Change PagePool via ActiveSync
for PPC
Special thanks to:
Paradis_pal for his great job for Prophet here. None of this could be done without him
Tom_codon for his support
Step 1:
Connect your PPC with PC via AS
Step 2:
Backup your PoolSize: (so you can restore if something goes wrong)
Backup.bat : Backup your PoolSize
Restore.bat : Restore your PoolSize
Choose your favourite PoolSize :
PP4mb.bat : Change your PoolSize to 4Mb
PP6mb.bat : Change your PoolSize to 6Mb
PP8mb.bat : Change your PoolSize to 8Mb
PP10mb.bat : Change your PoolSize to 10Mb
PP12mb.bat : Change your PoolSize to 12MbStep 3:
Soft Reset
Support:
Prophet - Wizard
Artemis - Love
Trinity
Hemes
Elf
... Working on the others
Troubleshooting: If your PPC hasn't been set to Low Security mode, you need to copy EnableRapi.cab to your PPC and install it first before changing the PoolSize (most cooked ROMs in our forum don't need this step)
Great work, man.
I'll give a try in my Hermes and in my Wizard and report back.
Thanks in advance for your effort.
EDIT: Well, i try fisrt to backup the PP (less intrussive) and modify the BAT to the right byte in Schaps ROM. This is the modified BAT...
@echo off
cls
echo ***********************************************************************
echo * Backup poolsize for HERMES *
echo ***********************************************************************
pause
pdocread 0x3ABC92 1 backup.nb
echo.
echo Poolsize backuped successful !
echo.
pause
When i execute a obtain this error:
***********************************************************************
* Backup poolsize for HERMES *
***********************************************************************
Presione una tecla para continuar . . .
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
CopyTFFSToFile(0x3abc92, 0x1, backup.nb)
ERROR: ITReadDisk - Error interno.
Poolsize backuped successful !
Presione una tecla para continuar . . .
And the 0x3abc92 is the right byte in this case.
i will give a try
i hope you know, that not all roms may be treated like this...
only 4.0.0.0, 1413, all these with pp info at $3abc92
318 probably not...i do not know 'bout newer ones.
Does it work on O2 Flame?
thanks so much for mentioned my name, it means a lot to me
Greetings,
Anybody tried it with hermes, if it is working or not??
nothin said:
i hope you know, that not all roms may be treated like this...
only 4.0.0.0, 1413, all these with pp info at $3abc92
318 probably not...i do not know 'bout newer ones.
Click to expand...
Click to collapse
you are right the offset of wm5 is different from wm6 in mines for prophet, it depends in the os.nb, we need to look for the right offset
check my wm5 offset
Hey, thanks for this, great job.
_____
What a great piece of land we got in 1948 - Thanks!
Nice work my friend..!
Anyone tried it on Trinity?
Excellent
No sweat.
Could have tried the long version I read on Modaco.
This one is realy nice. Very sweet....
Thanks...
jcespi2005 said:
Great work, man.
I'll give a try in my Hermes and in my Wizard and report back.
Thanks in advance for your effort.
EDIT: Well, i try fisrt to backup the PP (less intrussive) and modify the BAT to the right byte in Schaps ROM. This is the modified BAT...
@echo off
cls
echo ***********************************************************************
echo * Backup poolsize for HERMES *
echo ***********************************************************************
pause
pdocread 0x3ABC92 1 backup.nb
echo.
echo Poolsize backuped successful !
echo.
pause
When i execute a obtain this error:
***********************************************************************
* Backup poolsize for HERMES *
***********************************************************************
Presione una tecla para continuar . . .
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
CopyTFFSToFile(0x3abc92, 0x1, backup.nb)
ERROR: ITReadDisk - Error interno.
Poolsize backuped successful !
Presione una tecla para continuar . . .
And the 0x3abc92 is the right byte in this case.
Click to expand...
Click to collapse
I have the same problem --
CopyTFFSToFile(0x0, 0x37e0000, Part02.dump)
ERROR: ITReadDisk : read 00000000 bytes - A device attached to the system is not
functioning.
Maybe it's the ROM
ww2250 said:
Anyone tried it on Trinity?
Click to expand...
Click to collapse
didn't work on trinity...
install EnableRapi.cab, soft reset then Connect PPC with PC via AS, run PP8mb.bat, soft reset but nothing changed with my minis, what's wrong (runing wm6 5.2 v3.18)?
Help Please !
Could someone provide some step by step instructions? I know it was explained but I just need more in-depth instructions. Im using the Sprint Touch & would like to increase my pagepool size to 32mb's. TIA
download link foк trinity doesn't work
I have no use for this on my kaiser bc i find pagepool doesnt really make much of a differnce lol. But my friend could really use this to get touchflo2d to work on his apache. Any chance this program would support the apache? Thanks!
For the Herald
Here are the files to change the pagepool for the Herlad. Follow the same instructions on the first page.
Original thread....
http://forum.xda-developers.com/showthread.php?t=324955
Related
This message is intended to you all who tried to unlock the ExtROM of HTC Artemis and ended with not working ExtROM.
I am not sure if I can 100% document how I have achieved it, but I will try to do my best
You will need:
-collection of tools attached to this post
-WinRAR http://www.winrar.com/
-Winimage http://www.winimage.com/
First you will need an extrom image file, its part of the nbh image which you can unpack from the original image using winrar.
To extract the extended ROM image use the tool NBHextract.
command: NBHextract image.nbh
It will extract about 6 nb files one of them will be xx_ExtROM.nb.
You can check the content of the image with WinImage, you can also customize the image by removing or adding other cab, xml or exe files.
Remember only signed files will be executed.
Connect the phone to PC, you don't need to configure ActiveSync for synchronization.
