[GUIDE] Root DHD with any RUU Shiprom - Desire HD General

Thanks sxrsxrsx and sorry for my bad english.
Step 1. download RUU shiprom at: http://forum.xda-developers.com/showthread.php?t=824357
Step 2. Run it and no flash. Press key: Win + R or Start -> Run: %temp%
Step 3. You'll see a directory like: {ED95101E-EF94-42DB-92DE-4FB4470739CA} and find the file rom.zip ( or download rom RUU Asia 2.37.707.3 : https://rapidshare.com/files/3144048228/rom.zip )
Step 4. Unzip rom.zip and replace the file recovery.img : https://rapidshare.com/files/1790416276/recovery3026ace.img
Step 5. Zip all and overwrite the file rom.zip
Step 6. Connect with USB cable and Flash ROM RUU into DHD ( if you see CID incorrect next step 13 )
Step 7. After flashing. Boot DHD into Recovery mode (Hold Volume down and Power)
Step 8. Download root.rar : http://www.megaupload.com/?d=OOY9KHU6
Step 9. Go to: mount and storage (mount /sdcard, /system, /data)
Step 10. Connect USB cable with DHD.
Step 11. Go to root folder. and run command in cmd.
adb push su /sdcard/su
adb push superuser.apk /sdcard/superuser.apk
adb push psneuter /data/local/tmp
adb shell chmod 777 /data/local/tmp/psneuter
adb shell /data/local/tmp/psneuter
adb shell
cp /sdcard/su /system/bin/
cp /sdcard/superuser.apk /system/app/
ln -s /system/bin/su /system/xbin/su
chmod 06555 /system/bin/su
Step 12. unmount the /system, data, sdcard. Reboot your phone and enjoy it
----
Step 13. please use shiprom same rom of your DHD. You can flash any rom after rooted and S-OFF
Make Goldcard
Link: http://www.addictivetips.com/mobile/how-to-make-gold-card-for-htc-desire-hd/
Download downgrade tools: http://forum.xda-developers.com/attachment.php?attachmentid=591335&d=1304969547
CMD:
adb push misc_version /data/local/tmp
adb push GingerBreak /data/local/tmp
adb shell chmod 777 /data/local/tmp/misc_version
adb shell chmod 777 /data/local/tmp/GingerBreak
adb shell
./data/local/tmp/GingerBreak
cd /data/local/tmp
./misc_version -s 1.31.405.6
Go back step 6.
If you need help, please pm me on Y!M: thangtn03

which one do i download from: http://forum.xda-developers.com/showthread.php?t=824357 ?

nt1303 said:
Thanks for sxrsxrsx and sorry for my bad english.
Step 1. download RUU shiprom at: http://forum.xda-developers.com/showthread.php?t=824357
Step 2. Run it and no flash. Press key: Win + R or Start -> Run: %temp%
Step 3. You'll see a directory like: {ED95101E-EF94-42DB-92DE-4FB4470739CA} and find the file rom.zip
Step 4. Unzip and replace the file recovery.img : http://www.megaupload.com/?d=5OBLG2WY
Step 5. compressed and overwrite the file rom.zip
Step 6. Connect with USB cable and Flash ROM RUU into DHD
Step 7. After flashing. Boot DHD into Recovery mode (Hold Volume down and Power)
Step 8. Download root.rar : http://www.megaupload.com/?d=OOY9KHU6
Step 9. Go to: mount and storage (mount /sdcard, /system, /data)
Step 10. Connect USB cable with DHD.
Step 11. Go to root folder. and run command in cmd.
adb push su /sdcard/su
adb push superuser.apk /sdcard/superuser.apk
adb push psneuter /data/local/tmp
adb shell chmod 777 /data/local/tmp/psneuter
adb shell /data/local/tmp/psneuter
adb shell
cp /sdcard/su /system/bin/
cp /sdcard/superuser.apk /system/app/
ln -s /system/bin/su /system/xbin/su
chmod 06555 /system/bin/su
Step 12. unmount the /system, data, sdcard. Reboot your phone and enjoy it
Click to expand...
Click to collapse
Step 4. Unzip and replace the file recovery.img : http://www.megaupload.com/?d=5OBLG2WY <-----Cannot unzip
Please explain Step 12
Thanks for the guide though

I get this error?? i tried the 2.36.405.8 and 2.37.707.3
If i go into Menu > settings > About phone > software information it says
Android version 2.3.3 and build number 2.37.61.11
Why is this not working for me

cash27 said:
Step 4. Unzip and replace the file recovery.img : http://www.megaupload.com/?d=5OBLG2WY <-----Cannot unzip
Please explain Step 12
Thanks for the guide though
Click to expand...
Click to collapse
I dont think you extract the recovery.img.
It's the rom compressed folder you extract and then you replace the recovery.img and then re-rar the file and replace the one in the temp folder.
I think thats right anyway

thats what i meant to say... could not extract rom.zip
Never mind.... i tried using 7zip, that did not work, but winrar did

cash27 said:
thats what i meant to say... could not extract rom.zip
Click to expand...
Click to collapse
Are you using win rar? i had no problems using winrar.

just edited my own post. You are absolutely right on

How does one mount and unmount in steps 9 and 12? is it a command? if so whats the syntax?

not sure, still stuck at my previous post.

I think you can use the downgrade method with your build

I am getting a signature error, will try with a goldcard and post results
EDIT: Same error Pic Attached

cash27 said:
I am getting a signature error, will try with a goldcard and post results
EDIT: Same error Pic Attached
Click to expand...
Click to collapse
i tried with a goldcard too, this didnt work .... I tried the downgrade method and that didnt work either -.-.............
I just want to get rid of the stupid freaking pre-installed orange apps.

As always, I am pessimistic about these kind of guides.
This time for a good reason: you cannot just replace signed recovery with unsigned recovery in rom.zip. The resulting package can only be flashed with S-OFF.

