KNOX Tripped With Stock Firmware... - Samsung Galaxy S7 Edge Questions and Answers

I just installed a official firmware from sammobile.com (I think I changed the CSC but I am not sure. However that should not trip KNOX), everything went well with odin (using the method described in the same page) but when I turn on the phone and try to use myKnox app it says that it detected a non authorized software change, same with Secure Folder and S Health.
(Never rooted the phone or installed a custom rom or TWRP)
In download mode the warranty says: 1 (0x0600)
I tried clearing the cache and doing a factory reset.
Have this happened to anyone here? Could you solve it? (without using the method of flashing a new kernel via TWRP)
If you could help me I will be very thankful!

What's you current Android Version?

Once Knox is tripped, there's just no way back - it's a hardware thing. I hear there are ways to emulate Knox 00 in Android for some apps, but the bootloader will forever give the real status.
The only way around it is physically replacing the mainboard, or getting a be phone.
I haven't encountered any cases of official FW causing this. Most likely you got hold of a damaged file (always be sure to check md5), the file you got was for a different phone (S7 instead of s7 edge?), or someone tampered with the file before uploaded it to samobile

Related

[Q] Soft brick? Hard brick? Sort of firm'ish brick really

I've made a bit of a mess and I need help please. My s4 is softbricked, but as softbricks go, it's rather hard.
I have an early S4 i9505 bought from Carphone Warehouse (UK, unlocked, pre knox). I rooted it, installed TBackup, greenify and got it how I wanted it. Then I downloaded a stock firmware from Sammobile and tested to see if I could get it back to 'warranty' condition, which was a success.
Confident that I could obtain warranty if I needed it, I re-rooted it, installed TB and greenify, and it ran sweetly for months from that point onwards.
I read about the arrival of updates (and knox) and concluded I didn't need them. It was working, leave it alone.
Then out of the blue, my nice stable machine broke. I didn't change anything I was aware of to cause it.
No normal boot.
No recovery.
Download only.
Using Odin, I tried allsorts, eventually getting the same Sammobile firmware to run.
2 days later, it broke again, same as before, but worse!?
Then I tried all sorts of stuff downloading no end of things trying to get it to boot or even go into recovery. The most promising approach was to reload the firmware along with a .pit file, but still no joy. I've lost track of the other things I tried, but I've been doing it for a week, so a lot has been done. In desperation, I even tried downloading the latest firmware, so I now have signs of knox of the odin page.
I now have the following symptoms:
Booting into recovery brings up the blue 'booting recovery' message then just blackness.
Normal boot is exactly the same as above.
Unpowered conection to my laptop gives a 5 second boot loop featuring the buzz only.
I can reliably boot into download and download stuff with Odin and change the little Odin page status messages. After (foolishly) trying the latest firmware, these messages say
ODIN MODE
PRODUCT NAME GT-I9505
CURRENT BINARY Samsung Official
SYSTEM STATUS Official
KNOX KERNEL LOCK 0x0
KNOX WARRANTY VOID 0x0
CSB-CONFIG-LSB 0x30
WRITE PROTECTION: enable
eMMC BURST MODE enabled
Please can anyone give me some advice on what else I could try?
Thanks
Steve
Wrinklespots said:
ODIN MODE
PRODUCT NAME GT-I9505
CURRENT BINARY Samsung Official
SYSTEM STATUS Official
KNOX KERNEL LOCK 0x0
KNOX WARRANTY VOID 0x0
CSB-CONFIG-LSB 0x30
WRITE PROTECTION: enable
eMMC BURST MODE enabled
Please can anyone give me some advice on what else I could try?
Thanks
Steve
Click to expand...
Click to collapse
If anything else is not working (especially, if you're unable to go to recovery) I'd call sammy service center. Your download mode says that you did not rooted your phone, and knox is untouched either.
spamtrash said:
If anything else is not working (especially, if you're unable to go to recovery) I'd call sammy service center. Your download mode says that you did not rooted your phone, and knox is untouched either.
Click to expand...
Click to collapse
Thanks for looking spamtrash.
I was wondering if I could get away with that. It does look good from the Odin display, but the flash counter must have a pretty high number in it by now! Won't that show up somewhere?
Do you think it does actually have a fault on it, rather than just some software that's messed up and needs tweaking?
Thanks
Steve
Wrinklespots said:
Thanks for looking spamtrash.
I was wondering if I could get away with that. It does look good from the Odin display, but the flash counter must have a pretty high number in it by now! Won't that show up somewhere?
Do you think it does actually have a fault on it, rather than just some software that's messed up and needs tweaking?
Thanks
Steve
Click to expand...
Click to collapse
1. Are you able to go to recovery mode?
2. Assuming that your previous communicates were taken from the screen in download mode - you're clean.
If answer for 1 is: NO, and assuming 2: do not bother the flash counter. Flash counter does not means you messed with custom ROMs, it just means amount of the ROM update tries. As they are unable to prove that the counter was not increased by failed KIES updates, you're safe.
To go deeper, service will have to flash and wipe your phone.
One thing: remove your sd card prior to giving/sending it out.
Try a different usb cable.I was in same boat as you (after stupidly thinking mobile odin pro liked modems).
Luckily I had an unused cable off my tab 3.

