Locked Hboot with S-On? - HTC Sensation

Hi, ive just got a phone off ebay and trying to s-off it.
Problem is that when i go into the hboot it says:
**LOCKED**
PYRAMID PVT SHIP S-ON RL
Revolutionary tool says invaild key when i run it.
Any ideas how i can get S-OFF? Maybe the guy who had it before me has made it S-ON again to sell it? Any help would be much appreciated!

I just S-offed last week, and i am a complete noob when it comes to this stuff...i also was getting the invalid key. I did a SEARCH (lol) here and found out that the letters i was typing were wrong.
My solution: copy and paste the revolutionary beta key into notepad, then type the keys in notepad to confirm you are typing the correct letters
I found out that the "I" is actually a lower case "L"

Which hboot version? Anything over 1.18.0000 isn't supported
Sent from my HTC Sensation with Beats Audio using xda premium

I read that this could be the after-math of someone unlocking through htc dev and not doing it correctly. So I have to back track to go forward.
It's not got ICS yet, still running GB. There is a system update waiting but I want to root first before any update.
Hboot 1.18.000
I did try the copy and paste. The one major issue here is that on the hboot screen it says **LOCKED** at the top shortly followed by S-ON which tells me that somethings very different.

1.18 has a "locked" status on top. That's normal. Revolutionary is compatible with 1.18, but it's possible that it was rooted with htcdev...
There is no "unlocked" 1.18 hboot. That's why rev will downgrade you to 1.17.
I'm running 1.18 with s-off by use of revolutionary and then reflashing the 1.18 hboot I extracted from 1.50.531.1ruu. It shows "locked" at the top as it did to begin with...
Maybe try flashing the ruu and trying revolutionary again...
Sent from my HTC Sensation 4G using Tapatalk

Unlock bootloader, S-Off and rooting are 3 different things.
HtcDev unlock bootloader but it doesn't neither s-off nor root the device.
To prevent "headhaches" is better follow these steps:
1) Unlock bootloader through HtcDev (then it will show **unlocked** on top but still S-On with 1.18 Hboot)
2) S-Off by revolutionary (don't remember if it downgrade Hboot to 1.17 but I think it does).
3) Install a custom recovery.
4) Root the device
Hope it helps.

COMPLETELY ignore the advice to unlocking on HTCDev - you're letting HTC know you're rooting your phone. ONLY use Revolutionary to get true S-OFF
To the OP: HBOOT 1.18.0000 WILL say Locked at the top. This is 100% normal and HTC brought it in with the 1.18.0000 HBOOT. S-ON is also normal so what you're looking at is designed that way and is how my phone arrived when I first got it

I think you should try get the beta key back or make sure paste it to get correct keys. I think the ***Locked*** won't be problem. Revolutionary will unlocked it. If you got error during root process you may want try Taco Root method during Revolutionary process.

Thanks for your help guys!
It was a very stupid mistake on my part not copying the key from revolutionary over correctly. I was entering O's instead of 0's (zeros). Notepad was the saving grace after 3 hours of reading that showed me the correct key and stopped me from trying other methods and maybe screwing up the process.
I'd never seen a **Locked** with S-ON hboot screen before and not knowing what a person has done before you on a phone when buying off ebay can lead you into unknown territory.
S-Offed and running some Sense 4 now. Beautiful! The wife is pleased! Wouldn't mind some Sense 4 on my Gnex now - Never thought i'd say that!
Thanks all for your help!

