[tutorial] change your mid to wwe version - HTC One Mini

This is a short tutorial on how to change you mid on your htc one mini. Make sure your bootloader is unlocked you are rooted and have s-off with super cid! This is the config that is know working for the mod. After the change you can lock everything back up if you want.
1. Boot up your phone and connect to pc with usb debugging turned on.
2. Open up command prompt or terminal and "adb shell" and then type "su"
3. Dd if=/dev/block/mmcblk0p6 of=/sdcard/mid.img
4.exit shell
5.adb pull /sdcard/mid.img
6.open up mid.img in hex editor and search for this value 50 00 4f 00 35 00 38 you will see (in the text side of the editor) either p.o.5.8.2.2.0.0.0 or p.o.5.8.2.0.0.0.0 if it reads p.o.5.8.2.2.0.0.0 its an att model and you want to simply overwrite the last 2 with a 0. Use f3 or whatever button to find the value again and change that 2 to a 0 in all places in the file. 2 or 3 times if i remember correctly. (this does work and it is fully tested by me) make sure you have the editor overwriting not inserting!! And only change what ive told you!!
7.then save and push the file back to sdcard
8.run this command dd if=/sdcard/mid.img of=/dev/block/mmcblk0p6
9.adb reboot bootloader
10.finally fastboot getvar all....and youll see your mid has been successfully changed. Ota updates will now work on stock rom.

Related

Samsung Galaxy S 4G Unlock Code Found

***** IMPORTANT ROOT IS REQUIRED BEFORE PROCEEDING *****
***** ALSO PLEASE READ CAREFULLY BEFORE ACTUALLY APPLYING STEPS *****
All right ladies and gentlemen, coders and non coders I have personally found the unlock code NOT THE FREEZE CODE only the unlock code for your Samsung Galaxy S 4G hidden in the same files as previous Vibrant phones.
Please understand this was a hard complex and still needs work procedure.
Of-course this all depends on your dedication and time but hopefully I have simplified it for you.
Steps:
1. Install "010 Hex editor" you can use trial does not have to be registered
2. Go to your SGS 4G and open a terminal emulator (free on the Market) - (Root Required)
The following steps are credit to SS2006 on a different post
*** Dont forget the (su) command *** after the second line
_____
after opening a terminal emulator type the following
cd /dev/block <enter>
su <enter> <at this point your phone will ask for superuser access ALLOW it if you already havent done so>
dd if=/dev/block/bml3 of=/sdcard/bml3.bak <enter>
Go find the file on your SD Card and transfer it to your computer
3. Open 010 Hex Editor
4. In 010 Hex Editor go to the Menus above and select VIEW>LINEFEEDS>SELECT CUSTOM>SET YOUR BYTES TO "32" Nothing Less
5. Locate the bml3.bak file you created and transfered to your computer and open it using the editor
(CREDIT TO FR0Z3N FOR CLARIFYING THE FOLLOWING 2 STEPS)
6. Using your keyboard select CRTL+F to search for a hex string, when the search window pops up select "Hex byte" in the Type field and then search for the following string below:
"FFFFFFFFFF0100000000" ALL TOGETHER, Then Hit the FIND ALL button to the right, some of you will get 2 results and others up to 10 results on your screen below
7. If you look at your Hex editor there are 3 window panes on the selected line (See Image Below)
e.g 4CCC60h <-- Offset
01 01 01 01 < -- Hex Keys
yyyyyyyyy <- ASCII text where your code is
h.t .t p / / i1201.photobucket . com /albums/ bb359/sanfranx415/unlock.jpg
8. Go through each result from the above search and you will see on the 3rd window pane (as shown on pic above) after the hex keys there is an 8 DIGIT CODE (Write this code Down) this is your unlock code NCK for your phone
Sidenote: THIS 8 DIG CODE SHOULD SHOW ON AT-LEAST ONE MORE RESULT CHECK ALL YOUR RESULTS FROM THE SEARCH ABOVE IF YOU HAVE ANY DOUBTS ( SOME OF YOU WILL HAVE YOUR CODE SHOWN AT-LEAST 2 TIMES AND SOME OF YOU WILL HAVE THE CODE SHOW MORE THAN 4 TIMES BUT YOU SHOULD NOT HAVE THAT MANY RESULTS )
**** TO INPUT THE UNLOCK NETWORK CODE DO THE FOLLOWING ****
9. Turn off your phone
10. Insert a foreign SIM card not attached to your current provider (e.g if you have T-mob use an ATT SIM CARD) and turn on your phone
11. You will be prompted to enter a Network Unlock Control Key ( Use the code above that you wrote down and type it in your phone exactly)
12. After entering your NCK please hit Unlock or GO button and you should see a screen that says "network unlock successful" and your phone should go in the main screen after your phone has been unlocked.
THATS IT FOLKS HAVE FUN
PS> If you entered an incorrect code you must of entered the wrong code or wrote it down wrong please read carefully and verify the code matches the results from above in at-least more than one instance
SHOULD ANYONE NEED HELP PM ME AND I WILL BE GLAD TO HELP
personally my SGS4G has been rooted from day 1 and wi-fi tethering enabled and now it has been Unlocked
Thanks, will try
This seems like it doesn't work. If you go to line 157028 you end up at offset 4CAC60h which is nothing but zeros. And if you go to offset 4CCC60h, there's no 01010101 value.