From command prompt start following commands to enable RAPI:
cecopy EnableRapi.cab dev:\
cecopy Cert_SPCS.cab dev:\
cerun.exe -b CE:\Windows\wceload.exe \Cert_SPCS.cab /noui
cerun.exe -b CE:\Windows\wceload.exe \EnableRapi.cab /noui
pdocread -l
The STRG handles section from the output is what we will need for next commands.
STRG handles:
handle cdfc4c7e 1.89G (0x79120e00)
handle 8e9e43d2 14.99M (0xefc400)
handle aea981c6 38.24M (0x263e000)
handle eeae71ae 50.95M (0x32f4000)
handle cfb25ef6 2.94M (0x2f0000)
handle 2fb25ea2 3.06M (0x30fc00)
Insert the handle "code" of the ExtROM partition (the one about 15MB big) to following commands:
one for reading the current extrom from the phone
pdocread -h 0x8e9e43d2 0 0xf00000 extrom.ima
and other one to write the prepared image to the phone
pdocwrite -h 0x8e9e43d2 -v extrom.nb 0x000000 0xf00000
Remember the handle code changes every restart.
After you write the image to the phone do a hard reset.
Press both SW keys and use the Stylus for pressing the soft reset button, keep holding the soft keys until a message appears then press the green answering/calling button to format the phone (Hard Reset).
After hard reset and completing the touch screen adjusting wizard should load the ExtROM automatic setup like before.
Remember after hard reset you need to re-enable RAPI in case you want read or write the phone again.
Your device doesn't have to bee CID unlocked to be able write the images to the phone using this procedure.
Although this procedure seems to be pretty easy be careful Be sure you have at least one working ship update from your provider in case things go wrong.
I have also successfully written the OS.nb from the original HTC ship update and PDAmobiz releases with the same procedure.
Good luck!
Finally...using this method I've managed to repair my extrom. Few weeks ago I deleted all files in extended rom (using Total Commander) and was never able to restore it again (copying files gives error message 29 access denied). Now its all restored again...jaaaaiiii
instead of hardreset i did softreset because i didn't want to install all apps again
This is great! I'm now using my own customized Ext_rom. Thank you very much.
does this method allow one to unhide and unlock the ext_rom? Up to now I have not been able to really unlock the ext_rom.
thanks,
apap said:
does this method allow one to unhide and unlock the ext_rom? Up to now I have not been able to really unlock the ext_rom.
thanks,
Click to expand...
Click to collapse
No, this is not to unlock or unhide the ext_rom. With this method, you can just customize (adding or deleting files) your ext_rom image file on your PC. Then you can write your customized ext_rom back to your Artemis.
size of ext rom
i need to change size of ext rom on artemis.
regards.
Not working properly(((
Hi
I have used this method described above to re-write my Extrom with new items in there, its went OK, BUT the issue is that now Extrom doesnt start automatically after hard reset...it is just seats silently in the memory...just it. Can anyone help to activate it.
Thanks
hi I've one proble, I'm stop on the hangle step,, whot is handle? how I can see the right handle code? And how I can rebuild the custom rom and install it in my phone?
bye.
STRG handles
Hi PiGeonCZ
thanks for your method
pls explain what STRG handles/volumes associated with Windows.nb, Radio.nb, IPL.nb etc , as for example i wanted to upgrade my radio.nb or os.nb but does not know which string handle to work with.
and how to activate Extrom as now it is not loaded itself after hard reset.
thanks
PiGeonCZ said:
This message is intended to you all who tried to unlock the ExtROM of HTC Artemis and ended with not working ExtROM.
I am not sure if I can 100% document how I have achieved it, but I will try to do my best
You will need:
-collection of tools attached to this post
-WinRAR http://www.winrar.com/
-Winimage http://www.winimage.com/
First you will need an extrom image file, its part of the nbh image which you can unpack from the original image using winrar.
To extract the extended ROM image use the tool NBHextract.
command: NBHextract image.nbh
It will extract about 6 nb files one of them will be xx_ExtROM.nb.
You can check the content of the image with WinImage, you can also customize the image by removing or adding other cab, xml or exe files.
Remember only signed files will be executed.
Connect the phone to PC, you don't need to configure ActiveSync for synchronization.
From command prompt start following commands to enable RAPI:
cecopy EnableRapi.cab dev:\
cecopy Cert_SPCS.cab dev:\
cerun.exe -b CE:\Windows\wceload.exe \Cert_SPCS.cab /noui
cerun.exe -b CE:\Windows\wceload.exe \EnableRapi.cab /noui
pdocread -l
The STRG handles section from the output is what we will need for next commands.
STRG handles:
handle cdfc4c7e 1.89G (0x79120e00)
handle 8e9e43d2 14.99M (0xefc400)
handle aea981c6 38.24M (0x263e000)
handle eeae71ae 50.95M (0x32f4000)
handle cfb25ef6 2.94M (0x2f0000)
handle 2fb25ea2 3.06M (0x30fc00)
Insert the handle "code" of the ExtROM partition (the one about 15MB big) to following commands:
one for reading the current extrom from the phone
pdocread -h 0x8e9e43d2 0 0xf00000 extrom.ima
and other one to write the prepared image to the phone
pdocwrite -h 0x8e9e43d2 -v extrom.nb 0x000000 0xf00000
Remember the handle code changes every restart.
After you write the image to the phone do a hard reset.
Press both SW keys and use the Stylus for pressing the soft reset button, keep holding the soft keys until a message appears then press the green answering/calling button to format the phone (Hard Reset).
After hard reset and completing the touch screen adjusting wizard should load the ExtROM automatic setup like before.
Remember after hard reset you need to re-enable RAPI in case you want read or write the phone again.
