[Q] 3g gone on MZ601 - Xoom Q&A, Help & Troubleshooting

Hi all!
Typical problem around these forums : "played around wtih different ROMs and now don't have 3G anymore".
I had ICS from team EOS for wifi installed on my MZ601 (european 3g aka everest).
Now when EOS have released a version for MZ601 i've flashed it, but get no 3g.
Now i have flashed
EVRSU_U5.H.6.1-38-9_SIGNED_USAEVRSTURTIRD_P016_A006_M004_HWumts_ever est_Service1FF.sbf.gz
Still no love and some commands output are as follows:
adb logcat -b radio
Code:
I/RIL-MAIN( 101): RIL_Init+
I/RIL-RRDR( 101): rspRdrT: Opening tty ports
E/RILC ( 101): RIL_register: RIL version 4
I/RIL-DISP( 101): dispT+
I/RIL-MX ( 101): openMuxPorts: numretries = 100, sleepbtwretries = 2000 msecs, Log Mask = FFD7
I/RIL-UTL ( 101): setupRilDir: RIL DIR ready (mode=16889)
E/RIL-MX ( 101): openMuxPorts: UNABLE TO OPEN DEVICE /dev/ttyUSB2, ERROR 2 Sleeping for 2000 msecs
I/RIL-DISP( 101): dispT: Panic Logging Enabled
I/RIL-CC ( 101): CallCntrl+
D/RIL-PPPC( 101): Constructing PppdControl; this=0xc238
I/RIL-RDS ( 101): setupSrSo: Created socket 15
I/RIL-RDS ( 101): setupSvrSock: unlink done err=0
D/RIL-MDM ( 101): Constructing Modem; this=0xc1e0
I/RIL-RDS ( 101): setupSrSo: bind OK
I/RIL-MOSMS( 101): MoSms+
I/RIL-LBS ( 101): Lbs+
I/RIL-ICC ( 101): Icc+
I/RIL-MSC ( 101): Misc+
I/RIL-MTSMS( 101): MtSms+
I/RIL-EFEM( 101): Efem. Create Instance
I/RIL-EFEM( 101): Efem+
I/RIL-RDS ( 101): setupSrSo: Listening
I/RIL-RDS ( 101): lstnr: Created and Listening on socket 15
E/RIL-MX ( 101): openMuxPorts: UNABLE TO OPEN DEVICE /dev/ttyUSB2, ERROR 2 Sleeping for 2000 msecs
D/RIL-MX ( 101): wtDth: select timeout after waiting for 2000 msecs
E/RIL-MX ( 101): openMuxPorts: UNABLE TO OPEN DEVICE /dev/ttyUSB2, ERROR 2 Sleeping for 2000 msecs
D/RIL-MX ( 101): wtDth: select timeout after waiting for 2000 msecs
dmesg bits:
Code:
<6>[ 0.000000] Initializing cgroup subsys cpu
<5>[ 0.000000] Linux version 2.6.36.3 ([email protected]) (gcc version 4.4.3 (GCC) ) #1 SMP PREEMPT Thu Oct 13 02:27:32 CDT 2011
<4>[ 0.000000] CPU: ARMv7 Processor [411fc090] revision 0 (ARMv7), cr=10c53c7f
<4>[ 0.000000] CPU: VIPT nonaliasing data cache, VIPT nonaliasing instruction cache
<4>[ 0.000000] Machine: stingray
...
...
<5>[ 0.000000] Kernel command line: [email protected] [email protected] video=tegrafb [email protected] console=ttyS0,115200n8 usbcore.old_scheme_fi
rst=1 tegraboot=sdmmc gpt gpt_sector=0x03b9dfff mot_prod=1 androidboot.serialno=0288418641df4397 hw_rev=p3 androidboot.modelno=MZ600 product_type=cw lp0_vec=819
[email protected] androidboot.bootloader=1049 androidboot.baseband=CDMA_N_03.1A.44PS lcd_manfid=SHP mem_vid=0x303 mem_pid=0x5454
...
...
<6>[ 53.668011] radio_class_init: initialized radio_class
<7>[ 53.668240] mdm6600_ctrl_init
<6>[ 53.668368] mdm6600_ctrl mdm6600_ctrl: mdm_ctrl_probe
<6>[ 53.670116] radio_dev_register: register mdm6600
<6>[ 53.670374] mdm6600_ctrl: modem status: undefined -> panic [power off]
<6>[ 53.670592] wrigley_init: initializing wrigley
<6>[ 53.670868] wrigley_probe: wrigley
<6>[ 53.671636] radio_dev_register: register wrigley
...
...
<6>[ 340.303160] mdm6600_ctrl: Initial Modem status panic [0x0]
<6>[ 340.303327] mdm6600_ctrl: ap_status set to 3
<6>[ 340.331089] mdm6600_ctrl: modem status: panic -> panic [power on]
<6>[ 344.301726] mdm6600_ctrl: modem status: panic -> panic [power off]
<6>[ 344.305646] mdm6600_ctrl: user command = powerup
<6>[ 344.305901] mdm6600_ctrl: Starting up modem.
<6>[ 344.306145] mdm6600_ctrl: Initial Modem status panic [0x0]
<6>[ 344.306402] mdm6600_ctrl: ap_status set to 3
<6>[ 344.331541] mdm6600_ctrl: modem status: panic -> panic [power on]
<6>[ 348.300716] mdm6600_ctrl: modem status: panic -> panic [power off]
<6>[ 348.302457] mdm6600_ctrl: user command = powerup
<6>[ 348.302634] mdm6600_ctrl: Starting up modem.
<6>[ 348.302725] mdm6600_ctrl: Initial Modem status panic [0x0]
<6>[ 348.302964] mdm6600_ctrl: ap_status set to 3
<6>[ 348.330829] mdm6600_ctrl: modem status: panic -> panic [power on]
<6>[ 352.301300] mdm6600_ctrl: modem status: panic -> panic [power off]
^^ wonder why stingray....
^^ wonder why kernel command line is modelno=MZ600
^^ wonder why baseband is CDMA
^^ wonder why modem panics
I got an SBF for android 3.0, 3.1 etc for everest, flashed it via RSD, no love, updated builds to 3.2 (to get new bootloader) - no love, triet tiamat 2.2.2 and pretty much all other ROMS with similar result. Tried guides how to unlock 3G when upgrading to 3.2 (the old guides that were written when everybody out there was running 3.0 and wanted custom 3.2 builds)...no love
Can it be that my radio rom got overwritten when i installed some other ROM and now contains incorrect data?
Is there any chance i can get the 601 radio (CM5.sbf i think) somewhere?
Where is the model name and kernel boot parameters stored?
It's not just me with this problem, afaik.
Maybe some gurus will be able to help in this tricky case.
Much appreciated in advance

Which nightly of the TeamEOS MZ601's did you try? Since nightly #8 3G has been working for me, but there were further fixes after nightly #8 for 3G so it might be worth trying it out again.

I've tried #10, but then also all 3.2 ones, no luck. there's something up with the radio probably

Yes, I'm having the same problem.
Sent from my Desire HD using Tapatalk

Here is the link to the CG5_0x00000000.smg from the European 3g Honeycomb 3.2 sbf.
http://db.tt/waHaCFaj
Anyone know how to convert it into a flashable radio either as an update zip or as a radio.img?
Thanks
Phil
Sent from my MZ601 using Tapatalk

that should be no prob! great stuff. will update you if i got any progress

The radio (CG5.smg) may contain other bits, so probably a good idea to restore to 3.2 before flashing.

Have you tried reverting back to the stock images from Motodev (moto.ly/xoomsoftware), rather than using the SBF?

Yes. Tried those images using fastboot and relocking OEM but no joy. Tried both the 3.0.1 sbf and the 3.2 sbf still no joy. Running out of idea's. Starting to think the hardware has blown. System doesn't even recognise a sim card removal or insertion. :-(
Sent from my Desire HD using xda premium

well of course it won't recognize it, if the modem is gone. Modem is the one the RIL layer talks to, and no modem = no SIM card notifications.
It's NOT hardware....it's something else, just need to find it...

See the post "Flashing a US/CDMA 3G+WiFi Xoom Honeycomb ROM onto a European/UMTS one" on the blog felipe-alfaro.org/blog
... it help for me in the same case.

Thanks will give it a look. ;-)
Sent from my Desire HD using xda premium

maol1974 said:
See the post "Flashing a US/CDMA 3G+WiFi Xoom Honeycomb ROM onto a European/UMTS one" on the blog felipe-alfaro.org/blog
... it help for me in the same case.
Click to expand...
Click to collapse
Not quite what we need. We have already overwritten our UMTS Radio with a CDMA one and we are trying to get our UMTS Radio installed back onto our xoom.
Can anyone help? Gonna try a few things when I get chance.

No help I'm afraid, but just want to mention that I also lost 3G.
I have a Telstra MZ601 and I believe I lost 3G long ago when I first flashed one of the Tiamat ROMs.
I have tried flashing the official Moto images, and even a Telstra SBF using RSDLite with no joy.
I have "baseband unknown" when I go to about tablet.
I thought flashing the SBF was supposed to reset everything including the radio to stock?

@kevlarman: can you put your
1) dmesg from normal mode
2) dmesg from recovery mode
3) adb logcat -b radio
to some pastebin and give us a link please?
just to compare my trouble with diigibio and some other ppl.
@diigibio: can you actually do the same, m8?

andlommy said:
@kevlarman: can you put your
1) dmesg from normal mode
2) dmesg from recovery mode
3) adb logcat -b radio
to some pastebin and give us a link please?
just to compare my trouble with diigibio and some other ppl.
@diigibio: can you actually do the same, m8?
Click to expand...
Click to collapse
Radio logcat
http://pastebin.com/2Xh0K5R2
Normal dmesg
http://pastebin.com/4bBkrbE3
How do I get a dmesg from recovery?

boot CWM recovery, adb shell to it and dmesg...

andlommy said:
boot CWM recovery, adb shell to it and dmesg...
Click to expand...
Click to collapse
Yeah that's what I thought (and did) but adb returns "device not found."
Doing an adb devices shows no devices.

Got this from recovery
Got this picture from recovery.
Here is my normal dmesg: http://db.tt/CMoRaKAO
Here is my recovery dmesg: http://db.tt/QJT9vzrb
And attached is a minute or two of my logcat for radio (buffer)
Logcat is taking forever......

Ok guys, couple things here. First, none of you have actually flashed a cdma radio. If, somehow, that was the case, your device would be perma-bricked. For now, I recommend everybody stop playing with these damn sbf's. SBF is a ****ty implementation of flashing to the system. You will only create more problems for yourself.
I had ICS from team EOS for wifi installed on my MZ601 (european 3g aka everest).
Now when EOS have released a version for MZ601 i've flashed it, but get no 3g.
Now i have flashed
EVRSU_U5.H.6.1-38-9_SIGNED_USAEVRSTURTIRD_P016_A006_M004_HWumts_ever est_Service1FF.sbf.gz
Click to expand...
Click to collapse
I'm not sure, but it looks like that sbf is for some USA model? Either way, are you absolutely certain that that sbf successfully flashed without error? Actually, are you certain that that sbf was not for USA verizon 3g cdma?
Kernel command line: [email protected] [email protected] video=tegrafb [email protected] console=ttyS0,115200n8 usbcore.old_scheme_fi rst=1 tegraboot=sdmmc gpt gpt_sector=0x03b9dfff mot_prod=1 androidboot.serialno=0288418641df4397 hw_rev=p3 androidboot.modelno=MZ600 product_type=cw lp0_vec=819 [email protected] androidboot.bootloader=1049 androidboot.baseband=CDMA_N_03.1A.44PS lcd_manfid=SHP mem_vid=0x303 mem_pid=0x5454
Click to expand...
Click to collapse
[ 53.668011] radio_class_init: initialized radio_class
<7>[ 53.668240] mdm6600_ctrl_init
<6>[ 53.668368] mdm6600_ctrl mdm6600_ctrl: mdm_ctrl_probe <6>[ 53.670116] radio_dev_register: register mdm6600
<6>[ 53.670374] mdm6600_ctrl: modem status: undefined -> panic [power off]
<6>[ 53.670592] wrigley_init: initializing wrigley
<6>[ 53.670868] wrigley_probe: wrigley
<6>[ 53.671636] radio_dev_register: register wrigley
Click to expand...
Click to collapse
This information is pulled from different places. Some is pulled from the bootloader. Some is from boot image cmdline text file. Some is pulled from the misc block.
Also, run this
Code:
cd /mnt/sdcard
cat /dev/block/platform/sdhci-tegra.3/by-name/misc > misc.img
Then on computer
Code:
adb pull /mnt/sdcard/misc.img
Then open the image in a hex editor and search for "android" Post up what it returns.
EDIT: I found this while digging around. It's polish translated to english

Related

[Partial Solution] Wi-Fi unable to start.