Would you happen to know if there is any development being done on this build? From what i have been reading in the forums...and please correct me if i am wrong, but very few people seem to have 2.43.661.

Please review Post #1 and try ship rom same your DHD rom.
Ex: My DHD from Korea , i try flash shiprom KT_KR and work it for me. After rooted and S-OFF, i can flash any shiprom 1.x or 2. WWE.

nt1303 said:
Please review Post #1 and try ship rom same your DHD rom.
Ex: My DHD from Korea , i try flash shiprom KT_KR and work it for me. After rooted and S-OFF, i can flash any shiprom 1.x or 2. WWE.
Click to expand...
Click to collapse
I tried with RUU_ACE_TELUS_WWE_1.84.661.1_R_Radio_12.35d.60.140f_26.06.03.24_M2_release_168987_signed
but when i modified the rom.zip file and put it i the directory, it would start but would give a signature error.
I tried with and without a goldcard, the result was the same: Error 132 signature

cash27 said:
I tried with RUU_ACE_TELUS_WWE_1.84.661.1_R_Radio_12.35d.60.140f_26.06.03.24_M2_release_168987_signed
but when i modified the rom.zip file and put it i the directory, it would start but would give a signature error.
I tried with and without a goldcard, the result was the same: Error 132 signature
Click to expand...
Click to collapse
I flashing multi ruu shiprom without any error. You try downgrade command and reflash you same firmware...

cash27 said:
I tried with RUU_ACE_TELUS_WWE_1.84.661.1_R_Radio_12.35d.60.140f_26.06.03.24_M2_release_168987_signed
but when i modified the rom.zip file and put it i the directory, it would start but would give a signature error.
I tried with and without a goldcard, the result was the same: Error 132 signature
Click to expand...
Click to collapse
I reuploaded file recovery.img , you can try relash...

nt1303 said:
I reuploaded file recovery.img , you can try relash...
Click to expand...
Click to collapse
Same error, but thank u for your effort

Related

unrevoked + hosts editing "Directory not empty"

Hello, I rooted with unrevoked and then flashed the rom liberated_aria_FR006_signed.
I booted through clockwork and mounted /system /data /sdcard and then connected to my pc via usb, through the command prompt and adb I tried:
cp /sdcard/hosts /data/data/hosts
rm /system/etc/hosts
ln -s /data/data/hosts /system/etc/hosts
when I do rm /system/etc/hosts it says:
rm: can't remove '/system/etc/hosts': Directory not empty
What's wrong? Is /system not full perms through clockwork or is it a unrevoked root problem.
Thanks!
G226 said:
Hello, I rooted with unrevoked and then flashed the rom liberated_aria_FR006_signed.
I booted through clockwork and mounted /system /data /sdcard and then connected to my pc via usb, through the command prompt and adb I tried:
cp /sdcard/hosts /data/data/hosts
rm /system/etc/hosts
ln -s /data/data/hosts /system/etc/hosts
when I do rm /system/etc/hosts it says:
rm: can't remove '/system/etc/hosts': Directory not empty
What's wrong? Is /system not full perms through clockwork or is it a unrevoked root problem.
Thanks!
Click to expand...
Click to collapse
Lol...the error tells you exactly what's wrong...but kinda weird since the hosts is a file not a directory...so I can only assume that there are some permission issues...navigate to the /system/etc directory and do a "ls -al" and see what the permissions are for the hosts file...it'll be on the left side of the results of the ls.
Sent From My HTC Aria Using XDA App
Oh fyi...I'm dumb...are you already rooted? I dunno much about adb but you MIGHT have to run the above command through a terminal program on your phone...
Sent From My HTC Aria Using XDA App
I'm rooted but it's through unrevoked as mentioned, does that give me the proper permissions if I adb through clockwork recovery?
If not what would? I'll do a "ls -al" in a little.
G226 said:
I'm rooted but it's through unrevoked as mentioned, does that give me the proper permissions if I adb through clockwork recovery?
If not what would? I'll do a "ls -al" in a little.
Click to expand...
Click to collapse
I'm not sure...as I said im not too familiar with adb...I do know if you have a terminal program on your phone just open it, type the following:
su
cd /system/etc
ls -al
Once you so the ls, if you aren't familiar with *nix, you'll see the following:
-rw-r--r-- 1 root root 25 Aug 1 2008 hosts
Along with a bunch of other lines similar to this, this is the line I'd like to see though
Sent From My HTC Aria Using XDA App
Thanks for the help so far, I did what you said and after doing "ls -al" it said :
-al: No such file or directory
If I do a plain "ls" command it'll list all the files/folders in the system dir.
G226 said:
Thanks for the help so far, I did what you said and after doing "ls -al" it said :
-al: No such file or directory
If I do a plain "ls" command it'll list all the files/folders in the system dir.
Click to expand...
Click to collapse
1 are you doing this in adb or terminal?
2 are you typing "ls -al" with a space? And "al" as in alpha lima?
3 are you in the etc directory?
Sent From My HTC Aria Using XDA App
I did as you instructed, used the terminal program app and tried these commands through there, I'll try adb.
Thanks.
Well the only reason I asked was because ls -al is a legit command lol...I dunno of another way to view the permissions of files...I also don't know if there is a way or not through adb, Google may be your friend in regards to that...
Sent From My HTC Aria Using XDA App
This may be related to busybox on the phone. Can you do an "echo $PATH" from the adb shell and paste the results here?
So from the command prompt you would enter "adb shell" this should give you a new prompt like this #. At this prompt type "echo $PATH" without the quotes. Maybe you do not need all these instructions, sorry.
I see this all the time, from all the noobs (myself included)
First off the ARIA still has S-ON security, so if you are writing to /system/ you _NEED_ to be properly booted into recovery - otherwise you will not have write permissions. its in the FAQ but still completely overlooked. There is a post about this every day i swear.
STEP 1) UNPLUG THE USB <----- CRITICAL
STEP 2) POWER DOWN THE PHONE <----- AFTER STEP 1!!!!!!
STEP 3) HOLD VOLUME DOWN + PRESS POWER to load hboot
STEP 4) SELECT recovery to start clockwork
STEP 5) partitions --> mount --> /system/
STEP 6) connect USB
STEP 7) adb shell
edit: if you shortcut into recovery by just leaving the USB plugged in while you power down - you will not have full permissions.
dexmix said:
I see this all the time, from all the noobs (myself included)
First off the ARIA still has S-ON security, so if you are writing to /system/ you _NEED_ to be properly booted into recovery - otherwise you will not have write permissions. its in the FAQ but still completely overlooked. There is a post about this every day i swear.
STEP 1) UNPLUG THE USB <----- CRITICAL
STEP 2) POWER DOWN THE PHONE <----- AFTER STEP 1!!!!!!
STEP 3) HOLD VOLUME DOWN + PRESS POWER to load hboot
STEP 4) SELECT recovery to start clockwork
STEP 5) partitions --> mount --> /system/
STEP 6) connect USB
STEP 7) adb shell
edit: if you shortcut into recovery by just leaving the USB plugged in while you power down - you will not have full permissions.
Click to expand...
Click to collapse
3 sleepless nights later and dexmix comes to the rescue. This drove me crazy man, I just could not find the answer. Thanks!! Bed time!