Your device doesn't have to bee CID unlocked to be able write the images to the phone using this procedure.
Although this procedure seems to be pretty easy be careful Be sure you have at least one working ship update from your provider in case things go wrong.
I have also successfully written the OS.nb from the original HTC ship update and PDAmobiz releases with the same procedure.
Good luck!
Click to expand...
Click to collapse
if I want to read Os.nb wich is the correct script?
pdocread -h 0x8e9e43d2 0 0xf00000 extrom.ima is your exemple, 0 (zero) is the partition disk of ext rom, so i can try to insert 3 (three), the right partition of my OS (58 mb) rom and insert 0xf000000? it's all right?
es: pdocread -h 0x???????? 0 0xf000000 OS.ima (?= my handle), it's all right???
Work Great
For PiGeonCZ, I need your help for two question:
I've do all your steps, and I can read all ext-rom from other P3300 and i can write the new one in my O2 phone, but when I press the hard reset the ext rom still in loop when try to install the ttn.cab, why? I've try to delete ttn and the relative row in config.txt but the rom still in loop when try to install the other file (defoult page....)
my second question is about the OS dump. My friend have the original italian language of P3300, and he has dumped all his OS.nb whit this parameter:
es: pdocread -h 0x???????? 0 0xf000000 OS.ima (?= his handle), it's all right???
0f000000 (one zero plus of extrom exemple, all right?)
but about the end of all process, he have an error about impossible to read the right sector why? is there a mode to backup the OS.nb, and so how I can read if it's is all right dumped?? (do you know any program to read .nb file?) do you know any program to recompile the nba rom?
best regard.
@thefamous
Try to put the lines with ttn setup at the end of the config.txt. Before the "LOCK: Disabled" line. It worked for me.
This thread is about the extrom, please keep it clean of other things.
Anyway. You don't need to use handles when reading the whole OS image. Try following command: pdocread 0 0x3900000 OS.nba
PiGeonCZ said:
@thefamous
Try to put the lines with ttn setup at the end of the config.txt. Before the "LOCK: Disabled" line. It worked for me.
This thread is about the extrom, please keep it clean of other things.
Anyway. You don't need to use handles when reading the whole OS image. Try following command: pdocread 0 0x3900000 OS.nba
Click to expand...
Click to collapse
thanks, I've try to change the line of ttn setup in config.sys but now still in loop on PP_DefaultPage_WWE.CAB. I've try to modify this line (cut and paste it below LOK: line) but still loop on the other file.. do you have any solution? I'll try to re install the original ext rom and all work well.
this is my original config.sys
LOCK:Enabled
EXEC:\Windows\cusTSK.exe \Windows\HTC_Default.tsk
CAB: \Extended_ROM\MP_CVSDcpl_20060718.cab
XML: \Windows\MP_MMS3.5_HTC_Generic_Artemis_060818.xml
CAB: \Extended_ROM\PP_DefaultPage_WWE.CAB
XML: \Extended_ROM\PP_ExtVer.xml
CAB: \Extended_ROM\MP_ttn.cab
CAB: \Extended_ROM\MP_TT6_Voice13_ITA.cab
CAB: \Extended_ROM\PP_RemoveBTlnk.cab
CAB: \Extended_ROM\ST_PatchPeripheral.cab
CAB: \Windows\PP_CommManager_Patch_060808.CAB
EXEC:\Extended_ROM\ChgScutAttri.exe
LOCKisabled
RST: Reset
P.S. wich is the write command for OS.nba? this is all right command: pdowrite OS.nba 0 0x3900000? thanks
@thefamous
I am sorry but I don't know what could be wrong, for me has worked putting the freezing cabs just above the LOCK: DISABLED.
Zdravím,
funguje to i pro PDAmobiz ROMky jo?
thefamous said:
thanks, I've try to change the line of ttn setup in config.sys but now still in loop on PP_DefaultPage_WWE.CAB. I've try to modify this line (cut and paste it below LOK: line) but still loop on the other file.. do you have any solution? I'll try to re install the original ext rom and all work well.
this is my original config.sys
LOCK:Enabled
EXEC:\Windows\cusTSK.exe \Windows\HTC_Default.tsk
CAB: \Extended_ROM\MP_CVSDcpl_20060718.cab
XML: \Windows\MP_MMS3.5_HTC_Generic_Artemis_060818.xml
CAB: \Extended_ROM\PP_DefaultPage_WWE.CAB
XML: \Extended_ROM\PP_ExtVer.xml
CAB: \Extended_ROM\MP_ttn.cab
CAB: \Extended_ROM\MP_TT6_Voice13_ITA.cab
CAB: \Extended_ROM\PP_RemoveBTlnk.cab
CAB: \Extended_ROM\ST_PatchPeripheral.cab
CAB: \Windows\PP_CommManager_Patch_060808.CAB
EXEC:\Extended_ROM\ChgScutAttri.exe
LOCKisabled
RST: Reset
P.S. wich is the write command for OS.nba? this is all right command: pdowrite OS.nba 0 0x3900000? thanks
Click to expand...
Click to collapse
try putting a Cert_SPCS.cab in the first of the config list.
hi, can u tell me where i have to do the first step with the nbhextract.exe??
or can someone send me an image of a xda orbit?
Command "pdocread -l" returns following:
STRG handles:
handle 2e9d5306 2.00M (0x1ff800)
handle 4ea971d2 51.99M (0x33fcc00)
handle 8eae81ae 49.95M (0x31f2000)
handle 6fb26ef6 2.94M (0x2f0000)
handle 4fb26ea2 3.06M (0x30fc00)
so, I don't see 15M partition. Which handle should I use?
XDA Orbit extrom damaged
Hi to all..
