PDA

View Full Version : No WLAN due to Erased EEPROM****SOLVED****


Pages : [1] 2

konst_kk
8th March 2009, 11:38 AM
I'm facing the same problem with my wlan as described in http://forum.xda-developers.com/showthread.php?t=322225 thread for Hermes. Due to the fact that Hermes uses different wlan chip(so the eeprom data are not the same) the procedure didnt work for my Trinity. Can somebody provide the output of a good eeprom? or provide any help.




Thank you to gruptnt for his WLAN Fix!

gruptnt FIX:
http://forum.xda-developers.com/showpost.php?p=5313622&postcount=340

SuperSport Tutorials:
http://forum.xda-developers.com/showpost.php?p=5314726&postcount=345

eisbaer82
4th September 2009, 11:42 PM
I have the same problem too. Any help would be appreciated...

epicfail
7th September 2009, 01:14 AM
same here...

epicfail
8th September 2009, 11:39 AM
Where i can download the EEPROM?
HTC support sucks, they not give it me.

Alternative:
How I can dump the EEPROM from a other Trinity with functional WLAN? The Hermes guide not work for me! Is there anywhere a german / english guide at the net??? or can a advanced trinity user from forum explain me in german / english what i had to do. Please.

Sorry for my bad english...

gruptnt
13th September 2009, 01:34 AM
also I have this problem

but i think procedure hermes not work because

it requires a specially patched SPL... (hermes)

chip wlan is equal to hermes ? and eeprom code?

with putty :

Cmd>task 32
Level = 0

Cmd>info 8
Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is BAD block !!! <<<<<<< is bad
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

Partition[0], type=0x20, start=0x2, total=0xFE
Partition[1], type=0x23, start=0x100, total=0x1400
Partition[2], type=0x25, start=0x1500, total=0x26A00
Partition[3], type=0x4, start=0x27F00, total=0x55500

CE Total Length(with sector info) = 0x511F800
CE CheckSum Length(without sector info) = 0x4FE0000



Cmd>task 37
.....
09/12/2009 16:19:31 [K :: KERNEL] HTC Nand Read!
09/12/2009 16:19:31 [K :: KERNEL] Kernel: EEPROM signature=FF FF FF FF FF <<<<<< bad
09/12/2009 16:19:31 [K :: KERNEL] HTC Nand Read!
09/12/2009 16:19:31 [K :: KERNEL] Kernel: EEPROM signature Old=FF FF FF FF FF <<<<< bad
09/12/2009 16:19:31 [K :: KERNEL]


Cmd>password 0000000000000000
Invalid password.

HTCSF kE(HTCEPassWord: 0000000000000000


Cmd>password BsaD5SeoA
Pass.

HTCST HTCEPassWord: BsaD5SeoA


Cmd>set 1e 1

Cmd>rbmc 500a0000 40000
GetExtRomData+(): *pszPathName=500a0000, dwStartAddress=40000, dwLength=8C08DAA4
:F=500a0000
:A=00040000
:L=8C08DAA4
:rbmc=8DAA4

but file nb is blank

On

trinity100
ipl-0.50
spl-1.30.olipro



Tnks 4 all help

konst_kk
24th September 2009, 10:39 AM
I have managed to get the eeprom data by installing the SPL (oli 2.30) for hermes as described is the procedure. I did not have any issue with my device and it did the work, but you have to try it on your own risk.
The password 0000000000000000 will then work.

Move back to trinity SPL (oli 1.30) immediately after completing the procedure.

mac_es
24th September 2009, 01:00 PM
I have managed to get the eeprom data by installing the SPL (oli 2.30) for hermes as described is the procedure. I did not have any issue with my device and it did the work, but you have to try it on your own risk.
The password 0000000000000000 will then work.

Move back to trinity SPL (oli 1.30) immediately after completing the procedure.

Did you boot to OS with the hermes spl or or you just do the work whithout quitting the bootloader?

Olipro 2.30 is protected against flashing SPL as is 1.30?

Have you done a full backup of your eeprom? If so, which are the addresses?

Thanks

tramuyo
24th September 2009, 08:01 PM
how u manage to install SPL 2.30 HERMES on TRINITY ????????

mac_es
25th September 2009, 09:02 AM
I haven't done it but:

Take the .nb and transform it into nbh file and flash it

Or use the splexploit

gruptnt
26th September 2009, 10:45 AM
I haven't done it but:

Take the .nb and transform it into nbh file and flash it

Or use the splexploit

are u sure because i think the address on memory is different of hermes

namwarn
28th September 2009, 07:25 PM
Who can Fix Trinity?
I want tools+batch file to fix it my Trinity.
Please help me.

konst_kk
30th September 2009, 11:13 AM
No, I did not boot to OS; just reverse to trinity spl immediately after getting the eeprom data. As far as the installation of hermes spl concerns, I was newbie at that time and I just follow the hermes instructions without knowing the risk; but it worked. Memory addresses are the same with hermes, I've performed about 1000 lnb commands using the hermes memory addresses without causing any problem to my trinity.
Always make sure you have a valid backup.

gruptnt
3rd October 2009, 05:56 PM
As far as the installation of hermes spl concerns, I was newbie at that time and I just follow the hermes instructions without knowing the risk; but it worked. Memory addresses are the same with hermes, I've performed about 1000 lnb commands using the hermes memory addresses without causing any problem to my trinity..

ok .. can u explain here you procedure and file use ?
u can attach file use ?

binht611
13th October 2009, 04:41 AM
No, I did not boot to OS; just reverse to trinity spl immediately after getting the eeprom data. As far as the installation of hermes spl concerns, I was newbie at that time and I just follow the hermes instructions without knowing the risk; but it worked. Memory addresses are the same with hermes, I've performed about 1000 lnb commands using the hermes memory addresses without causing any problem to my trinity.
Always make sure you have a valid backup.

do you sloved it??:eek:, can you upload your nbh to 4shared or mediafile for me please!!! Thanks

talpottolo
27th October 2009, 11:58 AM
hi guys... why somenone has solved the problem and there is no written procedure to help all others in the same situation?

Is there a mysteriuos answer?

Bye.
Talpottolo

oskarppunkt
28th October 2009, 07:58 AM
Same prob too...
can i use mtty to fix?

sterh
28th October 2009, 08:33 AM
Hi guys,
i' ve joined the NO WLAN club few days ago,i tried everything with no success,downgrading,upgrading , i even followed the Hermes instructions with no luck-getting continuous errors.Is out there a trin guru who can post the procedure step by step ,and the files also .From what i understand we need a EEPROM dump to put our mac adress in (i fortunately have it).
PLEASE PLEASE somebody make a guide for dummies , are manu users out there having a NAND 0X06 BAD BLOCK (wlan).

gruptnt
28th October 2009, 10:52 PM
Hi guys,
i' ve joined the NO WLAN club few days ago,i tried everything with no success,downgrading,upgrading , i even followed the Hermes instructions with no luck-getting continuous errors.Is out there a trin guru who can post the procedure step by step ,and the files also .From what i understand we need a EEPROM dump to put our mac adress in (i fortunately have it).
PLEASE PLEASE somebody make a guide for dummies , are manu users out there having a NAND 0X06 BAD BLOCK (wlan).

ok first we can't resolved with hermes guide ...
second in this week i write what i find

bye

eclipsept
2nd November 2009, 11:05 PM
I have the same problem

WLAN ERROR

and

NO GSM

can some one help us

rs1turbo
5th November 2009, 09:32 AM
I too have the same problem! but someone has ever managed to solve it?

arpcpro
6th November 2009, 02:18 PM
After testing some cooked WM6.5 ROMs my WLAN doesn't work also. I've already flashed the original WM6.0 ROM but it didn't help.

Anyone knows if we need to know the real mac address of our WLAN or we can use a generic one in the misterious (yet to be confirmed) recovery procedure?

gruptnt
6th November 2009, 05:42 PM
After testing some cooked WM6.5 ROMs my WLAN doesn't work also. I've already flashed the original WM6.0 ROM but it didn't help.

Anyone knows if we need to know the real mac address of our WLAN or we can use a generic one in the misterious (yet to be confirmed) recovery procedure?

U know which rom exactly ?

arpcpro
6th November 2009, 06:45 PM
I'm not 100% sure so I prefer not to point any fingers to a specific ROM. What I know is that for sure it hasn't tommei45's 23017 because I flashed that one several times in the past and WLAN always ok.

So my suspects are:
- HardSPL1.2 from SD card
- Supersport AutoFlash 23504 Blue.exe
- AutoFlash 23081 FlashBack.exe
- RELEASE_TRINITY_23071_1.2 / 1.3
- Running HTC_Trinity_SIM_CID_Unlock_v1 on a WM6.5 ROM
I was always using HardSPL1.2 to flash these, and some got stuck at boot screen because (on my trinity) they only work with HardSPL 1.3. Maybe that has something to do with the problem.

Regarding the problem investigation, I think we will need to dump the wlan eeprom from a working trinity and clone to ours. I searched on google for "WLAN ERROR" d810 and I've been checking out some asian forums on the search results to see if there was any attachments or progress on this but I found nothing usefull.

Edit: I think the problem lies on flashing the original ROM after having used WM6.5 ROMs. I didn't even consider it on the first place but indeed between testing the above ROMs I flashed the official "RUU_Trinity_DOPODASIA_WWE_3.00.707.18_6275_1.46.30 .11_108_Ship.exe" to have the device in a "clean" state (due to problems I was having with some WM6.5 ROMs).

arpcpro
6th November 2009, 07:31 PM
also I have this problem

but i think procedure hermes not work because
it requires a specially patched SPL... (hermes)
chip wlan is equal to hermes ? and eeprom code?

with putty :

Cmd>task 32
Level = 0

Cmd>info 8
Block 0x0(0) is Reversed block
...
Cmd>set 1e 1

Cmd>rbmc 500a0000 40000
GetExtRomData+(): *pszPathName=500a0000, dwStartAddress=40000, dwLength=8C08DAA4
:F=500a0000
:A=00040000
:L=8C08DAA4
:rbmc=8DAA4

but file nb is blank

On

trinity100
ipl-0.50
spl-1.30.olipro
...

I don't know if wlan chip is equal to hermes nor the eeprom code, but we need to extract a eeprom dump from a working trinity.
I agree with you that probably we need to have SPL 2.30 or Ver 9 (2.60) to be able to sucessfully download that.
I've been trying to repeat the steps that "konst_kk" claimed it worked for him (get the eeprom data by installing the SPL (oli 2.30) for hermes as described is the procedure).

But I'm on a blocking point because I can't even install SPL 1.10.oli to upgrade to SPL 1.04 and then to SPL Oli 2.30. The normal RUUWrapper.exe detects it is not the correct device and doesn't flash. With SPL Exploit I was able to send the Hermes SPL but my tricolor boot screen remains saying "spl-1.30.olipro". I will do more testing when I have free time.

rs1turbo
7th November 2009, 10:12 PM
Hi, now I have 2 trinity: one 100% working and one "no gsm" error...
How I can dump the eprom from my working trinity and how I can write on the "no gsm"??
Can anyone post me the procedure???

Thx

gruptnt
8th November 2009, 03:45 PM
I don't know if wlan chip is equal to hermes nor the eeprom code, but we need to extract a eeprom dump from a working trinity.
I agree with you that probably we need to have SPL 2.30 or Ver 9 (2.60) to be able to sucessfully download that.
I've been trying to repeat the steps that "konst_kk" claimed it worked for him (get the eeprom data by installing the SPL (oli 2.30) for hermes as described is the procedure).

But I'm on a blocking point because I can't even install SPL 1.10.oli to upgrade to SPL 1.04 and then to SPL Oli 2.30. The normal RUUWrapper.exe detects it is not the correct device and doesn't flash. With SPL Exploit I was able to send the Hermes SPL but my tricolor boot screen remains saying "spl-1.30.olipro". I will do more testing when I have free time.

yes is true!
cant load hermes file
first we need to have an
"patch the bootloader to allow rbmc at any address" 4 grab eeprom
and
"patch the bootloader to allow lnb at any address"
olipro 1.30 is enable to lnb command

i have load into my trinity herm1.nb modified
but wlan no work and no error with info 8
after flash most rom return error with info 8

gruptnt
8th November 2009, 03:54 PM
Hi, now I have 2 trinity: one 100% working and one "no gsm" error...
How I can dump the eprom from my working trinity and how I can write on the "no gsm"??
Can anyone post me the procedure???

Thx

can u execute an task 37 ff on working trinity ?

use putty and enable log session

4 no gsm

are u sure the band on trinity is select gsm network type?

SuperSport
8th November 2009, 10:41 PM
I've been researching more, and find this happens when a Radio Flash goes bad. I intentionally pulled the cable during a Radio Flash to cause this problem to see if I could help someone. Now I'm stuck with the same issue. Doh! Phone works fine, just no WLAN.

I'm still trying different things to see if I can get some positive results. I'll report back if I find something, and I'll watch here for a resolution.

Thanks for everyone's help. :D

gruptnt
8th November 2009, 11:29 PM
I've been researching more, and find this happens when a Radio Flash goes bad. I intentionally pulled the cable during a Radio Flash to cause this problem to see if I could help someone. Now I'm stuck with the same issue. Doh! Phone works fine, just no WLAN.

I'm still trying different things to see if I can get some positive results. I'll report back if I find something, and I'll watch here for a resolution.

Thanks for everyone's help. :D

but the radio can be reflash ...
and i have problem but never pull the usb cable when i flash radio ...

i have an question


into rom end kitchen there is an file .bin
this file is call "Fw1251r1c.bin"
into OEM\Trinity\COMMON\OEMDrivers

Into phone there is

[HKEY_LOCAL_MACHINE\Comm\TNETW12511]
"Wireless"=dword:00000001
"ImagePath"="TNETW1251.dll"
"Group"="NDIS"
"DisplayName"="IEEE 802.11b/g Compatible Wi-Fi Adapter"

fw is firmware??

SuperSport
9th November 2009, 09:14 AM
but the radio can be reflash ...
and i have problem but never pull the usb cable when i flash radio ...

i have an question


into rom end kitchen there is an file .bin
this file is call "Fw1251r1c.bin"
into OEM\Trinity\COMMON\OEMDrivers

Into phone there is

[HKEY_LOCAL_MACHINE\Comm\TNETW12511]
"Wireless"=dword:00000001
"ImagePath"="TNETW1251.dll"
"Group"="NDIS"
"DisplayName"="IEEE 802.11b/g Compatible Wi-Fi Adapter"

fw is firmware??