"Wi-Fi unable to start" error appeared couple weeks ago.
I have tried everything - reflashing different images, radio, formatting ... etc.
Nothing helped.
In a desperate moment I tried something.
Here are the steps:
I made some progress and it seams that is pure software problem.
Currently I'm with G1/black Cyanogen 3.6.8.1, Recovery 1.4 and 8GB SD/class 4.
What I did is reformatting the SD card in 2 partitions 1st FAT32 and 2nd ext2 ~ 460MB.
Wiped before flashing cyanogen build and also I made sure that there is nothing on the ext2 partition.
When flashing finished I waited the phone to fully set up itself on the first boot ~5-7 min.
Then I tried the WiFi - it didn't start
The important and desperate thing I did was to go to su console in /system/lib/modules and tried to load wlan.ko manually (insmod wlan.ko) - it failed the 1st time.
Then I tried 2 times more and it loaded itself successfully (of course wifi connection is not established in that moment, because loading the module is just one step of the process).
I unloaded successfully (rmmod wlan) the module and tried to start WiFi again - gues what - It worked!
That is just partial solution of the problem, but shows that it is just a software problem.
I guess some timeouts appear and WiFi starting procedure is not so patient to wait for the module to start up and it's not retrying to unload and load again the module.
Good luck
Hope it will work on yours G1.
Cheers
this has been up on a google code bug report page for a while now. I had the same result when trying to start the module in the terminal
cyanogen's new 3.9.1 scary experimental build shows that he used a new wifi driver in the changelog but that hasn't helped me with this issue at all. I thought it might be a software conflict so I used a clean sd card, flashed my update.zip, and still had the same problem
I have tried Cyanogen 3.9.1 with the same result - it doesn't work for me.
I can't explain why it started to work again in 3.6.8.1
Anyway, try to copy all your important files (not system/applications created like thumbnails folder) to your PC, put the SD card to card reader connected to a PC and then do a full reformat to FAT32.
Partition the newly formatted SD card to FAT32 and EXT2 partitions.
Reformat partitions again, copy update.zip to your SD card.
Start up your G1 holding home button and do wipe ( I wiped 2-3 times just to be sure )
Do ext2 system repair from the repair menu.
Do not convert it to ext3.
Apply the update.zip and continue to the next steps I wrote above.
Hope that's info is useful for you.
Post the output of "dmesg" after you try to install the module. It will tell us whats going wrong. This is not normal at all and might be hardware related.
cssvb94 said:
but shows that it is just a software problem.
Click to expand...
Click to collapse
I don't see how you come to the conclusion that it is a software problem. Intermittence is typically a sign of a HARDWARE problem.
lbcoder said:
I don't see how you come to the conclusion that it is a software problem. Intermittence is typically a sign of a HARDWARE problem.
Click to expand...
Click to collapse
Simple, it works somethimes on some builds and it doesn't at all on others - same hardware, different software.
Anyway, I realy hope it's not hardware related ...
cyanogen said:
Post the output of "dmesg" after you try to install the module. It will tell us whats going wrong. This is not normal at all and might be hardware related.
Click to expand...
Click to collapse
Is that request for me or airmaxx?
I really don't want to reflash now when it's working.
In the moment when something goes wrong I'll post dmesg.
I've noticed "D/wlan_loader( 228): ConfigMge start rc = -1" couple times in dmesg output when it wasn't working and "D/wlan_loader( 228): ConfigMge start rc = 0" when it works.
after a clean install of cyanogen 3.9.1, i tried to start with in the gui, through settings menu. after it reported "unable to start wifi" this is my dmesg output....
Code:
<6>[ 695.675048] TIWLAN: Driver loading
<4>[ 695.679168] wifi_probe
<4>[ 695.681762] trout_wifi_power: 1
<4>[ 695.888366] trout_wifi_reset: 0
<4>[ 695.943084] trout_wifi_set_carddetect: 1
<7>[ 695.947265] mmc0: card_present 1
<6>[ 695.950744] mmc0: Slot status change detected (0 -> 1)
<3>[ 698.464202] mmc0: Command timeout
<4>[ 698.474548] mmc0: card claims to support voltages below the defined range. These will be ignored.
<4>[ 698.484191] mmc0: SDIO card claims to support the incompletely defined 'low voltage range'. This will be ignored.
<6>[ 698.497955] mmc0: new SDIO card at address 0001
<6>[ 698.508758] TIWLAN: Found SDIO controller (vendor 0x104c, device 0x9066)
<6>[ 698.517639] tiwlan0 (): not using net_device_ops yet
<6>[ 698.530426] TIWLAN: Driver initialized (rc 0)
<3>[ 698.535705] mmc0: Data CRC error
<3>[ 698.539276] msmsdcc_data_err: opcode 0x00000035
<3>[ 698.544128] msmsdcc_data_err: blksz 4, blocks 1
<3>[ 698.549621] SDIO_SyncWrite: failed (-84)
<3>[ 698.554016] mmc0: Data CRC error
<3>[ 698.557586] msmsdcc_data_err: opcode 0x00000035
<3>[ 698.562713] msmsdcc_data_err: blksz 4, blocks 1
<3>[ 698.567718] SDIO_SyncWrite: failed (-84)
<3>[ 701.399383] mmc0: Data timeout
<3>[ 701.403289] SDIO_SyncRead: failed (-110)
<4>[ 701.407623] TIWLAN: invalid chip id = 0x 0 0 0 0!
<6>[ 701.412933] TIWLAN: Driver loaded
<4>[ 701.820495] select 226 (app_process), adj 15, size 3301, to kill
<4>[ 701.826873] send sigkill to 226 (app_process), adj 15, size 3301
<3>[ 704.165802] mmc0: Data timeout
<3>[ 704.169311] SDIO_SyncRead: failed (-110)
<3>[ 704.174041] TIWLAN: TIWLAN: Failed to start config manager
<6>[ 710.698730] RPC_TIME_TOD_SET_APPS_BASES:
<6>[ 710.698760] tick = 38620607
<6>[ 710.698760] stamp = 48907518449025024
<4>[ 735.120178] select 480 (app_process), adj 15, size 4338, to kill
<4>[ 735.126464] send sigkill to 480 (app_process), adj 15, size 4338
something i remembered earlier was that long ago, many roms and flashes prior (when I was still chasing after Hero and Rosie) i saw a wpa supplicant file had been installed on my fat32 partition, no system folder or anything just on the root of the card. i remember thinking at the time how odd this was and manually deleting the file prior to my next flash.
My problem may have started shortly thereafter but honestly don't remember, just grasping for straws here
cssvb94 said:
Simple, it works somethimes on some builds and it doesn't at all on others - same hardware, different software.
Anyway, I realy hope it's not hardware related ...
Click to expand...
Click to collapse
Really? That's not what you said before...
cssvb94 said:
I have tried everything - reflashing different images, radio, formatting ... etc.
Nothing helped.
Click to expand...
Click to collapse
Clearly, it is NOT related to the software since you TRIED CHANGING the software and it didn't help, and the SAME SOFTWARE works fine for everybody else, which means that it MUST be either USER ERROR, or HARDWARE DEFECT.
lbcoder said:
Really? That's not what you said before...
Clearly, it is NOT related to the software since you TRIED CHANGING the software and it didn't help, and the SAME SOFTWARE works fine for everybody else, which means that it MUST be either USER ERROR, or HARDWARE DEFECT.
Click to expand...
Click to collapse
Listen, I'm not here to argue and I don't have anything against you.
Why you are so catchy about that simple details?
I'm trying to help and share what I've been through.
If you are offended of something I said then - sorry.
Don't be such arrogant, capital letters don't work on me. =)
----------------------------------------------------------------------
This is cut from my dmesg :
WiFi starting OK
--- cut ---
<6>[ 268.613555] TIWLAN: Driver loading
<4>[ 268.617797] wifi_probe
<4>[ 268.620758] trout_wifi_power: 1
<4>[ 268.830261] trout_wifi_reset: 0
<4>[ 268.884521] trout_wifi_set_carddetect: 1
<7>[ 268.888824] mmc0: card_present 1
<6>[ 268.892303] mmc0: Slot status change detected (0 -> 1)
<3>[ 271.400268] mmc0: Command timeout
<4>[ 271.410339] mmc0: card claims to support voltages below the defined range. These will be ignored.
<4>[ 271.419982] mmc0: SDIO card claims to support the incompletely defined 'low voltage range'. This will be ignored.
<6>[ 271.436584] mmc0: new SDIO card at address 0001
<6>[ 271.446960] TIWLAN: Found SDIO controller (vendor 0x104c, device 0x9066)
<6>[ 271.455352] tiwlan0 (): not using net_device_ops yet
<6>[ 271.464538] TIWLAN: Driver initialized (rc 0)
<4>[ 271.469909] TIWLAN: 1251 PG 1.2
<6>[ 271.473693] TIWLAN: Driver loaded
<3>[ 271.863403] mmc0: Data CRC error
<3>[ 271.866851] msmsdcc_data_err: opcode 0x00000035
<3>[ 271.871551] msmsdcc_data_err: blksz 512, blocks 1
<4>[ 271.877441] SDIO Write failure (-84)
<3>[ 271.883209] TIWLAN: TIWLAN: Failed to start config manager
--- cut ---
<6>[ 689.787445] TIWLAN: Found SDIO controller (vendor 0x104c, device 0x9066)
<6>[ 689.795745] tiwlan0 (): not using net_device_ops yet
<6>[ 689.804901] TIWLAN: Driver initialized (rc 0)
<4>[ 689.810150] TIWLAN: 1251 PG 1.2
<6>[ 689.813690] TIWLAN: Driver loaded
<3>[ 690.153045] mmc0: Data CRC error
<3>[ 690.156463] msmsdcc_data_err: opcode 0x00000035
<3>[ 690.161163] msmsdcc_data_err: blksz 4, blocks 1
<4>[ 690.168182] SDIO Write failure (-84)
<3>[ 690.173889] TIWLAN: TIWLAN: Failed to start config manager
--- cut ---
Now new case: "Unable to stop Wi-Fi"
rmmod wlan throws back: "rmmod: delete_module 'wlan' failed (errno 11)"
lsmod returns: "wlan 566844 1 - Live 0xbf480000"
lbcoder, was there anything in my dmesg that confirmed it is indeed hardware, or anything useful at all in there?
after reading the reports on googlecode pages, i was leaning to hardware issue only because the problem is so rare and those people sent their g1's back in. I was really hoping this wasn't the case though.
I'd be happy with intermittent at this point, my wifi has not turned on in like 2 months my phone was purchased used (wifi worked fine at the time though) on craigslist so I can't return it to TMO
The CRC errors on mmc0 means that your sdcard is dying. It might seem unrelated but because how the way the G1 hardware works, this could be the problem. Yank your card and try it again.
No more WiFi
"Unable to stop" or "Unable to start" after reboot.
Tried with different SD card - no CRC errors and still no WiFi
for me the wifi turned on but it cant connect with a router... just write obtain ip address.. and after.. no connection
this is my log
<6>[ 175.583831] ept #2 out max:512 head:ffc0c100 bit:2
<6>[ 175.584289] ept #0 in max:64 head:ffc0c040 bit:16
<6>[ 175.585083] ept #1 in max:512 head:ffc0c0c0 bit:17
<6>[ 175.585510] ept #2 in max:512 head:ffc0c140 bit:18
<6>[ 175.586059] usb: notify offline
<6>[ 175.594207] usb: suspend
<6>[ 175.813262] usb: reset
<6>[ 175.815673] usb: portchange USB_SPEED_HIGH
<6>[ 175.967803] usb: reset
<6>[ 175.970092] usb: portchange USB_SPEED_HIGH
<6>[ 176.164825] usb_mass_storage usb_mass_storage: config #1
<6>[ 187.209259] request_suspend_state: wakeup (3->0) at 180968491210 (2009-07-
29 16:16:01.570098877 UTC)
<6>[ 188.333618] TIWLAN: Driver loading
<4>[ 188.334503] wifi_probe
<4>[ 188.334777] trout_wifi_power: 1
<4>[ 188.536346] trout_wifi_reset: 0
<4>[ 188.586914] trout_wifi_set_carddetect: 1
<7>[ 188.587432] mmc0: card_present 1
<6>[ 188.587738] mmc0: Slot status change detected (0 -> 1)
<3>[ 191.095031] mmc0: Command timeout
<4>[ 191.102386] mmc0: card claims to support voltages below the defined range.
These will be ignored.
<4>[ 191.103210] mmc0: SDIO card claims to support the incompletely defined 'lo
w voltage range'. This will be ignored.
<6>[ 191.112518] mmc0: new SDIO card at address 0001
<6>[ 191.118377] TIWLAN: Found SDIO controller (vendor 0x104c, device 0x9066)
<6>[ 191.123901] TIWLAN: Driver initialized (rc 0)
<4>[ 191.125244] TIWLAN: 1251 PG 1.2
<6>[ 191.125701] TIWLAN: Driver loaded
<6>[ 192.657897] snd_set_volume 256 0 5
<6>[ 192.747344] snd_set_volume 256 0 5
<3>[ 198.871185] init: sys_prop: permission denied uid:1000 name:ro.config.noc
heckin
<6>[ 244.551879] TIWLAN: Driver unloading
<4>[ 244.553070] sdio_reset_comm():
<7>[ 244.631011] TIWLAN: Releasing SDIO resources
<7>[ 244.632324] TIWLAN: SDIO resources released
<4>[ 244.634918] wifi_remove
<4>[ 244.635406] trout_wifi_set_carddetect: 0
<7>[ 244.636199] mmc0: card_present 0
<6>[ 244.636627] mmc0: Slot status change detected (1 -> 0)
<6>[ 244.639465] mmc0: card 0002 removed
<4>[ 244.643585] trout_wifi_reset: 1
<4>[ 244.699401] trout_wifi_power: 0
<6>[ 244.905883] TIWLAN: Driver unloaded
<6>[ 246.548492] TIWLAN: Driver loading
<4>[ 246.549377] wifi_probe
<4>[ 246.549652] trout_wifi_power: 1
<4>[ 246.754119] trout_wifi_reset: 0
<4>[ 246.805236] trout_wifi_set_carddetect: 1
<7>[ 246.805786] mmc0: card_present 1
<6>[ 246.806060] mmc0: Slot status change detected (0 -> 1)
<3>[ 249.310638] mmc0: Command timeout
<4>[ 249.318481] mmc0: card claims to support voltages below the defined range.
These will be ignored.
<4>[ 249.319335] mmc0: SDIO card claims to support the incompletely defined 'lo
w voltage range'. This will be ignored.
<6>[ 249.326782] mmc0: new SDIO card at address 0001
<6>[ 249.332794] TIWLAN: Found SDIO controller (vendor 0x104c, device 0x9066)
<6>[ 249.338226] TIWLAN: Driver initialized (rc 0)
<4>[ 249.339141] TIWLAN: 1251 PG 1.2
<6>[ 249.339599] TIWLAN: Driver loaded
<6>[ 994.061614] request_suspend_state: sleep (0->3) at 987820816650 (2009-07-2
9 16:29:28.422424317 UTC)
<4>[ 994.083801] deinit sharp panel
<4>[ 994.762908] save exit: isCheckpointed 1
<4>[ 994.765380] save exit: isCheckpointed 1
If you want help, get your details straight! If you contradict yourself all over the place, then nobody can possibly know what is going on and you won't get anywhere.
cssvb94 said:
Listen, I'm not here to argue and I don't have anything against you.
Why you are so catchy about that simple details?
Click to expand...
Click to collapse
You mention having tried flashing different software...
Have you tried flashing IMAGES (fastboot) or just update scripts (i.e. update.zip)?
If you haven't tried already, I suggest flashing the stock *engineering* bootloader 0.95.3000, ADP1-CRC1 images from www.htc.com -- the one that's labeled as "system image" (not the one labeled "recovery image", which is just an update.zip), and radio v2_22_19_26I (also from htc.com), write everything to the phone using fastboot, pull the battery, wait 10 minutes, and see what happens. IF it is a software problem, then this will *definitely* fix it. If it is a HARDWARE problem, then this will *definitely NOT* fix it. If the wifi starts working right after you write these things, *do not* conclude that it was a software problem since it could simply have gone intermittent-on. Keep the software like that and run it for at least a week to make sure the problem doesn't come back before making your conclusions.
Went back to stock 1.0 RC29 with original SPL, radio and bootloader and started from scratch.
Also formated SD card - only one partition FAT32.
Now I'm with ADP1.5 JF and WiFi is working most of the time.
So angry lbcoder what's your great verdict now? SOFTWARE or HARDWARE?
lbcoder said:
You mention having tried flashing different software...
Have you tried flashing IMAGES (fastboot) or just update scripts (i.e. update.zip)?
If you haven't tried already, I suggest flashing the stock *engineering* bootloader 0.95.3000, ADP1-CRC1 images from www.htc.com -- the one that's labeled as "system image" (not the one labeled "recovery image", which is just an update.zip), and radio v2_22_19_26I (also from htc.com), write everything to the phone using fastboot, pull the battery, wait 10 minutes, and see what happens. IF it is a software problem, then this will *definitely* fix it. If it is a HARDWARE problem, then this will *definitely NOT* fix it. If the wifi starts working right after you write these things, *do not* conclude that it was a software problem since it could simply have gone intermittent-on. Keep the software like that and run it for at least a week to make sure the problem doesn't come back before making your conclusions.
Click to expand...
Click to collapse
which is the commands for push the radio and the the adp1-crc1 image via fastboot?
i can t find ADP1-CRC1 images can you give me a url please?
success!!!!!!
the problem was the radio... i flashed 2 times the radio and now work!!!!!
thanks guyssss i love you aahahah
rock187 said:
the problem was the radio... i flashed 2 times the radio and now work!!!!!
thanks guyssss i love you aahahah
Click to expand...
Click to collapse
Great =)
Would you please post full step-by-step what you did.
10x in advance
It didn't work for me. I'm going to return my G1 back to the store I bought it, it's still under warranty.

