
dazweeja said:
6) CWM/Nandroid doesn't backup/restore hboot so we'll still have stock S-ON hboot from RUU.
7) See above
9) Except you still have CWM recovery as this would have been flashed when you made the ROM backup (either replace recovery.img in CWM backup with stock recovery before restoring? or overwrite with dd after?). Also, the ROM you restored might still be rooted (unroot with Visionary?).
Click to expand...
Click to collapse
As far as I understand, people with branded phones will still have the recovery from CWM. And, so far, no easy way to replace it.
It seems like a tool to do that would be welcome here. What do you think jkoljo?
Diaoul said:
My guess :
1) Root + Radio S-OFF
2) Remove S-OFF if any (not Radio S-OFF !) by flashing any RUU
3) Root again (as root is lost by flashing RUU)
4) Reinstall CWM
5) Now the phone is still S-OFF and SuperCID, right ?
- Yes
6) Restore ROM via CWM (does this restore the S-OFF we had when we made the backup via CWM ?)
- Does not restore s-off
7) Remove S-OFF if still here (how ?)
- Radio S-ON has to be removed, see next step
8) Radio S-ON with the tool (with previous CID)
9) Done, happy branded stock ROM fully functional
- You should do visionary remove permroot, then the system is full stock
Click to expand...
Click to collapse
If you have non branded device, my tool will automatically restore the stock cid. Otherwise a user has to check the cid from the bootloader himself before doing s-off.
Sent from my Desire HD using Tapatalk
I'm testing all this stuff on my branded phone.
I started with a Rooted + S-OFFed DHD with AR 1.9 :
1) Radio S-OFF
2) RUU
3) Trying to temproot gets stuck on "rooting device, please wait"... Any clue ?
Edit : I grabed another copy of VISIONary here and it worked.
I had r14 before, downloaded r14 but files were slightly different in size... Anyway, package installation worked for both and I even successfully root my device with the first one long time ago. Weird
Are you still radio S-OFF? In which case, do you need to root again? The Vision wiki says you only need radio S-OFF for permanent root:
"If you are only interested in permanent root you only need radio S-OFF"
http://forum.xda-developers.com/wik...cess_.28Permanent_Root_.2F_.22Permaroot.22.29
Maybe install Superuser.apk and busybox and then see if you can install ROM Manager/CWM.
Edit: Or try typing 'su' into a terminal app like ConnectBot or Terminal Emulator.
I've returned to the dark side with a stock Sense rom (instead of CyanogenMod), because I'd like to OTA update to HTC's gingerbread rom when it comes (hopefully soon).
I installed the signed HTC rom.
I'm not sure, but I think it's a good idea to follow the instructions for radio S-OFF, superCID and simunlock (from Apache14 himself: http://forum.xda-developers.com/showthread.php?t=857444) before installing a signed rom.
The signed rom was courtesy of xmoo's thread: http://forum.xda-developers.com/showthread.php?t=824357
Yes, there will be a CyanogenMod 7 based on Gingerbread probably soon after HTC releases their rom, and I'll be back then.
I still have root, Eng-Hboot and the official clockworkmod recovery installed. I re-installed eng-hboot and clockworkmod just to be sure, after installing the signed rom using the HTC installer
I believe that my carrier won't have anything to do with it (i.e. I won't need to wait for them to modify the Gingerbread rom), as I I'm using a plain brown HTC rom. Although someone could tell me I'm wrong.
Walker Street said:
I've returned to the dark side with a stock Sense rom (instead of CyanogenMod), because I'd like to OTA update to HTC's gingerbread rom when it comes (hopefully soon).
Click to expand...
Click to collapse
You'll probably find that LeeDroid, Android Revolution, and the other ROMs which are based on the stock HTC ROM will be upgraded within a few days of the Gingerbread HTC ROM being released. I find those to be a little better than stock as they have a lot of the crap removed. I found LeeDroid very easy on the battery too.
I'm not sure, but I think it's a good idea to follow the instructions for radio S-OFF, superCID and simunlock (from Apache14 himself: http://forum.xda-developers.com/showthread.php?t=857444) before installing a signed rom.
Click to expand...
Click to collapse
jkoljo's Windows program is a front-end for the same program that Apache14 uses (gfree) so you get the same result with less hassle.
I believe that my carrier won't have anything to do with it (i.e. I won't need to wait for them to modify the Gingerbread rom), as I I'm using a plain brown HTC rom. Although someone could tell me I'm wrong.
Click to expand...
Click to collapse
Yes, that's right. SuperCID will let you install any signed ROM. S-OFF will let you install any ROM at all.
The issue some of us are facing is trying to get back to an untouched branded ROM (for warranty purposes). It can be done a number of ways, just trying to discern the safest. I think it's probably:
1) Radio S-OFF
2) Flash RUU
3) Install CWM
4) Restore ROM via CWM
5) Restore original recovery with 'dd if=/sdcard/recovery.img of=/dev/block/mmcblk0p21'
6) Radio S-ON with the tool (with previous CID)
7) Done
I'm going to test this over the weekend.

[WARNING] Do not flash a new official RUU/ROM/OTA if you have root and/or S-OFF

DO NOT FLASH A NEW RUU OR OFFICIAL ROM IMAGE UNLESS YOU *REALLY* KNOW WHAT YOU ARE DOING !
The title says it all!​
Doktaphex said:
As the title suggests, this is warning against flashing the new RUU_Ace_HTC_WWE_1.72.405.3_R_Radio_12.28e.60.140f_ 26.04.02.17_M2_release. It contains a new version of HBoot that breaks root and standard S-OFF! Please refer to these threads for more info:
http://forum.xda-developers.com/showthread.php?t=879375
http://forum.xda-developers.com/showthread.php?t=875099
You may be safe if you have full radio S-OFF and SuperCID but this is unconfirmed, and I would steer well clear until the DEVs have cracked open this latest HBoot.
Click to expand...
Click to collapse
Confirmed:
Only if you have full radio S-OFF you can 'downgrade' to 1.32xxxxxx and root
Yes, I can confirm that, too. You have to have Super-CID (Radio S-OFF) to downgrade. Rooting is not possible in this new one. Yet.
Can please someone explain me what's the real difference between ENG S OFF But CID 11111 and SHIP S OFF and CID HTC....?
ENG S-OFF: It is engineering bootloader S-OFF (may include Radio S-OFF). Allows custom bootloader commands, for example radio flashing, also allows to install custom roms.