This is the first time I've pulled the cable intentionally. But have you ever had a flash fail during the process? What I understand is that Sometimes that can cause the WLAN to fail. Not every time, but sometimes.

I don't know about the firmware question.

mac_es
9th November 2009, 01:25 PM
Hi,

Have you tried converting SPL Oli 2.30.nb to a new nbh for trinity?

SuperSport
9th November 2009, 04:56 PM
Hi,

Have you tried converting SPL Oli 2.30.nb to a new nbh for trinity?

Is this supposed to write the information back to our Trinity's EEPROM, or does it just open the EEPROM so we can use other tools to write the information?

mac_es
9th November 2009, 05:17 PM
First, I haven't done it as I I ahve a working WLAN. I only read this thread..

You will get the correct SPL to read/write eeprom data...

arpcpro
10th November 2009, 01:18 AM
I haven't tried to convert it yet. It will be my next step tomorrow as soon as I understand the steps. I guess you mean do this:

then use DUTTY'S Good .NB Tool...

http://forum.xda-developers.com/showthread.php?t=296311

...to convert the SPL Oli 2.30 .nb file contained in the .rar you downloaded (use WinRar to extact) to an .nbh file (RUU_signed) THEN flash SPL 2.30 (you can use the same custom RRUwrapper you used to flash to 1.04 by putting it in the same folder, but move the RUU_signed.nbh of 1.04 to another folder first, then put it back when your finished)

SuperSport
10th November 2009, 01:24 AM
I haven't tried to convert it yet. It will be my next step tomorrow as soon as I understand the steps. I guess you mean do this:

I converted to an nbh this morning and flashed. Now it's stuck and I cannot get it to take any HardSPL again. Hmmm... How exactly do I use the Trinity splxploit. I've been trying, and it will not connect to my phone. Although, I'm on Windows 7, so I'm suspecting that.

My phone may be hosed, so I'm willing to try whatever fixes people suggest at this point. And, I never thought a Trinity could be Truly Bricked... ;)

PS: I did this, I don't mind taking the blame for it not working right now. Please, nobody worry about it, unless there's a fix, of course. :D

SuperSport
10th November 2009, 04:14 AM
Update. I installed XP Mode on Windows 7 and splxploit worked like it was supposed to. Now my phone is running, but still no WiFi. Better than it was though! :D

Now I KNOW a Trinity is Never Fully Bricked. :) Also, if somebody can explain to me in Extremely Clear Steps, I will attempt any WiFi fix that can be done. I read through the Hermes thread, but it did not make sense to me. I don't know what PUtty and all that stuff is, or how to use it.

sterh
10th November 2009, 07:30 AM
I don't think that flashing oplipro 2.30 will solve the problem, i believe its only the mean to flash a healthy rom. IMHO we have first to find a rom backup from a trin with working wlan,edit it and put our mac address and then flash it.
Mac adress is differrent for each chip -its like the serial nuber of the chip- and is hardcoded in the chip. If you used the wlan at home or in a network with security restrictions you will probably find your mac in an access log of your router somewhere (as i did) ,then putting the mac in the healthy rom and flash it will solve the problem, thats what the did in the hermes section and it worked (i don't remember the thread as i got lost checking every thread for f** up wlan).
Not to forget ,if someone will post a dump of a rom ,will also have to tell in wich address sits the mac to be replaced with our own.

SuperSport
10th November 2009, 08:50 AM
I don't think that flashing oplipro 2.30 will solve the problem, i believe its only the mean to flash a healthy rom. IMHO we have first to find a rom backup from a trin with working wlan,edit it and put our mac address and then flash it.
Mac adress is differrent for each chip -its like the serial nuber of the chip- and is hardcoded in the chip. If you used the wlan at home or in a network with security restrictions you will probably find your mac in an access log of your router somewhere (as i did) ,then putting the mac in the healthy rom and flash it will solve the problem, thats what the did in the hermes section and it worked (i don't remember the thread as i got lost checking every thread for f** up wlan).
Not to forget ,if someone will post a dump of a rom ,will also have to tell in wich address sits the mac to be replaced with our own.

Brilliant! Thank you for this idea. I'm embarrassed that I did not think of it. :o I had already pulled a MAC from a non-working phone and was keeping it at the ready. Now, I've got my ACTUAL MAC.

So likely we could just do a HEX search in the ROM for the MAC, if they were generous enough to share that too? Understanding it's in reverse, according to the Hermes Thread.

mac_es
10th November 2009, 09:45 AM
Glad to hear that you recover your trinity...

The problem to obtain a rom whith the mac in it is the same. You will need a correct spl to access that memory... In a standard ROM it doesn't contain the MAC otherwise everyone would have the same

AFAIK, you can try whith the SPL which comes whith the unlocker. It is an special spl... so may be it works. At least it will not break your phone...

@superspot

putty is a telnet program. I will explain what is all this stuff about...

When you boot your phone it boots the IPL, after that the SPL which calls the radioloader and after that the OS.

Obviusly, the radio is blocked so you can not read/write in it. For this purpose we need an special SPL which overrides the security block.

When we got the correct SPL via telnet program we can send commands to it: reset, show info, update... This is done via putty

One command is read, if we tell to read the eeprom it will show binary data so we have to treat as binary data because of that we use the other program to take the output of putty directly to a file.

Once we have a backup we modify the mac and write back...

So the first step is to obtain a capable SPL in the trinity...

I think, that the safest way to tray spls is the splxploit

SuperSport
10th November 2009, 11:35 AM
So the first step is to obtain a capable SPL in the trinity...

I think, that the safest way to tray spls is the splxploit

So, if someone were to pull a working SPL from their Trinity, could they HexEdit the file and place XX XX XX XX etc where the MAC address is? Then email it to others so they could input their MAC's?

sterh
10th November 2009, 12:22 PM
So, if someone were to pull a working SPL from their Trinity, could they HexEdit the file and place XX XX XX XX etc where the MAC address is? Then email it to others so they could input their MAC's?

Exactly my point Bro ;)
have a look at this post http://forum.xda-developers.com/showthread.php?t=322225&highlight=wlan ,we need to do the same thing but with custom roms for trinity

mac_es
10th November 2009, 12:28 PM
No,

A working SPL is in this board.

You need an special SPL which allows to request a read/write of the eeprom

sterh
10th November 2009, 01:05 PM
Sorry ,
when i wrote "custom roms for trinity" i ment an spl with empty or edited mac address.
Basically something to flash into the phone and get our wlan back .
Is there anybody out there to write "Reviving WLAN for dummies" , i really need a step by step instruction to do it.

arpcpro
10th November 2009, 02:01 PM
Guys, you're still a step behind in understanding this. Correct me if I'm wrong but:

1st problem - "...if someone were to pull a working SPL from their Trinity"
This is the blocking point now. We cannot read Trinity EEPROM sucessfully.
On Hermes they had to install OliPro2.30 that has special instructions that allows them to read/write on Hermes EEPROM. That Olipro 2.30 (or 2.60) is a special developers edition.
That is why I was trying to use this on Trinity.

2nd problem - "when i wrote "custom roms for trinity" i ment an spl with empty or edited mac address"
From what I understand the custom ROMs don't have that WLAN code part we need. Otherwise we all would have the same MAC, and our problem would be solved just by flashing again with another ROM.

3rd note - I don't think we need the original MAC address. I can't get mine from anywhere, but on the Hermes thread they would flash the phone with any MAC address and it worked. So probably the MAC address we will use on the EEPROM can be any other and we all can use the same.

mac_es
10th November 2009, 04:57 PM
Guys, you're still a step behind in understanding this. Correct me if I'm wrong but:

1st problem - "...if someone were to pull a working SPL from their Trinity"
This is the blocking point now. We cannot read Trinity EEPROM sucessfully.
On Hermes they had to install OliPro2.30 that has special instructions that allows them to read/write on Hermes EEPROM. That Olipro 2.30 (or 2.60) is a special developers edition.
That is why I was trying to use this on Trinity.


That's correct


2nd problem - "when i wrote "custom roms for trinity" i ment an spl with empty or edited mac address"
From what I understand the custom ROMs don't have that WLAN code part we need. Otherwise we all would have the same MAC, and our problem would be solved just by flashing again with another ROM.


Absolutly right


3rd note - I don't think we need the original MAC address. I can't get mine from anywhere, but on the Hermes thread they would flash the phone with any MAC address and it worked. So probably the MAC address we will use on the EEPROM can be any other and we all can use the same.

Yes, though the first bytes of a MAC address defines the manufacturer and mothel so it is better to create a new one similar to other one. The only risk of cloned MACs is if they are in the same network at level 2

SuperSport
10th November 2009, 10:08 PM
...The only risk of cloned MACs is if they are in the same network at level 2

Which would be extremely unlikely, although, I'd Love to get together with you all over a BIG Pizza some day! :D Then our Service Providers would be calling us all durning Lunch! :eek:

arpcpro
11th November 2009, 06:00 PM
I read through the Hermes thread, but it did not make sense to me. I don't know what PUtty and all that stuff is, or how to use it.

I made a short video that shows how to use putty to connect to Trinity. If we had been able to install a SPL developer edition, we would start with this process to get the eeprom dump:

Trinity_eeprom.mp4 (http://www.fileden.com/files/2009/11/13/2649211/Trinity_eeprom.mp4)
Alternative: utty_connect_to_TrinityP3600.avi (http://www.hotlinkfiles.com/files/2436520_4omq1/utty_connect_to_TrinityP3600.avi)

SuperSport
12th November 2009, 08:41 AM
I made a short video that shows how to use putty to connect to Trinity. If we had been able to install a SPL developer edition, we would start with this process to get the eeprom dump:

utty_connect_to_TrinityP3600.avi (http://www.hotlinkfiles.com/files/2436520_4omq1/utty_connect_to_TrinityP3600.avi)

I see you went through a lot of trouble just to help me understand. Thank you VERY much! Now, I'm going to connect. :D I won't mess around much, just in case...

rs1turbo
12th November 2009, 09:15 AM
Hi, now I can connect the trinity to putty but I have 3 problem:

1 - I can't save the output on a file , for example like in

http://forum.xda-developers.com/showthread.php?t=322225

"me.txt"


2 - and I don't know the address (start snd end) of the radio eprom.

3 - in the trinity there is the comand "lnb" like in hermes???

Thx for all
RS

SuperSport
12th November 2009, 10:03 AM
Hi, now I can connect the trinity to putty but I have 3 problem:

1 - I can't save the output on a file , for example like in

http://forum.xda-developers.com/showthread.php?t=322225

"me.txt"


2 - and I don't know the address (start snd end) of the radio eprom.

3 - in the trinity there is the comand "lnb" like in hermes???

Thx for all
RS

He mentioned that we need a "Special Developer's Edition" SPL to flash to the Trinity first. I'm not sure it exists. My guess would be Olipro would be the one to do this if it's possible.

rs1turbo
12th November 2009, 10:25 AM
ok I understand!!

Olipro help us, please!!!!

sterh
12th November 2009, 11:14 AM
I as experimenting yesterday and tried AGAIN everything of the above, exactly as is in the hermes section.
here's my conclusions
1) putty exe is the same as mtty but in dos,you enter commands and get responces or actions.(name your session as you like, i named mine TRINFCKD)
2) plink saves the the output of putty session (plink TRINFKD > TRIN.nb) to a file (name it as you like,mine was TRIN.nb)
3)finally you get your file with all the data that you entered or your mobile responded (instead of having the output on mtty screen you have everything in a file)

THE POINT IS : a) i cannot flash oli's 2.30 ,b) we dont know the memory adresses to read and make our file or to flash that file.
THE SOLUTIONS : a) if olipro make the same of oli 2.30 but for trinity , b)if somedoby is kind enough to give an eeprom dump to edit and flash, or if we do the Uri Geller's trick,putting the trin in our palm look at it and say Work -Work -Work. He did it with broken watches with success.

CODING GURUS GIVE US SOME HELP, WE STUCK.

arpcpro
12th November 2009, 12:29 PM
...tried AGAIN everything of the above, exactly as is in the hermes section...

Just don't forget that the password for hardSPL 1.x on trinity is different, like gruptnt already mentioned on his post:
http://forum.xda-developers.com/showpost.php?p=4522537&postcount=5

Putty output:
Cmd>password 0000000000000000
Invalid password.
HTCSF kE(HTCEPassWord: 0000000000000000

Cmd>password BsaD5SeoA
Pass.

HTCST HTCEPassWord: BsaD5SeoA

We should use BsaD5SeoA instead of 0000000000000000.
In case we flash Hermes SPL2.30 on trinity then probably we have to use 0000000000000000.

arpcpro
12th November 2009, 01:53 PM
Please ignore my last post. I think that if we have hardSPL1.30 we don't need the password:
http://forum.xda-developers.com/showpost.php?p=1188555&postcount=1

CURRENT FEATURES
-SuperCID
-no file signing required
-no password required to authenticate with bootloader
-rtask commands enabled
-lnb command enabled
-bad NAND can be recovered with "task 2a"
-bad NAND can be recovered by flashing an OS.nb
-SPL protected from all HTC retail SPLs being flashed by accident (to bypass, use SSPL)
-bad NAND can again be checked for with "info 8"
-version displays 1.30.Olipro

Here are the bootloader commands:
http://wiki.xda-developers.com/index.php?pagename=Hermes_BootLoader

Anyway I get 2 errors on my P3600:

Cmd>info 8
...
Block 0x6(6) is BAD block !!!
Block 0x6(6) is Reversed block
...
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block
Block 0x1B6(438) is BAD block !!!