[Q] Do I have a hardware problem? Please advise

I have HTC Desire S Android 2.3.5 with the "Wifi Error"
NOTE: the "Wifi Error" appeared without being rooted or installing any custom roms at all.
I have no idea how this happened.
I unlocked the bootloader via HTCdev, installed EXT4 recovery and then Reaper V3 custom Rom.
This all worked fine but still had "Wifi Error".
*** UNLOCKED ***
SAGA PUT SHIP S-ON RL
HBOOT-2.00.0002
RADIO - 3822.10.08.04_M
Model number: HTC Desire S
Android version: 2.3.7
Baseband version: 20.4801.30.0822U_3822.10.08.04_M
Kernel version: 2.6.35.14-Reaper-V1.3-bfs+
Mod version: Reaper-V3.0.0
Build number: GWK74
Then I read that "Wifi Error" is because of Radio not being updated when the Kernel was,
so they had different versions. So I decided to install a RUU which would update both Radio and Kernel.
So I downloaded the official HTC ICS ROM RUU from htcdev
RUU_SAGA_ICS_35_S_HTC_EU_14.01.401.2_20.76.30.0835_3831.19.00.110_275068.zip
which contains
RUU_SAGA_ICS_35_S_HTC_Europe_14.01.401.2_Radio_20.76.30.0835_3831.19.00.110_release_275068_signed.exe
I locked the boot loader using "fastboot oem lock" and then ran the RUU and it installed perfectly.
Now I have:
*** RELOCKED ***
SAGA PUT SHIP S-ON RL
HBOOT - 2.02.0002
RADIO - 3831.19.00.110
Jul 31 2012, 15:41:32
Android version: 4.0.4
HTC Sense version: 3.6
Software number: 14.01.401.2.710RD
Kernel version: 3.0.16-gce03037 [email protected]4#1 PREEMPT
Baseband version: 20.76.30.0835U_3831.19.00.110
Build number: 14.01.401.2 CL434411release-keys
Wi-Fi: 802.11 b/g/n
Wi-Fi MAC address: Unavailable
But I still have no WIFI!!!!
(it says "turning on wifi"... "error" appears for a milisecond, then back to "turning on wifi")
It looks to me like the ICS installed perfectly and updated the kernel and radio so should have solved the "Wifi Error".
I though updating the Radio and Kernel "correctly" would solve any "Wifi Error".
Question:
Do I have a hardware problem? Is there any way to know for sure?
Thanks in advance I appricate any advice.
did you do a clean install?
gymbase Beowulf'
HypnoCondor said:
did you do a clean install?
Click to expand...
Click to collapse
If you mean wipe data system and cache... no.. I just ran the RUU.
joeryan said:
If you mean wipe data system and cache... no.. I just ran the RUU.
Click to expand...
Click to collapse
So!!
HypnoCondor said:
So!!
Click to expand...
Click to collapse
:laugh:
Ok I did a wipe cache, davik cache, system, data and boot..
then reinstalled the RUU and it installed perfectly and now I still get the Wifi Error.
Is there anyway to check if I have a hardware problem?
Is there anything like dmesg that will show errors?
Thanks.
joeryan said:
:laugh:
Ok I did a wipe cache, davik cache, system, data and boot..
then reinstalled the RUU and it installed perfectly and now I still get the Wifi Error.
Is there anyway to check if I have a hardware problem?
Is there anything like dmesg that will show errors?
Thanks.
Click to expand...
Click to collapse
What you can try are three things:
1) install Network Signal Info from google play to see witch signal you got
2) set your wifi off, if the BT is on set it off and if it's off put it on. Set the wifi on and see whats happening.
3) install a CM10 version to see if your wifi is working
i don't know , u can try flashing a custom rom
HypnoCondor said:
What you can try are three things:
1) install Network Signal Info from google play to see witch signal you got
2) set your wifi off, if the BT is on set it off and if it's off put it on. Set the wifi on and see whats happening.
3) install a CM10 version to see if your wifi is working
Click to expand...
Click to collapse
Great - I will try those 3 ideas tonight when I get home.
u can try flashing a custom rom
Click to expand...
Click to collapse
Yeah I did tyr it but still had the Wifi error - I flashed Reaper V3
Thanks for the ideas, much appriciated
I installed Network Signal Info - on the Wifi tab it just says WiFi not on. I can't get it so give me any more information.
I turned on the Bluetooth, then turned on Wifi but no joy, and same result with BT off.
I'm going to install a JellyTime CM10 Saga R22.0 - Saga Edition | Kernel 3
http://forum.xda-developers.com/showthread.php?t=1903496&highlight=cm10
I got the contents of my dmesg and have the WIFI and WLAN stuff below in case it makes sense to anyone?
<6>[ 26.402008] [WLAN] ## wifi_probe
<6>[ 26.402130] [WLAN] wifi_set_power = 1
<6>[ 26.402221] saga_wifi_power: 1
<6>[ 26.714019] [WLAN] wifi_set_carddetect = 1
<6>[ 26.714141] saga_wifi_set_carddetect: 1
<6>[ 26.716125] [WLAN] Dongle Host Driver, version 4.218.248.18
<4>[ 38.711547] [WLAN][WRN] dhd_module_init: sdio_register_driver timeout
<6>[ 38.715240] [WLAN] ## wifi_remove
<6>[ 38.715362] [WLAN] wifi_set_carddetect = 0
<6>[ 38.715545] saga_wifi_set_carddetect: 0
<6>[ 38.715759] [WLAN] wifi_set_power = 0
<6>[ 38.715972] saga_wifi_power: 0
<6>[ 39.417022] [WLAN] module init fail, try again!
<6>[ 39.417480] [WLAN] ## wifi_probe
<6>[ 39.417663] [WLAN] wifi_set_power = 1
<6>[ 39.417816] saga_wifi_power: 1
<6>[ 39.549957] [WLAN] wifi_set_carddetect = 1
<6>[ 39.550170] saga_wifi_set_carddetect: 1
<6>[ 39.552459] [WLAN] Dongle Host Driver, version 4.218.248.18
<4>[ 51.551483] [WLAN][WRN] dhd_module_init: sdio_register_driver timeout
<6>[ 51.564117] [WLAN] ## wifi_remove
<6>[ 51.564300] [WLAN] wifi_set_carddetect = 0
<6>[ 51.564392] saga_wifi_set_carddetect: 0
<6>[ 51.564697] [WLAN] wifi_set_power = 0
<6>[ 51.564819] saga_wifi_power: 0
<6>[ 52.157806] [WLAN] ## wifi_probe
<6>[ 52.157989] [WLAN] wifi_set_power = 1
<6>[ 52.158111] saga_wifi_power: 1
<6>[ 52.485839] [WLAN] wifi_set_carddetect = 1
<6>[ 52.486053] saga_wifi_set_carddetect: 1
<6>[ 52.553619] [WLAN] Dongle Host Driver, version 4.218.248.18
I did a complete clean and installed JellyTime CM10 Saga R22.0
Now I have:
Android version: 4.1.2
Baseband version: 20.76.30.0835U_3831.19.00.110
Kernel version: 3.0.46MigSaga-v0.1+ [email protected] #1
I can turn on Bluetooth but not Wifi :crying:
Here's some output from dmesg if it helps:
<4>[ 31.864349] [WLAN][WRN] dhd_module_init: sdio_register_driver timeout
<6>[ 31.880950] [WLAN] ## wifi_remove
<4>[ 31.881134] [WLAN][WRN] wifi_set_power = 0
<6>[ 31.881256] saga_wifi_power: 0
<7>[ 31.881866] saga_wifi_bt_sleep_clk_ctl ON=0, ID=0
<7>[ 31.881988] KEEP SLEEP CLK ALIVE
<6>[ 32.020355] [WLAN] wifi_set_carddetect = 0
<6>[ 32.020629] saga_wifi_set_carddetect: 0
<6>[ 32.020782] mmc1: Slot status change detected (1 -> 0)
<6>[ 32.021484] [WLAN] ## wifi_remove leave
<6>[ 32.027282] [WLAN] module init fail, try again!
<6>[ 32.034851] [WLAN] ## wifi_probe
<4>[ 32.035125] [WLAN][WRN] wifi_set_power = 1
<6>[ 32.035278] saga_wifi_power: 1
<7>[ 32.035736] saga_wifi_bt_sleep_clk_ctl ON=1, ID=0
<6>[ 32.064178] [LED]pwm_lut_delayed_fade_out
<6>[ 32.176330] [WLAN] wifi_set_carddetect = 1
<6>[ 32.176452] saga_wifi_set_carddetect: 1
<6>[ 32.176666] mmc1: Slot status change detected (0 -> 1)
<6>[ 32.188079] [WLAN] Dongle Host Driver, version 5.90.125.120
<6>[ 32.188079] Compiled in drivers/net/wireless/bcmdhd on Oct 21 2012 at 07:11:55
<6>[ 33.617980] call alarm, type 2, func alarm_triggered+0x0/0xd0, 28088000000 (s 28088000000)
<6>[ 36.370361] [TP][email protected],770
Anyone have any ideas how do fix this or know for sure if it's hardware problem?
The last thing I can think about is to try another radio.
I stronglysuggest to downgrade RUU to the least one that you can find and start from there.
Sent from my HTC Desire S using xda app-developers app
Skanob said:
I stronglysuggest to downgrade RUU to the least one that you can find and start from there.
Sent from my HTC Desire S using xda app-developers app
Click to expand...
Click to collapse
Thanks I will try to find the lowest possible RUU.
As my HBOOT is 2.00.0002 and not 98... I'm not sure how low I could go?
If anyone has any advice on which RUU to try and a link to download I would really appriciate it.
joeryan said:
Thanks I will try to find the lowest possible RUU.
As my HBOOT is 2.00.0002 and not 98... I'm not sure how low I could go?
If anyone has any advice on which RUU to try and a link to download I would really appriciate it.
Click to expand...
Click to collapse
I think, it would be better to update your hboot to 7... and make an s-off, update radio. I have stabel wifi with 20.71..u can see it on s screenshot
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
Sent from my Desire S using xda premium
gadrdenboy said:
I think, it would be better to update your hboot to 7... and make an s-off, update radio. I have stabel wifi with 20.71..u can see it on s screenshotView attachment 1447898
Sent from my Desire S using xda premium
Click to expand...
Click to collapse
Thanks for that - I will look into it now...