Ok is this BS or what? I noticed that no one else has posted here. I have tried every combination with these line #'s and I cant find any 8 digit code in the third section. con anybody tell me if this is legit?
doesnt work for me either
OMG! Sick it did work, i found it on a different line
w00t just unlocked mine!
fr0z3n said:
OMG! Sick it did work, i found it on a different line
w00t just unlocked mine!
Click to expand...
Click to collapse
Well can you share what line you found it on
I just unlocked two of them, its on different lines everytime.
Folowing are the instructions:
Open the file in Hex Editor
1.) Press - Ctrl + F
A window should open up
2.) Change the type to "Hex Bytes (h)
3.) Value: FF FF FF FF FF 01 00 00 00 00
4.) Click Find All, for me the code
the code is visible right after this, 8 digit code. For me it was repeared 9-10 times in the file.
Good luck
did it work?
No this is not BS and Yes Fr0z3N is correct I should have said look for this line value
Value: FF FF FF FF FF 01 00 00 00 00
You will find your code it takes patience but your code is there if you follow the instructions
Thanks Fr0Z3n for the clarification and more indepth analysis
Works for me, too. Thanx sanfran and fr0z3n.
Sent from my SGH-T959V using XDA App
hello, can you tell me if moving to Europe this device will work also on European 3G UMTS 900/2100 ? Thanks a lot
pipporobby said:
hello, can you tell me if moving to Europe this device will work also on European 3G UMTS 900/2100 ? Thanks a lot
Click to expand...
Click to collapse
Moving to europe has no barring at all- Once you unlock your Phone you can use it with any GSM provider in the world including Europe just switch out the sim Cards with the european SIM
The technology has not changed for 3G phones are still capable of the same frequencies its just 4G is now being used more common in the US depending on your carrier of-course either HSPA or LTE or WIMAX in the US but in Short to answer your question YES it will work
Have fun in Europe
Still no luck Ive tried it over and over the only numbers that I find that are on more than one line is 0123456789 and I doubt that is my unlock code. And I followed the instructions to the "T" Why is this not working? Also you said 2 to 10 results below and I get 160 results every time.
@droidboy: Is your Samsung Galaxy S 4G rooted?
Sent from my SGH-T959V using XDA App
sk8er_ said:
@droidboy: Is your Samsung Galaxy S 4G rooted?
Sent from my SGH-T959V using XDA App
Click to expand...
Click to collapse
Yeah I am rooted, I rooted through super one click v1.7
@Droidboy quick question did you try using any galaxy s unlock app from the market if you did and they alter your original files that came with your phone thus causing a different bak file to be outputed when you do the terminal commands as stated. You should revert if possible with the same program used or PM me and send me your bak file to see if I can help
Thanks. It worked!!
Sent from my SGH-T959V using XDA App
fr0z3n said:
I just unlocked two of them, its on different lines everytime.
Folowing are the instructions:
Open the file in Hex Editor
1.) Press - Ctrl + F
A window should open up
2.) Change the type to "Hex Bytes (h)
3.) Value: FF FF FF FF FF 01 00 00 00 00
4.) Click Find All, for me the code
the code is visible right after this, 8 digit code. For me it was repeared 9-10 times in the file.
Good luck
Click to expand...
Click to collapse
I followed these instructions after I downloaded the .bak file, used the CTRL+F to find the first instance then used F3 (Find Next) to find the other places where the code is.
Has anyone tried a AT&T sim card to see if 3G works just like it did for the Vibrant?

HTC one s s3 How get this f.ing supercid.

Hello gays. Recently got in Honk Kong HTC ONE S S3 and collided with problem about changing
cid from htc_622 to 11111111 or htc_001.
1.Unocked from hbdev.com it takes 1 minutes.
2.Secondary install twrp 2.2.1. takes 1 minutes.
3.Install r3-ville-superboot.
From this moment looks like i have root and everething, then under "adb shell" and "su" i try to
write modified file to # dd if=/sdcard/mmcblk0p4MOD of=/dev/block/mmcblk0p4 and got response that
everething went good, file was written with speed and etc. But in bootloader mod when i try to read it with
"fastboot oem readcid" i got anyway HTC_622. OK. i tried other method "fastboot oem write cid 11111111"
but got "message c:\a>fastboot oem writecid 11111111
... INFO villec2_init_sd, SD card already power on
INFO[SD_HW_ERR] SD: No device attached
INFO902910 902E20
FAILED (status read failed (No such file or directory)"
4. So after that i tried 1 week everething: write modified hex files to mmcblk0p5,6 flash different images to boot, recovery: original or modified, took recovery and boot images from different ruu, try to find in hex redactor in system file from ruu allowed cid and change them-NO SUCSESS.
GAYS who know how to change this f....g cid to supercid.
kiroyan said:
Hello gays. Recently got in Honk Kong HTC ONE S S3 and collided with problem about changing
cid from htc_622 to 11111111 or htc_001.
1.Unocked from hbdev.com it takes 1 minutes.
2.Secondary install twrp 2.2.1. takes 1 minutes.
3.Install r3-ville-superboot.