Cmd>checkimage
IPL CRC checksum = 0xCC893E87
SPL CRC checksum = 0xB0A4B5DB
CE CRC checksum = 0xBA1BBB2E
ExtROM is None.
Radio Image CRC checksum = 0x7AEA9EBE

Cmd>info 7

HTC Integrated Re-Flash Utility, Common Base Version : 1.51a
Device Name: T, Bootloader Version : 1.30.Olipro
Built at: Jul 25 2007 02:28:43
Copyright (c) 1998-2007 Olipro & HTC - Hard-SPL (MFG)

CPU ID=0x41129200
Main CPLD version=0xA
Main Board version=0x5

sterh
12th November 2009, 04:27 PM
Please ignore my last post. I think that if we have hardSPL1.30 we don't need the password:
http://forum.xda-developers.com/showpost.php?p=1188555&postcount=1

CURRENT FEATURES
-SuperCID
-no file signing required
-no password required to authenticate with bootloader
-rtask commands enabled
-lnb command enabled
-bad NAND can be recovered with "task 2a"
-bad NAND can be recovered by flashing an OS.nb
-SPL protected from all HTC retail SPLs being flashed by accident (to bypass, use SSPL)
-bad NAND can again be checked for with "info 8"
-version displays 1.30.Olipro

It also states tha bad blocks can be recovered , i tried task 2a and flashing different os.nb many many times

arpcpro
13th November 2009, 12:56 AM
It also states tha bad blocks can be recovered , i tried task 2a and flashing different os.nb many many times

1 - I also noticed that, but did that task2a fix the bad blocks and not the WLAN?

2 - Anyone knows or confirms that these bad blocks (specificaly Block 0x6(6)) is indeed the source of the WLAN ERROR?

3 - Maybe (and hopefully) I was wrong on my previous assumptions when I said we need a special SPL dev. edition. I deducted that based on the experiences of previous posts that someone told the *.nb dump came empty and I also saw that the russians of 4pda.ru were also trying to install 2.30 on trinity.
I'll make a test myself to see if I'm lucky and can read the trinity eeprom after all and will also try to see what comes out of a full backup with this procedure:
BTW, if you want to do a full backup of you FULL eeprom nand at any time, connect as before and type these commands:

plink HERMES > full.nb (hit ENTER twice)
task 32 (hit ENTER once and only once from now on after every command)
password 0000000000000000
set 1e 1
rbmc me.txt 50000000 7fff800

watch your file grow to 128 MB.4 - This hardSPL1.3 we have also seems to support "lnb" command that is the final command they use on the Hermes thread to write the fixed eeprom.

SuperSport
13th November 2009, 06:06 AM
1 - I also noticed that, but did that task2a fix the bad blocks and not the WLAN?

2 - Anyone knows or confirms that these bad blocks (specificaly Block 0x6(6)) is indeed the source of the WLAN ERROR?

3 - Maybe (and hopefully) I was wrong on my previous assumptions when I said we need a special SPL dev. edition. I deducted that based on the experiences of previous posts that someone told the *.nb dump came empty and I also saw that the russians of 4pda.ru were also trying to install 2.30 on trinity.
I'll make a test myself to see if I'm lucky and can read the trinity eeprom after all and will also try to see what comes out of a full backup with this procedure:4 - This hardSPL1.3 we have also seems to support "lnb" command that is the final command they use on the Hermes thread to write the fixed eeprom.

Wow, using your video, I did log in yesterday and played around a bit, but you've gotten MUCH further than I attempted. This does sound like possible good news. Keep us up to date, and again, let me know if you want me to test things on my phone.

My Output:

Cmd>info 8
Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is BAD block !!!
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

Partition[0], type=0x20, start=0x2, total=0xFE
Partition[1], type=0x23, start=0x100, total=0x1400
Partition[2], type=0x25, start=0x1500, total=0x18D00
Partition[3], type=0x4, start=0x1A200, total=0x63200

CE Total Length(with sector info) = 0x3511000
CE CheckSum Length(without sector info) = 0x3440000

Cmd>

info 7

HTC Integrated Re-Flash Utility, Common Base Version : 1.51a
Device Name: T, Bootloader Version : 1.30.Olipro
Built at: Jul 25 2007 02:28:43
Copyright (c) 1998-2007 Olipro & HTC - Hard-SPL (MFG)

CPU ID=0x41129200
Main CPLD version=0xA
Main Board version=0x5

Cmd>

I'm running the Full Backup now. I can't tell for sure, but it appears something is happening. My PC's HD light is flashing constantly. I'm not seeing the File Size grow yet. But I'm guessing this will take quite some time.

EDIT: Nope, nothing saved... Waited for hours...

binht611
13th November 2009, 09:01 AM
you can use opilo 1.30 MFG hard SPL to write *.nb to nand flash. I flashed hermes.nb to my trinity and now it report Herm200 at bootloader:mad:. searching " hard SPL 1.30 MFG" in google.

sterh
13th November 2009, 12:12 PM
Yo people, here's my daily log:

1)you can use opilo 1.30 MFG hard SPL to write *.nb to nand flash. I flashed hermes.nb to my trinity and now it report Herm200 at bootloader:mad:. searching " hard SPL 1.30 MFG" in google.
it shows herm200 but it works??? you have wlan back????

2) i still have oilpro 1.20 ,i was playing with putty and i give you some pieces of logs

Cmd>password BsaD5SeoA
Pass.

HTCST ΪΘHTCEPassWord: BsaD5SeoA (only this pass works for me and not the 16 zeros)

after rbmc command dont put me.txt but only the address

Cmd>rbmc 50000000
GetExtRomData+(): *pszPathName=50000000, dwStartAddress=57600000, dwLength=8C08DAA0
:F=50000000
:A=57600000
:L=8C08DAA0
:rbmc=
HTCS

i tried dozens of combinations for start address and size,and always i got empty logs of 10 MB starting with

HTCS
and ending with

NANDFlashReadSectorWithSectorInfo: dwBlockIndex=0x400
NANDFlashReadSectorWithSectorInfo: Address over boundary!!!
rbmc: read data error at 0x8000000

Cmd>

3) You don't need plink, only with putty you can get the log you want i am attaching pictures
246167

246168

Guys we need memory address and size to get a decent backup of the eeprom and from there we will see

arpcpro
13th November 2009, 02:11 PM
Hey, nice testing I see here on these last posts. Thanks.
I concluded that although the bootloader says "no password required", we still need to authenticate with "password BsaD5SeoA" because otherwise some commands don't work. So it's better to type the password just in case.

On my test I also couldn't download the EEPROM. I get 1 kb file instead of 256kb. Possible causes: Different memory adresses? Empty EEPROM? Inadequate HardSPL1.3???
Maybe someone that was a Trinity with working WLAN and HardSPL1.3 could test the procedure in the video to see if they get a bigger file:
http://www.fileden.com/files/2009/11/13/2649211/Trinity_eeprom.mp4
I didn't know that the putty logging feature did the same as plink when I recorded the video. But if putty logging works, that is much better because we don't need to type blind comands without knowing the output. At least we are making some progress in improving the procedure.

I also tested to download eeprom with different memory addresses starting with 00000000 and ending with FFFFFFFF but nothing usefull came to the log file. Except one time when putty started to output a lot of lines with same character (if there's data, probably will show up different sequence and not just zeros). I tested to change "set 1e 1" to "set x x" randomly without knowing what it was (I thought it selected some memory area). I now know that Type 1E is (RUU command read/write flag : 1(unlock) and 0(lock).) so it's probably ok that way. I'll try some more combinations while reading the "set" manual but I don't expect to find nothing here, just learning.

Can anyone test the "Cmd>checkimage" on a working Trinity to see if appears "ExtROM is None." like appears in mine.

* From binht611 test above we confirm that indeed hardSPL1.3 allows to write the NAND flash of Trinity, sweet :)
Still at open the question if it restored WLAN.

* Too bad that the full backup didn't work yet :(. Nor we have any usefull dump yet. So I support your point "Guys we need memory address and size to get a decent backup of the eeprom and from there we will see" and I will start checking how they were able to discover the addresses during the Hermes investigation.

PS: I already sent here a PM to OliPro on 8th November asking him for guidance and to take a look on this thread. I guess he is on vacation or is very busy guy that receives a lot of PM everyday and didn't noticed mine because no response until now.

SuperSport
13th November 2009, 11:20 PM
Is our EEPROM the same as any other HTC Phone? Can we try downloading a working WLAN from any other phone?

binht611
14th November 2009, 04:30 AM
Yo people, here's my daily log:

1)
it shows herm200 but it works??? you have wlan back????



no, it still report WLAN ERROR in bootloader and my wifi can't turn on. Maybe the NAND adress is not the same.
Now my trinity report invali ID vender when i flash new normal rom. However i still flash new rom with "skip checking id tip :D" but i don't like it.

who can extract new trinity.nb for me to restore origin id vender?. It is nand rom from address 500a0000.

that file look like herme1b.nb at post #33 in this (http://forum.xda-developers.com/showthread.php?t=322225&page=4)topic (page 4)

that file is about 256k.

arpcpro
14th November 2009, 06:11 AM
Is our EEPROM the same as any other HTC Phone? Can we try downloading a working WLAN from any other phone?

It is not the same as any other. So only with very luck we would be able to use the eeprom from a somewhat HTC model.
I think the model that has more similarities with ours is Hermes/Tytn. Trinity shares with Hermes the same chipset, Samsung 400 CPU, ATI chip, similar radio and same Qualcom 6275 chip with GPS One on board (although antenna connections are shorted on hermes), same Qualcomm JNAND Identification block.
We can even use the same commands for the bootloader and radio patch for SIM/CID unlock tool. Artemis also has a similar bootloader but Trinity's SPL is more similar to Hermes SPL. Artemis SPL is different and doesn't have Wi-Fi.

But we already have the working eeprom for Hermes. It is that file herm1b.zip (mentioned on the above post) that contains a usable MAC address. The other file named herm1.zip needs some hex editing to replace the mac address.

I've found a thread regarding Trinity bootloader that seems interesting for us and may be helpfull to find the adresses: http://forum.xda-developers.com/archive/index.php/t-287077.html

************************************************** ************************************************** *
Cmd>ReadExtROM

Dump Ext ROM to MTTY terminal
************************************************** ************************************************** *

Cmd>WLANReset

Usage:
WLANReset 1(or0)
set SDIO: 0-WLAN ;1-SDMC.

Cmd>WLANReset 0
WLANReset(FALSE)

Cmd>WLANReset 1
WLANReset(TRUE)
************************

************************************************** ************************************************** *
Cmd>emapiWlanMac
Notice: This MAC address takes effect only when your platform is EEPRON-less configuration. Please use (emapiTest) to verify it !
Copying GSM DATA image to SDRAM:00004000

Wlan data header ++++++++++++++++++++
Signature : 0xEE1250
UpdateStatus : 0x2
UpdateCount : 0xA
BodyLength : 0x1A1
BodyCRC : 0x4349311B
Wlan data header --------------------------
0x00000000
0x00000009
0x0000002D
0x000000D2
0x000000D5
0x000000FB
**************************************

who can extract new trinity.nb for me to restore origin id vender?. It is nand rom from address 500a0000.

If you explain how to do that I can for sure upload it here. You need me to do this on mine? :
task 32
password BsaD5SeoA
set 1e 1
rbmc me.txt 500a0000 40000

eisbaer82
14th November 2009, 08:33 AM
no, it still report WLAN ERROR in bootloader and my wifi can't turn on. Maybe the NAND adress is not the same.
Now my trinity report invali ID vender when i flash new normal rom. However i still flash new rom with "skip checking id tip :D" but i don't like it.

who can extract new trinity.nb for me to restore origin id vender?. It is nand rom from address 500a0000.

that file look like herme1b.nb at post #33 in this (http://forum.xda-developers.com/showthread.php?t=322225&page=4)topic (page 4)

that file is about 256k.

You only need to open the herm1b.nb in an hex editor and replace HERM200 with TRIN100 and then reflash this file. This worked for me.

sterh
14th November 2009, 10:21 AM
You only need to open the herm1b.nb in an hex editor and replace HERM200 with TRIN100 and then reflash this file. This worked for me.

I did it tried to flash the file according to previous posts (cmd>lnb herm1.nb 500a0000 40000) with mtty and nothing happened (stuck for about 30 minutes).
How did you flash it??
Wich address you used ???
Wich bootloader you have???

gruptnt
14th November 2009, 10:23 AM
you can use opilo 1.30 MFG hard SPL to write *.nb to nand flash. I flashed hermes.nb to my trinity and now it report Herm200 at bootloader:mad:. searching " hard SPL 1.30 MFG" in google.

idem 4 me
but after i have modify herm1.nb

herm200 to trin100

http://forum.xda-developers.com/attachment.php?attachmentid=246459&stc=1&d=1258189978

serial number

http://forum.xda-developers.com/attachment.php?attachmentid=246460&stc=1&d=1258190309

and mac address is equal to pof :D

reflah

and now your trinity return to trin100

gruptnt
14th November 2009, 10:34 AM
into all spl 4 trinity is present password
here an hex of olipro 1.20

http://forum.xda-developers.com/attachment.php?attachmentid=246463&stc=1&d=1258191207

BsaD5SeoA

SuperSport
14th November 2009, 10:44 AM
idem 4 me
but after i have modify herm1.nb

herm200 to trin100

http://forum.xda-developers.com/attachment.php?attachmentid=246459&stc=1&d=1258189978

serial number

http://forum.xda-developers.com/attachment.php?attachmentid=246460&stc=1&d=1258190309

and mac address is equal to pof :D

reflah

and now your trinity return to trin100

So, did it FIX your WLAN?

eisbaer82
14th November 2009, 10:51 AM
I did it tried to flash the file according to hermes post with mtty and nothing happened (stuck for about 30 minutes).How did you flash it??

I used mtty.. Not sure if version 1.42 or 1.16, did it a few weeks ago.. One worked, the other not. Also it seems that it only works under windows xp.

sterh
14th November 2009, 11:06 AM
I used mtty.. Not sure if version 1.42 or 1.16, did it a few weeks ago.. One worked, the other not. Also it seems that it only works under windows xp.

wich address you used??
have your wlan back?? it works???
how long it takes???

this is what i get:


Cmd>password BsaD5SeoA
Pass.
HTCST ÚÈÒHTCEPassWord: BsaD5SeoA
Cmd>lnbs Trin1.nb 500a0000 40000
:F=Trin1.nb
:A=500A0000
:O=00000000
:L=00040000
start NB image downloadSH
Load ADDR: 500A0000 Length: 40000
**ERROR: NO header matched
ERROR: NO header matched
Cert Key Error

Cmd>

gruptnt
14th November 2009, 11:12 AM
So, did it FIX your WLAN?