No WiFi - wlan0 device can't be found. "dhdsdio_probe_attach: si_attach failed!".

No WiFi - wlan0 device can't be found. "dhdsdio_probe_attach: si_attach failed!".
Hi all,
I have a UK Sensation XE that I've had for 18 months. My WiFi has not worked for many months, maybe a year. I am pretty sure the problem first started on GB, because I remember doing an OTA update to stock ICS and hoping it would fix the problem and it didn't.
I just started trying to seriously fix the problem a few days ago. Since then, I have researched on here and Google for hours and hours, and tried every suggestion I could find. I have done lots of diagnostics.
What I've discovered is that the WiFi driver does load, but it reports in dmesg that it can't find the device. Therefore it does not create wlan0. Therefore wpa_supplicant cannot load.
Everything else on the phone works OK - 2G/3G, Bluetooth, USB, etc. Just WiFi is broken.
I am wondering if maybe my WiFi hardware is bust. But then again, I do see the same symptoms on other posts - like this one and this one. The first of those two posts reported it worked for him when he went back to Stock 2.2, suggesting there was some software cause.
dmesg shows the following (I've edited a bit in the middle so to not make this message too long - full dmesg output is in attached txt) :
Code:
gannet_setup
gannet initialized OK
[WLAN] ## wifi_probe
[WLAN][WRN] wifi_set_power = 1
pyramid_wifi_power: 1
EXT4-fs (mmcblk0p22): re-mounted. Opts: user_xattr,barrier=0,data=ordered
[WLAN] wifi_set_carddetect = 1
pyramid_wifi_set_carddetect: 1
mmc2: Slot status change detected (0 -> 1)
[WLAN] Dongle Host Driver, version 5.90.125.120
mmc2: queuing unknown CIS tuple 0x91 (3 bytes)
mmc2: new high speed SDIO card at address 0001
[WLAN] alloc static buf at cf9c0000!
tun: Universal TUN/TAP device driver, 1.6
tun: (C) 1999-2004 Max Krasnyansky <[email protected]>
EXT4-fs (mmcblk0p22): re-mounted. Opts: user_xattr,barrier=0,data=ordered
mmc2: CMD53: Data timeout
mmc2: SDCC PWR is ON
mmc2: SDCC clks are ON, MCLK rate=48000000
mmc2: SDCC irq is enabled
===== SDCC-CORE: Register Dumps @base=0xd08a6000 =====
.. cut a bunch of Reg= values ..
mmc2: PIO mode
mmc2: xfer_size=4, data_xfered=0, xfer_remain=4
mmc2: got_dataend=0, prog_enable=0, wait_for_auto_prog_done=0, got_auto_prog_done=0
[COLOR="Red"][WLAN][WRN] dhdsdio_probe_attach: si_attach failed!
[WLAN][WRN] dhdsdio_probe: dhdsdio_probe_attach failed
[WLAN][WRN] dhd_module_init: wifi_fail_retry is true
[WLAN] ## wifi_remove
[WLAN][WRN] wifi_set_power = 0
pyramid_wifi_power: 0
[WLAN] wifi_set_carddetect = 0
pyramid_wifi_set_carddetect: 0
mmc2: Slot status change detected (1 -> 0)
mmc2: card 0001 removed
[WLAN] ## wifi_remove leave
[WLAN] module init fail, try again!
[/COLOR]pyramid_wifi_power: 1
pyramid_wifi_set_carddetect: 1
mmc2: Slot status change detected (0 -> 1)
[WLAN] Dongle Host Driver, version 5.90.125.120
I have attached a longer section of dmesg output, starting at boot and going a bit past the last reference to WLAN. The above dmesg snippet starts on line 760 of the attached dmesg txt file. I attached the fuller log in case the dmesg output shows some other error, not tagged WLAN, that I don't recognise as being a problem.
The bcmdhd.ko module is loaded OK:
Code:
# lsmod
tun 14813 0 - Live 0xbf091000
bcmdhd 483764 0 - Live 0xbf005000
kineto_gan 4230 0 - Live 0xbf000000
In logcat, there are various errors from wpa_supplicant and other, which all basically just indicate that it can't find wlan0. Here's a small sample:
Code:
E/wpa_supplicant( 5847): Could not read interface wlan0 flags: No such device
E/wpa_supplicant( 5847): nl80211: Could not set interface 'wlan0' UP
E/wpa_supplicant( 5847): wlan0: Failed to initialize driver interface
This is confirmed from shell:
Code:
# ip link ls wlan0
ip: can't find device 'wlan0'
The problem started on stock, I think stock GB. I do not know of any trigger for it happening.
Around that time I was playing around with rooting for the first time, and I tried Revolution S-OFF which I recall changed my HBOOT from 1.19 to 1.17 or something. But that's as far as I got at the time, I just ran Revolution S-Off, I remember it changed my HBOOT version on phone startup, and then I never tried anything more with flashing/rooting.
I do not know if the Wifi problem started at the same time I tried that hboot change. I cannot remember exactly when the WiFi broke, I don't know if anything triggered it.
All I am pretty sure of is that the problem started on stock GB, and then it was not resolved when I OTA updated to stock ICS (the stock ICS upgrade then changed my hboot to 1.29).
So I know the problem existed on Stock ICS. I think it happened also on stock GB. Then this is what I have also tried recently, in the last week, since I first started flashing/rooting/customising my phone:
Full phone wipe - used 4Ext to do complete wipe of all partitions, before installing new ROMs
Tried with a) no SD card at all, b) two different SD cards, c) did a complete format of one SD card
Tried without sim-card, also tried WiFix to set country code - doubt this has anything to do with it though as there's not even a wlan0 device.
Stock 3.33 FW, and then XDA-Dev 3.32 FW and XDA-Dev 3.33 FW
Stock HTC ICS release as per OTA update
Android Revolution HD 7.1 ROM 4.0.3 ICS
Elegancia ROM 3.70 ROM 4.0.4 ICS
Stock, Faux, Sebastian and Bricked kernels
Originally HTCDev locked, and now unlocked
Originally S-On, and now S-Off (Hboot 1.27)
Flashing boot.img separately with fastboot flash boot boot.img
Flashing ROM with 4Ext SmartFlash (even though I had S-OFF) - and then turning it off again and re-flashing.
Deleting wpa_supplicant.conf (not that this should work as issue is before supplicant. I've put the conf back now.)
So right now my phone is:
HTCDev unlock
S-Off, HBoot 1.27 (I used Juopunutbear-off with the 'wire trick')
4Ext Flash Recovery
Elegancia Rom 3.70 with Bricked kernel
I have searched so much and tried so many things, so I would be super grateful for any help at all. Maybe it's just a HW fault, but I have seen other people with the same symptoms of dmesg reporting it can't find the device, and some of those people did have the issues caused by SW problems, so I am hoping there is still some chance it's resolvable.
Thanks in advance!
No thoughts from anyone?
Would be great to get any thoughts or feedback - even if it's just to say that the HW is broken.
I've been looking all over for a solution for this problem myself. WiFi 'died' with an OTA a while back, none of the suggestions found all over work.
WiFix (basically changing the region) doesn't apply, wlan0 doesn't even start properly.
You mentioned BT is working, but I can see devices, not connect to them, so for me BT is partially working.
What I tried so far:
Different FWs/RUUs, even going back to Gingerbread!
Different RIL - FW/Radio combos
Different ROMs on Universal 3.33 FW as well as FWs from RUUs
I even put a Z710e RUU on it to see if that might work.
Device:
Sensation XE Z715e, currently on: HBoot 1.27.1100, FW 3.33.401.153 Radio11.76C.3504.00U_11.29A.3504.18_M
Stock Rom lsmod:
Code:
bcm4329 225933 0 - Live 0xbf03c000
kineto_gan 4190 0 - Live 0xbf000000
CM10.1 lsmod:
Code:
bcmdhd 444356 0 - Live 0x00000000
I see the same errors as OP in my logcat and dmesg.
I'm starting to suspect the chip is fritzed and needs to be replaced (I can't heat it as suggested here: http://forum.xda-developers.com/showpost.php?p=38165494&postcount=66 )
My other Z715e is unaffected.