From this moment looks like i have root and everething, then under "adb shell" and "su" i try to
write modified file to # dd if=/sdcard/mmcblk0p4MOD of=/dev/block/mmcblk0p4 and got response that
everething went good, file was written with speed and etc. But in bootloader mod when i try to read it with
"fastboot oem readcid" i got anyway HTC_622. OK. i tried other method "fastboot oem write cid 11111111"
but got "message c:\a>fastboot oem writecid 11111111
... INFO villec2_init_sd, SD card already power on
INFO[SD_HW_ERR] SD: No device attached
INFO902910 902E20
FAILED (status read failed (No such file or directory)"
4. So after that i tried 1 week everething: write modified hex files to mmcblk0p5,6 flash different images to boot, recovery: original or modified, took recovery and boot images from different ruu, try to find in hex redactor in system file from ruu allowed cid and change them-NO SUCSESS.
GAYS who know how to change this f....g cid to supercid.
Click to expand...
Click to collapse
I've exactly the same request than you. I did also what you have done with the same results.
I don't understand why it doesn't work.
Deleted.
kiroyan said:
Hello gays. Recently got in Honk Kong HTC ONE S S3 and collided with problem about changing
cid from htc_622 to 11111111 or htc_001.
1.Unocked from hbdev.com it takes 1 minutes.
2.Secondary install twrp 2.2.1. takes 1 minutes.
3.Install r3-ville-superboot.
From this moment looks like i have root and everething, then under "adb shell" and "su" i try to
write modified file to # dd if=/sdcard/mmcblk0p4MOD of=/dev/block/mmcblk0p4 and got response that
everething went good, file was written with speed and etc. But in bootloader mod when i try to read it with
"fastboot oem readcid" i got anyway HTC_622. OK. i tried other method "fastboot oem write cid 11111111"
but got "message c:\a>fastboot oem writecid 11111111
... INFO villec2_init_sd, SD card already power on
INFO[SD_HW_ERR] SD: No device attached
INFO902910 902E20
FAILED (status read failed (No such file or directory)"
4. So after that i tried 1 week everething: write modified hex files to mmcblk0p5,6 flash different images to boot, recovery: original or modified, took recovery and boot images from different ruu, try to find in hex redactor in system file from ruu allowed cid and change them-NO SUCSESS.
GAYS who know how to change this f....g cid to supercid.
Click to expand...
Click to collapse
This method not support C2 (S3)
teerapong.g said:
This method not support C2 (S3)
Click to expand...
Click to collapse
But which method instead, for unbrand my s3-device???
So there is no way to do that?
Gesendet von meinem HTC One S mit Tapatalk 2
Any news about supercid on S3 device?
CID
Hi!
Any News, how to changeCID on VilleC2 (S3) devices? With or without S-off...
Thanks
This should fix the problem
kiroyan said:
Hello gays. Recently got in Honk Kong HTC ONE S S3 and collided with problem about changing
cid from htc_622 to 11111111 or htc_001.
1.Unocked from hbdev.com it takes 1 minutes.
2.Secondary install twrp 2.2.1. takes 1 minutes.
3.Install r3-ville-superboot.
From this moment looks like i have root and everething, then under "adb shell" and "su" i try to
write modified file to # dd if=/sdcard/mmcblk0p4MOD of=/dev/block/mmcblk0p4 and got response that
everething went good, file was written with speed and etc. But in bootloader mod when i try to read it with
"fastboot oem readcid" i got anyway HTC_622. OK. i tried other method "fastboot oem write cid 11111111"
but got "message c:\a>fastboot oem writecid 11111111
... INFO villec2_init_sd, SD card already power on
INFO[SD_HW_ERR] SD: No device attached
INFO902910 902E20
FAILED (status read failed (No such file or directory)"
4. So after that i tried 1 week everething: write modified hex files to mmcblk0p5,6 flash different images to boot, recovery: original or modified, took recovery and boot images from different ruu, try to find in hex redactor in system file from ruu allowed cid and change them-NO SUCSESS.
GAYS who know how to change this f....g cid to supercid.
Click to expand...
Click to collapse
I have the S4 Version but this should work:
1. Download root explorer on your device
2. Open it up and at the top select Mount R/W
3. Select the folder "dev"
4. Next, select the folder "block"
5. In that folder find the file that says "mmcblk0p4"
6. Copy the file and paste it to the root of your SD Card
NOTE: Do not cut the file &and paste it.
7. Download Hex Editor from the market and open it up
8. Locate the file that was copied to your SD Card & select it
9. Scroll down till you see htc_622 on the right side
10. Now, while looking at the same line htc_622 is on follow it toward the left till you see the first two digit number right after the last 00's
11. Finally change each number ( Not the 00's ) to 31 till you see 11111111 on the right side instead of htc_622.
12. There are a total of eight 1's. when your finished hit save at the bottom of the app and exit.
13. Now go ahead and boot into the bootloader of the device and hit fastboot.
14. Plug your phone in while in the bootloader and adb is open and type:
fastboot oem readcid
And hit enter. It should read "11111111".