Unrooting G900A AT&T usa

I rooted my phone two weeks ago with towelroot and disabled Knox with supersu.Note: my device status said official I'm still running stock firmware. Have to send my phone back for warranty problem so I unrooted with supersu and reset my phone. So now when I look at my device status it says custom (never flashed any roms or nothing) so I factory reset and notice unlock padlock and custom on my reboot startup screen. I also put phone in Odin mode the binary still said Samsung official but now the other say custom. And Knox says 0×0. I was told to use Odin so I installed odin3v3.09, drivers, stock firmware on the PC tried to flash it but got a Auth: Fail in the left lower box.
My replacement phone will be here today and will send the old back Monday to give me a couple more days to figure this out. What did I do wrong?
PLEASE HELP!
UPDATE
I just notice when I was using Odin I tried to flash G900AUCU1ANCE stock firmware. My phone says I'm running G900AUCU2AND3. I wonder if that's why I've been getting that auth: Fail
Where can I get the G900AUCU2AND3 stock firmware from?
Try going to the sammobile website (cant post link because I'm a new member). It should be there
Sent from my SM-G900F using XDA Premium 4 mobile app
tmadekush said:
I just notice when I was using Odin I tried to flash G900AUCU1ANCE stock firmware. My phone says I'm running G900AUCU2AND3. I wonder if that's why I've been getting that auth: Fail
Where can I get the G900AUCU2AND3 stock firmware from?
Click to expand...
Click to collapse
Your warranty should be honoured because it still shows Knox 0x0. But it would be prudent to resolve the custom message as you are trying to do. It's showing custom because you disabled Knox. Flashing a full stock firmware should restore Knox and resolve the custom message.
Odin flashes can fail for many reasons e.g. trying to flash non-Odin versions of firmware, bad signatures, poor quality USB cables, wrong firmware version e.g. one meant for a different phone, et cetera.
Back up your files, then do a full system reset from the settings menu. Then put your phone into download mode and use Odin to flash a full stock firmware. Ideally use the latest firmware version for carrier that the phone originally came from (i.e. it should match the baseband). Google will find many firmware repositories e.g. sammobile, samsung-updates and this site.
.