I'm selling my Nexus to get the One X...not long now

Related

HTC Unlock Bootloader Tool Advice Needed

I'm currently at this moment in time:
*** LOCKED ***
Pyramid PVT SHIP S-OFF RL
HBOOT-1.23.0000
RADIO-11.19.3504.29_2
OpenADSP-v01.6.0.2226.00.1227
eMMC-boot
Dec 26 2011,12:14:25
CID - 11111111
I want to unlock my bootloader via HTCDev as i like knowing i have access to Fastboot commands if needed, but what i'm wondering, before i do this, is will it send me back to Stock CID and S-Off, or will everything be left as it is whilst just unlocking my bootloader?
Sorry if this has been discussed before, but i've had a look about and not come accross my answer.
Thanks!
It is unlocked, its just saiz locked. A common problem
Brownie2k said:
I'm currently at this moment in time:
*** LOCKED ***
Pyramid PVT SHIP S-OFF RL
HBOOT-1.23.0000
RADIO-11.19.3504.29_2
OpenADSP-v01.6.0.2226.00.1227
eMMC-boot
Dec 26 2011,12:14:25
CID - 11111111
I want to unlock my bootloader via HTCDev as i like knowing i have access to Fastboot commands if needed, but what i'm wondering, before i do this, is will it send me back to Stock CID and S-Off, or will everything be left as it is whilst just unlocking my bootloader?
Sorry if this has been discussed before, but i've had a look about and not come accross my answer.
Thanks!
Click to expand...
Click to collapse
Hi,
It will unlock everything for you.
But HTC will then have a record of what you have done,and this will give you warranty problems,should they ever arise.
Thanks for the help guys!
Much appriciated. I've gone as far as getting my unlock code sent to e-mail, but i've not actually flashed it yet as i was rather unsure.
big_sw2000 said:
It is unlocked, its just saiz locked. A common problem
Click to expand...
Click to collapse
Hi,
It's locked to advanced fastboot,like installing radio.
Basic fastboot like get cid is still available.
Malybru, thats pretty much why i'd want it unlocked - I'm so used to flashing radio etc via Fastboot. I know you can do it via HBoot with PG58IMG, but i've been doing it via Fastboot with my Streak, Desire HD etc and just find it easier doing it like that.
Brownie2k said:
Malybru, thats pretty much why i'd want it unlocked - I'm so used to flashing radio etc via Fastboot. I know you can do it via HBoot with PG58IMG, but i've been doing it via Fastboot with my Streak, Desire HD etc and just find it easier doing it like that.
Click to expand...
Click to collapse
Hi,
I know what you are saying.
But you will invalidate your warranty by doing anything from HTCDEV...
EDIT:
You can always return to 1.17 HERE
this what throws me off alot, unlocking the Bootloader gives us fastboot commands, which i dont want to lose, once you have done the Revolutionary you get s-off which takes security off to flash radio etc, once we update the hboot, it says locked but its truly not, and it still says s-off so once we do the unlock from htcdev we still have s-off so fastbooting flash radio should still work since that security is still off
i searched and asked there is no real answer as everyone jus shrugs and says use the PD58IMG to do things then the thread dies or OP says ok that will be fine
and it will not fully void your warranty if its any type hardware issue, it only voids software side, as say you did a bad flash and bricked it, if they recovery it and see you are unlocked then yes its voided, but if the digitizer not responsive, power button stuck, backlight died, whatever that is still coverd
I know i could return to 1.17, but would that mess up the fact i'm running RCMix ICE 4.0.3? I'm no desperate for the Fastboot commands, but just knowing i have access to them is a weight off my mind.
I've never needed to use my HTC warranty, but loosing access to it is putting me off a little. I think i'll lay off unlocking for a while.
malybru said:
Hi,
It's locked to advanced fastboot,like installing radio.
Basic fastboot like get cid is still available.
Click to expand...
Click to collapse
Oh dear, locked does not mean only basic fastboot. The hboot version determines the basic fastboot. 1.17 has advanced fastboot but none others do
Sent from my HTC Sensation XE with Beats Audio Z715e using xda premium
If you've gone as far as getting the unlock code emailed across then go for it.
I unlocked mine with HTCDev first, now i have hboot 1.23 unlocked and s-off..
It's not going to clear my S-Off or Super CID i take it then?
Thats the only main reason i've been holdinf off doing it, the warranty is a downside, but it's not a huge thing. I bought the phone second hand, so i've no idea who it was first registered to anyway.
I can't answer that one i'm afraid as I did it the other way around, HTC first, then revolutionary.
TBH i'm not sure what the difference is between having an unlocked bootloader and S-Off, or whether they are one and the same. When I did the HTC unlock it said it had been successful but still said S-Off in HBoot so i used the revolutionary method as a follow up.
In retrospect I think the HTC unlock did work, at least in part, because i've flashed the most recent ruu (complete phone image direct from HTC) and have both 'unlocked' at the top and 's-off' showing in hboot. most if not all users who have not done the HTC unlock end up with a 'locked' 's-off' combination.
this doesn't really help with your dilemma unfortunately but i'm sure somone with a definitive answer will be along...
I just went ahead and did it... when the screen appeared asking if i wanted to unlock, i vol upped to Yes and pressed Power. Nothing happened, tried again, nothing happened. Pressed Power on NO my phone restarted.
Went back into Hboot, now says *** Unlocked ***, Ship S-OFF RL, and Supercid says 11111111, so all went well it seems, Only odd thing is, my rom seemed to factory reset, and the RCMix ICE splash screen has changed to the stock Android Spash Screen. All seems ok though, still rooted, etc?
Sounds promising. It's a bit of a steep learning curve at first for sure and not all of the guides and info are in plain english. Still, all's well that ends well.
All seems fine. Reading on HTCDev.com, it does factory reset your Rom and Settings, so i decided to just reflash RCMix Ice and all is well and good now.
*** UNLOCKED ***
Pyramid PVT SHIP S-OFF RL
HBOOT-1.23.0000
RADIO-11.19.3504.29_2
OpenADSP-v01.6.0.2226.00.1227
eMMC-boot
Dec 26 2011,12:14:25
Fastboot getvar cid shows cid - 11111111
All is good now. I agree that sometimes the guides are a little confusing, but it's the after affects that bother me just as much as what could go wrong. I'd hate to have unlocked and had everything set back to default