Now you have SuperCID!!!!!!!!!!!
kiliona.k.mathew said:
I have the S4 Version but this should work:
1. Download root explorer on your device
2. Open it up and at the top select Mount R/W
3. Select the folder "dev"
4. Next, select the folder "block"
5. In that folder find the file that says "mmcblk0p4"
6. Copy the file and paste it to the root of your SD Card
NOTE: Do not cut the file &and paste it.
7. Download Hex Editor from the market and open it up
8. Locate the file that was copied to your SD Card & select it
9. Scroll down till you see htc_622 on the right side
10. Now, while looking at the same line htc_622 is on follow it toward the left till you see the first two digit number right after the last 00's
11. Finally change each number ( Not the 00's ) to 31 till you see 11111111 on the right side instead of htc_622.
12. There are a total of eight 1's. when your finished hit save at the bottom of the app and exit.
13. Now go ahead and boot into the bootloader of the device and hit fastboot.
14. Plug your phone in while in the bootloader and adb is open and type:
fastboot oem readcid
And hit enter. It should read "11111111".
Now you have SuperCID!!!!!!!!!!!
Click to expand...
Click to collapse
It works? Anyone try it for S3?
mmcblk0p4
I tried the procedure on my S3 but my mmcblk0p4 file is 0 kb. In fact everything in the /Block/ folder is 0 bytes.
When I open it with hex editor nothing there.
Also tried copying it to my download folder and using my pc to edit it but it is also blank.
Any ideas?
mm
Quills88 said:
I tried the procedure on my S3 but my mmcblk0p4 file is 0 kb. In fact everything in the /Block/ folder is 0 bytes.
When I open it with hex editor nothing there.
Also tried copying it to my download folder and using my pc to edit it but it is also blank.
Any ideas?
Click to expand...
Click to collapse
hello friend to me and it weighs 1 kb could edit .. and if I will have hex and all, i quo problem is how to modify the qm someone will help .. thanks
s3
O.k. There is no chance to change our cid(mean ville c2 or s3). I tried everething with h-boot 2.01( i found all with mentioned cid htc_622 (means in hex redactor looked ) changed but no sucsses. I ever tried changed h-boot but f-ing signature spoiled all things. My opinion should some really smart gay change h-boot-------------------------but this nobody would do in a good mind.
This subject closed.
Going buy chinise stuff with mtk 6899 processor. With 2sims and less gemmoroy things.
Every ones thanks for any attention.
Buy.

[Q] mmcblk0p23 - P/N 99HMN088-00

I've stupidly messed up my mmcblk0p23 partition and I'm desesperatly trying to restore it, but all the dump I tried to flash were not able to make it work properly.
So I've been looking into the raw dump using HexEdit and I noticed that they were for differente revision (P/N) of the board.
That's why I'm looking for someone with a HTC Desire S P/N 99HMN088-00 (this number is written on the phone behind the battery) willing to provide me with dump of their mmcblk0p23 partition.
If you're a volunteer, and if you need assistance in making a copy of that partition, here is a quick guide:
Prerequisite
- Phone rooted
- Android USB driver and tools installed
Procedure
Code:
On the command line type:
> adb shell
$ su <-- Needed if you're not already su
# dd if=/dev/block/mmcblk0p23 of=/sdcard/mmcblk0p23.img
# exit
$ exit <-- Needed if you had to type 'su' ;)
> adb pull /sdcard/mmcblk0p23.img
-Then you should have a copy of the partition on your PC.
-Edit it with HxD Hex Editor
-search for your IMEI (ctrl+F) replace it with XXXX...
-search for your serial number and replace it also with XXXX...
-Save the file
-You're ready to send me your file and save my phone
It's like an organ donation !!!! You'll save a DS :laugh:
All your help is welcome

[HOWTO] Unlocking i9505G bootloader

This will Wipe every thing on the internal storage SO BACKUP your stuff on the SD card and maybe the onto computer too
This is for the Google edition of the Galaxy S4
Go To setting / about phone /
Tap "Build Number" 7 times
Go back to Main Settings Menu and under now shown "Developer Options" enable "USB debugging"
Download this
http://developer.android.com/sdk/index.html#download
extract to the C drive in the folder adb (you can move it anywhere just adjust the path)
run "SDK Manager.exe"
in the extras select "Google USB Drivers"
click "Install 1 package" and accept license / Install
now go into the device manager on you PC and change the "Samsung ADB driver" to the
"Android Composite ADB Interface" located in this folder
C:\adb\sdk\extras\google\usb_driver
you will have to force that driver to install by selecting it
let it finish installing the drivers
then
unplug and then plug in the USB on the phone
your phone will ask you about "Allow USB debugging?"
check the box "always allow from this computer"
click OK on your phone
If this doesn't work the some thing is wrong with the drivers and reinstall the drivers make sure you select "Android Composite ADB Interface" and not "Android ADB Interface"
Now open up a command prompt (I did this as "run as administrator")
type "cd C:\adb\sdk\platform-tools" (or what ever the directory you extract your files)
enter this command
adb reboot bootloader <enter>
Once in bootloader,
In the command prompt type:
fastboot oem unlock <enter>
It will ask you to unlock you phone and this may void you warranty
Use the volume buttons to change to yes and the power button as enter
At this point everything gets wiped on your phone
The phone rebooted back into bootloader and it now said "bootloader=unlocked" and the bottom left of the screen
Reboot the phone and the unlock icon will appear on the 1st Google screen.
the phone will boot into android like it was new
I have not done any ODIN on my phone so i don't know how this affect it
I am trying to avoid ODIN and get the phone rooted and have a custom recovery on it.