No!

after i flash with modify herm1.nb

into info 8

block 0x6 no bad !!

but wlan is ko

i have flash other rom
and after more time info 8 return
block 0x6 bad
if i reflash herm1 modify .. not change block bad :(

i have ask to olipro into private msg if can create an spl to read into address eeprom 4 trinity but not respond :(

eisbaer82
14th November 2009, 11:24 AM
wich address you used??
have your wlan back?? it works???
how long it takes???

I've done the things described in the hermes thread.

I doesn't have my WLAN back, it only changed my device id.

gruptnt
14th November 2009, 12:34 PM
ok i reflash with herm1.nb ... 4 me i have edit herm200 to trin100 with hex editor and call file herm5.nb

here what happens

http://forum.xda-developers.com/attachment.php?attachmentid=246504&stc=1&d=1258197942

after with info 8

http://forum.xda-developers.com/attachment.php?attachmentid=246505&stc=1&d=1258197942

NO ERROR !!!

but wlan error

i think address is different to hermes

(lnb command is enable olny olipro 1.30 )

so we have necessity to read address 500a000 40000 but into trinity

how?
"patch the bootloader to allow rbmc at any address"

SuperSport
14th November 2009, 12:48 PM
I've been able to reproduce gruptnt's results. Bad block is fixed for now, but still no WLAN.

gruptnt
14th November 2009, 01:08 PM
I want to ask who has the trinity FULL working
to execute with putty
an task 37 ff
and share log

putty config connection

http://forum.xda-developers.com/attachment.php?attachmentid=246523&stc=1&d=1258200303

putty config log

http://forum.xda-developers.com/attachment.php?attachmentid=246524&stc=1&d=1258200303

my log

http://forum.xda-developers.com/attachment.php?attachmentid=246530&stc=1&d=1258200303

command :

task 32
task 37 ff

Tnks

sterh
14th November 2009, 01:09 PM
I've been able to reproduce gruptnt's results. Bad block is fixed for now, but still no WLAN.

ok it means something overwrite the bad block. Now lets take it from ther one step at a time.
Do you get any mac address in the network settings??
does the wlan turns on through comm manager???

SuperSport
14th November 2009, 01:35 PM
ok it means something overwrite the bad block. Now lets take it from ther one step at a time.
Do you get any mac address in the network settings??
does the wlan turns on through comm manager???

Nope, neither.

Yes, I'm wondering if we are off by a few blocks, or???

konst_kk
17th November 2009, 01:22 PM
Do not use hermes eeprom data (herm1.nb file) as hermes uses ACX100 wlan chip and Trinity TNETW1251. Eerprom length of hermes is 417 bytes long and Trinity is 661.
The most close to trinity eeprom data are from kaiser.

konst_kk
17th November 2009, 01:50 PM
I have an eeprom version that I’ve managed to create from various sources as no one could provide an original one.
Everything works fine, device boot with no problem, checksum is ok, wifi registry parameters are set during boot, windows enable the wifi, light is on, MAC Address is shown,
but.... I can not discover any access point when I turn on the wifi, so I do not know if the eeprom is not totally correct or my device has a H/W problem with the wifi.
Does anyone wants to try out this eeprom ????? or review it and let me know if something is wrong?.

eisbaer82
17th November 2009, 03:21 PM
I have an eeprom version that Ive managed to create from various sources as no one could provide an original one.
Everything works fine, device boot with no problem, checksum is ok, wifi registry parameters are set during boot, windows enable the wifi, light is on, MAC Address is shown,
but.... I can not discover any access point when I turn on the wifi, so I do not know if the eeprom is not totally correct or my device has a H/W problem with the wifi.
Does anyone wants to try out this eeprom ????? or review it and let me know if something is wrong?.

Post it. I try it when I'm home.

konst_kk
17th November 2009, 03:35 PM
In order to write the eeprom you must have oli 1.30 HardSPL, also you will need mtty version 1.16(attached).

Edit the attached .nb file with a hex editor and go to line 1 F850 and modify the last 4 bytes (the ones with FF) and the first byte from line 1 F860 to reflect your previous mac address in reverse(e.g. your mac address was 09 24 34 42 20 you must enter 20 42 34 24 and next line 09), save the file and copy it to the same directory with mtty.

Through the mtty, connect to phone and issue the following commands,
> task 32
>set 1e 1
>lnb <filename>.nb 500a0000 40000
>task 8

NOTICE: YOU MUST EXECUTE THE ABOVE PROCEDURE AT YOU ONE RISK.

eisbaer82
17th November 2009, 03:40 PM
In order to write the eeprom you must have oli 1.30 HardSPL, also you will need mtty version 1.16(attached).

Edit the attached .nb file with a hex editor and go to line 1 F850 and modify the last 4 bytes (the ones with FF) and the first byte from line 1 F860 to reflect your previous mac address in reverse(e.g. your mac address was 09 24 34 42 20 you must enter 20 42 34 24 and next line 09), save the file and copy it to the same directory with mtty.

Through the mtty, connect to phone and issue the following commands,
> task 32
>set 1e 1
>lnb <filename>.nb 500a0000 40000
>task 8

NOTICE: YOU MUST EXECUTE THE ABOVE PROCEDURE AT YOU ONE RISK.


Thanks. I try it as soon as I can.

gruptnt
17th November 2009, 06:52 PM
In order to write the eeprom you must have oli 1.30 HardSPL, also you will need mtty version 1.16(attached).

Edit the attached .nb file with a hex editor and go to line 1 F850 and modify the last 4 bytes (the ones with FF) and the first byte from line 1 F860 to reflect your previous mac address in reverse(e.g. your mac address was 09 24 34 42 20 you must enter 20 42 34 24 and next line 09), save the file and copy it to the same directory with mtty.

Through the mtty, connect to phone and issue the following commands,
> task 32
>set 1e 1
>lnb <filename>.nb 500a0000 40000
>task 8

NOTICE: YOU MUST EXECUTE THE ABOVE PROCEDURE AT YOU ONE RISK.

yes work (mac is on ) but no connect
it is a good step ahead !!!!!!

SuperSport
17th November 2009, 06:52 PM
I have an eeprom version that Ive managed to create from various sources as no one could provide an original one.
Everything works fine, device boot with no problem, checksum is ok, wifi registry parameters are set during boot, windows enable the wifi, light is on, MAC Address is shown,
but.... I can not discover any access point when I turn on the wifi, so I do not know if the eeprom is not totally correct or my device has a H/W problem with the wifi.
Does anyone wants to try out this eeprom ????? or review it and let me know if something is wrong?.

I'd like to try it. Thank you.

Also, I have a working Kaiser, do you think that would help us any?

zoko
17th November 2009, 07:54 PM
yes work (mac is on ) but no connect
it is a good step ahead !!!!!!

the same issue on me!!! yeh good step, wireless on, but not catch any wireless network!!!

konst_kk how do you extract that epprom?? it´s possible to extract from a trinity! because i have a trinity that the wireless work!!!

sterh
17th November 2009, 08:24 PM
Same here ,wifi on ,mac ok correct , but no networks discovered.
I edit and insert all thesettings ip,dns,net key but still nothing.
Comparing your file to herm1.nb i found differences,the chip type that you mentioned, and also your file end at 3fe80 - herm1 stops at 40000 but as you mentioned trin file is bigger "Eerprom length of hermes is 417 bytes long and Trinity is 618" so i believe something is wrong there.

And yes, zoko has a working trinity may with the correct instruction he can make a dump of the eeprom.

zoko
17th November 2009, 08:30 PM
Same here ,wifi on ,mac ok correct , but no networks discovered.
I edit and insert all thesettings ip,dns,net key but still nothing.
Comparing your file to herm1.nb i found differences,the chip type that you mentioned, and also your file end at 3fe80 - herm1 stops at 40000 but as you mentioned trin file is bigger "Eerprom length of hermes is 417 bytes long and Trinity is 618" so i believe something is wrong there.

And yes, zoko has a working trinity may with the correct instruction he can make a dump of the eeprom.

i will try whatever ppl wont to... sorry my english

konst_kk
17th November 2009, 08:36 PM
the same issue on me!!! yeh good step, wireless on, but not catch any wireless network!!!

konst_kk how do you extract that epprom?? its possible to extract from a trinity! because i have a trinity that the wireless work!!!

I've done it a long time ago by using the hermes procedure and if I remember well,one of hermes spl. But I can not help you out as I do not remember any details in order to describe a safe procedure. Sorry..

konst_kk
17th November 2009, 08:41 PM
I'd like to try it. Thank you.

Also, I have a working Kaiser, do you think that would help us any?

I don't think that kaiser eeprom will help us more as I have already study kaiser eeprom for 3 months, but thanks anyway.

SuperSport
17th November 2009, 08:47 PM
I don't think that kaiser eeprom will help us more as I have already study kaiser eeprom for 3 months, but thanks anyway.

No Problem. So, can somebody walk zoko through the process of dumping his EEPROM? Sounds like he's willing if he is told how to. I'm understand that he has TWO Trinitiy's, one working, and one not?

eisbaer82
17th November 2009, 08:48 PM
yes work (mac is on ) but no connect
it is a good step ahead !!!!!!

Same result here

gruptnt
17th November 2009, 09:38 PM
ok
if we can grab eeprom on working trinity can be rewrite on trinity with wlan error because olipro 1.30 is enable command (lnb)

now i think we ask to olipro to create an olipro 1.xx 4 enable read 500a0000

...

zoko
18th November 2009, 01:27 AM
No Problem. So, can somebody walk zoko through the process of dumping his EEPROM? Sounds like he's willing if he is told how to. I'm understand that he has TWO Trinitiy's, one working, and one not?

yes i have two trinity one with working wireless and another not! I dont understand anything about this, so any help i apreciate!

sterh
18th November 2009, 07:31 AM
Hey Brothers in despair,
have a look at this post http://forum.xda-developers.com/search_rop.php?searchid=30397068 ,is for the prophet but i think that the utils and the methodology can help us out.
I haven't finish reading and testing,but if i have something new i'll post it.

SuperSport
18th November 2009, 09:31 AM
Hey Brothers in despair,
have a look at this post http://forum.xda-developers.com/search_rop.php?searchid=30397068 ,is for the prophet but i think that the utils and the methodology can help us out.
I haven't finish reading and testing,but if i have something new i'll post it.

Can you check the link again? It's not working the way posted. Thanks! ;)

eisbaer82
18th November 2009, 09:38 AM
Here is some info: What we need is the correct so called "nvs" or callibration file for our trinitys. In the .nb file, the file is found at offset 1F840 and starts with the header 0x02 0x11 0x56 0x06 0x1C 0x06.

Some resources:

http://www.htc-linux.org/wiki/index.php?title=WL1251
http://wiki.openmoko.org/wiki/Openmoko_on_HTC-Dream#WLAN

sterh
18th November 2009, 10:13 AM
Can you check the link again? It's not working the way posted. Thanks! ;)

reposting http://forum.xda-developers.com/showthread.php?t=354848&highlight=reflashing

gruptnt
19th November 2009, 10:36 PM
yes i have two trinity one with working wireless and another not! I dont understand anything about this, so any help i apreciate!

you have an pm

mi7
19th November 2009, 10:51 PM
Ita
ciao gruptnt, anche a me non va il wifi (neanche con la rom ufficiale) ho un errore :
Cmd>info 8
Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is BAD block !!!
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

ti chiedo come si pu ripristinare ?scusa ma non conosco bene l' inglese

eng
gruptnt hello, even I do not go on wifi (even with roms
Journal) I get an error:
Cmd> info 8
Block 0x0 (0) is Reversed block
Block 0x1 (1) is Reversed block
Block 0x2 (2) is Reversed block
Block 0x3 (3) is Reversed block
Block 0x4 (4) is Reversed block
Block 0x5 (5) is Reversed block
Block 0x6 (6) is BAD block!
Block 0x6 (6) is Reversed block
Block 0x7 (7) is Reversed block
Block 0x8 (8) is Reversed block
Block 0x9 (9) is Reversed block
Block 0xA (10) is Reversed block
Block 0xB (11) is Reversed block
Block 0xC (12) is Reversed block

I wonder how you can restore? sorry but I do not know well 's
english

zoko
19th November 2009, 10:55 PM
I want to ask who has the trinity FULL working
to execute with putty
an task 37 ff
and share log

putty config connection

http://forum.xda-developers.com/attachment.php?attachmentid=246523&stc=1&d=1258200303

putty config log

http://forum.xda-developers.com/attachment.php?attachmentid=246524&stc=1&d=1258200303

my log

http://forum.xda-developers.com/attachment.php?attachmentid=246530&stc=1&d=1258200303

command :

task 32
task 37 ff

Tnks



here is my log hope ppl found a solution!!! keep in touch

SuperSport
20th November 2009, 02:42 AM
Is this what we needed? I figured we needed a dump of a working eeprom. But I'm along for the ride, so I really don't know... :o

sterh
20th November 2009, 07:52 AM
Starting from this link http://forum.xda-developers.com/showthread.php?t=354848&highlight=reflashing i start reading (brought me back to my high school years) and follow links ,finally i managed to dump my rom with pdocread -easy to do- and now i have four files Part00.raw, Part01.raw.......Part02.raw.
I also found in the ftp-uploads section dumps of original roms and downloaded 3 of them , comparing the files my Part00 and uploaded Part00 are exactly the same in size all of them,Part01 mine is bigger in size ( all 3 others have exactly the same size) ,parts 02 and 03 are different from rom to rom.
If i am not wrong in part01 is were the mac and the wifi settings sits. Now i am trying to find a way to flash a downloaded Part01 to my phone but i'm stuck,i don't know how to flash a raw file or if i have to convert it and how to do that, i also pm'd the guy who gave the instructions in the above link but had no answer yet.

arpcpro
20th November 2009, 02:06 PM
Nice findings on that post. But if the guy you're talking about is "paradis_pal" I'm afraid you wont get an answer from him. His last post was on 4th February 2008, and I see banned in the status. Probably he is still around here but using other nickname.

Regarding the raw files, I don't know if they are binary. Because binary seems pretty raw to me, just 1s and 0s. But if they were dumped with pdocread its worth trying to use pdocwrite to flash them.