[Q] TacoRoot working?

hey there,
first of all
my desire s
*** LOCKED ***
saga pvt eng s-off
hboot 2.00.2002 (pg8810000)
i'd like to know if the "taco root" is working for my desire s and my aims.
since i cant download it anymore i cant try it, but i like to know if it would work if i get it somehow. sooner or later it should be up again.
my aim is to flash a unbranded stockrom like "RUU Saga S HTC Europe 2 10 401 8 Radio 20 4801 30 0822U 3822 10 08 04 M release 225161 signed exe" and root it afterwards (is it the best choice?) there for i need a supercid right?
to get there i need an unlocked bootloader like revolutionary would provide me. but for revolutionary i need another hboot version, which i can only downgrade if i alrdy got a unlocked bootloader. right?
is there anyway to get where i wanna get to without using htcdev? for some reason i dont wanna use htcdev.
else i should go for:
unlock with htcdev.
downgrade to HBOOT 0.98.0000
use revolutionary for s-off
change cid
run unbranded ruu
gingerbreaker
thats it?
thanks so far
HTC Dev unlock is not working for me at the moment, get through to posting my device code and it hangs around for a while and says site under maintenance.
pandollar said:
HTC Dev unlock is not working for me at the moment, get through to posting my device code and it hangs around for a while and says site under maintenance.
Click to expand...
Click to collapse
well try again later i guess