[Q] Random restarts

My sensation keeps restarting randomly.
I've tried:
- Reflashing firmware 3.33, 3.32
- Other roms: Miui v4, cm10, cm9, Darksense, ARDHD, stock, gingerbread cm7.
- New battery
- Battery card trick
Sometimes it turns off completely and I can't turn it back on without pulling the battery out and putting it back in.
Moon2 said:
My sensation keeps restarting randomly.
I've tried:
- Reflashing firmware 3.33, 3.32
- Other roms: Miui v4, cm10, cm9, Darksense, ARDHD, stock, gingerbread cm7.
- New battery
- Battery card trick
Sometimes it turns off completely and I can't turn it back on without pulling the battery out and putting it back in.
Click to expand...
Click to collapse
I need more information, so I ask you do these things.
OK. First:
Code:
adb shell
dmesg > /sdcard/DMESG.txt
Attach the DMESG.txt file from your SDCard.
Code:
adb logcat > Logcat.txt
Wait for phone to randomly restart (sorry) and attach the logcat file.
Secondly:
Current HBOOT version? Kernel if flashing manually?
DennisBold said:
I need more information, so I ask you do these things.
OK. First:
Code:
adb shell
dmesg > /sdcard/DMESG.txt
Attach the DMESG.txt file from your SDCard.
Code:
adb logcat > Logcat.txt
Wait for phone to randomly restart (sorry) and attach the logcat file.
Secondly:
Current HBOOT version? Kernel if flashing manually?
Click to expand...
Click to collapse
I'd previously logged the logcat twice before it restarted and also have a last_kmsg of when it happened. It doesn't seem to reboot when I'm in recovery.
HBoot: 1.29.0000, S-off
Kernel: Stock, faux, sebastian (happens on all of them)
I'm having the same problem with my sensation with alternative battery!!! Please help!!!
It just happened again and I've got another logcat, I'll try and do the dmesg now.
I've tried letting the phone sleep without wifi/3g, taking sd card out, formatting it.
Moon2 said:
I'd previously logged the logcat twice before it restarted and also have a last_kmsg of when it happened. It doesn't seem to reboot when I'm in recovery.
HBoot: 1.29.0000, S-off
Kernel: Stock, faux, sebastian (happens on all of them)
Click to expand...
Click to collapse
I thought the pyramid had Adreno 220?
Code:
D/libEGL ( 1113): loaded /system/lib/egl/libGLESv2_adreno200.so
What ROM do you currently have installed?
DennisBold said:
I thought the pyramid had Adreno 220?
Code:
D/libEGL ( 1113): loaded /system/lib/egl/libGLESv2_adreno200.so
What ROM do you currently have installed?
Click to expand...
Click to collapse
Miui v4
I've seen that library used on different phones with adreno on them, I don't think the 200 has a bearing on the type found on the phone.
Moon2 said:
Miui v4
Click to expand...
Click to collapse
Is your GPS enabled, and does this happen when your GPS is disabled?
Moon2 said:
Miui v4
I've seen that library used on different phones with adreno on them, I don't think the 200 has a bearing on the type found on the phone.
Click to expand...
Click to collapse
Never really looked at that, well, the only thing I can connect it with is GPS.
DennisBold said:
Is your GPS enabled, and does this happen when your GPS is disabled?
Click to expand...
Click to collapse
I've tried it with wifi, 3g, bluetooth, gps, auto-sync all turned off and it still happens.
Moon2 said:
I've tried it with wifi, 3g, bluetooth, gps, auto-sync all turned off and it still happens.
Click to expand...
Click to collapse
(From First Logcat)
Code:
D/GpsLocationProvider( 241): [handleMessage] message :7
D/GpsLocationProvider( 241): [handleMessage] UPDATE_LOCATION
D/GpsLocationProvider( 241): handleUpdateLocation
D/lib_locapi( 241): loc_eng_inject_location, accuracy = 48.0
(Second Logcat)
Code:
D/GpsLocationProvider( 242): [handleMessage] message :7
D/GpsLocationProvider( 242): [handleMessage] UPDATE_LOCATION
D/GpsLocationProvider( 242): handleUpdateLocation
D/lib_locapi( 242): loc_eng_inject_location, accuracy = 52.0
Logcat ends a minute not long after that.
On a side note, do you have AdFree installed?
DennisBold said:
(From First Logcat)
Code:
D/GpsLocationProvider( 241): [handleMessage] message :7
D/GpsLocationProvider( 241): [handleMessage] UPDATE_LOCATION
D/GpsLocationProvider( 241): handleUpdateLocation
D/lib_locapi( 241): loc_eng_inject_location, accuracy = 48.0
(Second Logcat)
Code:
D/GpsLocationProvider( 242): [handleMessage] message :7
D/GpsLocationProvider( 242): [handleMessage] UPDATE_LOCATION
D/GpsLocationProvider( 242): handleUpdateLocation
D/lib_locapi( 242): loc_eng_inject_location, accuracy = 52.0
Logcat ends a minute not long after that.
On a side note, do you have AdFree installed?
Click to expand...
Click to collapse
No, I've tried all of the roms with & without adding any apps.
Moon2 said:
No, I've tried all of the roms with & without adding any apps.
Click to expand...
Click to collapse
There's not exactly any errors other than this on dmesg.
Code:
<3>[ 475.735900] init: cannot execve('/system/bin/DxDrmServerIpc'): Permission denied
That isn't really a problem. Neither are these:
Code:
E/MobileDataStateTracker( 242): Error mapping networkType 23 to apnType.
Code:
D/MobileDataStateTracker( 242): internet: mMobileDataState=DISCONNECTED mTeardownRequested=false got [AnyDataCSC] : type=internet state=DISCONNECTED reason=dataDetached apn=null roaming=false unavailable=true NetworkType=0 NetworkTypeName=UNKNOWN entitleError=0 apnCarrier=null
I've just installed cm9 and run the logcat to just before it rebooted.
Moon2 said:
I've just installed cm9 and run the logcat to just before it rebooted.
Click to expand...
Click to collapse
Run Fix Permissions in recovery.
Also, send me another DMESG. Not during/while the phone is crashing.
DennisBold said:
Run Fix Permissions in recovery.
Also, send me another DMESG. Not during/while the phone is crashing.
Click to expand...
Click to collapse
It seems to reboot more frequently on a non-sense rom like cm9/10 than sense based roms like Miui or arhd and I don't think its rebooted or shutdown yet if it's been plugged in to charger/computer.
Moon2 said:
It seems to reboot more frequently on a non-sense rom like cm9/10 than sense based roms like Miui or arhd and I don't think its rebooted or shutdown yet if it's been plugged in to charger/computer.
Click to expand...
Click to collapse
Thanks.
Can you try:
Code:
adb shell
dmesg | grep mmc
And copy and paste the results?
You should see:
Code:
[email protected]:/ # dmesg | grep mmc
dmesg | grep mmc
[email protected]:/ #
---------- Post added at 08:04 PM ---------- Previous post was at 07:33 PM ----------
Could you run?
Code:
cat /sys/class/block/mmcblk0/device/name
Code:
[email protected]:/ $ dmesg | grep mmc
dmesg | grep mmc
1|[email protected]:/ $ cat /sys/class/block/mmcblk0/device/name
cat /sys/class/block/mmcblk0/device/name
MLL00M
Moon2 said:
Code:
[email protected]:/ $ dmesg | grep mmc
dmesg | grep mmc
1|[email protected]:/ $ cat /sys/class/block/mmcblk0/device/name
cat /sys/class/block/mmcblk0/device/name
MLL00M
Click to expand...
Click to collapse
Flash an RUU (preferably Gingerbread) and see if it makes any difference?
Run this from stock and see if you still have errors
Code:
adb shell
dmesg | grep mmc
logcat | grep mmc
DennisBold said:
Flash an RUU (preferably Gingerbread) and see if it makes any difference?
Run this from stock and see if you still have errors
Code:
adb shell
dmesg | grep mmc
logcat | grep mmc
Click to expand...
Click to collapse
Code:
dmesg | grep mmc
Code:
<5>[ 0.000000] Kernel command line: poweron_status=1 board_pyramid.disable_ua
rt3=0 diag.enabled=0 board_pyramid.debug_uart=0 userdata_sel=0 androidboot.emmc=
true androidboot.pagesize=2048 androidboot.baseband=10.14.9035.01_M androidboo
t.cid=11111111 androidboot.batt_poweron=good_battery androidboot.carrier=ALL and
roidboot.mid=PG5813000 androidboot.keycaps=qwerty androidboot.dq=FAIL androidboo
t.mode=normal androidboot.serialno=SH191V463715 androidboot.bootloader=1.17.1111
zygote_oneshot=off msm_watchdog.enable=1 console=ttyHSL0 androidboot.hardware=p
yramid no_console_suspend=1
<6>[ 0.335052] pyramid: pyramid_init_mmc
<6>[ 0.907806] Create /proc/emmc OK.
<3>[ 2.389921] mmc0: No card detect facilities available
<6>[ 2.390287] mmc0: Qualcomm MSM SDCC at 0x0000000012400000 irq 136,0 dma 18
<6>[ 2.390379] mmc0: Platform slot type: MMC
<6>[ 2.390562] mmc0: 8 bit data mode enabled
<6>[ 2.390654] mmc0: 4 bit data mode disabled
<6>[ 2.390745] mmc0: polling status mode disabled
<6>[ 2.390928] mmc0: MMC clock 400000 -> 48000000 Hz, PCLK 0 Hz
<6>[ 2.391020] mmc0: Slot eject status = 0
<6>[ 2.391203] mmc0: Power save feature enable = 1
<6>[ 2.391294] mmc0: DM non-cached buffer at ff007000, dma_addr 0x5751b000
<6>[ 2.391386] mmc0: DM cmd busaddr 0x5751b000, cmdptr busaddr 0x5751b300
<6>[ 2.391966] mmc1: Qualcomm MSM SDCC at 0x0000000012180000 irq 134,654 dma
20
<6>[ 2.392149] mmc1: Platform slot type: SD
<6>[ 2.392240] mmc1: 8 bit data mode disabled
<6>[ 2.392332] mmc1: 4 bit data mode enabled
<6>[ 2.392515] mmc1: polling status mode disabled
<6>[ 2.392607] mmc1: MMC clock 144000 -> 48000000 Hz, PCLK 0 Hz
<6>[ 2.392790] mmc1: Slot eject status = 0
<6>[ 2.392881] mmc1: Power save feature enable = 1
<6>[ 2.392973] mmc1: DM non-cached buffer at ff008000, dma_addr 0x5751c000
<6>[ 2.393156] mmc1: DM cmd busaddr 0x5751c000, cmdptr busaddr 0x5751c300
<6>[ 2.393644] mmc2: Qualcomm MSM SDCC at 0x00000000121c0000 irq 133,0 dma 21
<6>[ 2.393736] mmc2: Platform slot type: N/A
<6>[ 2.393919] mmc2: 8 bit data mode disabled
<6>[ 2.394010] mmc2: 4 bit data mode enabled
<6>[ 2.394102] mmc2: polling status mode disabled
<6>[ 2.394285] mmc2: MMC clock 400000 -> 48000000 Hz, PCLK 0 Hz
<6>[ 2.394377] mmc2: Slot eject status = 1
<6>[ 2.394468] mmc2: Power save feature enable = 1
<6>[ 2.394651] mmc2: DM non-cached buffer at ff009000, dma_addr 0x5751d000
<6>[ 2.394743] mmc2: DM cmd busaddr 0x5751d000, cmdptr busaddr 0x5751d300
<6>[ 2.513761] mmc0: new high speed MMC card at address 0001
<6>[ 2.526975] mmcblk0: mmc0:0001 MLL00M 2.25 GiB
<6>[ 2.527555] mmcblk0: p1 p2 p3 p4 < p5 p6
<6>[ 2.568296] EXT4-fs (mmcblk0p22): INFO: recovery required on readonly file
system
<6>[ 2.568662] EXT4-fs (mmcblk0p22): write access will be enabled during reco
very
<4>[ 2.666654] mmc1: high speed mode max_dtr = 50000000
<4>[ 2.667081] mmc1: host does not support reading read-only switch. assuming
write-enable.
<6>[ 2.667264] mmc1: new high speed SD card at address 1234
<6>[ 2.667753] mmcblk1: mmc1:1234 SA02G 1.83 GiB
<6>[ 2.668149] mmcblk1: p1
<6>[ 2.697813] EXT4-fs (mmcblk0p22): recovery complete
<6>[ 2.705625] EXT4-fs (mmcblk0p22): mounted filesystem with ordered data mod
e. Opts: (null)
<7>[ 3.291562] EXT4-fs (mmcblk0p23): ext4_orphan_cleanup: deleting unreferenc
ed inode 22945
<7>[ 3.292050] EXT4-fs (mmcblk0p23): ext4_orphan_cleanup: deleting unreferenc
ed inode 22946
<6>[ 3.292416] EXT4-fs (mmcblk0p23): 2 orphan inodes deleted
<6>[ 3.292691] EXT4-fs (mmcblk0p23): recovery complete
<6>[ 3.334836] EXT4-fs (mmcblk0p23): mounted filesystem with ordered data mod
e. Opts: nodelalloc
<6>[ 3.389493] EXT4-fs (mmcblk0p24): recovery complete
<6>[ 3.397031] EXT4-fs (mmcblk0p24): mounted filesystem with ordered data mod
e. Opts: nodelalloc
<6>[ 3.516964] EXT4-fs (mmcblk0p27): recovery complete
<6>[ 3.521115] EXT4-fs (mmcblk0p27): mounted filesystem with writeback data m
ode. Opts: nodelalloc
<6>[ 20.862468] mmc2: Slot status change detected (0 -> 1)
<7>[ 20.915202] mmc2: queuing CIS tuple 0x91 length 3
<6>[ 20.915446] mmc2: new high speed SDIO card at address 0001
Code:
logcat | grep mmc
I've left it running for a few mins but nothings showing up.
Its still not showing anything, but I'm attaching a logcat on stock gb upto the point it restarted.