-That dump you made "part01", is from a working Trinity?
-Can you upload it here and tell me the command and parameters you used to dump that?

Thanks

sterh
20th November 2009, 07:04 PM
"Paradis_pal" was banned but "paradis_pal(again)" logged in last july 2009, hope he'll answer.However for the dumped roms try this one from : ftp://xda:xda@ftp.xda-developers.com/Uploads/Trinity/Dumped_Trinity_Vodafone_WWE_1.23.405.zip .hope it works as i had no way to flash it and check it, 'cause with pdocwrite had no luck at all.

zoko
20th November 2009, 08:29 PM
i found this reconstruck process for polaris, that´s work on trinity!!!
http://www.planete-htc.com/index.php?mod=forum&ac=voir&cat=151&id=11915

SuperSport
20th November 2009, 09:19 PM
i found this reconstruck process for polaris, thats work on trinity!!!
http://www.planete-htc.com/index.php?mod=forum&ac=voir&cat=151&id=11915

Do you mean your WLAN now works again?

zoko
20th November 2009, 10:29 PM
Do you mean your WLAN now works again?

i dint try because i dont no how obtain begin.bin and relleno.bin, and probably is device depend!

gruptnt
21st November 2009, 12:32 AM
ok
this is task 32 ff
on working trinity


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x692ea986


this is task 32 ff
on not working trinity


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=FF FF FF FF FF
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature Old=51 12 EE 0 2
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x6c3ac9a9


now i have downgrade with an no gps rom

Operator Language CID ROM BootLoader Radio GPS
TIM* Italian HTC__405 1.20.408.1 1.07.0000 1.25.00.00 NO


now this is task 37 ff


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL] Kernel: EEPROM1 Checksum=0x4d272fa3
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature Old=FF FF FF FF FF
[K :: KERNEL] Write WLANBackup Data
[K :: KERNEL] HTC Nand Write!
[K :: KERNEL] Write Nand Success
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x4c41d58c


:eek::eek::eek:

gruptnt
21st November 2009, 01:01 AM
ok
this is task 32 ff
on working trinity


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x692ea986


this is task 32 ff
on not working trinity


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=FF FF FF FF FF
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature Old=51 12 EE 0 2
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x6c3ac9a9


now i have downgrade with an no gps rom

Operator Language CID ROM BootLoader Radio GPS
TIM* Italian HTC__405 1.20.408.1 1.07.0000 1.25.00.00 NO


now this is task 37 ff


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL] Kernel: EEPROM1 Checksum=0x4d272fa3
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature Old=FF FF FF FF FF
[K :: KERNEL] Write WLANBackup Data
[K :: KERNEL] HTC Nand Write!
[K :: KERNEL] Write Nand Success
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x4c41d58c


:eek::eek::eek:


reupgrade rom with gps on
task 37 ff
result = look up

and look now


[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x4c41d58c


no old signature !!
:eek::eek:

zoko
21st November 2009, 04:12 AM
and you have wi-fi ok with this process??

gruptnt
21st November 2009, 09:03 AM
and you have wi-fi ok with this process??

:( no

but i think is important to discover why and when

strange we are more and more numerous that have this problem

SuperSport
21st November 2009, 09:31 AM
:( no

but i think is important to discover why and when

strange we are more and more numerous that have this problem

I keep thinking the same thing. Either it's the age of our phones, the number of flashes we've done, or something in the latest ROMs that triggers it. Although, I've seen it reported as early as 1-2 years ago.

I think mine happened when I pulled the usb cable during a Radio or SPL Flash. I did it intentionally, trying to replicate this problem. Never thought I'd be stuck this way for so long... :o

gruptnt
21st November 2009, 09:47 AM
I keep thinking the same thing. Either it's the age of our phones, the number of flashes we've done, or something in the latest ROMs that triggers it. Although, I've seen it reported as early as 1-2 years ago.

I think mine happened when I pulled the usb cable during a Radio or SPL Flash. I did it intentionally, trying to replicate this problem. Never thought I'd be stuck this way for so long... :o

but

[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL] Kernel: EEPROM1 Checksum=0x4d272fa3
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature Old=FF FF FF FF FF
[K :: KERNEL] Write WLANBackup Data
[K :: KERNEL] HTC Nand Write!
[K :: KERNEL] Write Nand Success
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x4c41d58c

autorepair ?

SuperSport
21st November 2009, 09:57 AM
but

[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] GetModelName- 84,82, Name is TRIN100
[K :: KERNEL] Nand_CheckBackup
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
[K :: KERNEL] Kernel: EEPROM1 Checksum=0x4d272fa3
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] Kernel: EEPROM signature Old=FF FF FF FF FF
[K :: KERNEL] Write WLANBackup Data
[K :: KERNEL] HTC Nand Write!
[K :: KERNEL] Write Nand Success
[K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x4c41d58c

autorepair ?

What do you mean? You think it fixed itself?

gruptnt
21st November 2009, 10:09 AM
What do you mean? You think it fixed itself?

i have explain what i made

i'm no force nothing

i dont understand why in determined conditions
with info 8
return 0x6 bad !
(i sent you an pm remember?)

why after lbn command
exist 2 signature

but now .. only one
and correct !!

yes i think with command task 37 ff
(test all hw with wce i think)
force nand
and this is an example !

gruptnt
21st November 2009, 10:26 AM
i dont understand why in determined conditions
with info 8
return 0x6 bad !
(i sent you an pm remember?)



now i have repeated "determined conditions"
but is ok !!! no return 0x06 bad
correction :
if force to go in bootloader
"wlan error"

.. but wlan can turn on and mac is present
and
good signature

sterh
21st November 2009, 11:23 AM
Hey people,
the whole thing with the wlan is obsessive, yesterday after a long bike ride it hit me.
Having bad blocks , we fixed it.......OK
We missed the mac,we restored it..OK
Wifi could not turn on ,we fixed it...OK
Network access impossible.............???,
By restoring the part Konst_kk posted we fixed some things wich i believe were only the tip of the iceberg, but probably we missing alot more like drivers or other settings hiden to us.
There are many parts in a rom (ipl,spl,boot,gsm,radio,os,extended rom) but were the whole network thing sits?? most probably in boot or gsm parts.
So i started to search about rom cooking, to separate these parts and use only what we need boot or gsm .
Am i in the right direction or not??

gruptnt
21st November 2009, 06:09 PM
What do you mean? You think it fixed itself?

yes!
i think with an particular procedure but i want to verify on trinity no working
without modify (no lnb)

gruptnt
21st November 2009, 10:07 PM
Hey people,
the whole thing with the wlan is obsessive, yesterday after a long bike ride it hit me.
Having bad blocks , we fixed it.......OK
We missed the mac,we restored it..OK
Wifi could not turn on ,we fixed it...OK
Network access impossible.............???,
By restoring the part Konst_kk posted we fixed some things wich i believe were only the tip of the iceberg, but probably we missing alot more like drivers or other settings hiden to us.
There are many parts in a rom (ipl,spl,boot,gsm,radio,os,extended rom) but were the whole network thing sits?? most probably in boot or gsm parts.
So i started to search about rom cooking, to separate these parts and use only what we need boot or gsm .
Am i in the right direction or not??

into all rom 4 trinity
is present this file
Fw1251r1c.bin

in old kitchen like romdonalds is present into dump
in new kitchen is present into OEM\Trinity\COMMON\OEMDrivers

into google search i have found this
http://www.htc-linux.org/wiki/index.php?title=WL1251
but is for linux ???



Loading the TIWLAN driver is done in two steps:

Load the module (wlan.ko)
Use wlan_loader to load the firmware file (Fw1251r1c.bin), the ini file (tiwlan.ini), and the calibration file
[edit] Calibration File
The calibration is a 752-byte file that is burned into the device's NAND flash at the factory, and contains the WiFi MAC address, among other things. Every model puts the calibration at a different offset in the flash, and the OS is responsible for extracting it from flash and presenting it to wlan_loader.


i have controlled
this file is present into first original htc rom wm5
and into wm6.5 the chef they leave unchanged into cooking rom
in fact these file is equal 4 all rom

zoko
21st November 2009, 10:44 PM
if the calibration file is inserted in a diferent offset on every model, there´s no general solution!? or there is?

zoko
21st November 2009, 10:45 PM
if the calibration file is inserted in a diferent offset on every model, theres no general solution!? or there is?

gruptnt
21st November 2009, 11:09 PM
ok
into oem etc etc
there is 2 module

TNETW1251.dll
and

OEM_FLASHDRV.DLL


into hex of tnetw1251.dll


000005a0h: 52 65 64 6F 20 46 57 20 64 6F 77 6E 6C 6F 61 64 ; Redo FW download
000005b0h: 2E 2E 2E 0D 0A 00 00 00 52 65 67 69 73 74 65 72 ; ........Register
000005c0h: 20 57 4C 41 4E 20 69 6E 74 65 72 72 75 70 74 2E ; WLAN interrupt.
000005d0h: 2E 2E 0D 0A 00 00 00 00 4F 75 74 2E 2E 2E 63 6F ; ........Out...co
000005e0h: 6E 66 69 67 4D 67 72 20 66 75 6E 63 74 69 6F 6E ; nfigMgr function
000005f0h: 20 66 61 69 6C 0D 0A 00 4F 75 74 2E 2E 2E 63 6F ; fail...Out...co
00000600h: 6E 66 69 67 4D 67 72 5F 63 6F 6E 66 69 67 20 66 ; nfigMgr_config f
00000610h: 61 69 6C 0D 0A 00 00 00 4F 75 74 2E 2E 2E 63 6F ; ail.....Out...co
00000620h: 6E 66 69 67 4D 67 72 5F 46 57 44 6F 77 6E 6C 6F ; nfigMgr_FWDownlo
00000630h: 61 64 20 66 61 69 6C 0D 0A 00 00 00 4F 75 74 2E ; ad fail.....Out.
00000640h: 2E 2E 63 6F 6E 66 69 67 4D 67 72 5F 63 72 65 61 ; ..configMgr_crea
00000650h: 74 65 20 66 61 69 6C 65 64 2E 0D 0A 00 00 00 00 ; te failed.......
00000660h: 45 45 50 52 4F 4D 20 6C 65 6E 67 74 68 20 3D 20 ; EEPROM length =
00000670h: 25 64 0D 0A 00 00 00 00 4F 75 74 2E 2E 2E 52 65 ; %d......Out...Re
00000680h: 73 4F 70 65 6E 49 6D 61 67 65 46 69 6C 65 73 20 ; sOpenImageFiles
00000690h: 46 61 69 6C 21 21 0D 0A 00 00 00 00 52 65 73 47 ; Fail!!......ResG


so i suppose if into this dll is present more message regarding firmware ...
wm can flash this firmware ?!?!


00000809h: 2E 4E 6F 20 72 65 73 70 6F 6E 73 65 20 66 72 6F ; .No response fro
00000819h: 6D 20 63 68 69 70 21 21 0D 0A 00 45 45 50 52 4F ; m chip!!...EEPRO
00000829h: 4D 20 73 69 67 6E 61 74 75 72 65 20 3D 20 25 73 ; M signature = %s
00000839h: 0D 0A 00 4F 75 74 2E 2E 2E 4E 4F 20 45 45 50 52 ; ...Out...NO EEPR
00000849h: 4F 4D 20 4E 4F 20 57 4C 41 4E 21 21 28 76 61 6C ; OM NO WLAN!!(val
00000859h: 75 65 3D 25 73 29 0D ; ue=%s).



00000ce2h: 43 6F 75 6C 64 20 6E 6F 74 20 6F 70 65 6E 20 66 ; Could not open f
00000cf2h: 69 72 6D 77 61 72 65 20 69 6D 61 67 65 20 66 69 ; irmware image fi
00000d02h: 6C 65 28 45 72 72 3D 30 78 25 58 29 0D 0A 00 00 ; le(Err=0x%X)....
00000d12h: 00 00 46 00 77 00 31 00 32 00 35 00 31 00 72 00 ; ..F.w.1.2.5.1.r.
00000d22h: 31 00 63 00 2E 00 62 00 69 00 6E 00 00 00 ; 1.c...b.i.n...

nikitto
22nd November 2009, 12:06 AM
Hi all

I can see the same text "WLAN ERROR" in my bootloader screen. I also get the same bad block, using putty:

=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2009.11.21 22:40:04 =~=~=~=~=~=~=~=~=~=~=~=
task 32
Level = 0

Cmd>info 8
Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is BAD block !!!
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

Partition[0], type=0x20, start=0x2, total=0xFE
Partition[1], type=0x23, start=0x100, total=0x1600
Partition[2], type=0x25, start=0x1700, total=0x1C900
Partition[3], type=0x4, start=0x1E000, total=0x5F600

CE Total Length(with sector info) = 0x3CF0000
CE CheckSum Length(without sector info) = 0x3C00000

I've got the file, Fw1251r1c.bin, into my OEMDrivers folder and/or wifi works properly. But I don't understand why I can see the message.

gruptnt
22nd November 2009, 12:11 AM
Hi all

I can see the same text "WLAN ERROR" in my bootloader screen. I also get the same bad block, using putty:

=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2009.11.21 22:40:04 =~=~=~=~=~=~=~=~=~=~=~=
task 32
Level = 0

Cmd>info 8
Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is BAD block !!!
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

Partition[0], type=0x20, start=0x2, total=0xFE
Partition[1], type=0x23, start=0x100, total=0x1600
Partition[2], type=0x25, start=0x1700, total=0x1C900
Partition[3], type=0x4, start=0x1E000, total=0x5F600

CE Total Length(with sector info) = 0x3CF0000
CE CheckSum Length(without sector info) = 0x3C00000

I've got the file, Fw1251r1c.bin, into my OEMDrivers folder and/or wifi works properly. But I don't understand why I can see the message.

your wifi it works correctly. !!!???

nikitto
22nd November 2009, 12:41 AM
your wifi it works correctly. !!!???

Yes, it does.

249178249179

Can I have a different problem with this WLAN ERROR ? If not, I don't understand why I can use my wireless network at home.

SuperSport
22nd November 2009, 12:45 AM
Yes, it does.

249178249179

Can I have a different problem with this WLAN ERROR ? If not, I don't understand why I can use my wireless network at home.