Can someone tell me wich address I must use from info below to read/write
extrom to XDA Orbit?
Thanks
D:\ArtExtROMtools>pdocread -l
52.99M (0x34fe000) TrueFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 46.99M (0x2efe000) Part02
54.96M (0x36f6000) TrueFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 46.99M (0x2efe000) Part02
2.00M (0x1ff800) TRUEFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 46.99M (0x2efe000) Part02
2.00M (0x1ff800) TRUEFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 46.99M (0x2efe000) Part02
1.87G (0x77a80000) DSK1:
| 1.87G (0x77a60200) Part00
STRG handles:
handle ee3083e6 1.87G (0x77a60200)
handle 8e9ae6de 2.00M (0x1ff800)
handle 4e9e03be 2.00M (0x1ff800)
handle aea9e1c6 54.96M (0x36f6000)
handle 0eaeb1ae 46.99M (0x2efe000)
handle afb29ef2 2.94M (0x2f0000)
handle 4fb29e9e 3.06M (0x30fc00)
disk ee3083e6
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 8e9ae6de
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 4e9e03be
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk aea9e1c6
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 0eaeb1ae
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 33 3d 02 04 0b 0b 16 d8 0c 09 06 62
disk afb29ef2
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 33 3d 02 04 0b 0b 16 d8 0c 09 06 62
disk 4fb29e9e
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 33 3d 02 04 0b 0b 16 d8 0c 09 06 62
D:\ArtExtROMtools>
cmon guys whats wrong with you...
there are few here who knows how to unlock it...
but they are keepin it in secret and they are asking for money...
thats stupid...
yea i know that iam a newbie and i havent done anything for you but im sure ur not making money with that...
so please...
share the sim unlocking solution for Artemis...
PLEASE!!!
trifo13 said:
cmon guys whats wrong with you...
there are few here who knows how to unlock it...
but they are keepin it in secret and they are asking for money...
thats stupid...
yea i know that iam a newbie and i havent done anything for you but im sure ur not making money with that...
so please...
share the sim unlocking solution for Artemis...
PLEASE!!!
Click to expand...
Click to collapse
Heh, just drop it...
I'm here since the HTC Blue Angel came out freshly
And what I can tell you about the changes is that this website lost its meaning.
I miss developers like buzz_lightyear from buzzdev.
Heh, but it could be just me.
I have absolutly no problems donating $$ to this community.
Many ppl put hard work everyday so we can take more out of our devices. I think that AT LEAST, we can help maintain this place and keep sharing info among us.
Thats my e-pinion, of course.
EDIT:
I just got quoted $39 for exactly the same thing that Tupisdin provides (Sim/Network Unlock) for $50... I'm still waiting for a reply to my PMs from him. I'd rather pay more than $39 to XDA then giving it up to a company I dont know.
Cheers
Miguelxj said:
I have absolutly no problems donating $$ to this community.
Many ppl put hard work everyday so we can take more out of our devices. I think that AT LEAST, we can help maintain this place and keep sharing info among us.
Thats my e-pinion, of course.
EDIT:
I just got quoted $39 for exactly the same thing that Tupisdin provides (Sim/Network Unlock) for $50... I'm still waiting for a reply to my PMs from him. I'd rather pay more than $39 to XDA then giving it up to a company I dont know.
Cheers
Click to expand...
Click to collapse
Dude, donation at xda-developers isn't donation anymore.
You NEED TO BUY THE UNLOCK CODE by "donating" money.
TryOG
bro thats exactly what iam talking about...
somebody has forgotten what the forum is all about...
cmon guys u cant b millionairs from this tool
SHARE IT!!!
I NEED IT!!!
WE NEED IT!!!
trifo13 said:
TryOG
bro thats exactly what iam talking about...
somebody has forgotten what the forum is all about...
cmon guys u cant b millionairs from this tool
SHARE IT!!!
I NEED IT!!!
WE NEED IT!!!
Click to expand...
Click to collapse
I agree. What is being expected? If there is somebody he has the solution, that shares it… I would do it…
Greetings
juval said:
I agree. What is being expected? If there is somebody he has the solution, that shares it… I would do it…
Greetings
Click to expand...
Click to collapse
Actually, if the unlock solution needs a price ticket, why wouldn't the other solutions need it too?
The CID / SIM unlock for the Wizard, the customized ROMs, etc.
If this is how it's going to be, you guys should close the forum.
Just start an imei-check kinda website...
I think that this way a lot of users (including me) will abandon this website, because it isn't the way it was before...
trifo13 said:
Click to expand...
Click to collapse
That was my answer after I saw that people were selling unlock codes and the moderators didn't detect them as spam,
but welcomed them as friends (except for imei-check, which I can't understand why these guys are spam and
the other ones are not? What seperates them?)
A help
This is a method to unlock the Wizard, Prophet and Charmer, but it does not work in my Artemis P3300. It's possible that the blue line not be right, perhaps the address is bad ... If we know the good addresses, perhaps Ricardo Afonso's program work .
ECHO machinagod's HTC Wizard/Prophet/Charmer MSL Revealer v0.3
ECHO RAPI Unlocked.
ECHO Starting MSL work... DO NOT DISCONNECT UNTIL THIS SCRIPT ENDS
ECHO
Utils\pdocread.exe -n 1 0x000000 0x10000 -b 0x4000 lock_backup.bin
ECHO
ECHO
ECHO SIMLock Code is your code... Type it with another SIM in...
ECHO --------------------
Utils\lokiwizMsl.exe lock_backup.bin
ECHO --------------------
ECHO "Standing on the shoulder of giants"
ECHO Ricardo Afonso, 2005
SET Choice=
SET /P Choice=Press Any key to Exit.