I just did this on my phone and typed this up i think everything is accurate let me know if i need to adjust anything.
fyi the command "fastboot flash recovery recovery.img" don't work because the system is still secure boot enable.
Thanks and Questions
Thanks. Could you please tell where you found this info?
Also, I'm not that experienced and don't understand why this is necessary. Don't our GT-i9505G phones come with unlocked boot loader?
bsam55 said:
Thanks. Could you please tell where you found this info?
Also, I'm not that experienced and don't understand why this is necessary. Don't our GT-i9505G phones come with unlocked boot loader?
Click to expand...
Click to collapse
It still needs to perform fastboot oem unlock just like nexus device does
Sent using GT-i9505~
This is what i did on my galaxy nexus device (nexus 3) and my friend nexus one
I made this from my notes of the old devices
my experience is that i could mess up my phone and lock me out of it it, so i wanted to be sure i could fix it, that is why i did this
I did not try to use fastboot beforehand, so it could work.
but i have a feeling that the ODIN flash changed the bootloader (probably not)
but i have been screwed buy a odin flash messing with the bootloader on the vibrant( but for some reason there looked to be 3 bootloader on that device)
if some one want to try it
just put the ClockworkMod 6.0.3.3 recovery file the
C:\adb\sdk\platform-tools
adb reboot bootloader
fastboot boot recovery.img
this dose take 1 minute after the file is sent to reboot and load
I have tried TWRP but it don't load past the first screen.
This just boots into the file and doesn't change anything
access to the sd cards don't work
I am tempted to flash ClockworkMod but i would like to pull a copy of the recovery first.
BTW after paying $700 for a phone i want to be sure to be able to reinstall the OS, like on a PC.
warwolfx0 said:
This is what i did on my galaxy nexus device (nexus 3) and my friend nexus one
I made this from my notes of the old devices
my experience is that i could mess up my phone and lock me out of it it, so i wanted to be sure i could fix it, that is why i did this
I did not try to use fastboot beforehand, so it could work.
but i have a feeling that the ODIN flash changed the bootloader (probably not)
but i have been screwed buy a odin flash messing with the bootloader on the vibrant( but for some reason there looked to be 3 bootloader on that device)
if some one want to try it
just put the ClockworkMod 6.0.3.3 recovery file the
C:\adb\sdk\platform-tools
adb reboot bootloader
fastboot boot recovery.img
this dose take 1 minute after the file is sent to reboot and load
I have tried TWRP but it don't load past the first screen.
This just boots into the file and doesn't change anything
access to the sd cards don't work
I am tempted to flash ClockworkMod but i would like to pull a copy of the recovery first.
BTW after paying $700 for a phone i want to be sure to be able to reinstall the OS, like on a PC.
Click to expand...
Click to collapse
Maybe you can do a full dump for the community.
before you install custom recovery, I'd like to ask if you could do complete system dump of your device, including stock recovery (recovery.img), stock bootloader (boot.img) and system.img . It would be a big help to the community. You can do it simple after rooting with for example Motochopper exploit (described here http://whatswithtech.com/how-to-root-samsung-galaxy-s4/ )
Then something like this:
Code:
for gaining root access type: su
then:
copy BOOT -> dd if=/dev/block/mmcblk0p20 of=/sdcard/boot.img bs=4096
copy HIDDEN -> dd if=/dev/block/mmcblk0p27 of=/sdcard/hidden.img bs=4096
copy PARAM -> dd if=/dev/block/mmcblk0p19 of=/sdcard/param.bin bs=4096
copy RECOVERY -> dd if=/dev/block/mmcblk0p21 of=/sdcard/recovery.img bs=4096
copy SYSTEM -> dd if=/dev/block/mmcblk0p16 of=/sdcard/system.img bs=4096
Thanks a lot!
System Dump
Plus One on the system dump. There are a lot of knowledgeable people waiting to help as soon as they have this. I don't know enough to do it and did try CWM (which doesn't work, by the way.)
Hope you are able to help. Thanks
bmbm said:
before you install custom recovery, I'd like to ask if you could do complete system dump of your device, including stock recovery (recovery.img), stock bootloader (boot.img) and system.img . It would be a big help to the community. You can do it simple after rooting with for example Motochopper exploit (described here http://whatswithtech.com/how-to-root-samsung-galaxy-s4/ )
Then something like this:
Code:
for gaining root access type: su
then:
copy BOOT -> dd if=/dev/block/mmcblk0p20 of=/sdcard/boot.img bs=4096
copy HIDDEN -> dd if=/dev/block/mmcblk0p27 of=/sdcard/hidden.img bs=4096
copy PARAM -> dd if=/dev/block/mmcblk0p19 of=/sdcard/param.bin bs=4096
copy RECOVERY -> dd if=/dev/block/mmcblk0p21 of=/sdcard/recovery.img bs=4096
copy SYSTEM -> dd if=/dev/block/mmcblk0p16 of=/sdcard/system.img bs=4096
Thanks a lot!
Click to expand...