SHIP S-OFF: Radio S-OFF, does not allow radio flashing, but allows ClockworkMod flashing. Usually comes together with SuperCID.
CID 11111111: Super-CID, Super Carrier ID, allows you to downgrade, and flash really anything to the phone without the phone saying "no thanks".
CID HTC__xxx: HTC Carrier ID, does not allow downgrading via RUU, but you can still flash through ClockworkMod if you are S-OFF.
Thank you very much for this answer..I ask because i cannot find this information somewhere in one post!
I am with ENG S-OFF and CID 11111111
So i can flash the new RUU and i am able to revert back to 1.32xxxxxx and root again.Correct?
Looks like its been rooted.
http://forum.xda-developers.com/showpost.php?p=9936625&postcount=91
At least it has if you flash just the system.img
Yeah but it needs clockworkmod, which goes away if people use the actual RUU. Also flashing system.img does not replace the bootloader, so S-OFF stays in fine (also hboot S-OFF).
How can you tell what your CID is?
madindehead said:
How can you tell what your CID is?
Click to expand...
Click to collapse
Bootloader > Fastboot > System Info (or something like that)
If you are SuperCID then it is 11111111 if not, then it begins with HTC_xxxx
looks like also this RUU_Ace_Orange_ES_1.75.75.2_Radio_12.28e.60.140f_2 6.04.02.17_M2_release also seems to stop you gaining root and fix's patched Hboot as someone saying he flashed the rom and can't gain root.
joners said:
Looks like its been rooted.
http://forum.xda-developers.com/showpost.php?p=9936625&postcount=91
At least it has if you flash just the system.img
Click to expand...
Click to collapse
can you tell how to extract the system.img from rom?
all i get is a [0] file. dont know what to do with it.
[HOW TO SAFELY FLASH THE NEW ROM AND BE ABLE TO REVERT BACK]
Currently, the new ROM (1.72.405.3) has a new HBOOT (so you can't install ENG HBOOT S-OFF) and is difficult to root (not as simple as it is with previous ROMs). However, it also has a better radio, and a faster ROM with various bugfixes. This ROM is also Android Froyo v2.21. If you want to try out the new ROM, whilst maintaining the ability to 'revert' back to your older, hackable state then follow the below instructions carefully. Also, do not worry about extracting system.img files and whatnot.
*It is recommended to do a NANDROID BACKUP first
*All RUUs can be obtained from www.xdafil.es/DesireHD/RUU/
*If you don't do steps 1-3 properly and flash the new ROM, you will not be able to revert back
*Radio S-OFF and SuperCID can be obtained by following instructions in this thread: http://forum.xda-developers.com/showthread.php?t=857537
*Tutorial for flashing RUUs (needed for steps 4 & 8): http://forum.xda-developers.com/showthread.php?t=841890
1. Install Radio S-OFF (NOT ENG HBOOT S-OFF) and SuperCID
2. Go to bootloader, then System Info. (If System Info is not there, but you have SHIP S-OFF skip step 3 and proceed to step 4)
3. Make sure CID is 11111111 *AND* the bootloader shows S-OFF. If not, repeat step 1
4. You can now flash the new ROM (1.72.405.3)
5. This will remove ENG HBOOT (if you had it) and ClockworkMod
6. If you did steps 1-3 correctly, your Desire HD should still be S-OFF. Go to bootloader and check. If not, you did not do steps 1-3 correctly and will have to wait for the new HBOOT to be cracked.
When you are done with the new ROM and want to go back, follow the instructions below:
7. Download the HTC RUU 1.32.405.6 of your choice (Since you are SuperCID you can flash any RUU)
8. Flash it to your Desire HD
9. Root your ROM using Visionary, and install ROM Manager and flash ClockworkMod. You can optionally install ENG HBOOT S-OFF now if you like.
If you made a NANDROID Backup, you can restore this now from ClockworkMod
joners said:
Looks like its been rooted.
http://forum.xda-developers.com/showpost.php?p=9936625&postcount=91
At least it has if you flash just the system.img
Click to expand...
Click to collapse
I can't get this to work myself, unfortunately.
joners said:
Looks like its been rooted.
http://forum.xda-developers.com/showpost.php?p=9936625&postcount=91
At least it has if you flash just the system.img
Click to expand...
Click to collapse
I have this working. The supplied .zip file does not include Superuser.apk. After following the instructions and then installing Superuser from the market I now have root on this rom.
Look forward to testing it over the next couple of days while I lay in hope of some custom roms based off this version.
EDIT: Superuser keeps force closing
My bootloader says
ACE PVT ENG S-OFF
HBOOT-0.85 2007 (PD9810000)
and system info says
CID-11111111
Am I good to go or shall I do something else?
Thank you for sharing info.
doh!
being used to the days of winmo I flashed this rom over my cyanogen taking a backup first.
Now I can't revert back to the old stock rom, any way of doing this (easily ish)?
Hi, I'm ENG S-Off but my CID is not 1111111, what's the safest way to do the Super-CID?
I'm stucked abroad using a **** phone cos I can't use another sim in my DHD
Sent from my Desire HD using Tapatalk on Revolution 1. 92
ninja.rogue said:
My bootloader says
ACE PVT ENG S-OFF
HBOOT-0.85 2007 (PD9810000)
and system info says
CID-11111111
Am I good to go or shall I do something else?
Thank you for sharing info.
Click to expand...
Click to collapse
Also on the same boat...
Anyone??
ninja.rogue said:
My bootloader says
ACE PVT ENG S-OFF
HBOOT-0.85 2007 (PD9810000)
and system info says
CID-11111111
Am I good to go or shall I do something else?
Thank you for sharing info.
Click to expand...
Click to collapse
looks like you are, you have superCID.

[Tutorial] [Discontinued] How to restore stock ROM and S-On after AlphaRevX S-Off

I am sorry to announce, but I am pulling this tutorial. Tutorial is not meant for branded phones and recently I am getting few of those asking for help!
Sorry unbranded device owners, but my intention is to have brick free world!
Have a nice day! And safe flashing.
P.s. FYI, new boot loader can be unlocked using htcdev.com and locked again using the same.
/Edzz
good to know if somthing goes wrong and must be done in warranty time
can I use your guide for my thread ? I will give you credit.. thanks.
Why not do it the easy way since you're already S-OFF?