[GUIDE] Use aircrack-ng on android phone using Wireless USB Adapter

Hey everyone,
It is possible to use an external Wi-Fi adapter with an android phone to run aircrack-ng, however I've had a lot of difficulties doing so. Here is a tutorial to make it easier for you.
The theory
Running the aircrack-ng suite itself is not much of a problem, as android is pretty much like ubuntu. The most difficult part of running aircrack is that the wifi chipsets of most phones do not support "monitor mode". This mode is required to capture any information from the air, not just the ones for your computer, and is therefore necessary for aircrack (airmon-ng). First of all, you should Google if your phone's wifi chipset supports this mode. If it does, find out how. If it doesn't, you can follow this guide and use a usb wifi stick.
Android is linux, and uses a linux kernel. The easiest way to get the driver for our WiFi adapter to work is to rebuild the android kernel with the driver built-in. We can then flash the new kernel to the phone, and copy the firmware binary. This tutorial uses CyanogenMod, because it is a well documented, open-source ROM. With some adjustments you can use the same method on other ROMs. If you do not have experience building a linux kernel, it is best to stick to this guide and use CyanogenMod.
What you'll need:
- Android phone
- Computer with Ubuntu (or other linux distribution)
- USB OTG Adapter (micro usb to usb female)
- Wireless USB Adapter
- Time and patience
I am using my Samsung Galaxy S4 GT-i9505 and an Eminent EM4454 Wireless USB adapter using the rt73 driver, but I am sure this will work with other devices.
A. Install your ROM and aircrack-ng, on your phone...
1) ...install Cyanogenmod. Don't delete the .zip download after installation.
2) ...install "Complete Linux Installer" from Google Play and download and unpack Ubuntu in /sdcard/ubuntu/ubuntu.img as stated in the app.
3) ...install the aircrack-ng suite in the chrooted ubuntu. On ubuntu 12.04, this cannot be done using apt-get:
sudo apt-get install build-essential libssl-dev nano
wget http://download.aircrack-ng.org/aircrack-ng-1.1.tar.gz
tar -xzvf aircrack-ng-1.1.tar.gz
cd aircrack-ng-1.1
nano common.mak
Then find CFLAGS ?= -g -W -Wall -Werror -O3 and remove -Werror.
make
sudo make install
B. Rebuild the kernel, in a terminal on linux on your computer...
1) ...install adb and fastboot
sudo apt-get install adb fastboot
2) Enable USB-debugging on your phone, connect to your computer and test the connection on linux on your computer:
adb get-state
3) Find the GitHub page for the cyanogenmod kernel for your device. You can find this page on cyanogenmod.org. Now download the kernel source and extract it into a folder.
4) Change working directory into the kernel
cd pathtothekernel
5) See if there is a .config file. In a CyanogenMod kernel, there probably isn't. Type:
nano .config
If you see an empty screen, we need to get your devices current configuration:
adb pull /proc/config.gz config.gz
zcat config.gz > .config
rm config.gz
4) Make the necessary changes in the configuration file to have your USB wireless driver built in. To do so:
make menuconfig
Use the enter key to expand an item in the menu, and the space bar to mark a module. Make sure you mark the necessary modules with a *, not an 'M', so they will be built-in. Most wireless drivers have the mac80211 driver as a dependency. Make sure you select that one with an asterix (*), too.
For example, for my rt73 based adapter, I did:
Networking Support > Wireless > [*] ... (mac80211)
Device Drivers > Network > Wireless LAB > [*] Ralink Drivers > [*] rt73usb
5) Make some changes to fight errors:
Still in menuconfig, make the following changes:
Kernel Hacking > (1024) Block? size > 1032
Now to tell gcc to build ignoring warnings edit the Makefile
nano Makefile
Now go down a few pages and add the line:
KCONFIG_CFLAGS += -w
6) The normal gcc C compiler cannot be used as it will build for your computers processor. We need to build for ARM-processors, called cross-compiling. To make the cross-compiling work you need the arm-eabi- toolchain.
cd ~/Downloads
git clone https://android.googlesource.com/platform/prebuilts/gcc/linux-x86/arm/arm-eabi-4.6
The will download the ~120Mb toolchain.
7) Tell the Makefile where the toolchain is
cd pathtothekernel
export PATH=$PATH:~/Downloads/arm-eabi-4.6/bin
export CROSS_COMPILE=arm-eabi-
export ARCH=arm
8) Then build the kernel. It you get errors, don't be scared and Google them. One cause of weird errors is not having enough memory; add a swapfile and try again. The building of the kernel will take quite some time:
make
C. Flash the new kernel to the phone
1) When the build is finished, it has saved "zImage". This image is our kernel. For the sake of simplicity, let's copy it to the desktop but rename it so that later commands won't override it:
cp arch/arm/boot/zImage ~/Desktop/new-zImage
2) For flashing, we need to pack this zImage into a boot.img. Get the boot.img out of the ROM you now run on your phone. For example, the CyangonMod.zip you had to flash to your phone to install it, contains a boot.img. Most flashable .zip files have a boot.img in them. Copy this boot.img to your desktop, too.
3) Extract the boot.img
sudo apt-get install abootimg
abootimg -x boot.img
this will place 3 new files on your desktop.
4) Delete the extracted zImage and boot.img, as we want our self-compiled kernel.
rm zImage
rm boot.img
5) Edit the configuration file and remove the line with kernel-size, as our new kernel's size will be slightly larger.
nano bootimg.cfg
Remove the line beginning with bootsize:, which is probably the first line
5) Use abootimg to repack new-zImage and the 2 extracted files.
abootimg --create boot.img -f bootimg.cfg -k new-zImage -r initrd.img
6) Backup your phone in case anything goes wrong, and flash the boot.img. For many phones, this can be done using fastboot on linux. On my Galaxy, I had to use Mobile Odin: http://forum.xda-developers.com/showthread.php?t=1347899
D. Copy the firmware and run, on your phone...
1) ... start the chrooted ubuntu
2) ... insert your USB OTG and in that the Wireless USB Adapter
3) ... run airmon-ng and make sure your device is listed.
airmon-ng
If not, check that your kernel is flashed (under Settings > About Device > kernel it should say [email protected]) and that the correct drivers were selected with an asterix * (built-in, y) in make menuconfig. If it is listed, continue.
4) We now have the correct driver, but the firmware is likely missing. Download the .bin firmware that belongs to your driver. In my case, I had to download the rt73 driver from aircrack-ng website, and copy the .bin firmware file. Install ES File Manager or another root explorer, choose Root Explorer and then mount /system as Read/Write so that you can edit the contents. Now copy the firmware file to /system/etc/firmware/.
5) Run airmon-ng and check which interface your Wireless USB Adapter is.
airmon-ng
6) Start the monitor mode
airmon-ng start wlan1
Replace wlan1 with the interface name of the Wireless USB Adapter
7) If everything went right, it should say that monitor mode is enabled. You can now use
airodump-ng mon0
replacing mon0 with the monitor interface. If you get the error SIOCFLAGS: No such file or directory, the firmware file (e.g. *.bin) is not placed in the right directory (/system/etc/firmware and maybe a path extension, check the firmware README) or has the wrong name.
Congratulations, you have now got a phone running aircrack-ng!
I got this to work on my stock Samsung TouchWiz ROM by making a few adjustments:
- Get the kernel from Samsung: http://opensource.samsung.com/
- Change the lines in the .config file of the kernel below ## Samsung Rooting ... from =y to =n using nano
- To get boot.img, download the ...tar.md5 firmware matching your current firmware from http://www.sammobile.com/firmware/, rename .tar.md5 to .tar, and extract the boot.img. You cannot use mkbootimg here, only abootimg, as this boot.img has a special ramdisk address!
Thank you helped heaps. had been compiling as modules and couldnt insmod.
s4 i9505 stock rom - aircrack - tp-link tl-wn722n
Jesus, that was awesome. Couldn't find a better tutorial on the net!
Thanks again.
Btw, could you please upload the Galaxy S4 Cyanogen rom with the kernel?
I would appreciate alot.
Hey i have Htc desire C! I did the instal "bcmon.apk" but when I run the program turns out this message "cant run as root,'su' failed... why ??? please help me !
argentux said:
Hey everyone,
It is possible to use an external Wi-Fi adapter with an android phone to run aircrack-ng, however I've had a lot of difficulties doing so. Here is a tutorial to make it easier for you.
The theory
Running the aircrack-ng suite itself is not much of a problem, as android is pretty much like ubuntu. The most difficult part of running aircrack is that the wifi chipsets of most phones do not support "monitor mode". This mode is required to capture any information from the air, not just the ones for your computer, and is therefore necessary for aircrack (airmon-ng). First of all, you should Google if your phone's wifi chipset supports this mode. If it does, find out how. If it doesn't, you can follow this guide and use a usb wifi stick.
Android is linux, and uses a linux kernel. The easiest way to get the driver for our WiFi adapter to work is to rebuild the android kernel with the driver built-in. We can then flash the new kernel to the phone, and copy the firmware binary. This tutorial uses CyanogenMod, because it is a well documented, open-source ROM. With some adjustments you can use the same method on other ROMs. If you do not have experience building a linux kernel, it is best to stick to this guide and use CyanogenMod.
What you'll need:
- Android phone
- Computer with Ubuntu (or other linux distribution)
- USB OTG Adapter (micro usb to usb female)
- Wireless USB Adapter
- Time and patience
I am using my Samsung Galaxy S4 GT-i9505 and an Eminent EM4454 Wireless USB adapter using the rt73 driver, but I am sure this will work with other devices.
A. Install your ROM and aircrack-ng, on your phone...
1) ...install Cyanogenmod. Don't delete the .zip download after installation.
2) ...install "Complete Linux Installer" from Google Play and download and unpack Ubuntu in /sdcard/ubuntu/ubuntu.img as stated in the app.
3) ...install the aircrack-ng suite in the chrooted ubuntu. On ubuntu 12.04, this cannot be done using apt-get:
sudo apt-get install build-essential libssl-dev nano
wget http://download.aircrack-ng.org/aircrack-ng-1.1.tar.gz
tar -xzvf aircrack-ng-1.1.tar.gz
cd aircrack-ng-1.1
nano common.mak
Then find CFLAGS ?= -g -W -Wall -Werror -O3 and remove -Werror.
make
sudo make install
B. Rebuild the kernel, in a terminal on linux on your computer...
1) ...install adb and fastboot
sudo apt-get install adb fastboot
2) Enable USB-debugging on your phone, connect to your computer and test the connection on linux on your computer:
adb get-state
3) Find the GitHub page for the cyanogenmod kernel for your device. You can find this page on cyanogenmod.org. Now download the kernel source and extract it into a folder.