Click to expand...
Click to collapse
Greetings.
A help 2
And this is a reading with pdocread - l of an Artemis P3300 with the simlock provided by imei check ...
56.95M (0x38f4000) TrueFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 50.95M (0x32f4000) Part02
45.23M (0x2d3c000) TrueFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 50.95M (0x32f4000) Part02
7.99M (0x7fe000) TRUEFFS
| 3.06M (0x30fc00) Part00
| 2.94M (0x2f0000) Part01
| 50.95M (0x32f4000) Part02
1.88G (0x78000000) DSK1:
| 1.87G (0x77fe0200) Part00
20.00k (0x5000) BTD1:
| 19.00k (0x4c00) PART00
STRG handles:
handle ede19f7e 19.00k (0x4c00)
handle 6e4124e6 1.87G (0x77fe0200)
handle ae9de4ee 7.99M (0x7fe000)
handle 4ea992ca 45.23M (0x2d3c000)
handle 2eae8292 50.95M (0x32f4000)
handle afb25fd2 2.94M (0x2f0000)
handle 8fb25f7e 3.06M (0x30fc00)
disk ede19f7e
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 6e4124e6
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk ae9de4ee
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 4ea992ca
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 2eae8292
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 74 25 02 05 26 1e 0a 97 12 09 06 34
disk afb25fd2
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 74 25 02 05 26 1e 0a 97 12 09 06 34
disk 8fb25f7e
3 partitions, 2 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 74 25 02 05 26 1e 0a 97 12 09 06 34
Click to expand...
Click to collapse
The lines in blue do not appear in an original P3300 locked by the operator ...
But I don´t know how to extract this information. I have attempted it with command pdocread - h 0xede19f7e 0 0x200 , although I don´t get hold of that it work , since it give me read error . The 0x200 is the length ( 19KBytes ). If somebody knows how to take out this information, that you say it and we can go into it ...
Greetings
A help 3
Anybody can help me?. Anybody know how dump this zone?
Or this theme is not interesting ?
Thanks.
It's interesting, but we should ask pof, right?
TryOG said:
It's interesting, but we should ask pof, right?
Click to expand...
Click to collapse
Where is Pof?
I send him a private, but he don´t answer me.
Maybe, he is with Ronaldino... lost. (is a joke....)
Greetings.
Try with 'pdocread -S BTD1' using the latest version of itsutils.
pof,
BTD1 is a bluetooth disk. do we need that for sim unlocking?
pof said:
Try with 'pdocread -S BTD1' using the latest version of itsutils.
Click to expand...
Click to collapse
pof said:
Try with 'pdocread -S BTD1' using the latest version of itsutils.
Click to expand...
Click to collapse
Thanks, pof...
Tomorrow I´ll see this command....
4 NikMel..
Why do you say that BTD1 is a bluetooth disk?
Greetings.
well, go to settings->connections open Bluetooth select Ftp tab and you will probably have "Enable Bluetooth Explorer" setted on.
If you turn it off then restart your device and run pdocread.exe -l again you will see.
juval said:
Thanks, pof...
Tomorrow I´ll see this command....
4 NikMel..
Why do you say that BTD1 is a bluetooth disk?
Greetings.
Click to expand...
Click to collapse
NikMel said:
well, go to settings->connections open Bluetooth select Ftp tab and you will probably have "Enable Bluetooth Explorer" setted on.
If you turn it off then restart your device and run pdocread.exe -l again you will see.
Click to expand...
Click to collapse
Tomorrow I´ll see this one....
Thanks a lot.
crossing fingers...
As it says in the title I need the shipped UK Orbit 2 rom. I want to flash mine with the available cooked roms that wiil or already have been posted but needd the original rom in case it needs to go ack to O2 for repair. Thanks
+1!
Haven't bought the thing yet, but I'm sure I will need the official UK ROM
I have the device with the O2 ROM (UK) is there a way I can extract it for you?
I would be grateful for the same please. I would like to start trying new roms and I'm sure I may make a right balls up at some point.
dump your rom before flashing to custom rom. we'll show you a way to make flashable rom out of it.
also interested for o2 orbit 2 english rom
Right, I have looked all over this site for hours. I really cant find any help showing me how to dump my existing rom or what utils to use.. Is there a wiki page or link here on the forums any one can show me please?
Same here, there are lots of guides but I'm really confused.
sorry for late reply.
pdocread command, it's similar to kaiser, such as http://forum.xda-developers.com/showthread.php?t=334680
but show me the result of a "pdocread -l"
cmonex said:
sorry for late reply.
pdocread command, it's similar to kaiser, such as http://forum.xda-developers.com/showthread.php?t=334680
but show me the result of a "pdocread -l"
Click to expand...
Click to collapse
Just had a new replacement O2 XDA Orbit 2 delivered and managed todo the registry change and take the pdocread command.
Full ouput from the -l was:
210.88M (0xd2e0000) FLASHDR
| 3.12M (0x31f000) Part00
| 3.75M (0x3c0000) Part01
| 84.63M (0x54a0000) Part02
| 119.38M (0x7760000) Part03
968.75M (0x3c8c0000) DSK1:
| 968.50M (0x3c880e00) Part00
STRG handles:
handle 0628e152968.50M (0x3c880e00)
handle c7479fde119.38M (0x7760000)
handle a749a586 84.63M (0x54a0000)
handle a749a552 3.75M (0x3c0000)
handle 8749a392 3.12M (0x31f000)
disk 0628e152
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk c7479fde
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk a749a586
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk a749a552
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 8749a392
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
I've uploaded the files to http://rapidshare.com/files/95652073/o2orbitII.rar.