Take the ENG HBOOT found here and put the PG88IMG.zip in the root of your SD card
Boot into the bootloader (Volume Down + POWER)
Go into FASTBOOT mode
The bootloader will automagically detect your new HBOOT and install it
After rebooting your phone you can install any RUU you want. That will bring HBOOT back to the installed original
Make sure you make a good backup up front and be carefull what RUU to flash. The newer ones will overwrite HBOOT with version 0.98.0002, which, up to this date, can't be put to S-OFF yet by Alpharevx. I recommand you install the oldest RUU version you can find. A list of original ROMS can be found here
Good luck!
@nodeffect
Feel free.
@jorgen2009
such approach won't work with Alpharev hboot. They appear to have kinda locked it by making it appear ar 6.x Hboot version. That means, that bootloader will bypass upgrade. Been there, tried that, didn't work
chiekurz said:
@nodeffect
Feel free.
@jorgen2009
such approach won't work with Alpharev hboot. They appear to have kinda locked it by making it appear ar 6.x Hboot version. That means, that bootloader will bypass upgrade. Been there, tried that, didn't work
Click to expand...
Click to collapse
The original ENG HBOOT didn't work if i recall correctly. Redownload the ENG-HBOOT and you'll notice the version has changed to a number higher than Alpharev's. It DOES work now, in fact, my phone is S-ON again as we speak
Will have to try that again.
jorgen2009 said:
Why not do it the easy way since you're already S-OFF?
Take the ENG HBOOT found here and put the PG88IMG.zip in the root of your SD card
Boot into the bootloader (Volume Down + POWER)
Go into FASTBOOT mode
The bootloader will automagically detect your new HBOOT and install it
After rebooting your phone you can install any RUU you want. That will bring HBOOT back to the installed original
Make sure you make a good backup up front and be carefull what RUU to flash. The newer ones will overwrite HBOOT with version 0.98.0002, which, up to this date, can't be put to S-OFF yet by Alpharevx. I recommand you install the oldest RUU version you can find. A list of original ROMS can be found here
Good luck!
Click to expand...
Click to collapse
So i downloaded 2 files:
The PG88IMG.zip and eng_hboot
what do i put on my sd card, only PG88IMG.zip or both of them?
.sh4d0w. said:
So i downloaded 2 files:
The PG88IMG.zip and eng_hboot
what do i put on my sd card, only PG88IMG.zip or both of them?
Click to expand...
Click to collapse
Only the PG88IMG.zip, don't rename or extract it or it won't work, just put the file in the root of your SD card
So what is the use of Eng S-Off.rar?
And another question the RUU is an .exe?
And is this old enough RUU_Saga_HTC_Europe_1.28.401.1_Radio_20.28b.30.0805U_38.03.02.11_M_release_177977_signed ?
Thanks.
LE: i flashed the pg88img.zip and i am still Alpharevx hboot 6.xxxxx etc (but the update was successful)
Maybe... if i flash a RUU? I just wanted to get eng s-off.. don't want to get s-on now
.sh4d0w. said:
So what is the use of Eng S-Off.rar? [/QUOTE
Look at this thread
And another question the RUU is an .exe?
Click to expand...
Click to collapse
yes, it's direct from HTC and unfortunately can only be run from within Windows
And is this old enough RUU_Saga_HTC_Europe_1.28.401.1_Radio_20.28b.30.0805U_38.03.02.11_M_release_177977_signed ?
Click to expand...
Click to collapse
yes, that comes with the HBOOT 0.98.0000
Thanks.
Click to expand...
Click to collapse
your welcome
LE: i flashed the pg88img.zip and i am still Alpharevx hboot 6.xxxxx etc (but the update was successful)
Maybe... if i flash a RUU? I just wanted to get eng s-off.. don't want to get s-on now
Click to expand...
Click to collapse
just check again in fastboot, ENG HBOOT version has changed to 6.98.2000 iirc. After running the RUU it should be 0.98.0000 again as ENG HBOOT can be overwritten in contrast to the AlphaRevX HBOOT. If you only want ENG HBOOT don't flash the RUU obviously
Click to expand...
Click to collapse
Ok i just checked.
I have like this
--- AlphaRev ---
SAGA PVT SHIP S-OFF RL
HBOOT-6.98.1002
RADIO-3805.06.02.03_M
eMMC-boot
Mar 10 2011, 14:58:38
So nothing changed.... and i did the update like... 5 times
It asks vol + to install update
And after it's finished
Power down to reboot.
Maybe i got the wrong file? The PG88IMG.zip attached here http://forum.xda-developers.com/showthread.php?t=1113820
.sh4d0w. said:
Ok i just checked.
I have like this
--- AlphaRev ---
SAGA PVT SHIP S-OFF RL
HBOOT-6.98.1002
RADIO-3805.06.02.03_M
eMMC-boot
Mar 10 2011, 14:58:38
So nothing changed.... and i did the update like... 5 times
It asks vol + to install update
And after it's finished
Power down to reboot.
Maybe i got the wrong file? The PG88IMG.zip attached here http://forum.xda-developers.com/showthread.php?t=1113820
Click to expand...
Click to collapse
You can try with this modified ENG Hboot for devices with AlpharevX
Please, report if works
heavyhms said:
You can try with this modified ENG Hboot for devices with AlpharevX
Please, report if works
Click to expand...
Click to collapse
Nope.... doesn't work at all. Not even loading.
.sh4d0w. said:
Nope.... doesn't work at all. Not even loading.
Click to expand...
Click to collapse
Try to re-download Eng Hboot (normal and modified) after deleting browser cache. Disable antivirus software during download and transfer to microsd.
Do not download file directly with desire S browser: use a pc
You can try also with a different microsd card
.sh4d0w. said:
Nope.... doesn't work at all. Not even loading.
Click to expand...
Click to collapse
Should be the right version...
BTW I changed the link in my first post here to this one. I accidently posted the wrong version
BTW...... the original eng hboot is 1 mb and this modified one is only 260 kb ???
Maybe that's why it doesn't work.
In winrar i have like this
Name__________________Size________Packed
engHBOOToverARX.img___1.048.576____262.273
Added your guide to my thread. Thanks for this one, it's very useful.
p.s. you got a typo for the title of this thread. "Tutorial", not totutial... please correct it, thanks
I did it.. using the adb comands in first page..
LE: Great! Alpharev beta site doesn't work.....stuck with stock lol ))
LE2: New alphareve+unrevoked site http://revolutionary.io/ Back to S-OFF
chiekurz said:
(Windows only? Not sure if RUU works on other platforms)
With thanks to user Murchelago for providing adb method to restore stock boot and HTC for providing RUU's here is step by step, how to return to stock after Alpharevx S-Off.