desire hd build 2.36.405.8 downgrade problem

using method in http://forum.xda-developers.com/showthread.php?t=905003
Uploaded with ImageShack.us
can't do anything else.
Do a factory reset and try again.
Done
i do a factory reset but the same problem
Try using another SD card, make sure to format it first
And don't give up. I had to repeat this procedure many times with three sd cards, and after a few hours it finished successfully
hey ı have same problem but I make this 3 times another SD card but still I didn't downgrade
Try this steps:
a. Download 'Downgrade_v2.zip', extract it and place into C:\ (for example, C:\downgrade\).
b.
adb push misc_version /data/local/tmp
adb push GingerBreak /data/local/tmp
adb shell chmod 777 /data/local/tmp/misc_version
adb shell chmod 777 /data/local/tmp/GingerBreak
adb shell
./data/local/tmp/GingerBreak
c. If you see "#", you got a temporary root!
d. Enter:
cd /data/local/tmp
./misc_version -s 1.31.405.6
e. Next, you must download PD98IMG.zip and put into SD card (don't extract it or put in folder!)
f. Reboot your Desire HD and hold VOL-
g. Choose 'Yes' and downgrade is begin!
I checked this steps and my Desire HD is downgraded successfully.
-----
Downgrade_v2.zip - multiupload .com / OYKBRXIYT2
ROM for downgrade to 1.32 - multiupload .com / BTJ8KY0KH9
suroegin said:
Try this steps:
a. Download 'Downgrade_v2.zip', extract it and place into C:\ (for example, C:\downgrade\).
b.
adb push misc_version /data/local/tmp
adb push GingerBreak /data/local/tmp
adb shell chmod 777 /data/local/tmp/misc_version
adb shell chmod 777 /data/local/tmp/GingerBreak
adb shell
./data/local/tmp/GingerBreak
c. If you see "#", you got a temporary root!
d. Enter:
cd /data/local/tmp
./misc_version -s 1.31.405.6
e. Next, you must download PD98IMG.zip and put into SD card (don't extract it or put in folder!)
f. Reboot your Desire HD and hold VOL-
g. Choose 'Yes' and downgrade is begin!
I checked this steps and my Desire HD is downgraded successfully.
Click to expand...
Click to collapse
I did not see # I made everything but it didnt start i will be record a video to show this problem
youtubecom/watch?v=itf8dWTFqII
same problem!!! dunno what to doo
same here error: device not found
any solutions?
ahmettuncez said:
http://www.youtube.com/watch?v=itf8dWTFqII
Click to expand...
Click to collapse
Just watched this.
Either,
a). Your firmware is not 2.36, likely 2.37/2.42 - you can not downgrade yet.
b). You need to do a full factory reset and try again - same happens --> read a).
c). Your not waiting long enough can take 30 seconds - 5 minutes - try b). then read a).
@johi69 - a "device not found" error simply means,
a). plug in your phone
b). you do not have the android SDK installed - install it
c). you do not have USB debugging enabled - enable it - Settings > Applications > Development.
Does built number 2.36.405.8 means 2.37???
and what happens with the phone if you try to downgrade and fails is everything back as it was?
pahildo said:
Does built number 2.36.405.8 means 2.37???
and what happens with the phone if you try to downgrade and fails is everything back as it was?
Click to expand...
Click to collapse
no, 2.36 is ok, it's not 2.37
if you fail, nothing is gonna happend(before i downgrade, i've tried at least 5 times)
just follow the steps, one by one, and I'm not responsible if you brick your device, do at your own risk but if you follow all steps, and you know what you are doing, it should be safe, for me it was.
before you start downgrade, do a factory reset of your phone.
links to downgrade:
http://forum.xda-developers.com/showthread.php?t=905003

[***Guide***] Deodexing and Create your own custom rom and share it!