[Q] Help back to S-ON sensation

Hi everybody, i'm new on this forum 'cause i'm french indeed i spend my time on Frandroid.fr !
First of all i would like to say sorry for my bad english i'll use i'm just trying to do my best in order to you can read this message.
So, i'm here because i have a problem with my HTC sensation, he had the problem that he powered off all the time even when i didn't use it. To escape this problem i flashed an ICS ROM with Recovery etc.. Then the problem hasn't been resolved so i decided to send my phone at the warranty, but before i have to put my sensation in S-ON, so i used the RUU VODAFONE and i changed my CID in VODPA203. I've seen that there were 3 steps before put the phone in S-ON, first i must have an Hboot less than 1.18 that i have, second be in official ROM that i have and the last step is have a CID HTC that i have (VODAP203).
The problem i have is that on the bootloader, i haven't got the ***LOCKED*** at the top of the screen (sorry i can't put my photo links yet...)
In other words, i THINK, but i'm not sure that my bootloader is not LOCKED.
So can i do the process in order to put my phone in S-ON without the ***LOCKED*** ? Is it risky to do it without ?
I hope that you'll understand my message because it's probably bad english, and a bit to long but i think that i had to explain my problem to you understand.
Thank you, Sharazed.
Not clear enough but not for the english.
What your bootloader says? **unlocked** or **locked** (I think unlocked).
If you attempt to lock again by HtcDev it will show **re-locked**.
The bootloader is now officially unlockable by htc so I wouldn't worry about it.
Not clear if you went back to s-on already or not.
This guide can be useful (step 5)
That's the problem !
Nothing is written at the top of my bootloader, neither LOCKED nor UNLOCKED, just start with PYRAMID...
I can't show you the screen because i have to post 8 messages before.. Normally there is written LOCKED or UNLOCKED but not on my bootloader, that's why i'm asking you if i can do the process, i'll see your link thank's !
After read your link i can't do it from number 6 (STEP 5) to number 9 cause i'm not sure that's my phone is locked.
You never had nothing on top since you had this phone?
I mean no **locked** and no **unlocked**?
By the way if you were able to flash an ics rom (with new firmware and custom recovery), obviously you are unlocked and s-off
Yes i think that i'm unlocked because before used the RUU i was unlocked but as it's not sure, i'm scared to brick my phone you know.
So i hope that i 'll can send you my pictures then you could compare with other phones, but on the french forum, nobody ever seen that before i can write you what i see on my bootloader:
PYRAMID PVT SHIP S-OFF RL
HBOOT-1.17.0008
RADIO_10.11.9007.15_M
eMMC-boot
May 13 2011, 21:04:57
That's what i see !
Thank's !
Definitely your phone is unlocked.
You couldn't be S-Off, if it was locked.
Hboot is the right one for GB.
You can go through the S-ON procedure without problems.
Just be carefull and follow instructions.
Please hit thanks button if you wish
What do you mean by GB ?
Ginger Bread (android 2.3)
Okay, but i read that i had to be LOCK before go to S-ON so is it dangerous ?
Sharazed said:
Okay, but i read that i had to be LOCK before go to S-ON so is it dangerous ?
Click to expand...
Click to collapse
There is no need to lock again for 2 reasons.
1) Bootloader is officially unlockable by HtcDev. If you lock again it will show **re locked**. Your warranty is void in any case.
Your bootloader has never been locked (according to what you said).
I don't understant because on the french tutorial, it says that i must have my bootloader locked and hboot inferior at 1.18 then if the bootloader is unlocked by revolutionnary (that i had before use the RUU) it's not advisable to back to S-ON.
And you are telling me that i need not to put my bootloader locked to do the process ?
I'm totally lost !
I have to write 8 messages before link my pictures, you'll see my case
Locking bootloader and S-On are 2 different things.
Your situation is uncommon because the sensation is usually shipped **locked** and S-On.
Then, in order to S-Off you need to unlock first.
In your case you are S-Off already without unlocking by HtcDev, so it means that it was shipped unlocked (strange but this is what you say), hence no need to relock in my opinion.
No he wasn't usually shipped UNLOCKED (S-OFF..), but i have unlocked it because my phone is knowing reboot lonely, so i decided to flash Recovery and ICS rom, but with the ROM the bug had persisted.
And now I used the RUU to erase the ICS rom and put my phone in S-ON, but after using the RUU and follow all steps, i see that nothing is written at the top of my bootloader, neither ***LOCKED*** nor ***UNLOCKED*** as before..
So i'm asking you if i can finally put my phone in S-ON without the word LOCKED at the top of my bootloader ?!
Thank's !
Little up !
Nobody know ?