Prerequisites:
Debugging mode on
Root access
Hboot.img (attached)
RUU for stock restore. Can be downloaded here: http://forum.xda-developers.com/showthread.php?t=1002506
How to:
1. Put the hboot.img you want to flash in the root of the sdcard.
2. In cmd run the following commands (after each command press enter):
adb devices
adb shell
su
dd if=/dev/block/mmcblk0p18 of=/sdcard/backup.img
dd if=/sdcard/hboot.img of=/dev/block/mmcblk0p18
reboot bootloader
3. RUN Downloaded RUU
4. You are on stock again!
After running ADB commands and rebooting into bootloader, you will get security warning. This is normal, just continue with flashing RUU.
Worked for me perfectly 3 times without any issues. However issues might occur and I can not take any responsibility for them. Use this tutorial on your own responsibility
Click to expand...
Click to collapse
I can confirm that you CANNOT just RUU a device. As the name implies, ROM Update Utility.
I followed everything on the first page and can confirm that I've successfully reverted back to HBOOT 0.98.0000.
AFAIK my phone was flashed with the hTC_Asia_WWE_1.31.707.2 on stock.
I tried to RUU using the oldest firmware that I can find, HTC_Europe_1.28.401.1. But it gave me the error 131 (AFAIK) customer ID error. About language and stuffs. Model ID, etc.
So I tried to RUU with the oldest hTC_Asia_WWE_1.31.707.2 (the oldest that I can find that is an ASIA one.). Then it gave me the error 140 (bootloader error). The readme doesn't have any information on this one, even on the net for HTC Saga.
So I tried to RUU with the "LATEST" hTC_Asia_WWE_1.48.707.1 that I found and everything works well. I really am not quite sure why I was not able to "downgrade", just "upgrade".
AFAIK i just updated my radio to the latest 20.28I.30.085AU_3805.06.02.03_M found on the hTC_Asia_WWE_1.48.707.1 when I was S-OFFed. It may have something to do with it.
Just an additional info. I'm now S-ON and on-stock hTC_Asia_WWE_1.48.707.1_20.28I.30.085AU_3805.06.02.03_M

[MISC] Flashing ENG HBOOT | Rolling back to S-ON - The Noob Way

Hi all
I noticed that many of us while trying to flash HBOOT's brick our devices as there is no single thread and no single unified noob proof solution for flashing Revolutionary's S-Off 'ed+ Rooted Desire S all the way from HBOOT version 6.98.1xxx to 0.98.2000 (PG8810000).
Hope this helps..
Ok, less talking; more work
This Thread will help you if:
- if you want to change your HBOOT version to 0.98.2000 (PG8810000)
- if you want to S-On your previously S-Off 'ed Desire S as to make use of warranty (as there is no way of making a S-Off device having Revolutionary's HBOOT v.6.98.1002 -to- S-on again without flashing the HBOOT again).
- AFAIK, if you want to flash an RUU (read ROM Update Utility AKA the stock ROM installer) you won't be able to do it you are S-off 'ed using revolutionary method. So for doing that again you need to have the HBOOT version as something like 0.98.xxxx or 6.98.2000 (experts need your comments on this one)
This guide won't be telling you of how to make it S-on again (though theres a link to youtube step-by-step video tutorial of how to do it in the update section below; Do NOT ignore the video's ending ) but just of how you can go ahead with changing your Revolutionary's default flashed HBOOT version 6.98.10xx -to- v.6.98.2000 and then -to- v.0.98.2000 (PG8810000).
For more updated info please refer to "UPDATE" section below:
UPDATE:
Regarding the "Returning to Stock/making your phone S-ON" issue:
ok..I have not tried this but this right here guides you of how to S-ON and return your phone to total* factory like condition by installing an RUU thereby removing just everything..revolutionary, CWM..u name it; just like a real stock phone
But pls note that using an RUU (read ROM Update Utility AKA the stock ROM installer) will erase all your data! as you are flashing a stock RUU
And for this you need to change your HBOOT to 6.98.2000 (PG8810000) (as in the video linked above) OR to 0.98.2000 (PG8810000); so thats one of the other advantages of my guide..
Hope this helps..
Also, a lot of good folks here have been asking/suggesting me over why this method..? and why not the "dd commands method" / adb command(s) method? (all manually )
ok here's my take on this
Click to expand...
Click to collapse
Prerequisites:
- you need an HTC Desire S phone
- HBOOT version 6.98.1xxx (how to check HBOOT version? just read step#4 & step#5 to find out your HBOOT version)
- S-OFF and Root 'ed using Revolutionary (also known as AlphaRevX; its the old name 'duh)
- your data cable and a working PC with HTC Fastboot Drivers installed (get them here)
- make sure you don't have HTC Sync software installed (check it in Add/Remove Programs found in Control panel of your PC); if it is then please remove it before starting with the following process!!!
WARNING:
DO NOT..I REPEAT AGAIN..DO NOT DISCONNECT IN-BETWEEN THE FLASHING PROCESS(Step#6 onwards) OR YOU MAY DAMAGE (READ "BRICK") YOUR PHONE IN A VERY BAD WAY!
Instructions:
1- download and extract the attached zip file in a empty folder (make sure NOT to touch/merge any of its contents)
2- make sure USB debugging is switched "ON" in your phone's: application settings menu >> development settings
3- also make sure that fastboot mode is switched "OFF" in your phone's: Power settings menu and by default your phone is configured to switch to charging mode when the cable is connected (JUST DO NOT CONNECT IT YET)
4- Now, reboot your phone into bootloader mode by first switching off your phone and then press the Power button and the volume down key simultaneously.
5- you should be able to see white screen with things like Revolutionary on top, S-OFF, HBOOT ... 6.98.10xx etc.
6- now go into the fastboot mode and then just connect you phone until the "fastboot" turns into "usb fastboot" OR "fastboot usb" either of these
7- now go inside the extracted folder named "FlashENGHBOOT698"
8- click on bat file named "Click This" and sit back
9- a black screen should popup as soon as you click on the bat [email protected] step#8 and you should see "OKAY" at the end of successful flash but it would be too quick so keep on lookout
10- select reboot on the bootloader's menu
11- reboot back to bootloader's menu to check if HBOOT's version has been changed to 6.98.2000
12- repeat the process from step 8 BUT make sure this time you go inside the other folder named "FlashENGHBOOT098" (notice the ZERO before 98)
13- follow the steps upto step#11 to check if the HBOOT's version has been changed to 0.98.2000 (PG8810000)
Voila!