4) Change working directory into the kernel
cd pathtothekernel
5) See if there is a .config file. In a CyanogenMod kernel, there probably isn't. Type:
nano .config
If you see an empty screen, we need to get your devices current configuration:
adb pull /proc/config.gz config.gz
zcat config.gz > .config
rm config.gz
4) Make the necessary changes in the configuration file to have your USB wireless driver built in. To do so:
make menuconfig
Use the enter key to expand an item in the menu, and the space bar to mark a module. Make sure you mark the necessary modules with a *, not an 'M', so they will be built-in. Most wireless drivers have the mac80211 driver as a dependency. Make sure you select that one with an asterix (*), too.
For example, for my rt73 based adapter, I did:
Networking Support > Wireless > [*] ... (mac80211)
Device Drivers > Network > Wireless LAB > [*] Ralink Drivers > [*] rt73usb
5) Make some changes to fight errors:
Still in menuconfig, make the following changes:
Kernel Hacking > (1024) Block? size > 1032
Now to tell gcc to build ignoring warnings edit the Makefile
nano Makefile
Now go down a few pages and add the line:
KCONFIG_CFLAGS += -w
6) The normal gcc C compiler cannot be used as it will build for your computers processor. We need to build for ARM-processors, called cross-compiling. To make the cross-compiling work you need the arm-eabi- toolchain.
cd ~/Downloads
git clone https://android.googlesource.com/platform/prebuilts/gcc/linux-x86/arm/arm-eabi-4.6
The will download the ~120Mb toolchain.
7) Tell the Makefile where the toolchain is
cd pathtothekernel
export PATH=$PATH:~/Downloads/arm-eabi-4.6/bin
export CROSS_COMPILE=arm-eabi-
export ARCH=arm
8) Then build the kernel. It you get errors, don't be scared and Google them. One cause of weird errors is not having enough memory; add a swapfile and try again. The building of the kernel will take quite some time:
make
C. Flash the new kernel to the phone
1) When the build is finished, it has saved "zImage". This image is our kernel. For the sake of simplicity, let's copy it to the desktop but rename it so that later commands won't override it:
cp arch/arm/boot/zImage ~/Desktop/new-zImage
2) For flashing, we need to pack this zImage into a boot.img. Get the boot.img out of the ROM you now run on your phone. For example, the CyangonMod.zip you had to flash to your phone to install it, contains a boot.img. Most flashable .zip files have a boot.img in them. Copy this boot.img to your desktop, too.
3) Extract the boot.img
sudo apt-get install abootimg
abootimg -x boot.img
this will place 3 new files on your desktop.
4) Delete the extracted zImage and boot.img, as we want our self-compiled kernel.
rm zImage
rm boot.img
5) Edit the configuration file and remove the line with kernel-size, as our new kernel's size will be slightly larger.
nano bootimg.cfg
Remove the line beginning with bootsize:, which is probably the first line
5) Use abootimg to repack new-zImage and the 2 extracted files.
abootimg --create boot.img -f bootimg.cfg -k new-zImage -r initrd.img
6) Backup your phone in case anything goes wrong, and flash the boot.img. For many phones, this can be done using fastboot on linux. On my Galaxy, I had to use Mobile Odin: http://forum.xda-developers.com/showthread.php?t=1347899
D. Copy the firmware and run, on your phone...
1) ... start the chrooted ubuntu
2) ... insert your USB OTG and in that the Wireless USB Adapter
3) ... run airmon-ng and make sure your device is listed.
airmon-ng
If not, check that your kernel is flashed (under Settings > About Device > kernel it should say [email protected]) and that the correct drivers were selected with an asterix * (built-in, y) in make menuconfig. If it is listed, continue.
4) We now have the correct driver, but the firmware is likely missing. Download the .bin firmware that belongs to your driver. In my case, I had to download the rt73 driver from aircrack-ng website, and copy the .bin firmware file. Install ES File Manager or another root explorer, choose Root Explorer and then mount /system as Read/Write so that you can edit the contents. Now copy the firmware file to /system/etc/firmware/.
5) Run airmon-ng and check which interface your Wireless USB Adapter is.
airmon-ng
6) Start the monitor mode
airmon-ng start wlan1
Replace wlan1 with the interface name of the Wireless USB Adapter
7) If everything went right, it should say that monitor mode is enabled. You can now use
airodump-ng mon0
replacing mon0 with the monitor interface. If you get the error SIOCFLAGS: No such file or directory, the firmware file (e.g. *.bin) is not placed in the right directory (/system/etc/firmware and maybe a path extension, check the firmware README) or has the wrong name.
Congratulations, you have now got a phone running aircrack-ng!
I got this to work on my stock Samsung TouchWiz ROM by making a few adjustments:
- Get the kernel from Samsung: http://opensource.samsung.com/
- Change the lines in the .config file of the kernel below ## Samsung Rooting ... from =y to =n using nano
- To get boot.img, download the ...tar.md5 firmware matching your current firmware from http://www.sammobile.com/firmware/, rename .tar.md5 to .tar, and extract the boot.img. You cannot use mkbootimg here, only abootimg, as this boot.img has a special ramdisk address!
Click to expand...
Click to collapse
Thats insane that it can actually run aircrack, especially considering i had a hard time just running linux on it.
yoshihat said:
Thats insane that it can actually run aircrack, especially considering i had a hard time just running linux on it.
Click to expand...
Click to collapse
How is that so? For me it wasn't complicated at all.
I did everything and got everything ready, up to
Code:
make menuconfig
And it gives me error 2. And then it says something about there not being a variable.
:/
Please help?
I am actually having a time trying to make it work. I did everything right, then I sucessfully build the boot.img, but when I flash it through Mobile Odin as "Kernel" and the Cyanogenmod loads, the screen is all screwed up, like the SystemUI has crashed + interference signal effect, its unusable. Then I restore it through TWRP back to normal.
Do you know what may be the problem? Im using the 10.1.3 JFLTEXX CyanogenMod Build. (For the i9505.)
Edit: Nevermind, was compiling the M build against the Stable one. Obvious error. It works 100% now, thanks!
GruberEXN said:
I am actually having a time trying to make it work. I did everything right, then I sucessfully build the boot.img, but when I flash it through Mobile Odin as "Kernel" and the Cyanogenmod loads, the screen is all screwed up, like the SystemUI has crashed + interference signal effect, its unusable. Then I restore it through TWRP back to normal.
Do you know what may be the problem? Im using the 10.1.3 JFLTEXX CyanogenMod Build. (For the i9505.)
Edit: Nevermind, was compiling the M build against the Stable one. Obvious error. It works 100% now, thanks!
Click to expand...
Click to collapse
Could you please send the edited working kernel with the modules/drivers built in that you installed? (Please, like a link or something?)
androidiphonehacker said:
Could you please send the edited working kernel with the modules/drivers built in that you installed? (Please, like a link or something?)
Click to expand...
Click to collapse
Ok! I built the RTL8187/8187b driver, do you have that one? (Alfa wireless chipsets often use those ones.)
Edited for unknown reasons!
I have a TP-Link TL-wn722n USB wireless adapter. I'm kind of a noob at kernel building, and I'm not sure what driver/module it uses. Soooo... Could you build it for me please please pleaaaase? xD
I have (that USB adapter), and the newest CyanogenMod ROM for model SGS-i9505.
Tell you what: I'll pay you if you build it.
Sent from my GT-I9505 using Tapatalk
androidiphonehacker said:
I have a TP-Link TL-wn722n USB wireless adapter. I'm kind of a noob at kernel building, and I'm not sure what driver/module it uses. Soooo... Could you build it for me please please pleaaaase? xD
I have (that USB adapter), and the newest CyanogenMod ROM for model SGS-i9505.
Tell you what: I'll pay you if you build it.
Sent from my GT-I9505 using Tapatalk
Click to expand...
Click to collapse
Add'd your skype.
Building a kernel requires some troubleshooting, so prepare your device with TWRP or any recovery menu. (A nandroid backup would be nice too.)
And I don't mind a donation, although I don't want a payment. Maybe a cheap game would do the work after one day of troubleshooting your new kernel
Hello everyone....
i have a few little update form my side...
But first, my englisch is not the best, i'm sorry for it ^^
1. The is Important for every one how work at the end with aircrack... Then you need to get to patch the mac80211 data (channel-negative-one-maxim.patch and mac80211.compat08082009.wl_frag+ack_v1.patch from aircrack), otherwise you get at the end a fixed channel -1 problem in aircrack.... of which more later
Here now My litte Upgrade to build a another Kernel because CM10... For this session I use the Kernel form Yank555.lu on JB 4.1.2!
First you need to get the Kernel von GitHub. "github /yank555-lu/SGS3-JB/archive/Update11.zip"
After you extracte the kernel into your Kernel-Folder go in it.
cd ../path/to/kernel
########## 1. You need to edit the Makefile to beware for compile errors. ##########
nano Makefile
Search at the line 571:
-- KBUILD_CFLAGS += -fdiagnostics-show-option -Werror \
++ KBUILD_CFLAGS += -fdiagnostics-show-option \
Search at line 373:
-- -mcpu=cortex-a9 -mfpu=neon -mtune=cortex-a9 -fno-pic \
-- -munaligned-access
++ -mtune=cortex-a9
Now go to line 693:
++ #
++ # Edit by Mastaaa
++ #
++ KCONFIG_CFLAGS += -w
Save the file and Close it....
################ 2. Download and Patch the Wireless Patches. ################
For the negative-channel fix you need to get the Patches.
wget patches.aircrack-ng.org/mac80211.compat08082009.wl_frag+ack_v1.patch &&
wget patches.aircrack-ng.org/channel-negative-one-maxim.patch
Now patch it...
patch ./net/mac80211/tx.c mac80211.compat08082009.wl_frag+ack_v1.patch &&
patch ./net/wireless/chan.c channel-negative-one-maxim.patch
################### 3. make .config and edit menuconfig. ####################
Ceate a Basic .config File with:
make Yank555.lu_v3.x_series_defconfig
Now Edit the Menuconfig:
make menuconfig
Here the Basic edit's (i think) you get to need:
1. Edit the Kernel Info (to what you want...):
General setup --->
(...) Local version - append to kernel release (Hit Enter to edit this...)#
2. Turn On the mac80211 driver:
[*] Networking support ---->
-*- Wireless ---->
< > Generic IEEE 802.11 Networking Stack (Mark to <*>)
[ ] Enable mac80211 mesh networking (pre-802.11s) support (Mark to [ * ]
3, Mark the additional usb drivers:
Device Drivers ---->
.....[*] Network device support ---->
..........[*] Wireless LAN ---->
...............(Mark <m> or <*> waht you need.... Here a few examples
...............<*> Atmel at76c503/at76c505/at76c505a USB cards
...............<*> Realtek 8187 and 8187B USB support
...............<*> Atheros Wireless Cards ----->
...............<*> Ralink driver support ----->