So, maybe chasing error 6 is just a ghost and not related to our problem? Maybe it exists in all working Trinity's?

gruptnt
22nd November 2009, 12:56 AM
Yes, it does.

249178249179

Can I have a different problem with this WLAN ERROR ? If not, I don't understand why I can use my wireless network at home.

ok 4 security i suggestion u

1 do NOT execute task 37 ff
2 do NOT unplug battery and execute bootloader

when you are yourself shrewed error and what you had made before?

nikitto
22nd November 2009, 01:05 AM
So, maybe chasing error 6 is just a ghost and not related to our problem? Maybe it exists in all working Trinity's?

Maybe ... someone with a Trinity without the message can give it a try !

As, gruptnt explained in his post #108, I've got the same result after the 'task 37 ff' command:

11/19/2009 10:10:07 [K :: KERNEL] GetModelName- 84,82, Name is TRIN100
11/19/2009 10:10:07 [K :: KERNEL] Nand_CheckBackup
11/19/2009 10:10:07 [K :: KERNEL] HTC Nand Read!
11/19/2009 10:10:07 [K :: KERNEL] Kernel: EEPROM signature=FF FF FF FF FF
11/19/2009 10:10:07 [K :: KERNEL] HTC Nand Read!
11/19/2009 10:10:07 [K :: KERNEL] Kernel: EEPROM signature Old=51 12 EE 0 2
11/19/2009 10:10:07 [K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x18d9830

@gruptnt: If you want to share your "
Operator Language CID ROM BootLoader Radio GPS
TIM* Italian HTC__405 1.20.408.1 1.07.0000 1.25.00.00 NO " I'll give it a try, and I'll report about results.

nikitto
22nd November 2009, 01:28 AM
ok 4 security i suggestion u

1 do NOT execute task 37 ff
2 do NOT unplug battery and execute bootloader

when you are yourself shrewed error and what you had made before?

There's no problem doing these things. I get the same result after.

But, I've discovered something strange. I can manager the wifi connection in Settings-Connections, but in Advanced, the Wireless Lan is showed as disabled, although, I can enabled it there.

gruptnt
22nd November 2009, 01:28 AM
So, maybe chasing error 6 is just a ghost and not related to our problem? Maybe it exists in all working Trinity's?

0x6 is BAD block
i think yes !
error eeprom signature !

if u execute task 37 ff
11/19/2009 10:10:07 [K :: KERNEL] GetModelName- 84,82, Name is TRIN100
11/19/2009 10:10:07 [K :: KERNEL] Nand_CheckBackup
11/19/2009 10:10:07 [K :: KERNEL] HTC Nand Read!
11/19/2009 10:10:07 [K :: KERNEL] Kernel: EEPROM signature=FF FF FF FF FF
11/19/2009 10:10:07 [K :: KERNEL] HTC Nand Read!
11/19/2009 10:10:07 [K :: KERNEL] Kernel: EEPROM signature Old=51 12 EE 0 2
11/19/2009 10:10:07 [K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x18d9830


before i tell u i'm not responsible is your risk :

i think with this procedure u execute an "cold reset"

1 connect usb cable and disable into activesync usb connection

2 unplug battery
(led red)

3 plug battery + enter directly into bootloader

with putty execute task 32
task 37 ff

if u read putty.log

this is result

Cmd>task 32
task 32
Level = 0

Cmd>task 37 ff
task 37 ff
Read=0x0, Write=0x454, Buffer=0xAC100000
Windows CE Kernel for ARM (Thumb Enabled) Built on Mar 1 2008 at 16:28:43
ProcessorType=0920 Revision=0
sp_abt=ffff1000 sp_irq=ffff0800 sp_undef=ffffc800 OEMAddressTable = 800011bc
[K :: KERNEL] +InitMemSetting()
[K :: KERNEL] +InitDrvGlobal()
OEMClockFreq=124890 , PWM4High=125, PWM4Low=123
[K :: KERNEL] +SystemInitCharging...
[K :: KERNEL] CC_BIT_SYS_STATUS[1]
[K :: KERNEL] Loop in System-Init charging.
[K :: KERNEL] +IsExtRTCColdBoot
Restore from Ext RTC
[K :: KERNEL] PMICKernelCharging Ok --- add=0x06,val=0xc,retry=0.
[K :: KERNEL] Set to 100MHz done
[K :: KERNEL] Power-Button pressed .....
[K :: KERNEL] Power-Button pressed .....
[K :: KERNEL] Power-Button pressed .....
[K :: KERNEL] Power-Button pressed .....
[K :: KERNEL] Power-Button pressed .....
[K :: KERNEL] -SystemInitCharging...
BSP Version : V 3.6.5.23506
[K :: KERNEL] H/W reset Graphic chip
[K :: KERNEL] +H/W reset Graphic

[K :: KERNEL] -H/W reset Graphic

-BoardInit,Date, Time is 11/22 1:15:8
[K :: KERNEL] Lcm_GetSource(): hitachi
[K :: KERNEL] GC Chip ID is 0x1002
[K :: KERNEL] HTC Nand Read!


4 push button reset and load windows mobile when windows mobile start enter into bootloader

5 execute fask 32 task 37 ff

and 4 me (i resolved problem signature)


] HWBoardVersion=5
11/22/2009 01:21:16 [K :: KERNEL] HTC Nand Read!
11/22/2009 01:21:16 [K :: KERNEL] GetModelName- 84,82, Name is TRIN100
11/22/2009 01:21:16 [K :: KERNEL] Nand_CheckBackup
11/22/2009 01:21:16 [K :: KERNEL] HTC Nand Read!
11/22/2009 01:21:16 [K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2


this is all

but i wait if there is news !
because i don't understand if
the backup nand is the nand corrupted !!!!


good night here 1.36 am :D
if there is news i'm read at 9:00 am
:D

gruptnt
22nd November 2009, 01:46 AM
There's no problem doing these things. I get the same result after.

But, I've discovered something strange. I can manager the wifi connection in Settings-Connections, but in Advanced, the Wireless Lan is showed as disabled, although, I can enabled it there.

which rom u have installed

nikitto
22nd November 2009, 02:00 AM
Nothing has changed for me. :(

@gruptnt: It's a Spanish ROM. NiAx. My own ROM.

@SuperSport: Can you share your folder nk.exe ? THX

SuperSport
22nd November 2009, 07:43 AM
Nothing has changed for me. :(

@gruptnt: It's a Spanish ROM. NiAx. My own ROM.

@SuperSport: Can you share your folder nk.exe ? THX

Surely, please find it Zipped and attached. Just unzip and copy to the "OEMXipKernel" folder.

Remember, until another fix is found, follow the directions found in this post:

http://forum.xda-developers.com/showpost.php?p=4993582&postcount=26

gruptnt
22nd November 2009, 11:35 AM
Nothing has changed for me. :(

@gruptnt: It's a Spanish ROM. NiAx. My own ROM.

@SuperSport: Can you share your folder nk.exe ? THX

ok i recrash my trinity 4 see procedure

nikitto
22nd November 2009, 11:39 AM
Surely, please find it Zipped and attached. Just unzip and copy to the "OEMXipKernel" folder.

Remember, until another fix is found, follow the directions found in this post:

http://forum.xda-developers.com/showpost.php?p=4993582&postcount=26

thanks mate

zoko
22nd November 2009, 01:08 PM
here´s my procedure.
1. i´ve installed WM 6.5 ROM WM6.5 23506 by supersport, Wlan error on booloader again, but turn on, and no wireless networks found.
2. after i put the trin.nb by lnb command, wlan error disapear
3. task 37 ff....

[K :: KERNEL] +IsExtRTCColdBoot
Restore from Ext RTC
-BoardInit,Date, Time is 11/22 0:0:9
[K :: KERNEL] Lcm_GetSource(): hitachi
[K :: KERNEL] GC Chip ID is 0x1002
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] HTC Nand Read!
[K :: KERNEL] 1ST Timestamp: 0x1df3678
[K :: KERNEL] SetPWMCycle:45
11/22/2009 11:48:08 [K :: KERNEL] +PMICInit
11/22/2009 11:48:08 [K :: KERNEL] PMIC Init Ok --- add=0x06,val=0x1c,retry=0.
11/22/2009 11:48:08 [K :: KERNEL] Set to 400MHz done
11/22/2009 11:48:08 [K :: KERNEL] -PMICInit
11/22/2009 11:48:08 [K :: KERNEL] +BootRadio
11/22/2009 11:48:08 [K :: KERNEL] -BootRadio
11/22/2009 11:48:08 [K :: KERNEL] HTC Nand Read!
11/22/2009 11:48:08 [K :: KERNEL] ColdBoot Tag - 0x6544,0x6976, Name is DvcClBo
11/22/2009 11:48:08 [K :: KERNEL] Cold Boot Tag Detected, set default date
11/22/2009 11:48:08 [K :: KERNEL] +GetHardwareVersion
11/22/2009 11:48:08 [K :: KERNEL] byMainCpldVersion=5
11/22/2009 11:48:08 [K :: KERNEL] HWBoardVersion=5
11/22/2009 11:48:08 [K :: KERNEL] HTC Nand Read!
11/22/2009 11:48:08 [K :: KERNEL] GetModelName- 84,82, Name is TRIN100
11/22/2009 11:48:08 [K :: KERNEL] Nand_CheckBackup
11/22/2009 11:48:08 [K :: KERNEL] HTC Nand Read!
11/22/2009 11:48:08 [K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
11/22/2009 11:48:08 [K :: KERNEL] Kernel: EEPROM1 Checksum=0x87eae4b7
11/22/2009 11:48:08 [K :: KERNEL] HTC Nand Read!
11/22/2009 11:48:08 [K :: KERNEL] Kernel: EEPROM signature Old=51 12 EE 0 2
11/22/2009 11:48:08 [K :: KERNEL] Kernel: EEPROM2 Checksum=0x80c5adde
11/22/2009 11:48:08 [K :: KERNEL] Write WLANBackup Data
11/22/2009 11:48:08 [K :: KERNEL] HTC Nand Write!
11/22/2009 11:48:09 [K :: KERNEL] Write Nand Success
11/22/2009 11:48:09 [K :: KERNEL]

4. revert to Wm.6.1 my self cooked ROM.´

5. another find, i cooked a W.M. 6.1 ROM with the nk.exe from super super, and guess what!??! Wlan ERROR shows again in bootloader! strange

nikitto
22nd November 2009, 01:40 PM
...
2. after i put the trin.nb by lnb command, wlan error disapear
...


Can you explain a little more this point ? Can you share the correct trin.nb ?

Thanks in advance.

nikitto
22nd November 2009, 01:44 PM
@SuperSport: I gave, your nk.exe, a try, but I got the same total RAM as my own nk.exe.

Maybe, the difference is in other place. Because, I did dan's15 modification, as well. But, with the same result.

Best regards !

zoko
22nd November 2009, 03:21 PM
in post #81 there is a trin eeprom, that correct the message Wlan error in bootloader! this is usefull for ppl that´s had that message but has the wireless ok! for ppl that no obtain wireless networks, just correct the nand no solve the problem!

nikitto
22nd November 2009, 03:54 PM
Yes, I solved the problem. No more WLAN ERROR in my bootloader screen:

11/22/2009 15:44:41 [K :: KERNEL] GetModelName- 84,82, Name is TRIN100
11/22/2009 15:44:41 [K :: KERNEL] Nand_CheckBackup
11/22/2009 15:44:41 [K :: KERNEL] HTC Nand Read!
11/22/2009 15:44:41 [K :: KERNEL] Kernel: EEPROM signature=51 12 EE 0 2
11/22/2009 15:44:41 [K :: KERNEL]
OEMInit: The CRC Checksum of 2M is 0x8494d300
11/22/2009 15:44:41 [K :: KERNEL] +ShowGSMVersion()
11/22/2009 15:44:41 [K :: KERNEL] +SCInitSerial

------------------

Cmd>info 8
Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

Partition[0], type=0x20, start=0x2, total=0xFE
Partition[1], type=0x23, start=0x100, total=0x1600
Partition[2], type=0x25, start=0x1700, total=0x1C900
Partition[3], type=0x4, start=0x1E000, total=0x5F600

CE Total Length(with sector info) = 0x3CF0000
CE CheckSum Length(without sector info) = 0x3C00000

But now, the wireless really doesn't work. :confused:

I'm going to install a wm6.1 rom, and I'll report results.

Edit: I made a mistake. I didn't change the MAC. I'm going to repeat the process.

EDit2: Now I've got the right MAC, but it doesn't work any way.

SuperSport
22nd November 2009, 10:34 PM
@SuperSport: I gave, your nk.exe, a try, but I got the same total RAM as my own nk.exe.

Maybe, the difference is in other place. Because, I did dan's15 modification, as well. But, with the same result.

Best regards !

In the Extra RAM thread, notice my two screen shots of before and after. During the cooking, it does not show extra ram, but in the RAM Info screen in WM, it shows the extra RAM.

SuperSport
22nd November 2009, 10:41 PM
1. ive installed WM 6.5 ROM WM6.5 23506 by supersport, Wlan error on

Ok, I was told by a freind that possibly my RUU Updater was the cause of the WLAN going out. Could that be the problem? I'm using the same one as in Tomme45i's Kitchen, and I'm sure he did not create it, but got it from someone else. I'm sure it's being used in many places.

But, the version I'm using does require you to flash from the Boot Screen or it crashes during flashing from within WM. As I always flash from the boot screen, I never experienced the crash before this testing.

Any input as to whether this could be causing the WLAN to die? I don't want to hurt anybody's phones, and would like to take the appropriate measures to prevent it.

@ nikitto. It sounds like you've done like myself and played with this enough to where the WLAN goes out for good. :( My WLAN was working fine, but I intentionally broke it trying to help figure out a fix for others. I don't mind, but I sure hope there is a fix on the horizon. :confused:

SuperSport
22nd November 2009, 10:46 PM
5. another find, i cooked a W.M. 6.1 ROM with the nk.exe from super super, and guess what!??! Wlan ERROR shows again in bootloader! strange

Are you refering to the Extra RAM nk.exe? This WLAN error was happening before I ever tried the new nk.exe file.

Could it be the WM 6.5 nk.exe that is causing this? Maybe it's not fully compatible with our Trinity's? Does the nk.exe have anything to do with WLAN? Does it load anything that is related?

nikitto
22nd November 2009, 10:58 PM
@SuperSport: We follow there.