Note:
This is just a compilation and a slightly edit of the batch file code to flash the second flash Image for the 0.98.2000 HBOOT All credits goes to the following people:
Credits: (Yay!! time for beer)
Would like to thank Maarten for his post and tool here
lgl0 for all his valuable info here
DesireFanatics for his step-by-step tutorial video here
Last but not the least anchemis for sticking and guiding me all the way
And to all those who have helped me here and here.
Disclaimer:
I won't be responsible for any damages done to your phone. Please attempt/flash with caution. though this method has been tested personally by me and is working fine; have also tested rebooting my phone so as to make sure bootloader does not give up on me.
MODS pls sticky this thread as newbie/newcomers really won't get it the first time they look at the [index] @ XDA
And this right here is the solution for Flashing their HBOOTs almost painlessly
Regards,
sky770
- Reserved for future use -
great guide, just have one question, currently I am using reengineered 2.00.002 hboot - 7.00.1002, my phone was s offed by revolutionary, will it work as well?
esideboi said:
great guide, just have one question, currently I am using reengineered 2.00.002 hboot - 7.00.1002, my phone was s offed by revolutionary, will it work as well?
Click to expand...
Click to collapse
:|..*gulp*
ok..as am a newbie so I would be needing experts in here
btw..have you gone through the Index/threads? coz thats what i did
esideboi said:
great guide, just have one question, currently I am using reengineered 2.00.002 hboot - 7.00.1002, my phone was s offed by revolutionary, will it work as well?
Click to expand...
Click to collapse
You have the latest hboot. If you don't want to s-on and unroot your phone again there is no need for you to downgrade the hboot (afaik )
Edit: accidentally pressed thanks.. never mind
sky770 said:
Hi all
I noticed that many of us while trying to flash HBOOT's brick our devices as there is no single thread for flashing Revolutionary's S-Off 'ed+ Rooted Desire S to 0.98.2000 (PG8810000).
Hope this helps..
Ok, less talking; more work
This Thread will help you if:
- if you want to change your HBOOT version to 0.98.2000 (PG8810000)
- if you want to S-On your previously S-Off 'ed Desire S as to make use of warranty (as there is no way of making a S-Off device having Revolutionary's HBOOT v.6.98.1002 -to- S-on again without flashing the HBOOT again).
- AFAIK, if you want to flash an RUU (umm noob translation for this would be original stock ROM?) you won't be able to do it you are S-off 'ed using revolutionary method. So for doing that again you need to have the HBOOT version as something like 0.98.xxxx or 6.98.2000 (experts need your comments on this one)
This guide won't be telling you of how to make it S-on again but just of how you can go ahead with changing your Revolutionary's default flashed HBOOT version 6.98.10xx -to- v.6.98.2000 and then -to- v.0.98.2000 (PG8810000)
Prerequisites:
- you need an HTC Desire S phone
- HBOOT version 6.98.1xxx (how to check HBOOT version? just read step#4 & step#5 to find out your HBOOT version)
- S-OFF and Root 'ed using Revolutionary (also known as AlphaRevX; its the old name 'duh)
- your data cable and a working PC with HTC Fastboot Drivers installed (get them here)
- make sure you don't have HTC Sync software installed (check it in Add/Remove Programs found in Control panel of your PC); if it is then please remove it before starting with the following process!!!
WARNING:
DO NOT..I REPEAT AGAIN..DO NOT DISCONNECT IN-BETWEEN THE FLASHING PROCESS(Step#6 onwards) OR YOU MAY DAMAGE (READ "BRICK") YOUR PHONE IN A VERY BAD WAY!
Instructions:
1- download and extract the attached zip file in a empty folder (make sure NOT to touch/merge any of its contents)
2- make sure USB debugging is switched "ON" in your phone's: application settings menu >> development settings
3- also make sure that fastboot mode is switched "OFF" in your phone's: Power settings menu and by default your phone is configured to switch to charging mode when the cable is connected (JUST DO NOT CONNECT IT YET)
4- Now, reboot your phone into bootloader mode by first switching off your phone and then press the Power button and the volume down key simultaneously.
5- you should be able to see white screen with things like Revolutionary on top, S-OFF, HBOOT ... 6.98.10xx etc.
6- now go into the fastboot mode and then just connect you phone until the "fastboot" turns into "usb fastboot" OR "fastboot usb" either of these
7- now go inside the extracted folder named "FlashENGHBOOT698"
8- click on bat file named "Click This" and sit back
9- a black screen should popup as soon as you click on the bat [email protected] step#8 and you should see "OKAY" at the end of successful flash but it would be too quick so keep on lookout
10- select reboot on the bootloader's menu
11- reboot back to bootloader's menu to check if HBOOT's version has been changed to 6.98.2000
12- repeat the process from step 8 BUT make sure this time you go inside the other folder named "FlashENGHBOOT098" (notice the ZERO before 98)
13- follow the steps upto step#11 to check if the HBOOT's version has been changed to 0.98.2000 (PG8810000)
Voila!
Note:
This is just a compilation and a slightly edit of the batch file code to flash the second flash Image for the 0.98.2000 HBOOT All credits goes to the following people:
Credits: (Yay!! time for beer)
Would like to thank Maarten for his post and tool here
lgl0 for all his valuable info here
Last but not the least anchemis for sticking and guiding me all the way
And to all those who have helped me here and here.
Disclaimer:
I won't be responsible for any damages done to your phone. Please attempt/flash with caution. though this method has been tested personally by me and is working fine; have also tested rebooting my phone so as to make sure bootloader does not give up on me.
Click to expand...
Click to collapse
you have not mentiond the dd commands tut. this is used because of the re engineerd hboot 7.00.1002 upgrade people are doing, u cannot use any other method to get another hboot to your device after using 7.00.1002 hboot. as no fastboot and using the PG88IMG method just gets bypassed. so the only way is the dd commands. please add this to your guide thanks
If i pass your guide, will my phone be s-on or s-off?
Is it possible to apply this hboot version after? Or can i apply this hboot version right now?
Currently im on hboot-6.98.1002.
Hope someone will guide me real quick. Thanks!
@muselmann88 : 1. The bootloader is Eng S-off!