Ive now reflashed to bepe's rom so cant get anymore. I dont know how you make these files into a release rom that you can reflash back but would be great if someone could!
Version info was:
R 1.58.25.14
G 25.69.30.05H
D 1.25.00.00
O2 UK dumped and reconstructed ROM
I believe I have successfully achieved what several people have asked on the forum and reconstructed my O2 UK ROM.
I basically used the Kaiser ROM kitchen as was suggested elsewhere in the Polaris forum. The link to start with is:
http://wiki.xda-developers.com/index.php?pagename=Kaiser ROM Kitchen Tutorial
If there is sufficient interest I am happy to offer further guidance to others or make my own dumped ROM available.
Hi, could you post the O2 rom , if it is working 100% please. As i would like some backup if the phone conks out and needs repair.
Thanks.
P.S Great work !!!
I'd definately be interested.....Its what I've been looking for before I let loose on the phone
thanks
pdagenius said:
I believe I have successfully achieved what several people have asked on the forum and reconstructed my O2 UK ROM.
I basically used the Kaiser ROM kitchen as was suggested elsewhere in the Polaris forum. The link to start with is:
http://wiki.xda-developers.com/index.php?pagename=Kaiser ROM Kitchen Tutorial
If there is sufficient interest I am happy to offer further guidance to others or make my own dumped ROM available.
Click to expand...
Click to collapse
I would be greatly interested in your dumped & reconstructed o2 UK ROM. I'm sure a lot more people out there would also be greatful of your contribution.
Thanks!
+1
Me to would be very greatful
Nogs
+100
Failed to back up mine when I got excited with the flashing fever. I sure would love to have one as well, though it felt kinda too slow for me.
would be much obliged
Orbit2 O2 UK dumped and reconstructed ROM available
I have now checked that my dumped and reconstructed ROM can be flashed back to my Orbit2 having had a different ROM on the phone in the meantime. It works so here it is:
http://www.megaupload.com/?d=ICKVV62L
Use it at you own risk.
First you must flash HardSPL (thanks Olipro) from
http://forum.xda-developers.com/showthread.php?t=351964
Extract the contents of the file you have downloaded and run from your desktop PC the ROMUpdateUtility.exe with your device in bootloader (press and hold camera button and do a soft reset) with the battery above the 50%. Follow the instructions on the screen.
Happy flashing
Wow, good man, thanks very much , does this mean i can start flashing away now then?
The 02 rom is really slow i think.
Anyone give us a link to how to do it from start to end please? I take it i need a radio too?
I used to flash my old trusty vario/wizard before this so i have some knowledge of what to do, but i presume every phone is different.
Thanks again for the 02 rom!!!!
Stu.
Thanks for the ROM.....one question will my Co pilot still work with new roms....or do I have to activate it again///
My progress so far:
Step 1
C:\Rom>pdocread -l
211.25M (0xd340000) FLASHDR
| 3.12M (0x31f000) Part00
| 3.75M (0x3c0000) Part01
| 93.25M (0x5d40000) Part02
| 111.13M (0x6f20000) Part03
7.61G (0x1e6e80000) DSK1:
| 7.60G (0x1e6a80000) Part00
STRG handles:
handle e74c6a56 7.60G (0x1e6a80000)
handle 874150e6111.13M (0x6f20000)
handle 8749a596 93.25M (0x5d40000)
handle 2749a572 3.75M (0x3c0000)
handle a749a3a2 3.12M (0x31f000)
disk e74c6a56
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 874150e6
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 8749a596
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 2749a572
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk a749a3a2
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
* Problems? Try reading this: http://wiki.xda-developers.com/index...s_HowtoDumpRom
Step 2
pdocread -w -d FLASHDR -b 0x800 -p Part00 0 0x31f000 Part00.raw
pdocread -w -d FLASHDR -b 0x800 -p Part01 0 0x3c0000 Part01.raw
pdocread -w -d FLASHDR -b 0x800 -p Part02 0 0x5d40000 Part02.raw
pdocread -w -d FLASHDR -b 0x800 -p Part03 0 0x6f20000 Part03.raw
Copy files to: C:\Dump
Further:
1. Go to the xda FTP (Polaris-folder) and download a WWE file. (ftp://xda:[email protected])
2. Unzip the download from the xda FTP (Polaris-folder). to c:\XDA
3. Download Kaiser kitchen. It works! (http://forum.xda-developers.com/attachment.php?attachmentid=57639&d=1194700488)
4. Unzip Kaiser kitchen to c:\
5. Copy C:\XDA\ruu_signed.nbh, C:\Dump\part01.raw and C:\Dump\part02.raw in the C:\BaseROM folder
6. Read the cooking manual, do not use 3. flash.cmd (Kaiser Flash), it will not work.
--- at the end of the process (before flashing). ---
7. copy the generated ruu_signed.nbh to the C:\XDA folder.
----- To be safe you should install Hard_SPL at this point-----
http://forum.xda-developers.com/showthread.php?t=351964
8. Go to the C:\XDA folder and execute the ROMUpdateUtility file.*
9. Follow the steps.
Good luck.
* I take no responsibility whatever about you destroying your device.
the point is: how to get the "dumped raw file" back to the machine???
Take the Kaiser Rom kitchen! Modify it for Polaris and follow the procedures.
Kaiser is the best kitchen as it is very near the polaris.
Good luck
Roman
banzro said:
Take the Kaiser Rom kitchen! Modify it for Polaris and follow the procedures.
Kaiser is the best kitchen as it is very near the polaris.
Good luck
Roman
Click to expand...
Click to collapse
I stick with the manual for the Hermes.
Tried the kitchen, but it is not very clear to me.
Can you tell me how to get a ruu_signed.nbh for the Polaris?