Able to again get OTA updates on Sprint S5 after root - Knox flag still 0x1

So I initially rooted my Sprint S5 using the old fashioned way, which tripped my Knox flag seen at bootup in Odin mode. That part I cannot seem to get reset (going to try Triangle Away shortly).
However I now have it reloaded using the Samsung Kies Windows program with the latest firmware, and in the phone settings Device Status where it used to say "Custom" it now again says "Official". I first tried to use Odin to put the stock firmware image back on, which did not help at all.
I went into Kies version 3.2.14072_12 with my S5 plugged in and clicked Tools menu -> Firmware upgrade and initialization". It may ask you for model and serial number, which I put in for mine just fine, and then it launched saying the device will be initialized to original settings. However this is different from doing factory reset from within the phone. It reboots to odin and then recovery and performs a handful of things. When it completed I had to re-setup a bunch of things, but the phone basically unrooted itself without me telling SuperSU to do an unroot. I ran supersu and it said it couldnt run on an unrooted phone... So I checked the About info in settings and voila, back to Official status, and OTA updates work again!
Unfortunately the knox flag didnt un-set, but Im less worried about that and more worried about missing enhancement OTA patches and updates - well I was before I will update here if that Triangle program can reset the counter. I thought that counter was a hard-wired fuse piece of hardware, not flash memory, so Im not sure that it can be done, but worth a try. Hope this works for everyone and Good Luck!!
This is already known.... And FYI no known method can reset the Knox counter.
Sent from a Galaxy 5 light years away
Herby6262 said:
So I initially rooted my Sprint S5 using the old fashioned way, which tripped my Knox flag seen at bootup in Odin mode. That part I cannot seem to get reset (going to try Triangle Away shortly).
However I now have it reloaded using the Samsung Kies Windows program with the latest firmware, and in the phone settings Device Status where it used to say "Custom" it now again says "Official". I first tried to use Odin to put the stock firmware image back on, which did not help at all.
I went into Kies version 3.2.14072_12 with my S5 plugged in and clicked Tools menu -> Firmware upgrade and initialization". It may ask you for model and serial number, which I put in for mine just fine, and then it launched saying the device will be initialized to original settings. However this is different from doing factory reset from within the phone. It reboots to odin and then recovery and performs a handful of things. When it completed I had to re-setup a bunch of things, but the phone basically unrooted itself without me telling SuperSU to do an unroot. I ran supersu and it said it couldnt run on an unrooted phone... So I checked the About info in settings and voila, back to Official status, and OTA updates work again!
Unfortunately the knox flag didnt un-set, but Im less worried about that and more worried about missing enhancement OTA patches and updates - well I was before I will update here if that Triangle program can reset the counter. I thought that counter was a hard-wired fuse piece of hardware, not flash memory, so Im not sure that it can be done, but worth a try. Hope this works for everyone and Good Luck!!
Click to expand...
Click to collapse
Thanks for th3 info. When I need ota then I know what to do. Its pretty obvious that I am new to this but I'm learning
Where can I find the numbers required for kies update ? SN is no where on the phone or under battery
MagnumPOS said:
Where can I find the numbers required for kies update ? SN is no where on the phone or under battery
Click to expand...
Click to collapse
phone info.apk

WIFI not working after using KIES to update

Hi all,
Phone Details:
Spring Galaxy S4
Baseband Version L720TVPUBNG5
Used CF autoroot
This all started a few days ago. The latest OTA update came out and my phone kept telling me I had insufficient storage for the update. I figured it was because I had it rooted. I followed QBking77's video for Unroot / Unbrick. Downloaded all files recommended in the video.
Every time I try to flash with ODIN I get a failure. I have tried three different .tar versions at this point, it always seems to fail after "aboot" attempts to flash. Two different cables, both came with an SGS4.
I finally had enough and used the factory reset. After factory reset I used KIES for my update. The phone took it fine and rebooted. Although now I have no WIFI.
When initiating WIFI it will tell me that the security application has rejected a request to protect my phone. I deleted lookout security even though I have never used it.
Does this have something to do with KNOX? Knox flag is at 0x1 so I know it is tripped. Is there a way to completely flash my phone back to a stock state with the original recovery and rom?
Are there any options for me to get my phone back in order. I really dont give a **** about root or roms, I just need my WIFI. Would my best bet be to use a custom firmware?
Your correct thread have to go: HERE.

[Q] Help updating i1337m to official lollipop?