2. You're now with the Revolutionary Hboot and there is no reason to change. As long as you're using the dd commands to directly write the bootloader partition every bootloader can be uploaded. I haven't had any problems with this method.
marioemp2k7 said:
@muselmann88 : 1. The bootloader is Eng S-off!
2. You're now with the Revolutionary Hboot and there is no reason to change. As long as you're using the dd commands to directly write the bootloader partition every bootloader can be uploaded. I haven't had any problems with this method.
Click to expand...
Click to collapse
I read that i'll have boot problems with sense 4 roms, isn't that correct?
Could you please list the dd commands that i'll succeed in writing the bootloader to the partition.
How about other eng hboot?
Sent from my HTC Desire S using XDA
muselmann88 said:
I read that i'll have boot problems with sense 4 roms, isn't that correct?
Could you please list the dd commands that i'll succeed in writing the bootloader to the partition.
Click to expand...
Click to collapse
I have PM you mate i have sent u everything u need to get yourself on the new eng hboot with that new eng hboot u can use ANY Rom without any problems
The hboot version that should be overwritten by "dd" command is 6.98.1002.
All the others are perfectly rewritten by a RUU or PG88IMG with a higher version.
Only Revolutionary (not AlpharevX) hboot has write protection. There is not only version check in that process
Thanks to the OP!
Just got a Desire S and so far done this little lot:
I've downgraded the ROM to 1.28 to get HBOOT 0.98
S-OFF'ed using Revolutionary.
Installed 4EXT Recovery 1.0.0.5 Touch RC3
Flashed VanillaICE ROM
and just followed this guide to get off the Revolutionary HBOOT and to the ENG HBOOT 0.98.2000.
And it worked flawlessly!
Thanks again!
EDIT: and somewhere in that lot I have also updated the radio to the latest one from the Radio thread!
htc-phones said:
you have not mentiond the dd commands tut. this is used because of the re engineerd hboot 7.00.1002 upgrade people are doing, u cannot use any other method to get another hboot to your device after using 7.00.1002 hboot. as no fastboot and using the PG88IMG method just gets bypassed. so the only way is the dd commands. please add this to your guide thanks
Click to expand...
Click to collapse
Hi,
The fastboot method gets bypassed if we try to flash it by directly picking up the *.zip file from SD Card's root (that good 'ol PG88IMG.zip method).
Using the above method (my method at post#1) we are just literally pushing it through fastboot>>adb>>phone to get it flashed.. no questions asked from phone's side
srry abt the newbie/layman terms answer but this is how it actually works
Also regarding, the "dd commands" are never meant to be used for "noobs" as they are quite dangerous...more..more dangerous than to use fastboot instead of directly using adb commands.
Just because dd commands method exist doesn't mean we should go to that extent to brick our phone (a noob can easily do that while sipping beer and typing some command as bik instead of blk)
And hence I would not like newbie(s) coming in here, bricking their phones and stalking me
UPDATE:
Excerpt taken from here
There are actually two levels of S-OFF. The Bootloader (HBoot) and the Radio. Getting S-Off on the HBoot gives us everything we need, but doesn't actually turn off the @secuflag which is set in the radio. What it is possible to do is to flash a HBoot that believes the Radio is set to S-OFF, as the HBoot is responsible for setting that flag. Once the HBoot on the phone is S-OFF, we can write to all the partitions and basically do whatever we want, but it is possible to go one step further. Flashing a radio that is S-OFF and actually setting the @secuflag off gives 100% total access to every part of the phone and it's software, as it becomes network unlocked allowing to you to use any SIM and also allows you to flash a ROM from any carrier (known as Super CID). It also makes it nigh on impossible to permanently loose root no matter what you flash. Once you have radio S-OFF, it makes it much easier to flash new HBoots and ROMs even if you flash something that is locked down tight.
Setting the Radio to S-Off is not necessary, and gaining S-OFF on the HBoot is more than most people will ever need. Radio S-Off is just the last step of the puzzle, but it is worth noting the only points you can permanently brick your phone is flashing a radio or a HBoot, if either of these go wrong you will end up with a shiny expensive paper weight so there is risk involved.
Click to expand...
Click to collapse
So pls pls suggest newbie(s) to flash with caution :|
muselmann88 said:
If i pass your guide, will my phone be s-on or s-off?
Is it possible to apply this hboot version after? Or can i apply this hboot version right now?
Currently im on hboot-6.98.1002.
Hope someone will guide me real quick. Thanks!
Click to expand...
Click to collapse
As it looks to me, if you're running hboot-6.98.1002 already then you must have used revolutionary's tool to S-off your phone.
Therefore you are eligible to use the above guide to re-flash your hboot.
Infact you're having the same hboot version as I had after using revolutionary.
changing your hboot version to 0.98.2000 (PGI880000) will make sure that you can flash any RUU (official stock ROM) so that you could be s-off again
Though I am still getting working on it to have a simple 1-click solution for this too for ya noobs
Also, make sure you're rooted (though I would like some expert to comment on this; but AFAIK root is needed to flash the *.img file over fastboot; just search around forum as to be sure.)
Do it now! and you won't regret..
Regards,
sky770
marioemp2k7 said:
@muselmann88 : 1. The bootloader is Eng S-off!
2. You're now with the Revolutionary Hboot and there is no reason to change. As long as you're using the dd commands to directly write the bootloader partition every bootloader can be uploaded. I haven't had any problems with this method.
Click to expand...
Click to collapse
I would not really recommend using "dd commands" please see my reply over here
Regards,
sky770
muselmann88 said:
I read that i'll have boot problems with sense 4 roms, isn't that correct?
Could you please list the dd commands that i'll succeed in writing the bootloader to the partition.
Click to expand...
Click to collapse
Sense 4 requires you to have umm... HBOOT version 2.xxx and above? (experts?) anyways.. that cannot be categorized as "problem" its just another "prerequisite" for sense 4 based ROMs though am not sure if its an "official prerequisite" or a non official non
Also, please read my post abt dd commands here.
Regards,
sky770
Dreamtheater2003 said:
How about other eng hboot?
Sent from my HTC Desire S using XDA
Click to expand...
Click to collapse
Can take some time here to try some custom(s) ROMs first
Anyways, now that am here on XDA lets get started..
Regards,
sky770
htc-phones said:
I have PM you mate i have sent u everything u need to get yourself on the new eng hboot with that new eng hboot u can use ANY Rom without any problems
Click to expand...