@All: Any other solution ?

nikitto
22nd November 2009, 11:02 PM
@ nikitto. It sounds like you've done like myself and played with this enough to where the WLAN goes out for good. :( My WLAN was working fine, but I intentionally broke it trying to help figure out a fix for others. I don't mind, but I sure hope there is a fix on the horizon. :confused:

Yes, mate, luckily Trinity isn't my main PPC. So I can investigate with it.

SuperSport
22nd November 2009, 11:34 PM
Yes, mate, luckily Trinity isn't my main PPC. So I can investigate with it.

Unfortunately, for me, it is my main PPC, but I can live without WLAN. I don't like to, because it's MUCH faster, but I do have an Unlimited Edge Data Plan, so it works.

Bine
22nd November 2009, 11:40 PM
Hi everyone!
Im a realy beginer in this kind of things, and i have two problems with my Trinity:

1 - I dont no how, but ive tried to flash many 6.5 ROM (ing, ptg, even ita), and just the 23504 M2D Old School, from SuperSport, run and works well, unless WiFi.

2 - With this ROM from SuperSport the WiFi, doesnt turns on, but ive flashed the WM 5.0, form HTC, and the problem continues.

Do anybody have this same problems??

I dont no how can i help you to solve them, but if you need something, just say. . . :D

Best regards
Bine

nikitto
22nd November 2009, 11:57 PM
Ok, I was told by a freind that possibly my RUU Updater was the cause of the WLAN going out. Could that be the problem? I'm using the same one as in Tomme45i's Kitchen, and I'm sure he did not create it, but got it from someone else. I'm sure it's being used in many places.



Now, I'm checking different RUU Updater. I usually use 3.14.4.1 version. I'll report my experiences with them.


Hi everyone!
Im a realy beginer in this kind of things, and i have two problems with my Trinity:

1 - I dont no how, but ive tried to flash many 6.5 ROM (ing, ptg, even ita), and just the 23504 M2D Old School, from SuperSport, run and works well, unless WiFi.

2 - With this ROM from SuperSport the WiFi, doesnt turns on, but ive flashed the WM 5.0, form HTC, and the problem continues.

Do anybody have this same problems??

I dont no how can i help you to solve them, but if you need something, just say. . . :D

Best regards
Bine

Almost everyone here, has the same problem. We're trying to resolve this problem.

nikitto
23rd November 2009, 12:09 AM
I tried 3.1.3.300 and 3.1.3.2 and both didn't work for me. I got an error of connection (260). :confused::confused::confused:

gruptnt
23rd November 2009, 12:16 AM
Now, I'm checking different RUU Updater. I usually use 3.14.4.1 version. I'll report my experiences with them.




Almost everyone here, has the same problem. We're trying to resolve this problem.

this problem is not only 4 trinity
i have a friend he buy an diamond used .. after to have tried it he call me .. why??
because wlan no turn on !!
i see your diamond 2 minute and problem is = to trinity !

Bine
23rd November 2009, 12:21 AM
Now, I'm checking different RUU Updater. I usually use 3.14.4.1 version. I'll report my experiences with them.




Almost everyone here, has the same problem. We're trying to resolve this problem.

OK. I know that everyone have no Wlan, but what about the 6.5 ROMs??
Do every 6.5 ROMs works in your trinity (unless Wlan)??

Thanks

SuperSport
23rd November 2009, 12:30 AM
this problem is not only 4 trinity
i have a friend he buy an diamond used .. after to have tried it he call me .. why??
because wlan no turn on !!
i see your diamond 2 minute and problem is = to trinity !
Was the Diamond ever sold with WM 6.5 installed originally? Maybe it is a WM 6.5 issues. Maybe Microsoft installed a timebomb that wipes our WiFi to help prevent cooking? I know, that's a stretch. :p But it does seem strange that it's not ONLY the Trinity. So it cannot be our nk.exe, or the RUU updater since different phones use different programs.

What is the link between all phones? SYS/XIP So I'm thinking something in the SYS/XIP must be corrupting out WiFi.

In the meantime, until we find a reason, and fix, see my next next post... Oops, 2 posts down.

SuperSport
23rd November 2009, 12:40 AM
OK. I know that everyone have no Wlan, but what about the 6.5 ROMs??
Do every 6.5 ROMs works in your trinity (unless Wlan)??

Thanks

Some people report that WM 6.5 works fine. Some report that my 23506 Blue works, and some report that it does not. For me it worked fine until I purposly broke my WiFi, and now NO ROM works.

SuperSport
23rd November 2009, 12:41 AM
Hi everyone!
I´m a realy beginer in this kind of things, and i have two problems with my Trinity:

1 - I don´t no how, but i´ve tried to flash many 6.5 ROM (ing, ptg, even ita), and just the 23504 M2D Old School, from SuperSport, run and works well, unless WiFi.

2 - With this ROM from SuperSport the WiFi, doesn´t turns on, but i´ve flashed the WM 5.0, form HTC, and the problem continues.

Do anybody have this same problems??

I don´t no how can i help you to solve them, but if you need something, just say. . . :D

Best regards
Bine

Ok, it's obvious to me that there may be something in my ROMs that is causing this problem... I'm going to pull all my 6.5 ROMs until we figure out what it may be.

Also, I'll post my COMPLETE Kitchen Here so anyone can look into it and see if I've got something different included. Maybe I mixed up a couple kitchens way back and did not remember. :confused: I have borrowed almost everything in my Kitchen from others, and I have mixed a few things from different chefs to get just what I was wanting.

PLEASE DON'T FLASH THIS KITCHEN UNLESS YOU KNOW WHAT YOU ARE DOING. It is POSSIBLE that it may ruin your WiFi.

http://www.mediafire.com/file/dlwzx3awyhd/Kitchen 23506 Stock.exe

I've read in other forums this same problem, so it's something I've picked up from somewhere else also. I'd sure like to know what... I feel REALLY bad that it's possible my ROMs may have done something. All I want to do is help, and I'm concerned that I may have caused issues.

Could it be something in my custom initflashfiles.dat, or my custom boot screen? Those are both specific to my ROMs. I dont' see how, but just throwing it out there.

SuperSport
23rd November 2009, 12:51 AM
A couple more thoughts:

1. It seems as though this problem is wide spread, but in fact, there are thousands of XDA members, and only a handful of people reporting this problem. I think that when you personally have a problem, you seem to notice it more. Just like when you buy a new car, and all of a sudden, there are many of those cars on the road. Although, I do believe it's happening more lately. Possibly the bugged Kitchen or SYS/XIP is getting shared more and more.

2. Is it possible that somebody on XDA purposely introduced this problem to harm users? There have been a few Hoax threats from so called Microsoft Employees claiming they will shut down XDA, only to find out they are fake. Could these same people be adding something into kitchens or XIP/SYS in the hopes of hurting the XDA Community?

I know this all sounds like conspiracy theory, but why do people create viruses? To hurt others.

nikitto
23rd November 2009, 01:35 AM
SuperSport, it's difficult to know. I remember first time I noticed this problem but I don't remember what I installed before. Because I was some time without use my Trinity. But sure, it was one of my own roms.

Like you, many people in Spain, are using my ROMs with WM6.5. But nobody say nothing about this problem. Well, just one.

I think I cooked my first ROM for Trinity with WM6.5 with old Ervius Kitchen. I'm trying to find now, these ROMs, because I cooked three diferent versions. Well, I want to say that I don't remember any problem using that kitchen. So, maybe the problem is in the kitchen, new xip, new SYS, ... ??? I don't know. Maybe, too many installations.

SuperSport
23rd November 2009, 01:40 AM
Maybe, too many installations. That was another thought, but I think there was somebody that said it was their first flash, I could be wrong. I was thinking maybe too many flashes and we are done.

SuperSport
23rd November 2009, 02:22 AM
I tried 3.1.3.300 and 3.1.3.2 and both didn't work for me. I got an error of connection (260). :confused::confused::confused:

This is the reason I had landed on the current RUU .exe It worked well for me. And as stated before, I always flash either SD method, or from PC after entering Boot Screen.

sterh
23rd November 2009, 07:39 AM
I don't think that we have to blame it in the cooked roms. Before having the wifi problem i tried a lot of roms 6.1 and 6.5 and finally end up using TNYsxy cause for me it was the only basic rom with the minimum memory usage.However everything was ok until the day i tried to get rid of olipro 1.30 and go back to 1.20 itried different bootloaders flashing from with ruuupdater,bootscreen,sd card i even tried once more the unlocker , and voila no wifi . In the proccess i didn't tried any other rom , and the strange thing was that i had the error in the boot screen only with sd card inserted.
If you search the forum for wifi or wlan errors the wlan loss pops up for hermes artemis and many other models, so its not only trinity ,that's a kind of consolation.

SuperSport
23rd November 2009, 09:05 AM
I don't think that we have to blame it in the cooked roms.Possibly, not, but until I'm sure where it's coming from, I've pulling my ROMs. I don't want anybody else to go through this.

However everything was ok until the day i tried to get rid of olipro 1.30 and go back to 1.20 itried different bootloaders flashing from with ruuupdater,bootscreen,sd card i even tried once more the unlocker , and voila no wifi .In fact, this is exactly what I was trying to do when mine died. But I've got people in my threads that said it happened when they flashed my ROM. Most of them were able to recover WiFi by going back to a previous ROM.

mac_es
23rd November 2009, 09:28 AM
I don't blame cooked roms, I have cooked roms 6.5 included, since a long time. And no issues...

A lot of issues of WLAN not waking up are because they are using comm managers from other devices which has a different wlan device so you have to adpat the registry propertly. But this is software...

Note that you have an issue BEFORE the OS is loaded so don't look at wmX. You should look at lower level:

In device:

IPL (we have two: 0.50 and 1.00)
Radio: Which version of radio, and MORE important which radio loader version? (Tho show your radio loader versio you have to send some commands via mtty, I will look for them)
SPL (olipro 1.2, olipro 1.3, des crashproof...)
OEM: Which nk.exe

In computer:

Which OS?
Which CustomRUU?
Which parts inside .nbh?


My guess, some incompatiblities in a downgrade path from the radio part

SuperSport
23rd November 2009, 09:33 AM
My guess, some incompatiblities in a downgrade path from the radio partI'm glad you guys are all on board. I'm realizing the more I research, the less I know. :confused:

mac_es
23rd November 2009, 12:01 PM
I'm glad you guys are all on board. I'm realizing the more I research, the less I know. :confused:

I know how you feel...

Also an interisting point is: SIM locked? which CID?

gruptnt
23rd November 2009, 07:20 PM
in comm manager >setting >lan wireless >menu >network cards >network card > tap on ieee 802.11b/g compatible ....
appears this

http://forum.xda-developers.com/attachment.php?attachmentid=249681&stc=1&d=1259000364

?? is correct ???

gruptnt
23rd November 2009, 07:40 PM
wow i see this now !

http://forum.xda-developers.com/showthread.php?t=369434

http://wiki.xda-developers.com/index.php?pagename=Hermes_Unbrick

great job!!

SuperSport
24th November 2009, 06:11 AM
yes i have two trinity one with working wireless and another not! I dont understand anything about this, so any help i apreciate!

Ok, I'm able to pdocread 5 partitions from my phone. At least, I THINK that's what I've got. I was able to read the 5 partitions using the following:

pdocread -u BsaD5SeoA -w -d FLASHDR -p Part00 0 0x31fc00 Part00.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -p Part01 0 0x300000 Part01.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -p Part02 0 0x3660000 Part02.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -p Part03 0 0x3660000 Part03.raw
pdocread -u BsaD5SeoA -w -d EXT_FLA -p Part00 0 0xa00000 Part00EXT.raw

Will this vary from phone to phone? I pulled the locations using "pdocread.exe -l".

I now have these raw files. Will this help anything? Can I take a Part01 from a working Trinity and install it back onto My Trinity somehow? Is Part01 even the right part? How would I write it back?

If somebody can confirm this is safe, we can ask Zoko to try it with his working Trinity and post his Part that is needed. Then we can change the MAC and Serial, Flash Back, and that should work???

Any Input? Thanks everyone!!!

PLEASE DON'T TRY THE FOLLOWING UNTIL IT'S CONFIRMED SAFE, OR YOU KNOW WHAT YOU ARE DOING, UNLIKE ME!!! :o

I kept trying pdocread without success, until I added the Password switch. :D

Instructions:

Using my Virtual XP Machine, I connected my phone over ActiveSync.
I copied itstools to a temp directory (I'll attach those here)
I then opened a Command Prompt and browsed to the temp directory
I then ran the above lines, one line at a time
That should create the 5 new files in the temp directory called Part**.raw

Now I don't know what to do with them, if anything.... :confused:

sterh
24th November 2009, 07:00 AM
Ok, I'm able to pdocread 5 partitions from my phone. At least, I THINK that's what I've got. I was able to read the 5 partitions using the following:

pdocread -u BsaD5SeoA -w -d FLASHDR -p Part00 0 0x31fc00 Part00.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -p Part01 0 0x300000 Part01.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -p Part02 0 0x3660000 Part02.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -p Part03 0 0x3660000 Part03.raw
pdocread -u BsaD5SeoA -w -d EXT_FLA -p Part00 0 0xa00000 Part00EXT.raw

Will this vary from phone to phone? I pulled the locations using "pdocread.exe -l".

I now have these raw files. Will this help anything? Can I take a Part01 from a working Trinity and install it back onto My Trinity somehow? Is Part01 even the right part? How would I write it back?
:

That's exactly what i did pulling out of the phone the raw files. my part01 is different in size from the downloaded ones (after flashing the part posted in this thread),what is exactly the size of your Part01 file? my part01 is 3.145.728 and the downloaded is 3.014.656. This is the file i think we have to restore but how?????

SuperSport
24th November 2009, 08:28 AM
That's exactly what i did pulling out of the phone the raw files. my part01 is different in size from the downloaded ones (after flashing the part posted in this thread),what is exactly the size of your Part01 file? my part01 is 3.145.728 and the downloaded is 3.014.656. This is the file i think we have to restore but how?????

Mine is: 3,145,728

Maybe it has to do with what ROM or Radio is loaded at the time? I think if we could get a working one form somebody, then figure out how to apply it back to the Trinity, we could proceed from there.