I tried using a downloaded custom ROM, nenaming it to ruu_signed.nbh, but that ROM is WWE and my cooked
ROM will be Dutch (NL).
Ok, tried the Kaiser Rom kitchen.
Looks like this is the best option.
I managed to create a Dutch ROM and reflash my device. But it is slow as hell compared to the 6.1 WWE version i tried before.
My ROM lacks radio. Does someone know which file to use when creating the rom.
I'm looking for the radio.nbh
I'm trying to dump my Spanish Polaris ROM and I'm following the steps showed by 'session' but this is the response that I obtain from the DOS session: "Copying D:\Instalacions\hardware\HTC\ROMs\ROM utils\itsutils.dll to WCE:\windows \itsutils.dll
Could not update itsutils.dll to the current version, maybe it is inuse?
try restarting your device, or restart activesync or maybe your device is application-locked."
Any idea? Someone can help me?
Thanks in advance and sorry for my bad english.
PQillu,
pqillu said:
I'm trying to dump my Spanish Polaris ROM and I'm following the steps showed by 'session' but this is the response that I obtain from the DOS session: "Copying D:\Instalacions\hardware\HTC\ROMs\ROM utils\itsutils.dll to WCE:\windows \itsutils.dll
Could not update itsutils.dll to the current version, maybe it is inuse?
try restarting your device, or restart activesync or maybe your device is application-locked."
Any idea? Someone can help me?
Thanks in advance and sorry for my bad english.
PQillu,
Click to expand...
Click to collapse
Yes, this problem is wel known. It has something to do with unsigned programs. The solution is modifying your registry:
http://wiki.xda-developers.com/index.php?pagename=Hermes_HowtoDumpRom
can you also explain xip portation in your manual please?
session said:
Yes, this problem is wel known. It has something to do with unsigned programs. The solution is modifying your registry:
http://wiki.xda-developers.com/index.php?pagename=Hermes_HowtoDumpRom
Click to expand...
Click to collapse
THX for your help.
Now I've my ROM dumped and from now, I'll try to cook my own ROM and also I'll try to recostruct the original ROM in order to prevent possibles crashes.
Regards,
PQillu
Rom Upload
I Have The Same Rom As You Do
__________________
HTC Cruise
Original Spanish ROM
ROM Version: 1.25.412.1 ESN
ROM Date: 13/12/07
Radio Version: 1.58.21.23
Protocol Version: 25.65.30.04H
Can You Please Upload The Rom To The Internet and share the original spanish rom?
Thank You
NDUTU said:
I Have The Same Rom As You Do
__________________
HTC Cruise
Original Spanish ROM
ROM Version: 1.25.412.1 ESN
ROM Date: 13/12/07
Radio Version: 1.58.21.23
Protocol Version: 25.65.30.04H
Can You Please Upload The Rom To The Internet and share the original spanish rom?
Thank You
Click to expand...
Click to collapse
Here you've the link:
http://rapidshare.com/files/95929043/ROM_Original_meva.rar
The main question is how to convert it to a flashable ROM. I'm looking for information but I've no more time to spend for trying solutions. If anyone can help me, I'll appreciate a lot.
PQillu,
banzro said:
Take the Kaiser Rom kitchen! Modify it for Polaris and follow the procedures.
Kaiser is the best kitchen as it is very near the polaris.
Click to expand...
Click to collapse
What do you mean by "modify it for Polaris"? What exactly shall I do?
Alex
Use the Grab-it software.
Jibreil
Can you elaborate on grab-it software?
amarguli said:
Jibreil
Can you elaborate on grab-it software?
Click to expand...
Click to collapse
I was referring to this great software for dumping ROM's
http://forum.xda-developers.com/showthread.php?t=238945
Click to expand...
Click to collapse
Thanks for the information, but actually my question is how to convert dumped files to a flashable ROM using modified Kaiser kitchen. I know how to dump the ROM.
Nobody has an answer?
you can read all about it in the first post, in the wiki-pages and in the kaiser kitchen readme as well.
worked for me.
OK. Thanks. I'll check the readme of kaiser kitchen, because the first post here does not explain what need be changed for Polaris.
After reading readme of kaiser kitchen I have some more questions:
1. If I just want to convert dumped raw files to flashable ROM then I don't need to extract RUU_signed.nbh from WWE "shipped" ROM and put it in BaseROM folder. Instead of this I put Part01.raw and Part02.raw from my dump into BaseROM folder. Is this correct?
2. Does RUU_signed.nbh resulting from the execution of !Cook.cmd script contain also original radio and SPL or OS only?
3. What do I do with Part03.raw and Part04.raw files?
Need any Toshiba TG01 rom - dumped, original anyone.
ROM for TG01
Hi,
I am currently having the French TG01 and I want the English ROM in it. Also could you tell me how to port the WM6.5 ROM to TG01
Regards,
Francis.
fesar said:
Hi,
I am currently having the French TG01 and I want the English ROM in it. Also could you tell me how to port the WM6.5 ROM to TG01
Regards,
Francis.
Click to expand...
Click to collapse
Can you make a dump of rom from your device ? http://forum.xda-developers.com/showthread.php?t=334680
Reg
Hi,
I tried as you said.