Click to collapse
cool thank i was looking for that info
Just i couldn't get su to work in adb
I have been able to get Supersu (also tried superuser) on the phone but it complains about the su binaries (busybox in superuser) not being installed i have tried to install it using the market app (which said i am rooted) but i get no popup on the system.
i might try a wipe to see if that fixed it. (i did flash root to the system so it should still be there after a wipe)
first root, then system dump
unless someone knows how to do a system dump without root? or temp root solution.
I will look into the motochopper later today
you don't need "su" to work in adb shell, if you run "adb root" and "adb remount" with a modified adbd binary (inside CWM for example) you will have root access.
pls try out this root zip I just made, maybe it will work
warwolfx0 said:
QUOTE]
DELETed
Click to expand...
Click to collapse
I have root
Thanks broodplank1337
download the root that "broodplank1337" made
and put it in "C:\adb\sdk\platform-tools" (this is my adb.exe folder)
Download ClockworkMod 6.0.3.3 NORMAL from below
http://forum.xda-developers.com/showthread.php?t=2359132&highlight=recovery
aka Miustone_CWM_flash-NORMAL.zip
extract the recovery.img to the folder "C:\adb\sdk\platform-tools"
Now open up a command prompt (I did this as "run as administrator")
type "cd C:\adb\sdk\platform-tools" (or what ever the directory you extract your files)
enter this command
adb reboot bootloader <enter>
Once in bootloader,
In the command prompt type:
fastboot boot recovery.img (this takes 1min to load after the file is sent)
This will boot into ClockworkMod
goto "install zip"
goto "install zip from sideload"
in the cmd type
adb sideload root.zip
This sends to the phone and write to the phones Rom.
Now reboot and we have root without ODIN on a I9505G
BTW my file was missing busybox in the xbin i was playing around with "CWM-SuperSU.zip" as a base
It is kind of late so i may have missed some things in this write up.
Now off to the system dump.
I will repost this later as a new post to keep this clean.
ok i had some issues with viewing the files on the phone
i moved them to the sdcard and then pulled them off the card on my pc using a "sd to usb"
dd if=/dev/block/mmcblk0p20 of=/storage/extSdCard/dump/boot.img bs=4096
dd if=/dev/block/mmcblk0p27 of=/storage/extSdCard/dump/hidden.img bs=4096
dd if=/dev/block/mmcblk0p19 of=/storage/extSdCard/dump/param.bin bs=4096
dd if=/dev/block/mmcblk0p21 of=/storage/extSdCard/dump/recovery.img bs=4096
dd if=/dev/block/mmcblk0p16 of=/storage/extSdCard/dump/system.img bs=4096
Is there any other mmcblk0p i should backup
and is there any issues with posting this info on this forum
so far this only has root
i did notice that clockworkmod did give me access to root but i couldn't find the sd card while fastbooting it.
I don't think that the whole bootloader is part of what i backup, I thought there was a sbl.bin that i need too.
warwolfx0 said:
ok i had some issues with viewing the files on the phone
i moved them to the sdcard and then pulled them off the card on my pc using a "sd to usb"
dd if=/dev/block/mmcblk0p20 of=/storage/extSdCard/dump/boot.img bs=4096
dd if=/dev/block/mmcblk0p27 of=/storage/extSdCard/dump/hidden.img bs=4096
dd if=/dev/block/mmcblk0p19 of=/storage/extSdCard/dump/param.bin bs=4096
dd if=/dev/block/mmcblk0p21 of=/storage/extSdCard/dump/recovery.img bs=4096
dd if=/dev/block/mmcblk0p16 of=/storage/extSdCard/dump/system.img bs=4096
Is there any other mmcblk0p i should backup
and is there any issues with posting this info on this forum
so far this only has root
i did notice that clockworkmod did give me access to root but i couldn't find the sd card while fastbooting it.
I don't think that the whole bootloader is part of what i backup, I thought there was a sbl.bin that i need too.
Click to expand...
Click to collapse
can you please upload your system dump , thank you mate
warwolfx0 said:
Thanks broodplank1337
download the root that "broodplank1337" made
and put it in "C:\adb\sdk\platform-tools" (this is my adb.exe folder)
Download ClockworkMod 6.0.3.3 NORMAL from below
http://forum.xda-developers.com/showthread.php?t=2359132&highlight=recovery
aka Miustone_CWM_flash-NORMAL.zip
extract the recovery.img to the folder "C:\adb\sdk\platform-tools"
Now open up a command prompt (I did this as "run as administrator")
type "cd C:\adb\sdk\platform-tools" (or what ever the directory you extract your files)
enter this command
adb reboot bootloader <enter>
Once in bootloader,
In the command prompt type:
fastboot boot recovery.img (this takes 1min to load after the file is sent)
This will boot into ClockworkMod
goto "install zip"
goto "install zip from sideload"
in the cmd type
adb sideload root.zip
This sends to the phone and write to the phones Rom.
Now reboot and we have root without ODIN on a I9505G
BTW my file was missing busybox in the xbin i was playing around with "CWM-SuperSU.zip" as a base
It is kind of late so i may have missed some things in this write up.
Now off to the system dump.
I will repost this later as a new post to keep this clean.
Click to expand...