DEODEXING
must have all these
Download XUltimate
Busybox installed
Root
sdk tools
1. Connect tablet to computer
2. Start xUltimate, we will now get the required files from our phone to deodex and zipalign it which we will describe in the 3rd step.
3. On the main menu of xUltimate, type "deodex" in the main menu then choose option 5 (Pull and deodex all). Everything will be done for you here. Don't worry. You will see all your finished files in the folders 'done_app' and 'done_frame' which are located in the installation directory of xUltimate. If you have issues with the mobileprint.apk remove it and the mobileprint odex from /system/app/
4. move folders 'done_app' and 'done_frame' folders to your sdcard, you can find these folders in the directory of xUltimate as described in the previous step.
5. Make sure the sdcard is not mounted to pc anymore
6. Open Windows Command Prompt and type the following commands.
adb shell
su
stop
mount -o remount,rw /dev/block/stl12 /system
rm /system/app/*.odex
rm /system/framework/*.odex
busybox cp /sdcard/done_app/* /system/app/
busybox cp /sdcard/done_frame/* /system/framework/
chmod 644 /system/app/*
chmod 644 /system/framework/*
mount -o remount,ro /dev/block/stl12 /system
sync
reboot recovery
7. Now data and cache reset in the recovery menu...
8. reboot
Now How to Share and backup
1. download the backup script http://www.multiupload.com/OBLSBY5Z9E
2. extract the file and place in C:\Program Files\Android\android-sdk\platform-tools or where your sdk platform-tools folder is
3.open command prompt [run cmd prompt as administrator] type "cd C:\Program Files\Android\android-sdk\platform-tools" next press enter then type "backup" or where your platform-tools folder is [don't include ""]
4. the files for heimdall sharing will be in cd C:\Program Files\Android\android-sdk\platform-tools or where your platform-tools folder is also they will be on your sdcard
5. make sure when sharing you do a complete wipe you dont want to share your info
6.now lets get some roms posted!
Nice post, I was wondering how to do this just recently.
hi nice how to
i tried to download your backup script but the link is down.
can you please upload the backup script again
thanks
Wow thankss
Sent from my GT-P7500 using XDA Premium HD app
akenathon said:
Wow thankss
Sent from my GT-P7500 using XDA Premium HD app
Click to expand...
Click to collapse
CRC Studio | http://code.google.com/p/custom-rom-creator-studio/
The best rom cooking (windows) gui tool there is!
You can do this to with this gui tool and so much more...
Cheers
Thanks for the tips; but shouldn't this be in DEV or something..?
Well, that's where I would look to find such information... But I'm a noob.
Unable to deodex Phonesky.apk
as stated above, how to deodex Phonesky.apk?
I want to find way to create 3g with task v14 rom. Mybtab is gtab 10.1 3g p7500, but this rom doesnt support 3g.
Sent from my GT-P7510 using XDA Premium HD app
error msg
i try few times but always get this error, app`s is gove well and deodexed, from framework canot deodex following
android.policy
core
ext
framework
qcnvitems
services
Error occured while loading boot class path files. Aborting.
org.jf.dexlib.Util.ExceptionWithContext: Cannot locate boot class path file boun
cycastle.odex
at org.jf.dexlib.Code.Analysis.ClassPath.loadBootClassPath(ClassPath.jav
a:237)
at org.jf.dexlib.Code.Analysis.ClassPath.initClassPath(ClassPath.java:14
5)
at org.jf.dexlib.Code.Analysis.ClassPath.InitializeClassPathFromOdex(Cla
ssPath.java:110)
at org.jf.baksmali.baksmali.disassembleDexFile(baksmali.java:93)
at org.jf.baksmali.main.main(main.java:278)
The system cannot find the file specified.
any solutions? thanks in advance

[Desire Z] Unrooting like Factory Rom without USB

Hi,
I have a French Unbranded Desire Z and I have to return it for replacing because of USB doesn't working.
I followed many tutorial about USB Brick but all of them doesn't work...
So i have to unroot it, reinstall the original ROM (because my old backup was corrupt) reinstal the original boot and all the original stuff to be able for warranty to work !
I already have the RUU_VISION_Orange FR .exe and i know how to extract the rom.zip
But what should i do now ?
Thanks !
If you can't get your usb working make a gold card (there are ways to do this without a phone if needed look online for tutorial) place the proper ruu on the sdcard and boot into hboot and follow the promp. If this dosent work try asking nipqer - seems to know all the best ways for this
Sent from my HTC Vision using xda premium
Do you have the full S-OFF, eng hboot and custom recovery?
If so, I'd say rip the rom.zip from the RUU. open up the zip and delete the recovery.img and hboot.nb0 files in it, then rezip it, put it on your sdcard and flash it through hboot.
Then we need to flash su + Superuser onto the phone (this zip is flashable through recovery)
Then we need to run all the unroot commands from Terminal Emulator (which you can download from the market)
You will need to copy gfree, and if you still have your part7backup-xxxxxx.bin, to your sdcard.
You'll need to copy those files to /data/local/tmp (as sdcard isn't executable) you can either use a file explorer, or Terminal Emulator (mv /sdcard/gfree /data/local/tmp)
You'll need to get root access (just run 'su' in Terminal Emulator, and grant access when the prompt pops up)
Then we need to run gfree:
Code:
cd /data/local/tmp
chmod 755 *
./gfree -r /sdcard/part7backup-xxxxxx.bin
If you don't have your part7backup
Code:
dd if=dd if=/dev/block/mmcblk0p17 bs=1 count=8 2>/dev/null; echo
./gfree -s on -c <result of last command>
Once thats all done, flash the original unmoddified rom.zip from that RUU and you'll be back to stock.
-Nipqer
if this is too confusing, feel free to join #G2ROOT on webchat.freenode.net irc
Thanks Nipqer ! It seems all comprehensive to me
Except this point
You will need to copy gfree, and if you still have your part7backup-xxxxxx.bin, to your sdcard.
Click to expand...
Click to collapse
Sometimes, I saw files like these but named part3...part4 .. I remember that I ask myself what the hell are that files ?! So I delete them...
I make a mistake ? Or can I generate them again ?
Not essential to have those, just easier.
Just follow the 'If you don't have your part7backup' bit I wrote then.
'dd if=dd if=/dev/block/mmcblk0p17 bs=1 count=8 2>/dev/null; echo
./gfree -s on -c <result of last command>'
-Nipqer
If so, I'd say rip the rom.zip from the RUU. open up the zip and delete the recovery.img and hboot.nb0 files in it, then rezip it, put it on your sdcard and flash it through hboot.
Then we need to flash su + Superuser onto the phone (this zip is flashable through recovery)
Then we need to run all the unroot commands from Terminal Emulator (which you can download from the market) You will need to copy gfree, and if you still have your part7backup-xxxxxx.bin, to your sdcard.
You'll need to copy those files to /data/local/tmp (as sdcard isn't executable) you can either use a file explorer, or Terminal Emulator (mv /sdcard/gfree /data/local/tmp) You'll need to get root access (just run 'su' in Terminal Emulator, and grant access when the prompt pops up) Then we need to run gfree:
Code:
cd /data/local/tmp chmod 755 * ./gfree -r /sdcard/part7backup-xxxxxx.bin
If you don't have your part7backup
Code:
dd if=dd if=/dev/block/mmcblk0p17 bs=1 count=8 2>/dev/null; echo ./gfree -s on -c <result of last command>
Once thats all done, flash the original unmoddified rom.zip from
Click to expand...
Click to collapse
Okay, so if I recap your tutorial :
1) making a custom rom.zip without hboot and recovery
2) flash it via hboot (renaming it to PC10img.zip) ?
3)reboot to recovery this time and (install zip) the supeuser.zip you gave me
4)Running the OS, and install a terminal emulator
5)typing : the "mv command" from the gfree.zip file on/sdcard
6) typing su
7) and the 2nd command
8) reboot and rename the original zom.zip to PC10IMG.zip and flashing it
I should be alright then ?
Yes thats about it. except you want the gfree file, not the zip.
-Nipqer
I started your tutorial, ans i'm stuck at the beginning =/
I unzipp the original rom.zip
I package it in another zip named "PC10Img.zip" and without recovery and hboot....nb0
No problem here
When the hboot recognize it, it starts loading ... and then 2 cases :
- the first zip I made, it simply "forget' he has just loaded and just do nothing except giving me the choice of bootloader...
- the second zip (made from the same way), he load the zip, and says me "Fail to various points", so he conclude saying "Update aborted" or not completed ... i don't remember ..
I use Winrar and 7zip various time, and I wont be able to get it working ...
Tomorrow in the morning, i will test to extract again the zom.zip and test it again !
Any advice for me ?
Thanks, it's really good to have your support !