Click to collapse
any ROM?
you sure about RUU (stocks) ??
if yes then plz forward tht PM to me too pls
Regards,
sky770
amidabuddha said:
The hboot version that should be overwritten by "dd" command is 6.98.1002.
All the others are perfectly rewritten by a RUU or PG88IMG with a higher version.
Only Revolutionary (not AlpharevX) hboot has write protection. There is not only version check in that process
Click to expand...
Click to collapse
aha! Right on point
And thats one more reason I won't really..really recommend using dd commands to a noob/newcomers just for flashing from 6.98.10xx -over to-0.98.2000 (PGI880000).
Regards,
sky770

[Tutorial] Update to hboot 2.15 via RUU

Running an RUU is only simple for those who haven't been messing with their devices, and that usually isn't us. Since I just did this, I want to write down the steps because I was not able to find easy answers.
This assumes your device is rooted with a different ROM installed. If that is not the case, then you can just download and run the RUU for your device, end of instructions.
Downloading the correct RUU
The most complete list of RUUs for Ville is found on androidruu.com
T-Mobile: http://www.androidruu.com/getdownlo..._10.30.50.08L_release_309489_signed_ICS_2.exe
HTC Europe: http://www.androidruu.com/getdownlo...28_10.27.50.08L_release_301814_signed_2_4.exe
There are RUU updates listed for other service providers, but I can't tell if they are JellyBean hboot 2.15 or not. If someone knows, I'll update this post.
Preparing your device
Make your device s-off if it isn't already. Why?
You will not have to relock the bootloader to perform the RUU update.
You will not have to flash the boot image separately.
If for some reason you can't or won't go s-off, you can still do this, but will have many more steps to follow.
Instructions to make your device s-off are here for firmwares below 3.14: Facepalm S-Off for HTC Devices One S, One XL, Droid DNA
Or you can use the HTC All-In-One Toolkit which helps you through the process.
Use the HTC All-In-One Toolkit (link above) to change the CID to match the RUU.
You needed Super CID to gain s-off, but it won't help you install RUUs. Even if you are Super CID (11111111), you must change your CID to match the RUU you are installing (mine is TMobile: T-MOB010). I know, kinda defeats the purpose of being Super CID, but the RUU won't succeed otherwise. If you are s-off, it is a one click operation using the All-In-One Toolkit.
Backup your device
Use Titanium backup to backup all your user apps so you can restore them afterwards. (No, don't restore system apps please!)
Also back up your ROM by booting into recovery mode and selecting Backup.
If you are only updating the hboot but keeping the same ROM, you can just restore the backup afterwards. Not sure why anyone would need to update the hboot without installing a new ROM, but then you also have a backup in case things go wrong.
Run the RUU
If you are s-on you will have to relock the bootloader by rebooting into the fastboot mode, connecting your device to the computer and running the command "fastboot oem lock". You will also have to follow the process again to unlock your bootloader after doing the update. Tutorials for that are found elsewhere.
1. Leave bootloader unlocked, and leave s-off as is. No need to go back to s-on or relock bootloader.
2. Run the RUU and wait while it updates the phone (Incidentally, it didn't even wipe my sd partition data!)
3. While you are still in bootloader mode (before booting up), use the All-In-One tool to install the TWRP S4 recovery. Or, if you don't want to use the tool, you'll have to download a recovery and use "fastboot flash recovery" followed by the name of the recovery img file.
4. Reboot bootloader and enter recovery mode
5. Restore from backup or Mount USB from TWRP and copy over the ROM and gapps package, flash, wipe cache, and you are up and running.
If you are s-on you will need to extract the boot.img from the zip you are flashing and flash that image separately with "fastboot flash boot boot.img"
Note that device still has the unlocked bootloader and is still s-off! :victory:
My device before: hboot 1.09, unlocked bootloader, Super CID, s-off (In layman's terms, this is a device with an unlocked bootloader so it can accept other ROMs, set to accept any service provider's RUU update via SuperCID, and has had write permission to the boot sector removed via s-off).
My device after: hboot 2.15, unlocked bootloader, T-MOB010 CID, s-off
If possible, I will answer your comments or questions by updating this post and I'll refer you back to here.
Have you changed your CID?
mag13 said:
Have you changed your CID?
Click to expand...
Click to collapse
Please read again.
I was Super CID (11111111) but easily changed it to match TMobile (T-MOB010) with this tool for the update.
Click to expand...
Click to collapse
yooouuri said:
Please read again.
Click to expand...
Click to collapse
I am on Super CID and it does not work
mag13 said:
I am on Super CID and it does not work
Click to expand...
Click to collapse
You have to change your CID back to the one for your RUU.
Can I use this tutorial to rollback to 2.15 or whatever works for ViperS rom with sense 4 after I flashed MaximusHD and firmware?
Now my phone is like this:
Hboot 2.16
Radio 1.20.50 (worst radio ever)
S-OFF
CID 11111111
The rom's with sense 5 (I tried just maximus because the others are not compatible with the new firmware, the sdcard mount point for multi user) are killing my battery more than twice faster compared with ViperS. 2h Display vs 5h on Viper.
Thank you!
Can we use this as rollback from h-boot 2.16 ?
mag13 said:
I am on Super CID and it does not work
Click to expand...
Click to collapse
I didn't think it would. Glad you didn't brick your phone and I'll update the OP based on your experiment.
flow27 said:
Can we use this as rollback from h-boot 2.16 ?
Click to expand...
Click to collapse
arazvan2002 said:
Can I use this tutorial to rollback to 2.15 or whatever works for ViperS rom with sense 4
Click to expand...
Click to collapse
Upgrading your hboot is a one way street, as far as I know. Can't you change the radio to something else?
I flashed Viper ROM. All the things are ok, gsm, wifi, etc just I can't see the internal memory like I should. I can browse to it file es file explorer but I need a method to default mount the new (4.2.2) location of it. Where is mounted by the internal memory in 4.1 JB? I discovered a file vold.fstab. Maybe I can change something like that somewhere to be able to use 4.1 ROM's again.
Sorry for OFF topic.
Somebody asked it but i want a clear awnser.
Can i use it to roll back to 2.15 from 2.16?
yooouuri said:
Somebody asked it but i want a clear awnser.
Can i use it to roll back to 2.15 from 2.16?
Click to expand...
Click to collapse
Yes you can if youre s-off.
Sent from HTC One S using android 4.2.2 sense 5
Im s-off and changen my RUU back to the origonal.