Click to collapse
I maybe wrong in this, but I have played with fastboot on my ex HTC device. the proper command to flash recovery is
Code:
fastboot flash recovery recovery.img
the proper command to flash kernel is
Code:
fastboot flash boot boot.img
with
Code:
fastboot boot recovery.img
, the recovery isn't permanent. it will be only be there for the current session. after rebooting, the stock recovery will overwrite the custom recovery. the same goes to kernel.
Sent from my GT-I9505 using Tapatalk 2
warwolfx0 said:
ok i had some issues with viewing the files on the phone
i moved them to the sdcard and then pulled them off the card on my pc using a "sd to usb"
dd if=/dev/block/mmcblk0p20 of=/storage/extSdCard/dump/boot.img bs=4096
dd if=/dev/block/mmcblk0p27 of=/storage/extSdCard/dump/hidden.img bs=4096
dd if=/dev/block/mmcblk0p19 of=/storage/extSdCard/dump/param.bin bs=4096
dd if=/dev/block/mmcblk0p21 of=/storage/extSdCard/dump/recovery.img bs=4096
dd if=/dev/block/mmcblk0p16 of=/storage/extSdCard/dump/system.img bs=4096
Is there any other mmcblk0p i should backup
and is there any issues with posting this info on this forum
so far this only has root
i did notice that clockworkmod did give me access to root but i couldn't find the sd card while fastbooting it.
I don't think that the whole bootloader is part of what i backup, I thought there was a sbl.bin that i need too.
Click to expand...
Click to collapse
NONE of this would pull anything of relation from the I9505G (except System - mmcblk0p16) as our partitions layout is completely different. And more so, it would softbrick your 9505 if you tried flashing.
Check out here - http://forum.xda-developers.com/showthread.php?t=2360346 - for a system dump from the i9505G. It has SYSTEM/BOOT/RECOVERY. Param and Hidden are both empty on our phones. This has already been used a couple times to cook roms for other S4 devices.
donovanbrock said:
NONE of this would pull anything of relation from the I9505G (except System - mmcblk0p16) as our partitions layout is completely different. And more so, it would softbrick your 9505 if you tried flashing.
Check out here - http://forum.xda-developers.com/showthread.php?t=2360346 - for a system dump from the i9505G. It has SYSTEM/BOOT/RECOVERY. Param and Hidden are both empty on our phones. This has already been used a couple times to cook roms for other S4 devices.
Click to expand...
Click to collapse
Since my backup might mess people up i am not going to post it.
but as a backup i will make a full backup of all the mmcblk0pxx file
dd if=/dev/block/mmcblk0pxx of=/storage/extSdCard/dump/mmcblk0pxx.img bs=4096
i think there is like 20 files
Those with a real I9505G google edition samsung, do u have an option in settings to always have the lightkeys light up when screen is on? The menu and the back key, that light up.
hmmm followed step bye step but phones boot loader is still locked
i do have Super User access tho
edit: fail on my part. everything worked smoothly! thanks man!
Hello. Please help me. Can I flash stock ROM GT-I9005 on my Google Edition phone GT-I9005G? Thank for answer
SnegovikRZN said:
Hello. Please help me. Can I flash stock ROM GT-I9005 on my Google Edition phone GT-I9005G? Thank for answer
Click to expand...
Click to collapse
no

ZTE Nubia Z11 mini NX529J Restore broken sim card slot, IMEI, MEID ...

Story:
I bought a broken Nubia Z11 mini NX529J China Version with 64GB storage. The first sim slot doesn't work at all, second slot recognize sim card, but can't connect to carrier. I tried to flash XenonHD Rom, but no improvement. I've tried all sim settings, but no connect to carrier.
Solution:
I need a working QCN from an another phone. I got the QCN from here: http://vietmobile.vn/threads/file-qcn-zte-nubia-z11-mini-nx529j.44059.html
To learn about QCN and QPST you have to read:
http://www.androidbrick.com/ultimate-guide-qualcomm-snapdragon-xiaomi-mi5-imei-and-baseband-repair-fix/
http://www.androidbrick.com/ultimate-guide-qualcomm-snapdragon-imei-baseband-repair-fix-part-2/
0. Please be very careful! i'm not responsible for any hard bricks. I just wan't to share my solution.
1. Tools and driver from Androidbrick.com
2. Root phone (TWRP-> SuperSU.zip)
3. enable USB debugging
4. Enable Diag USB port
adb shell
su
setprop sys.usb.config diag,adb
5. Backup with QPST your QCN! Saved it twice or more!
6. find modemst1, modemst2 and fsg block
adb shell
su
ls -al /dev/block/platform/7824900.sdhci/by-name
--> You should see modemst1, modemst2 and fsg
7. delete modemst1, modemst2 and fsg block
if you don't delete them, you can't restore a different QCN!
dd if=/dev/zero of=/dev/block/mmcblk0p16
dd if=/dev/zero of=/dev/block/mmcblk0p13
dd if=/dev/zero of=/dev/block/mmcblk0p14
reboot
8. edit QCN
find IMEI 1 and IMEI 2 and enter your converted IMEI's
find MEID: the MEID from vietmobile.vn: A000004EF4C23E . The MEID is two times in the qcn. To find them you have to search the last 8 character.