Full HTC Desire HD (sense 3.0/android 2.3.5) guide to root, S-OFF/Sim Unlock

Aahk2 is out please use that method instead, fully automated and much easier :
http://forum.xda-developers.com/showthread.php?t=2367322
Warning thanks to hacktrix2006:
hacktrix2006 said:
Also before anyone continues make sure you run cat /proc/kmsg | grep 'mmc0:0001' If you have a M4G2DE EMMC stop do no use clockworkmod recovery or even try to root as you will fry your EMMC.
If you have SEM04G EMMC then your safe to continue.
If your using the PD98IMG.zip from the retired AAHK just remember its no longer support.
Personally i would use the firmware.zip file from the tutorial which is included in the http://tau.shadowchild.nl/files/ace-tools.zip its safer that way just remember to backup your boot.img as its important if you want to boot back into sense 3.0.
Click to expand...
Click to collapse
THIS GUIDE IS MAINLY this guide (http://tau.shadowchild.nl/attn1/?cat=6) SIMPLIFIED TO SOME EXTENT. with parts that werent included in the guide added to the guide and resources added to the ace-tools folder that would have to be downloaded separately.
PREFACE:
Download this and unzip it somewhere (reccommend C:\ root folder): http://www.multiupload.nl/MXW371YT87
Full HTC Desire HD guide to root, S-OFF/Sim Unlock
1.Unlock the bootloader at http://htcdev.com/bootloader/
2.Copy your Unlock_code.bin file that you got in the email to the ace-tools folder.
step 2.2: reboot into fastboot
step 2.3: execute in cmd-prompt "fastboot flash unlocktoken Unlock_code.bin"
3.Download rooted stock rom: http://www.multiupload.nl/20T9R21IGY
(link to rom thread: http://forum.xda-developers.com/showthread.php?t=1382235&highlight=rooted+stock )
step 3.2 Make a effen GOLDCARD!!!
3.3 copy the ROM zip file to your SD card.
4.Install recovery image:
Open cmd and type:
•cd (eg cd C:\ace-tools)
Ensure your phone is connected to your PC and then boot into bootloader, then navigate to fastboot.
In cmd:
•fastboot flash recovery recovery1.img
5.boot into recovery through bootloader and Install the ROM you placed on the SD card, (via install zip fileselect the rom zip)
6.Reboot the phone, ensure the rom is working fine and you have root access you can test this by turning on usb debugging then:
•Adb shell
•Su
You should see the $ turn into a #. If this happens, congrats you have root access.
Then type this:
•Exit
Then again:
•Exit
Then:
•Adb push boot.img /data/local/tmp
•adb shell
root
dd if=/dev/block/mmcblk0p22 of=/data/local/tmp/boot.img
•adb pull /data/local/tmp/boot.img
•adb push goldcard /data/local/tmp
•adb shell
root
chmod 775 /data/local/tmp/goldcard
•adb shell
root
cat /sys/class/mmc_host/mmc2/mmc2:*/cid
take note of the string of numbers and letters that appear.
then:
•adb shell /data/local/tmp/goldcard -c -o /data/local/tmp/goldcard.img
•adb shell
root
dd if=/data/local/tmp/goldcard.img of=/dev/block/mmcblk1
•adb push misc_version /data/local/tmp
•adb shell chmod 775 /data/local/tmp/misc_version
•adb shell /data/local/tmp/misc_version -s 1.11.111.1
7.If this is all fine boot into bootloader again.
From bootloader go to fastboot.
Go back to the cmd window on your PC from earlier, type in:
•Fastboot oem lock
Then type:
•fastboot oem rebootRUU
•fastboot flash zip firmware.zip
•fastboot reboot-bootloader
unlock the bootloader again using the Unlock_code.bin you got from HTC:
•fastboot flash unlocktoken Unlock_code.bin
then flash boot.img in ace-tools folder:
•fastboot flash boot boot.img
next:
•fastboot flash recovery recovery.img
8.boot to recovery again then:
•adb push gfree /tmp/
•adb shell chmod 775 /tmp/gfree
•adb shell /tmp/gfree -f
reboot to bootloader and you should see it says S-OFF at the top of the screen, if It does congrats your done.
VICTORY:
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
I have also posted this over at modaco:
http://www.modaco.com/topic/361797-...-30android-235-guide-to-root-s-offsim-unlock/
Nice work
Report it with the little orange triangle.
bananagranola said:
Report it with the little orange triangle.
Click to expand...
Click to collapse
updated first post again, opened thread in QandA section, thought it was more appropriate, ill leave it to the mods to decide which section it should be in, this thread is based on my experiences last night .
Step 3 reduced, to simpify method even further.
Does not work for me... got bootloop after flashing ROM. Any ideas?
Guide worked for me!!!!!
Hi all, reporting back my experience with this guide...
Prior to using this guide, I was already HTCDEV unlocked, rooted and custom rom (SVHD V1.3.0)
I basically followed this guide with a few little needed changes.
1st I backed up my rom using 4ext recovery.
1. same
2. same
3. same
4. There was no file named "recovery1.img" in ace-tools, so I just flashed the "recovery.img" (If you already have custom recovery flashed, I don't think you need to do this step but I did it anyway).
5. Because I was already on custom rom with different kernel (boot.img) than stock (rooted) rom, before I reboot into recovery, I extracted boot.img from stock rooted zip downloaded from the link and flashed it from fastboot (if you don't do this your rom may not boot).
5a. reboot into recovery and flashed rom
6. there was a typo in the line
"• adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local /tmp/goldcard.img"
there is an extra space between local & /tmp/ at the end of line, the command line should read
• adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local/tmp/goldcard.img"
7. If this is all fine boot into bootloader again.
From bootloader go to fastboot.
Go back to the cmd window on your PC from earlier, type in:
• Fastboot oem lock<------ phone rebooted itself after this command so needed to go back to bootloader fastboot (I did a quick battery pull)
Then type:
• fastboot oem rebootRUU
everything else was good....
My Hboot screen is the same as OP screen shot.
I reflashed the 4ext recovery I previously had, then did a system restore of my backup and booted into SVHD with out a hitch.
I pretty sure that's all, I hope this helps.
androidmodd said:
I probably won't ever update this.
THIS GUIDE IS MAINLY this guide (http://tau.shadowchild.nl/attn1/?cat=6) SIMPLIFIED TO SOME EXTENT. with parts that werent included in the guide added to the guide and resources added to the ace-tools folder that would have to be downloaded separately.
PREFACE:
Download this and unzip it somewhere (reccommend C:\ root folder): http://www.multiupload.nl/MXW371YT87
Full HTC Desire HD guide to root, S-OFF/Sim Unlock
1. Unlock the bootloader at http://htcdev.com/bootloader/
2. Copy your Unlock_code.bin file that you got in the email to the ace-tools folder.
3. Download rooted stock rom: http://www.multiupload.nl/20T9R21IGY
(link to rom thread: http://forum.xda-developers.com/showthread.php?t=1382235&highlight=rooted+stock )
copy the ROM zip file to your SD card.
4. Install recovery image:
Open cmd and type:
• cd <the directory of the ace-tools folder> (eg cd C:\ace-tools)
Ensure your phone is connected to your PC and then boot into bootloader, then navigate to fastboot.
In cmd:
• fastboot recovery1.img
5. boot into recovery through bootloader and Install the ROM you placed on the SD card, (via install zip fileselect the rom zip)
6. Reboot the phone, ensure the rom is working fine and you have root access you can test this by turning on usb debugging then:
• Adb shell
• Su
You should see the $ turn into a #. If this happens, congrats you have root access.
Then type this:
• Exit
Then again:
• Exit
Then:
• Adb push boot.img /data/local/tmp
• adb shell dd if=/dev/block/mmcblk0p22 of=/data/local/tmp/boot.img
• adb pull /data/local/tmp/boot.img
• adb push goldcard /data/local/tmp
• adb shell chmod 775 /data/local/tmp/goldcard
• adb shell cat /sys/class/mmc_host/mmc2/mmc2:*/cid
take note of the string of numbers and letters that appear.
then:
• adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local /tmp/goldcard.img
• adb shell dd if=/data/local/tmp/goldcard.img of=/dev/block/mmcblk1
• adb push misc_version /data/local/tmp
• adb shell chmod 775 /data/local/tmp/misc_version
• adb shell /data/local/tmp/misc_version -s 1.11.111.1
7. If this is all fine boot into bootloader again.
From bootloader go to fastboot.
Go back to the cmd window on your PC from earlier, type in:
• Fastboot oem lock
Then type:
• fastboot oem rebootRUU
• fastboot flash zip firmware.zip
• fastboot reboot-bootloader
unlock the bootloader again using the Unlock_code.bin you got from HTC:
• fastboot flash unlocktoken Unlock_code.bin
then flash boot.img in ace-tools folder:
• fastboot flash boot boot.img
next:
• fastboot flash recovery recovery.img
8. boot to recovery again then:
• adb push gfree /tmp/
• adb shell chmod 775 /tmp/gfree
• adb shell /tmp/gfree -f
reboot to bootloader and you should see it says S-OFF at the top of the screen, if It does congrats your done.
VICTORY:
View attachment 1858622
I have also posted this over at modaco:
http://www.modaco.com/topic/361797-...-30android-235-guide-to-root-s-offsim-unlock/
help me out if you feel like it by signing up to dropbox with my refferal link:
Always have your stuff when you need it with @Dropbox. Sign up for free! http://db.tt/G8qfL77X
Click to expand...
Click to collapse
ranger4740 said:
Hi all, reporting back my experience with this guide...
Prior to using this guide, I was already HTCDEV unlocked, rooted and custom rom (SVHD V1.3.0)
I basically followed this guide with a few little needed changes.
1st I backed up my rom using 4ext recovery.
1. same
2. same
3. same
4. There was no file named "recovery1.img" in ace-tools, so I just flashed the "recovery.img" (If you already have custom recovery flashed, I don't think you need to do this step but I did it anyway).
5. Because I was already on custom rom with different kernel (boot.img) than stock (rooted) rom, before I reboot into recovery, I extracted boot.img from stock rooted zip downloaded from the link and flashed it from fastboot (if you don't do this your rom may not boot).
5a. reboot into recovery and flashed rom
6. there was a typo in the line
"•adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local /tmp/goldcard.img"
there is an extra space between local & /tmp/ at the end of line, the command line should read
•adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local/tmp/goldcard.img"
7.If this is all fine boot into bootloader again.
From bootloader go to fastboot.
Go back to the cmd window on your PC from earlier, type in:
•Fastboot oem lock<------ phone rebooted itself after this command so needed to go back to bootloader fastboot (I did a quick battery pull)
Then type:
•fastboot oem rebootRUU
everything else was good....
My Hboot screen is the same as OP screen shot.
I reflashed the 4ext recovery I previously had, then did a system restore of my backup and booted into SVHD with out a hitch.
I pretty sure that's all, I hope this helps.
Click to expand...
Click to collapse
Thanks, ill update first post again.
After using this unlock and S-off method, I have been able to update my radio using the PD98IMG.ZIP via bootloader. file found on this post http://forum.xda-developers.com/showthread.php?p=39412003
Sent from my HTC Desire HD using xda app-developers app
vonski said:
Does not work for me... got bootloop after flashing ROM. Any ideas?
Click to expand...
Click to collapse
For your issue, you had already flashed custom Rom and boot.IMG before this guide? I think You need to flash the boot.IMG from the rom.
Sent from my HTC Desire HD using xda app-developers app
problems at step 8
androidmodd said:
I probably won't ever update this.
THIS GUIDE IS MAINLY this guide (http://tau.shadowchild.nl/attn1/?cat=6) SIMPLIFIED TO SOME EXTENT. with parts that werent included in the guide added to the guide and resources added to the ace-tools folder that would have to be downloaded separately.
PREFACE:
Download this and unzip it somewhere (reccommend C:\ root folder): http://www.multiupload.nl/MXW371YT87
Full HTC Desire HD guide to root, S-OFF/Sim Unlock
1. Unlock the bootloader at http://htcdev.com/bootloader/
2. Copy your Unlock_code.bin file that you got in the email to the ace-tools folder.
3. Download rooted stock rom: http://www.multiupload.nl/20T9R21IGY
(link to rom thread: http://forum.xda-developers.com/showthread.php?t=1382235&highlight=rooted+stock )
copy the ROM zip file to your SD card.
4. Install recovery image:
Open cmd and type:
• cd <the directory of the ace-tools folder> (eg cd C:\ace-tools)
Ensure your phone is connected to your PC and then boot into bootloader, then navigate to fastboot.
In cmd:
• fastboot recovery1.img
5. boot into recovery through bootloader and Install the ROM you placed on the SD card, (via install zip fileselect the rom zip)
6. Reboot the phone, ensure the rom is working fine and you have root access you can test this by turning on usb debugging then:
• Adb shell
• Su
You should see the $ turn into a #. If this happens, congrats you have root access.
Then type this:
• Exit
Then again:
• Exit
Then:
• Adb push boot.img /data/local/tmp
• adb shell dd if=/dev/block/mmcblk0p22 of=/data/local/tmp/boot.img
• adb pull /data/local/tmp/boot.img
• adb push goldcard /data/local/tmp
• adb shell chmod 775 /data/local/tmp/goldcard
• adb shell cat /sys/class/mmc_host/mmc2/mmc2:*/cid
take note of the string of numbers and letters that appear.
then:
• adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local /tmp/goldcard.img
• adb shell dd if=/data/local/tmp/goldcard.img of=/dev/block/mmcblk1
• adb push misc_version /data/local/tmp
• adb shell chmod 775 /data/local/tmp/misc_version
• adb shell /data/local/tmp/misc_version -s 1.11.111.1
7. If this is all fine boot into bootloader again.
From bootloader go to fastboot.
Go back to the cmd window on your PC from earlier, type in:
• Fastboot oem lock
Then type:
• fastboot oem rebootRUU
• fastboot flash zip firmware.zip
• fastboot reboot-bootloader
unlock the bootloader again using the Unlock_code.bin you got from HTC:
• fastboot flash unlocktoken Unlock_code.bin
then flash boot.img in ace-tools folder:
• fastboot flash boot boot.img
next:
• fastboot flash recovery recovery.img
8. boot to recovery again then:
• adb push gfree /tmp/
• adb shell chmod 775 /tmp/gfree
• adb shell /tmp/gfree -f
reboot to bootloader and you should see it says S-OFF at the top of the screen, if It does congrats your done.
VICTORY:
View attachment 1858622
I have also posted this over at modaco:
http://www.modaco.com/topic/361797-...-30android-235-guide-to-root-s-offsim-unlock/
help me out if you feel like it by signing up to dropbox with my refferal link:
Always have your stuff when you need it with @Dropbox. Sign up for free! http://db.tt/G8qfL77X
Click to expand...
Click to collapse
Hi I am having problems from step 8 onwards
8. boot to recovery again then:
• adb push gfree /tmp/
• adb shell chmod 775 /tmp/gfree
• adb shell /tmp/gfree -f
When i type adb push gfree /tmp/ in CMD I get
c:\ace-tools>adb push gfree /tmp/
adb server is out of date. killing...
ADB server didn't ACK
* failed to start daemon *
error:
c:\ace-tools>
Any ideas I can not seem to get past it
saucernerp said:
Hi I am having problems from step 8 onwards
8.boot to recovery again then:
•adb push gfree /tmp/
•adb shell chmod 775 /tmp/gfree
•adb shell /tmp/gfree -f
When i type adb push gfree /tmp/ in CMD I get
c:\ace-tools>adb push gfree /tmp/
adb server is out of date. killing...
ADB server didn't ACK
* failed to start daemon *
error:
c:\ace-tools>
Any ideas I can not seem to get past it
Click to expand...
Click to collapse
Hmm that's a problem with ADB on your computer, it can be for a number of reasons, but try restarting your PC checking for background ADB related plugins/processes and try running the commands again.
If it still doesn't work try another PC if available.