Using RUU_Ville_U_JB_45_S_HTC_Europe_3.16.401.8_Radio_1.11.50.05.28_10.27.50.08L_release_301814_signed_2_4
But i get the same error. Cant update because wrong "Update tool".
-------------------------------
Flashed orig_hboot_2.15.0000.zip
But im stuck on 1.20 Radio?
yooouuri said:
Im s-off and changen my RUU back to the origonal.
Using RUU_Ville_U_JB_45_S_HTC_Europe_3.16.401.8_Radio_1.11.50.05.28_10.27.50.08L_release_301814_signed_2_4
But i get the same error. Cant update because wrong "Update tool".
-------------------------------
Flashed orig_hboot_2.15.0000.zip
But im stuck on 1.20 Radio?
Click to expand...
Click to collapse
Did you run the RUU.exe when your phone was in bootloader (fastboot USB mode)?
tivofool said:
Did you run the RUU.exe when your phone was in bootloader (fastboot USB mode)?
Click to expand...
Click to collapse
That's the right thing to do, yes?
kilo94 said:
That's the right thing to do, yes?
Click to expand...
Click to collapse
Yes
I have the same problem. I can't go back to stock. I haven't changed my CID yet but I see that has not worked for you.
Did you try with HTC__001 ?
dhigby said:
Running an RUU is only simple for those who haven't been messing with their devices, and that usually isn't us. Since I just did this, I want to write down the steps because I was not able to find easy answers.
This assumes your device is rooted with a different ROM installed. If that is not the case, then you can just download and run the RUU for your device, end of instructions.
Downloading the correct RUU
The most complete list of RUUs for Ville is found on androidruu.com
T-Mobile: http://www.androidruu.com/getdownlo..._10.30.50.08L_release_309489_signed_ICS_2.exe
HTC Europe: http://www.androidruu.com/getdownlo...28_10.27.50.08L_release_301814_signed_2_4.exe
There are RUU updates listed for other service providers, but I can't tell if they are JellyBean hboot 2.15 or not. If someone knows, I'll update this post.
Preparing your device
Make your device s-off if it isn't already. Why?
You will not have to relock the bootloader to perform the RUU update.
You will not have to flash the boot image separately.
If for some reason you can't or won't go s-off, you can still do this, but will have many more steps to follow.
Instructions to make your device s-off are here for firmwares below 3.14: Facepalm S-Off for HTC Devices One S, One XL, Droid DNA
Or you can use the HTC All-In-One Toolkit which helps you through the process.
Use the HTC All-In-One Toolkit (link above) to change the CID to match the RUU.
You needed Super CID to gain s-off, but it won't help you install RUUs. Even if you are Super CID (11111111), you must change your CID to match the RUU you are installing (mine is TMobile: T-MOB010). I know, kinda defeats the purpose of being Super CID, but the RUU won't succeed otherwise. If you are s-off, it is a one click operation using the All-In-One Toolkit.
Backup your device
Use Titanium backup to backup all your user apps so you can restore them afterwards. (No, don't restore system apps please!)
Also back up your ROM by booting into recovery mode and selecting Backup.
If you are only updating the hboot but keeping the same ROM, you can just restore the backup afterwards. Not sure why anyone would need to update the hboot without installing a new ROM, but then you also have a backup in case things go wrong.
Run the RUU
If you are s-on you will have to relock the bootloader by rebooting into the fastboot mode, connecting your device to the computer and running the command "fastboot oem lock". You will also have to follow the process again to unlock your bootloader after doing the update. Tutorials for that are found elsewhere.
1. Leave bootloader unlocked, and leave s-off as is. No need to go back to s-on or relock bootloader.
2. Run the RUU and wait while it updates the phone (Incidentally, it didn't even wipe my sd partition data!)
3. While you are still in bootloader mode (before booting up), use the All-In-One tool to install the TWRP S4 recovery. Or, if you don't want to use the tool, you'll have to download a recovery and use "fastboot flash recovery" followed by the name of the recovery img file.
4. Reboot bootloader and enter recovery mode
5. Restore from backup or Mount USB from TWRP and copy over the ROM and gapps package, flash, wipe cache, and you are up and running.
If you are s-on you will need to extract the boot.img from the zip you are flashing and flash that image separately with "fastboot flash boot boot.img"
Note that device still has the unlocked bootloader and is still s-off! :victory:
My device before: hboot 1.09, unlocked bootloader, Super CID, s-off (In layman's terms, this is a device with an unlocked bootloader so it can accept other ROMs, set to accept any service provider's RUU update via SuperCID, and has had write permission to the boot sector removed via s-off).
My device after: hboot 2.15, unlocked bootloader, T-MOB010 CID, s-off
If possible, I will answer your comments or questions by updating this post and I'll refer you back to here.
Click to expand...
Click to collapse
Hey I used your instructions and everything was perfect thank you. I used to upgarde and downgrade hboot even to restore the HTC one S
I got the RUU "Error: 159" again with both RUU from first post and testet with each common cid, but at the end I only got success with super cid and the TMO_US Ruu.
Now I am back on Hboot 2.15 and can flash again the newest custom-recovery, thank you very much.
I've heard about a flashabe standalone zip for the hboot 2.15 and found this:
Only for S4!
Boot into bootloader and enable fastboot.
Code:
fastboot oem rebootRUU
Wait for the black screen with white HTC symbol. (Like when you flash a RUU)
then enter:
Code:
fastboot flash zip modded_hboot_YOUR_NEEDED_HBOOT.zip
then if you want
Code:
fastboot oem boot
(Boot into your current ROM)
modded_ = The red text is removed and "tampered" is gone in bootloader.
Download:
modded_hboot_1.06.0000.zip - (397.1 KB)
modded_hboot_1.09.0000.zip - (400.6 KB)
modded_hboot_1.13.0000.zip - (399.0 KB)
modded_hboot_1.14.0002.zip - (405.3 KB)
modded_hboot_1.14.0004.zip - (373.2 KB)
modded_hboot_1.14.0005.zip - (373.6 KB)
modded_hboot_2.15.0000.zip - (400.9 KB)
modded_hboot_2.16.0000.zip - (398.6 KB)
Thx goes to: touch of jobo XDA Post Source
DISCLAIMER:this is not my work. i have tested it on my own device,but use it at your own risk. if it melts your phone into a lil pile of goo,its not my fault.
Greetings by Idijt

Categories

Resources