(Solved)What is S-Off

I am merely posting this here for all those considering to go S-Off but haven't found the courage for it yet or just aren't sure what S-Off actually is. So to ease your minds a little bit I wish to explain S-Off.
For starters, S-Off and root ARE TWO COMPLETELY DIFFERENT THINGS!
HTC has been securing their phones by locking the internal flash memory (NAND or eMMC)(eMMC in our case) to stop it from being written to, unless the file being flashed is signed by a private key only known to HTC. This is controlled by a flag (@ secuflag) and is identified as the device being S-ON. Telling the HBoot the device is Security Off (S-OFF) stops this check for the key, and allows us to write anything to any partition, which is what we are aiming for.
There are actually two levels of S-OFF. The Bootloader (HBoot) and the Radio. Getting S-Off on the HBoot gives us everything we need, but doesn't actually turn off the @ secuflag which is set in the radio - instead, the HBoot ignores it and therefore thinks it is S-Off, but this is not TRUE S-Off. It is possible to flash a HBoot that believes the Radio is set to S-OFF, as the HBoot is responsible for setting that flag.
Once the HBoot on the phone is S-OFF, we can write to all the partitions and basically do whatever we want, but it is possible to go one step further. Flashing a radio that is S-OFF and actually setting the @ secuflag to S-off gives us 100% total access to every part of the phone and it's software, as it becomes network unlocked allowing you to use any SIM and also allows you to flash a ROM from any carrier (known as Super CID). It also makes it practically impossible to permanently loose root no matter what you flash. Once you have radio S-OFF, it makes it much easier to flash new HBoots and ROMs even if you flash something that is locked down tight.
Setting the Radio to S-Off is not necessary, and gaining S-OFF on the HBoot is more than most people will ever need. Radio S-Off is just the last step of the puzzle, but it is worth noting that you can permanently brick your phone if flashing a radio or a HBoot, if either of these go wrong you will end up with a shiny expensive paper weight so there is risk involved. If this helped you in any way then feel free to click on the thanks button. Meanwhile, happy hunting!
Sent from my C525c using XDA Premium 4 mobile app
To determine if you are S-OFF via HBoot or Radio you can do one of two things.
1: Go into fastboot and type
Code:
fastboot oem readsecureflag
If you get secure_flag with the number zero then congrats - you are radio S-Off
If you get secure_flag 3 then I am sorry, you are not radio S-Off. - your modded HBoot is ignoring the radio in regards to @ secureflag.
2: (I don't recommend this lol)
You can flash a stock HBoot and then reboot your bootloader. If you see S-On after already having S-Off then this means you were S-Off via HBoot. However, I would like to note that some HBoots are written out to prevent themselves from being over written so S-Off isn't lost, but this prevention does not always work and is usually patched by HTC relatively quickly.
Sent from my C525c using XDA Premium 4 mobile app
Another note... If you do not have radio S-Off then the following fastboot command will not work nor will it bring you back to S-On:
fastboot oem writesecureflag 3
Reason for this is because you are already S-On, but its being masked by your modded HBoot. So in this case, flash a stock HBoot and that will substitute for the failing command in fastboot
Sent from my C525c using XDA Premium 4 mobile app

Return to stock

Hey Guys
I have a telstra HTC one xl which is SOFF, unlocked bootloader and 2.15 firmware. I am currently running KickDroid XL v4.10 and am looking to sell my phone. I don't really want to sell a rooted phone so I would like to take it back to a stock Telstra rom. I have posted a pic of my bootloader details. I hope it attached as this is the first I have posted here because I normally work things out by reading lots of threads before I do anything to my phone. Please correct me if I am wrong but this is the way I think I should do it.
Change the CID back to Telstra and run this RUU - RUU_Evita_UL_Telstra_WWE_1.89.841.9_Radio_0.18c.32.09.01_10.93a.32.20L_release_266699_signed.exe.
The things I really don't know about are, if I did this, can I get the updates to get to 4.2. and can I RUU that old version without any problems.
Any help would be greatly appreciated.
.
Looks like my pic didn't work.
First 4 lines of my bootloader
***UNLOCKED***
EVITA PVT SHIP S-OFF RL
CID-11111111
HBOOT-2.15.0000
RADIO-1.3a.32.45.16.2
You should follow these steps:
1. Run the RUU.
2. Change CID back to TELST001.
3. Relock the bootloader.
4. Change the phone back to s-on.
At this point you should be able to take updates to get back up to 4.2.2 again and sell the phone.

Categories

Resources