androidmodd said:
Hmm that's a problem with ADB on your computer, it can be for a number of reasons, but try restarting your PC checking for background ADB related plugins/processes and try running the commands again.
If it still doesn't work try another PC if available.
Click to expand...
Click to collapse
Thats great thanks got a bit futher now
OK I killed all of the ADB plugins and this is what I now get
c:\ace-tools>adb push gfree /tmp/
2916 KB/s (722728 bytes in 0.242s)
c:\ace-tools>adb shell chmod 775 /tmp/gfree
c:\ace-tools>adb shell /tmp/gfree -f
--secu_flag off set
--cid set. CID will be changed to: 11111111
--sim_unlock. SIMLOCK will be removed
Section header entry size: 40
Number of section headers: 44
Total section header table size: 1760
Section header file offset: 0x00015398 (86936)
Section index for section name string table: 41
String table offset: 0x000151df (86495)
Searching for .modinfo section...
- Section[16]: .modinfo
-- offset: 0x000011cc (4556)
-- size: 0x000000c4 (196)
Kernel release: 2.6.32.21
New .modinfo section size: 196
Attempting to power cycle eMMC... Failed.
Module failed to power cycle eMMC.
c:\ace-tools>
I am still show as "ACE PVT SHIP S-ON RL
Anything else
ranger4740 said:
Hi all, reporting back my experience with this guide...
Prior to using this guide, I was already HTCDEV unlocked, rooted and custom rom (SVHD V1.3.0)
I basically followed this guide with a few little needed changes.
1st I backed up my rom using 4ext recovery.
1. same
2. same
3. same
4. There was no file named "recovery1.img" in ace-tools, so I just flashed the "recovery.img" (If you already have custom recovery flashed, I don't think you need to do this step but I did it anyway).
5. Because I was already on custom rom with different kernel (boot.img) than stock (rooted) rom, before I reboot into recovery, I extracted boot.img from stock rooted zip downloaded from the link and flashed it from fastboot (if you don't do this your rom may not boot).
5a. reboot into recovery and flashed rom
6. there was a typo in the line
"•adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local /tmp/goldcard.img"
there is an extra space between local & /tmp/ at the end of line, the command line should read
•adb shell /data/local/tmp/goldcard -c <string of numbers and letters should go here> -o /data/local/tmp/goldcard.img"
7.If this is all fine boot into bootloader again.
From bootloader go to fastboot.
Go back to the cmd window on your PC from earlier, type in:
•Fastboot oem lock<------ phone rebooted itself after this command so needed to go back to bootloader fastboot (I did a quick battery pull)
Then type:
•fastboot oem rebootRUU
everything else was good....
My Hboot screen is the same as OP screen shot.
I reflashed the 4ext recovery I previously had, then did a system restore of my backup and booted into SVHD with out a hitch.
I pretty sure that's all, I hope this helps.
Click to expand...
Click to collapse
Did you read this post about the errors in the guide I wrote?
androidmodd said:
Did you read this post about the errors in the guide I wrote?
Click to expand...
Click to collapse
HI
Yep I have read through everything over the last two days and followed all the steps just stumbling at the last hurdle
I'm sorry, you'll have to wait for someone better at this than I am to help, did you ensure that you HTC-Dev unlocked before attempting this step?
androidmodd said:
I'm sorry, you'll have to wait for someone better at this than I am to help, did you ensure that you HTC-Dev unlocked before attempting this step?
Click to expand...
Click to collapse
Gfree failed to cycle eMMC at the end of the s-off procedure, so something's gone wrong.
I don't pretend to be an expert with DHD, and this is a bit different from working with HTC legend.
Just checking that you did the hboot update to version 2.00.029 (htcdev) and unlocked.
It sounds like it might be a hardware fault with phone. I have heard about lots of DHD users with fried eMMC but never with legend.
Sent from my HTC Desire HD using xda app-developers app
ranger4740 said:
Gfree failed to cycle eMMC at the end of the s-off procedure, so something's gone wrong.
I don't pretend to be an expert with DHD, and this is a bit different from working with HTC legend.
Just checking that you did the hboot update to version 2.00.029 (htcdev) and unlocked.
It sounds like it might be a hardware fault with phone. I have heard about lots of DHD users with fried eMMC but never with legend.
Sent from my HTC Desire HD using xda app-developers app
Click to expand...
Click to collapse
Yep I'm on HBOOT 2.00.0029 and my eMMC says boot next to it I just can not get cid to change from ORANG001 and sim is still lock
Bloody ORANGE
everything seemed to work fine until the final stages.
I have even tried Easy Radio tool but this fails after trying to push and I have also tried the Ultimate Multi Tool which allows me to Flash and check status but will not S-Off or Super CID or sim Unlock it just fails at the final stage
Ideas anyone
What radio are you on, you have to have a certain radio to exploit with.
hacktrix2006 said:
What radio are you on, you have to have a certain radio to exploit with.
Click to expand...
Click to collapse
HI
Radio is show as 26.14.04.28_M
Cheers

Categories

Resources