I have a Canadian Koodo Galaxy S4 (Model: SGH-i1337m) and I need help on how to update my phone to the official touchwiz android 5.0.
The phone was originally locked to Koodo, but I took it to a local phone store where they unlocked it for me. I now use the phone with another carrier (Rogers). I don't know the method they used to unlock it but after the process, my phone had become rooted and its device status was changed to "Custom". Also the Knox warranty counter became 0x1 after the unlock.
Right now the phone is on 4.4.2 and I'm unable to check for updates through the settings app as it gives me the message "Your device has been modified. Software updates are not available."
I don't really use root for anything on my phone except for xposed (which I can live without) and I need help updating this phone to 5.0. I don't mind losing my data but I really need to keep this phone unlocked. If anyone can help me out, it would be greatly appreciated.
rhwn said:
I have a Canadian Koodo Galaxy S4 (Model: SGH-i1337m) and I need help on how to update my phone to the official touchwiz android 5.0.
The phone was originally locked to Koodo, but I took it to a local phone store where they unlocked it for me. I now use the phone with another carrier (Rogers). I don't know the method they used to unlock it but after the process, my phone had become rooted and its device status was changed to "Custom". Also the Knox warranty counter became 0x1 after the unlock.
Right now the phone is on 4.4.2 and I'm unable to check for updates through the settings app as it gives me the message "Your device has been modified. Software updates are not available."
I don't really use root for anything on my phone except for xposed (which I can live without) and I need help updating this phone to 5.0. I don't mind losing my data but I really need to keep this phone unlocked. If anyone can help me out, it would be greatly appreciated.
Click to expand...
Click to collapse
Hi,
I have the same phone, Canadian variant, SGH-i337M. Koodo.
Do you have a custom recovery installed? If not, I would suggest using TWRP.
Download it here (I have TWRP too, and always used the dd install method several times without problem. Just MAKE SURE you have the exact command!):
https://twrp.me/devices/samsunggalaxys4canada.html
Once TWRP is installed, really important to make a Nandroid backup ("Backup" menu). Would suggest copying the backup to PC as well (Backup everything, including EFS). TWRP is not needed to flash Lollipop, but it's important to keep a backup.
Next, flashing Lollipop using Odin (Doing this, your SD card/internal memory will be untouched, but you will loose your apps, SMS and stuff. Back these up before if you want. Otherwise, everything would be also in the TWRP backup you've performed earlier). Go to Sammobile to grab the update:
Koodo: http://www.sammobile.com/firmwares/download/45758/I337MVLUGOC4_I337MOYAGOC4_KDO/
Rogers: http://www.sammobile.com/firmwares/download/45777/I337MVLUGOC4_I337MOYAGOC4_RWC/
It doesn't matter much which one you choose - Their content remains the same, but maybe the radio/modem would differ between carriers I think. I would suggest choosing the Rogers firmware (I know that Koodo include a "Koodo" app in their firmware, for instance).
Then follow the instruction closely (Make sure to use a genuine Samsung cable, and reliable USB connection):
Instructions
Extract (unzip) the firmware file
Download Odin v3.10.6
Extract Odin ZIP file
Open Odin v.3.10.6
Reboot Phone in Download Mode (press and hold Home + Power + Volume Down buttons)
Connect phone and wait until you get a blue sign in Odin
Add the firmware file to AP / PDA
Make sure re-partition is NOT ticked
Click the start button, sit back and wait few minutes
I did the same thing myself to update to Lollipop. Worked great. But word of warning, you will loose your root access, and will have to root again (Same method worked for me, while I had problem disabling Knox on Lollipop somehow. Returned back to KitKat with my Nandroid backup).
Also, on that same Lollipop ROM, I encoutered WiFi issue, WiFi wouldn't turn ON at all (What the hell). Still haven't figured out the problem. That's why I would suggest keeping a backup of KitKat, for sure.
Also, don't worry about your unlocked phone, it will remained unlocked without problem.
Good luck

Categories

Resources