C:\Documents and Settings\z000073\Desktop\Utils>pdocread.exe -l
Copying C:\Documents and Settings\z000073\Desktop\Utils\itsutils.dll to WCE:\win
dows\itsutils.dll
433.38M (0x1b160000) DSK1:
| 1.50M (0x17f000) Part00
| 3.38M (0x360000) Part01
| 163.50M (0xa380000) Part02
| 265.00M (0x10900000) Part03
7.42G (0x1daf80000) DSK2:
| 7.42G (0x1dab80000) Part00
STRG handles:
handle#0 8d930242 7.42G (0x1dab80000)
handle#1 2dccfb46 265.00M (0x10900000)
handle#2 2f6ad512 163.50M (0xa380000)
handle#3 cf6ad4ee 3.38M (0x360000)
handle#4 ef6ad4a6 1.50M (0x17f000)
disk 8d930242
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 2dccfb46
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk 2f6ad512
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk cf6ad4ee
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
disk ef6ad4a6
0 partitions, 0 binary partitions
customerid=00000000 uniqueid= 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
and then this is what i issued.
pdocread -w -d DSK1: -b 0x800 -p Part00 0 0x17f000 Part00.raw
pdocread -w -d DSK1: -b 0x800 -p Part01 0 0x360000 Part01.raw
pdocread -w -d DSK1: -b 0x800 -p Part02 0 0xa380000 Part02.raw
pdocread -w -d DSK1: -b 0x800 -p Part03 0 0x10900000 Part03.raw
now it is extracting the same.
What's next. Do you want me to upload it here.
Regards,
Francis.
Reg: DUMP of Toshiba TG01 ROM
Hi,
Please find the link. I have uploaded the DUMP here. Please tell me how to proceed further and changing this DUMP from French to English.
http://rapidshare.com/files/253526287/Utils.rar
Regards,
Francis.
Dumped rom is here. As I know, for reconstructing dumped roms need rom kitchen Also need at least one original rom, downloaded from toshiba support site for litle hacking. This is a litle help, but we still don't know what type of flashable file uses toshiba and still don't have any original rom.
Another thing, "maybe" (I'm not 100% sure, not even 10%) toshiba tg01 is htc based device. "If" it's, can somebody try to enter bootloader mode - if it exist
How to enter: volume down and reset simultaneously, CAMERA + SOFT RESET, or CAMERA+POWER+SOFTRESET etc
---------------------------------------
Reg: Dump
I tried all the combinations of the key with reset nothing happens. If i keep pressing VolumUp + Power + Camera it goes to master reset mode.
Hey, i´ve got the O2 Version of the TG01 (SW V. 5001.0102.57 SP-00).
How can i help you?
None of your combinations or others produced any kind of useful effect except of locking the screen.
€: Forgot to ask something, there are quite some opengl accelerated games out there, like the quake series. Is there any realistic scenario in which we could enjoy this with the Power of the TG01 in the near future? Recent experiments with Fpsece have left me drooling. ^^
It seems that nobady is interested for developing for this device Maybe it still early or something else, I don't know
Hi,
I'm a french user of the tg01.
I would love having a good rom, or maybe a winmo 6.5 rom.
If I can help someone developping a new rom (I can dump my rom, or test a new rom...), I'd love it.
I hope someone will be interested in developping for this mobile.
Good night
Pipolas.
ps: I apologize for my bad english...I'm french
I'm using the japanese version,is terrible to understand em setup the phone,but I'm learning...
anyone interested in helping us?Please...
hey all
As xda will not have a dedicated sub forum for Toshiba tg01 (a pity), I suggest you all got to MoDaCo.com which now has a dedicated sub forum for the tg01. It was this forum that made i900 what it is today.
http://TG01.MoDaCo.com
If you look in the i900 section, you can see that huge activity and rom cooking going on there a, so don't be fool by the new topic. http://www.modaco.com/category/342/i9x0-omnia-http-omnia-modaco-com/
Come on mates, post your experience here http://TG01.MoDaCo.com
Got TF3D from topaz running just fine on TG01 right now. Gotta patch a few programs to bypass valid-htcdevice checks, and it'll be a sweet ass phone. Have to install all via cabs for now though, as we really need to program this device. May not even need a hard-spl, as some devices don't even check for valid signatures. But we do need to know what RUU method is used, so please someone post up a valid tg01 flashing program to dissect it.
Until Toshiba releases a software upgrade, there's no RUU (or DSUU in Toshiba terminology) available to the public to dissect.
Chances are DSUU will be similar to one Toshiba had used with their other PDAs G900, G910 and G810. You could start looking at it to get an idea of how upgrade process works...
http://www.toshiba.co.jp/product/etsg/cmt/english/asian/index.htm
I don´t know if this is any help, but there seems to be an software update in form of a .tiu file (SP-00 > SP-01) available for the Docomo T-01A, which is the japanese Version of the Toshiba TG01.
It should be the update that patched the error where you couldn´t dial some numbers. But maybe there are some other useful information inside for you.
Have a look at it here:
http://toshibamobile.com/docomo/t01a/update/pc/
Greetings,
Sin
Is this information true
http://crave.cnet.co.uk/mobiles/0,39029453,49302940,00.htm
If so, the TG01 will get the WM6.5 OTA update. But when ?
Yes, i´ve read that on many sites, so i guess that should be true. Since WM 6.5 is available it shouldn´t take too long?
SinSilla said:
I don´t know if this is any help, but there seems to be an software update in form of a .tiu file (SP-00 > SP-01) available for the Docomo T-01A, which is the japanese Version of the Toshiba TG01.
It should be the update that patched the error where you couldn´t dial some numbers. But maybe there are some other useful information inside for you.
Have a look at it here:
http://toshibamobile.com/docomo/t01a/update/pc/
Greetings,
Sin
Click to expand...
Click to collapse
a saw this week or two ago, but uselless need to copy that file to phone and run from there.
fesar said:
Is this information true
http://crave.cnet.co.uk/mobiles/0,39029453,49302940,00.htm
If so, the TG01 will get the WM6.5 OTA update. But when ?
Click to expand...
Click to collapse
yes, ota upgrade to 6.5 is true for tg01 and next tg0x devices, htc etc etc