4EF4C23E = 3E C2 F4 4E
enter your MEID
9. Save the QCN under different name! Please be careful, that you don't overwrite your backuped QCN!
10.a after reboot you maybe have to repeat:
adb shell
su
setprop sys.usb.config diag,adb
10.b With QPST restore the edited QCN
11. After you see “Memory Restore Completed” just reboot manualy or with “adb reboot” command
12. ENJOY
like androidbrick.com say: Changing the imei number of your phone is ILLEGAL, do this steps to fix your lost original imei number or/and to fix your baseband ONLY !
Sorry for my bad english. i'm german and it's my first thread on xda.
finding imei 2
Hey man! Thanks a lot for your tutorial. Yet, i'm not able to find the imei 2 and meid in the hex editor (i'm using the qcn i found in that vietnamese forum ).. i was able only to find the imei 1 (line 0X558A0). Could someone hint me in finding the right line?
Thanks!
I FIXED MY PROBLEM
PLEASE, DELETE THIS MESSAGE!
my nubai z11 mini
Please bro create a video your tutorial because i don't no how to back my network plz create a video
My sim slot 1 and sim slot 2 not detect sim
Plz help me
I'm try all rom but not detect sim
Thanks you
good job
please upload any indian nubia z11 mini qcn file.....bro your vietmobile.vn. qcn didnt connect lte and volte.....no call for volte...only 4g data capable....
To me is shown like this:
Here:
Hidden content:
** Nội dung ẩn: You may have to register before you can post: click the register link above to proceed.
This file 2 field contains the IMEI number after moving through the hex file qcn this:
imei1: 8 69 46 40 24 29 56 96
imei2: 8 69 46 40 24 49 36 92
meid: A0 00 00 4E F4 C2 3E
Why to me is a hidden content? Could you send me the qcn file by e-mail?
[email protected]
Thank you!!!!
The American version of Nubia Z11 mini
Dear friends!
I bought Nubia Z11 mini on the occasion, the phone turned out to be American and the mobile Internet works only in 2G mode. Our 3G and 4G networks do not see in principle (tested on different SIM cards of different operators). Tried different versions of firmware: both official versions for the European version, and modified. And the modem also stitched separately, but all without result.
I understand that in the American version a special iron can be installed. But there is a chance that the required frequencies are blocked programmatically.
If someone came across something similar, share the experience, please!
Hi Everyone
i have a problem here , i have used nubia recovery tool to recover the data after i connect phone to PC the device is become blank, not even enter into bootloader , or recovery , if i connect to PC its showing QHSUSB_BULK in the device manager, any one can please help me to solve this issue.
thanks advance
tj65 said:
Story:
I bought a broken Nubia Z11 mini NX529J China Version with 64GB storage. The first sim slot doesn't work at all, second slot recognize sim card, but can't connect to carrier. I tried to flash XenonHD Rom, but no improvement. I've tried all sim settings, but no connect to carrier.
Solution:
I need a working QCN from an another phone. I got the QCN from here: http://vietmobile.vn/threads/file-qcn-zte-nubia-z11-mini-nx529j.44059.html
To learn about QCN and QPST you have to read:
http://www.androidbrick.com/ultimat...agon-xiaomi-mi5-imei-and-baseband-repair-fix/
http://www.androidbrick.com/ultimate-guide-qualcomm-snapdragon-imei-baseband-repair-fix-part-2/
0. Please be very careful! i'm not responsible for any hard bricks. I just wan't to share my solution.
1. Tools and driver from Androidbrick.com
2. Root phone (TWRP-> SuperSU.zip)
3. enable USB debugging
4. Enable Diag USB port
adb shell
su
setprop sys.usb.config diag,adb
5. Backup with QPST your QCN! Saved it twice or more!
6. find modemst1, modemst2 and fsg block
adb shell
su
ls -al /dev/block/platform/7824900.sdhci/by-name
--> You should see modemst1, modemst2 and fsg
7. delete modemst1, modemst2 and fsg block
if you don't delete them, you can't restore a different QCN!
dd if=/dev/zero of=/dev/block/mmcblk0p16
dd if=/dev/zero of=/dev/block/mmcblk0p13
dd if=/dev/zero of=/dev/block/mmcblk0p14
reboot
8. edit QCN
find IMEI 1 and IMEI 2 and enter your converted IMEI's
find MEID: the MEID from vietmobile.vn: A000004EF4C23E . The MEID is two times in the qcn. To find them you have to search the last 8 character.
4EF4C23E = 3E C2 F4 4E
enter your MEID
9. Save the QCN under different name! Please be careful, that you don't overwrite your backuped QCN!
10.a after reboot you maybe have to repeat:
adb shell
su
setprop sys.usb.config diag,adb
10.b With QPST restore the edited QCN
11. After you see “Memory Restore Completed” just reboot manualy or with “adb reboot” command
12. ENJOY
like androidbrick.com say: Changing the imei number of your phone is ILLEGAL, do this steps to fix your lost original imei number or/and to fix your baseband ONLY !
Sorry for my bad english. i'm german and it's my first thread on xda.
Click to expand...
Click to collapse
I need QCN for my NX529J. this imei is null but in the link that you add the qcn is not anywhere, if you still have a copy it would be very helpful for me

Categories

Resources