....................<*> Ralink rt2500 (USB) support
....................<*> Ralink rt2501/rt73 (USB) support
....................<*> Ralink rt27xx/rt28xx/rt30xx (USB) support
....................[ * ] rt2800usb - Include support for rt33xx devices
....................[ * ] rt2800usb - Include support for rt35xx devices (EXPERIMENTAL)
....................[ * ] rt2800usb - Include support for rt53xx devices (EXPERIMENTAL)
....................[ * ] rt2800usb - Include support for unknown (USB) devices
4. Mark the OTG support on !:
Device Drivers ---->
.....[*] USB support ---->
..........[ ] OTG support ............................................................(Mark it to [*])
..........< > Enable Wireless USB extensions (EXPERIMENTAL) ..(Makr it to <*>)
5. Make Kernel hacking:
Kernel hacking ---->
.....(1024) Warn for stack frames larger than (needs gcc 4.4) (Edit this to 1032)
######################### 4. compile the Kernel. ###########################
make ARCH=arm CROSS_COMPILE=$CCOMPILER -j6
(with make -i ... you can ignor errors, but i think thats not good ^^)
########################## 5. make ramdisk.gz. ###########################
mkdir ramdisk-new
cp -ax ramdisk ./ramdisk-new
#clear git repositories in ramfs
find ramdisk-new -name .git -exec rm -rf {} \;
#remove empty directory placeholders
find ramdisk-new -name EMPTY_DIRECTORY -exec rm -rf {} \;
rm -rf ramdisk-new/tmp/*
#remove mercurial repository
rm -rf ramdisk-new/.hg
#copy modules into ramfs
mkdir -p ramdisk-new/lib/modules
find -name '*.ko' -exec cp -av {} ramdisk-new/lib/modules/
#make ramdisk.gz
mkbootfs ./ramdisk-new | gzip > ramdisk.gz
########################### 6. make boot.img. ############################
./mkbootimg --kernel arch/arm/boot/zImage --ramdisk ramdisk.gz --board smdk4x12 --base 0x10000000 --pagesize 2048 --ramdiskaddr 0x11000000 -o boot.img
################ 7. make modules.tgz for your chroot Linux. ###################
tar -czf modules.tgz `find . | grep ko$`
(... This modules.tgz you have to copy to sdcard0,
then go into chrootet (after you have flashed the new Kernel!) Linux and make: )
cd /lib/modules
mkdir `uname -r`
cd *
tar -zxf /sdcard0/modules.tgz
depmod -a
now turn the usb-wlan on S3 and make:
modprobe <your-driver>
example:
modprobe rt73usb
Now your Wifi-USB must be Online...
Soooo that was it from my self...
(For any Questions, you have. I'm on my Position...
Bye bye,
Master X
Please help me I have got HTC one mini on stock . Is it possible...?
Yes i think so...
In the theory at android 2.3 its possible to compile it with rt73usb extentials...
I'll do the kernel for i9500, but I'm afraid to damage the phone the wrong make.
If one makes the kernel for i9500 you Could you share?
yes, I did. and running rlt8187 alfa wifi on ubuntu.but wps not work. Everything other than these problems well
Probably, to add to another something and there are ( in kernel)
GT-I9500 cihazımdan Tapatalk kullanılarak gönderildi
LG G2 802 International Version
Can someone create a Kernel for This Device? Please?
With RTL 8187 Support
Would pay for it.
I added usb adapter device support to kernel successfully but then my wifi stopped working here is the dmesg of turning wifi on
Code:
<4>[ 2273.866333] wlan: disagrees about version of symbol cfg80211_ready_on_channel
<4>[ 2273.866455] wlan: Unknown symbol cfg80211_ready_on_channel (err -22)
<4>[ 2273.866729] wlan: disagrees about version of symbol __ieee80211_get_channel
<4>[ 2273.866821] wlan: Unknown symbol __ieee80211_get_channel (err -22)
<4>[ 2273.867065] wlan: disagrees about version of symbol cfg80211_cqm_rssi_notify
<4>[ 2273.867187] wlan: Unknown symbol cfg80211_cqm_rssi_notify (err -22)
<4>[ 2273.867370] wlan: disagrees about version of symbol cfg80211_roamed
<4>[ 2273.867523] wlan: Unknown symbol cfg80211_roamed (err -22)
<4>[ 2273.867614] wlan: disagrees about version of symbol cfg80211_pmksa_candidate_notify
<4>[ 2273.867736] wlan: Unknown symbol cfg80211_pmksa_candidate_notify (err -22)
<4>[ 2273.867858] wlan: disagrees about version of symbol wiphy_register
<4>[ 2273.868011] wlan: Unknown symbol wiphy_register (err -22)
<4>[ 2273.868133] wlan: disagrees about version of symbol cfg80211_disconnected
<4>[ 2273.868286] wlan: Unknown symbol cfg80211_disconnected (err -22)
<4>[ 2273.868499] wlan: disagrees about version of symbol cfg80211_new_sta
<4>[ 2273.868591] wlan: Unknown symbol cfg80211_new_sta (err -22)
<4>[ 2273.868774] wlan: disagrees about version of symbol cfg80211_tdls_oper_request
<4>[ 2273.868865] wlan: Unknown symbol cfg80211_tdls_oper_request (err -22)
<4>[ 2273.869018] wlan: disagrees about version of symbol cfg80211_connect_result
<4>[ 2273.869171] wlan: Unknown symbol cfg80211_connect_result (err -22)
<4>[ 2273.869262] wlan: disagrees about version of symbol cfg80211_inform_bss_frame
<4>[ 2273.869415] wlan: Unknown symbol cfg80211_inform_bss_frame (err -22)
<4>[ 2273.869506] wlan: disagrees about version of symbol wiphy_new
<4>[ 2273.869659] wlan: Unknown symbol wiphy_new (err -22)
<4>[ 2273.869781] wlan: disagrees about version of symbol cfg80211_rx_mgmt
<4>[ 2273.869903] wlan: Unknown symbol cfg80211_rx_mgmt (err -22)
<4>[ 2273.870117] wlan: disagrees about version of symbol cfg80211_send_unprot_deauth
<4>[ 2273.870239] wlan: Unknown symbol cfg80211_send_unprot_deauth (err -22)
<4>[ 2273.870361] wlan: disagrees about version of symbol cfg80211_mgmt_tx_status
<4>[ 2273.870513] wlan: Unknown symbol cfg80211_mgmt_tx_status (err -22)
<4>[ 2273.870727] wlan: disagrees about version of symbol cfg80211_inform_bss
<4>[ 2273.870819] wlan: Unknown symbol cfg80211_inform_bss (err -22)
<4>[ 2273.871002] wlan: disagrees about version of symbol wireless_send_event
<4>[ 2273.871093] wlan: Unknown symbol wireless_send_event (err -22)
<4>[ 2273.871246] wlan: disagrees about version of symbol wiphy_free
<4>[ 2273.871337] wlan: Unknown symbol wiphy_free (err -22)
<4>[ 2273.871520] wlan: disagrees about version of symbol cfg80211_scan_done
<4>[ 2273.871612] wlan: Unknown symbol cfg80211_scan_done (err -22)
<4>[ 2273.871795] wlan: disagrees about version of symbol regulatory_hint
<4>[ 2273.871856] wlan: Unknown symbol regulatory_hint (err -22)
<4>[ 2273.872039] wlan: disagrees about version of symbol cfg80211_get_bss
<4>[ 2273.872100] wlan: Unknown symbol cfg80211_get_bss (err -22)
<4>[ 2273.872283] wlan: disagrees about version of symbol cfg80211_michael_mic_failure
<4>[ 2273.872436] wlan: Unknown symbol cfg80211_michael_mic_failure (err -22)
<4>[ 2273.872528] wlan: disagrees about version of symbol cfg80211_ibss_joined
<4>[ 2273.872680] wlan: Unknown symbol cfg80211_ibss_joined (err -22)
<4>[ 2273.872833] wlan: disagrees about version of symbol cfg80211_del_sta
<4>[ 2273.872985] wlan: Unknown symbol cfg80211_del_sta (err -22)
<4>[ 2273.880584] wlan: disagrees about version of symbol cfg80211_remain_on_channel_expired
<4>[ 2273.880737] wlan: Unknown symbol cfg80211_remain_on_channel_expired (err -22)
<4>[ 2273.880889] wlan: disagrees about version of symbol wiphy_unregister
<4>[ 2273.880950] wlan: Unknown symbol wiphy_unregister (err -22)
<6>[ 2277.103332] SLIM_CL: skip reconfig sequence
<6>[ 2336.262878] SLIM_CL: skip reconfig sequence
<6>[ 2341.206115] SLIM_CL: skip reconfig sequence
<3>[ 2372.867187] init: untracked pid 7791 exited
<6>[ 2375.211242] SLIM_CL: skip reconfig sequence
<6>[ 2378.713043] SLIM_CL: skip reconfig sequence
<6>[ 2385.924896] check_recover_vbus_collapse: VBUS input current still limiting to 700 mA. Retry set
<6>[ 2397.413330] SLIM_CL: skip reconfig sequence
<4>[ 2464.730682] set_usb_max_current: setting current max to 1500
<4>[ 2544.752166] set_usb_max_current: setting current max to 1500
<4>[ 2604.769744] set_usb_max_current: setting current max to 1500
<4>[ 2674.810363] set_usb_max_current: setting current max to 1500
<6>[ 2686.035491] SLIM_CL: skip reconfig sequence
<3>[ 2690.290008] qup_i2c qup_i2c.0: QUP: I2C status flags :0x1300c8, irq:226
<3>[ 2690.290191] qup_i2c qup_i2c.0: I2C slave addr:0x28 not connected
<3>[ 2690.300445] pn544 0-0028: pn544_dev_write: i2c write err -107, but retry 1
<3>[ 2691.778778] qup_i2c qup_i2c.0: QUP: I2C status flags :0x1343c8, irq:226
<3>[ 2691.778961] qup_i2c qup_i2c.0: I2C slave addr:0x28 not connected
<3>[ 2691.789093] pn544 0-0028: pn544_dev_write: i2c write err -107, but retry 1
<6>[ 2694.949035] SLIM_CL: skip reconfig sequence
<4>[ 2714.834625] set_usb_max_current: setting current max to 1500
<6>[ 2715.883575] SLIM_CL: skip reconfig sequence
<6>[ 2843.803405] SLIM_CL: skip reconfig sequence
<6>[ 2854.273345] SLIM_CL: skip reconfig sequence
<6>[ 2955.025512] msm_otg msm_otg: USB exited from low power mode
<6>[ 2955.026306] msm_otg msm_otg: b_idle work, inputs=0x00000001
<6>[ 2955.026580] msm_otg msm_otg: Avail curr from USB = 0
<6>[ 2955.026885] msm_otg msm_otg: phy_reset: success
<6>[ 2955.136352] msm_otg msm_otg: USB in low power mode
<6>[ 2969.677581] msm_otg msm_otg: USB exited from low power mode
<6>[ 2969.678131] msm_otg msm_otg: b_idle work, inputs=0x00000003
<6>[ 2969.853424] msm_otg msm_otg: chg_type = USB_SDP_CHARGER
<6>[ 2969.853576] msm_otg msm_otg: b_idle work, inputs=0x00000003
<6>[ 2969.859283] msm_hsusb msm_hsusb: vbus online
<6>[ 2969.859436] msm_hsusb msm_hsusb: CI13XXX_CONTROLLER_RESET_EVENT received
<6>[ 2969.859558] msm_otg msm_otg: changed to b_peripheral, from b_idle
<6>[ 2970.140228] msm_hsusb msm_hsusb: reset
<6>[ 2970.140686] android_work: android_work: did not send uevent (0 0 (null))
<6>[ 2970.178863] android_work: android_work: sent uevent USB_STATE=CONNECTED
<6>[ 2970.182403] msm_hsusb msm_hsusb: reset
<6>[ 2970.182891] android_work: android_work: sent uevent USB_STATE=DISCONNECTED
<6>[ 2970.261993] android_work: android_work: sent uevent USB_STATE=CONNECTED
<6>[ 2971.677764] android_usb gadget: high-speed config #1: android_usb
<6>[ 2971.677917] msm_otg msm_otg: Avail curr from USB = 500
<6>[ 2971.733306] android_work: android_work: sent uevent USB_STATE=CONFIGURED
<6>[ 2971.880920] mtp_open
<6>[ 2974.863128] msm_ta_detect_work: USB exit ta detection - frindex
<3>[ 3000.568115] init: untracked pid 8878 exited
<3>[ 3003.624877] init: untracked pid 8948 exited
<6>[ 3005.894012] SLIM_CL: skip reconfig sequence
I think problem occurs when I enable "cfg80211 wireless extensions compatibility" but unless enabling it i cannot see the wifi adapter in airmon-ng
if CONFIG_CFG80211_WEXT=y = inner WLAN wont work
if CONFIG_CFG80211_WEXT=n = usb wifi adapter wont work with aircrack, reaver
getprop
[wifi.interface]: [wlan0]
[wlan.driver.ath]: [0]
[wlan.driver.config]: [/data/misc/wifi/WCNSS_qcom_cfg.ini]
[wlan.driver.status]: [unloaded]
logcat:
I/WifiManager(16050): Process ndroid.settings enabled Wifi
D/WifiService( 779): setWifiEnabled: true pid=16050, uid=1000
E/WifiStateMachine( 779): Failed to load driver!
E/WifiStateMachine( 779): DriverFailedState
here are documentations about it but they are too complex for me :
https://community.freescale.com/docs/DOC-93603
http://blog.linuxconsulting.ro/2010/04/porting-wifi-drivers-to-android.html
as fas as I understand from what I read I should recompile wlan.ko after building new kernel but i dont know how
can't find any help

Categories

Resources