Maybe the safest way would be to have everyone flash the same exact HardSPL, Radio and ROM for the dump and reload process. That way, there shouldn't be any issues at all. :confused:

Edit: Anyone know how to convert the raw to nb? Can we then just convert the nb to nbh and flash using RUU Updater? Or is this more low level than that?

sterh
24th November 2009, 08:54 AM
Mine is: 3,145,728

Maybe it has to do with what ROM or Radio is loaded at the time? I think if we could get a working one form somebody, then figure out how to apply it back to the Trinity, we could proceed from there.


you have exactly with my file .If you go to the ftp-uploads-trinity you will find uploaded shiped roms in raw format all of them have the same size in part00 and part01 files.Probably our became bigger after flashing the rom part to fix the wifi we probably screw something there. Wrong addresses????
I took one of the initial roms-shiped and extracted ipl.nb,spl.nb,gsm.nb, os.nb,and extrom.nb.
I am trying to figure out how to flash back the gsm and os nbs , with mtty or spl exploit?? and if with mtty whats the addresses.

SuperSport
24th November 2009, 09:01 AM
If you go to the ftp-uploads-trinity you will find uploaded shiped roms in raw format all of them have the same size in part00 and part01 files.Could this be due to other Radio Versions? I'm currently running 1.46.30.11.

SuperSport
24th November 2009, 09:02 AM
I am trying to figure out how to flash back the gsm and os nbs , with mtty or spl exploit?? and if with mtty whats the addresses.I think you are on the right track. Anybody know how to transfer these?

mac_es
24th November 2009, 09:08 AM
Hi,

Obviusly the backup and the restore has to be in the same versio of radio...

For writing back the raw files:

rename Part01.raw to XIP.bin
rename Part02.raw to IMGFS.bin

Whith this create the appropiate os.nb

For other parts, I'm not sure...


Also, to be in the safe side, I would use:


pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part00 0 0x31fc00 Part00.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part01 0 0x300000 Part01.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part02 0 0x3660000 Part02.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part03 0 0x3660000 Part03.raw
pdocread -u BsaD5SeoA -w -d EXT_FLA -b 0x200 -p Part00 0 0xa00000 Part00EXT.raw

SuperSport
24th November 2009, 09:14 AM
Hi,

Obviusly the backup and the restore has to be in the same versio of radio...

For writing back the raw files:

rename Part01.raw to XIP.bin
rename Part02.raw to IMGFS.bin

Whith this create the appropiate os.nb

For other parts, I'm not sure...


Also, to be in the safe side, I would use:


pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part00 0 0x31fc00 Part00.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part01 0 0x300000 Part01.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part02 0 0x3660000 Part02.raw
pdocread -u BsaD5SeoA -w -d FLASHDR -b 0x200 -p Part03 0 0x3660000 Part03.raw
pdocread -u BsaD5SeoA -w -d EXT_FLA -b 0x200 -p Part00 0 0xa00000 Part00EXT.raw


Thank you, this is why I ask for input, I don't want problems for others. I'm a big boy and can handle my own, but I don't want others to suffer for my mistakes.

nikitto
24th November 2009, 03:10 PM
After extract the official wm5.0 (Spanish) for Trinity with NBHextract.exe I've got many files, of course.

The more important are:

00_IPL.nb 131.072 bytes
01_SPL.nb 262.144 bytes
02_ splash
03_ splash
04_ExtROM.nb 11.182.080 bytes
05_GSM.nb 14.155.776 bytes
06_OS.nb 57.643.008 bytes (XIP/SYS/OEM) Part01 & Part02

You can constrast the size with your differents parts.

But I think we won't find a solution with it. Because, I installed this official version and the WLAN didn't work.

sterh
24th November 2009, 07:56 PM
The more important are:

00_IPL.nb 131.072 bytes
01_SPL.nb 262.144 bytes
02_ splash
03_ splash
04_ExtROM.nb 11.182.080 bytes
05_GSM.nb 14.155.776 bytes
06_OS.nb 57.643.008 bytes (XIP/SYS/OEM) Part01 & Part02

You can constrast the size with your differents parts.

But I think we won't find a solution with it. Because, I installed this official version and the WLAN didn't work.

By extracting the elements from a rom i think we don't have the part we need . I did extract all the parts of an original rom , convert the parts to nbh and flashed each one separetely checking the results. No difference !!!! All of these parts can be extracted from most of the original roms. What we need is to flash back part00 and part01 from an original dump or at least find inside these files the part that we need extract it and flash it.
Its strange that so many HTC users with different models lost their wlan and in most of the other models they fixed it.

SuperSport
24th November 2009, 09:50 PM
Its strange that so many HTC users with different models lost their wlan and in most of the other models they fixed it.

Yep. I think guys like Olipro and Prof have moved on to other phones. We need someone like them to help us here.

raistlin74
25th November 2009, 10:27 AM
Hi all,
here Olipro 1.20
radio : 1.56.70.11
rom : supersport ultralite 23504

Everything here is working great, also the WiFi.

If you need me to make some tests ....

Side note, this is my buiness phone, so I will not do any action that are a risk for the phone, sorry but I have to work with this :P

For everything else, I'm completely at your command ;) ;)

zoko
25th November 2009, 11:01 AM
Hi all,
here Olipro 1.20
radio : 1.56.70.11
rom : supersport ultralite 23504

Everything here is working great, also the WiFi.

If you need me to make some tests ....

Side note, this is my buiness phone, so I will not do any action that are a risk for the phone, sorry but I have to work with this :P

For everything else, I'm completely at your command ;) ;)

but you already have this problem yet??? or never have this problem?

raistlin74
25th November 2009, 11:08 AM
but you already have this problem yet??? or never have this problem?

Never had this problem

sterh
25th November 2009, 07:28 PM
Guys , have a look at this post http://forum.xda-developers.com/showthread.php?t=589536 !!!!!!!!!

gruptnt
25th November 2009, 10:10 PM
I think I know what that leads to wlan error I just have to see if what I think is right

SuperSport
25th November 2009, 10:12 PM
I think I know what that leads to wlan error I just have to see if what I think is right

What is your theory?

gruptnt
26th November 2009, 12:12 AM
What is your theory?

I'm checking right now

start with wlan error (no wlan power on)

ok now i have :
wlan ok power on but blind
info 8 all revers block (no bad block)
eeprom signature correct ( without eeprom1 or old signature)

trin100
ipl-0.50

trin100 mfg
spl-1.30.olipro(xxx)


why xxx ?
i have modify olipro 1.30 where...? secret 4 now

tomorrow i recrash all (wlan error)
ps
i don't remember the sequence but with ony update spl , rom , radio my trinity return on wlan no power on
so eeprom is rewrite without mac address when ... ???

nigth

SuperSport
26th November 2009, 12:19 AM
I'm checking right now

Thank you. It will be nice to know. Even if it's something I've done, because I want to fix it if so. I appreciate all your time on this. :)

nikitto
26th November 2009, 12:25 AM
Ok, while I've opened this thread in a Spanish forum (I can express better in Spanish, of course) and I've got some results.

This is the command, info 8, for someone without WLAN ERROR and the WIFI works properly.

Block 0x0(0) is Reversed block
Block 0x1(1) is Reversed block
Block 0x2(2) is Reversed block
Block 0x3(3) is Reversed block
Block 0x4(4) is Reversed block
Block 0x5(5) is Reversed block
Block 0x6(6) is BAD block !!!
Block 0x6(6) is Reversed block
Block 0x7(7) is Reversed block
Block 0x8(8) is Reversed block
Block 0x9(9) is Reversed block
Block 0xA(10) is Reversed block
Block 0xB(11) is Reversed block
Block 0xC(12) is Reversed block

Partition[0], type=0x20, start=0x2, total=0xFE
Partition[1], type=0x23, start=0x100, total=0x1600
Partition[2], type=0x25, start=0x1700, total=0x21500
Partition[3], type=0x4, start=0x22C00, total=0x5AA00

CE Total Length(with sector info) = 0x4696000
CE CheckSum Length(without sector info) = 0x4580000

The same bad block that us. :confused:

SuperSport
26th November 2009, 12:33 AM
Ok, while I've opened this thread in a Spanish forum (I can express better in Spanish, of course) and I've got some results.

The same bad block that us. :confused:Is there anybody over there that is having the WLAN problem?

nikitto
26th November 2009, 12:39 AM
Is there anybody over there that is having the WLAN problem?

No, nobody. Only me :mad:

But, if he has got the same bad block, then, I think the problem isn't there.

nikitto
26th November 2009, 01:44 AM
I'm checking right now

start with wlan error (no wlan power on)

ok now i have :
wlan ok power on but blind
info 8 all revers block (no bad block)
eeprom signature correct ( without eeprom1 or old signature)

trin100
ipl-0.50

trin100 mfg
spl-1.30.olipro(xxx)


why xxx ?
i have modify olipro 1.30 where...? secret 4 now

tomorrow i recrash all (wlan error)
ps
i don't remember the sequence but with ony update spl , rom , radio my trinity return on wlan no power on
so eeprom is rewrite without mac address when ... ???

nigth


Thanks for your help, we're waiting for tomorrow. :rolleyes:

SuperSport
26th November 2009, 01:58 AM
Yes, good news. I also tried to flash a modified Olipro 1.30, but I ended up with:

pji&54&#
ipl-0.50

#^@&*@*&
spl-1.30.olipro

Or something to that effect.

I had to use SPL Exploit to bring it back...

So, gruptnt brings up an interesting point. When is the eeprom re-written? Why does his MAC get written over again?

gruptnt
26th November 2009, 05:42 PM
Yes, good news. I also tried to flash a modified Olipro 1.30, but I ended up with:

pji&54&#
ipl-0.50

#^@&*@*&
spl-1.30.olipro

Or something to that effect.

I had to use SPL Exploit to bring it back...

So, gruptnt brings up an interesting point. When is the eeprom re-written? Why does his MAC get written over again?

:eek: but how you've changed??:D:D

Vital_st
26th November 2009, 07:07 PM
konst_kk,
how you've make file trin_eeprom.nb?

nikitto
26th November 2009, 07:18 PM
I don't know how it can be! But, I read SPL 1.07.ds (DES) yesterday, when I installed a ROM. How can the system (Windows7) change my Hard-SPL ? Because I didn't do. I always use Hard-SPL_Olipro1.30. Now, I've got Olipro1.30 again :confused:

hehehe, increible, If I install the ROM from Bootloader screen, I can see Hard-SPL Olipro1.30, well, but if I install the ROM with connection ActiveSync (for Vista o W7, sorry, I don't know how you say it in English), It changes automatically to SPL 1.07.ds and WLAN ERROR doesn't appear on the bootloader screen.

Th3Hunter
26th November 2009, 07:47 PM
I don't know how it can be! But, I read SPL 1.07.ds (DES) yesterday, when I installed a ROM. How can the system (Windows7) change my Hard-SPL ? Because I didn't do. I always use Hard-SPL_Olipro1.30. Now, I've got Olipro1.30 again :confused:

hehehe, increible, If I install the ROM from Bootloader screen, I can see Hard-SPL Olipro1.30, well, but if I install the ROM with connection ActiveSync (for Vista o W7, sorry, I don't know how you say it in English), It changes automatically to SPL 1.07.ds and WLAN ERROR doesn't appear on the bootloader screen.


Did i get it right ?

BootLoader install = WLAN ERROR
Windows install = NO WLAN ERROR
:confused:

gruptnt
26th November 2009, 09:49 PM
konst_kk,
how you've make file trin_eeprom.nb?

I concur with the request

zoko
26th November 2009, 09:53 PM
Did i get it right ?

BootLoader install = WLAN ERROR
Windows install = NO WLAN ERROR
:confused:

when you install a ROM from windows, through active sync the most cooked roms, the RUU have the sspl by des, so when your device enter in bootloader you see the spl 1.07.des if you install the rom through bootloader directly from bootloader you see the spl install on your PDA, 1.20 or 1.30 or the original. its always like that.

nikitto
26th November 2009, 10:32 PM
when you install a ROM from windows, through active sync the most cooked roms, the RUU have the sspl by des, so when your device enter in bootloader you see the spl 1.07.des if you install the rom through bootloader directly from bootloader you see the spl install on your PDA, 1.20 or 1.30 or the original. its always like that.

Thanks for information, I didn't know it.

Bye

arpcpro
27th November 2009, 04:10 AM
These are some random tests I made with putty, to start dumping something from phone. I get some references to WLAN in some sections, but don't know if everything is here (I mean IPL, SPL, Radio, or only an OS image).
Can anyone do this on a working trinity and upload the file so I can compare it?

Cmd>emapi
emapi+E+ÿÿÿÿÿÿÿÿÿÿ . . . ÿÿÿÿÿÿÿÿÿÿÿÿÿCan't get eeprom received ack!!!
Cmd>password BsaD5SeoA
Cmd>set 1e 1
Cmd>rbmc i:\htc\dumps\test1.txt OS
GetExtRomData+(): *pszPathName=i:\htc\dumps\test1.txt, dwStartAddress=501A0000, dwLength=39E4000
:F=i:\htc\dumps\test1.txt
:A=501A0000
:L=039E4000
:rbmc=
HTCSéýÿ
...
+ B o o t R a d i o
+ I n i t D r v G l o b a l ( )
+ I n i t M e m S e t t i n g ( )
K e r n e l : E E P R O M 2 C h e c k s u m = 0 x % x
K e r n e l : E E P R O M s i g n a t u r e O l d = % X % X % X % X % X
K e r n e l : E E P R O M 1 C h e c k s u m = 0 x % x
K e r n e l : E E P R O M s i g n a t u r e = % X % X % X % X % X
W L A N E E P R O M : N a n d R e a d E r r o r
- S h o w G S M V e r s i o ýÿûÿn ( )
No GSM G NONE [ K e r n e l ] F a i l t o g e t G 2 3 v e r . !
G 2 3 v e r . : % s
G R NONE [ K e r n e l ] F a i l t o g e t R a d i o v e r . !
R a d i o v e r . : % s
R + S h o w G S M V e r s i o n ( )
...
I s A l l B y t e s T h e S a m e - : d w L e n g t h = % x , b R e s u l t = % x
W r i t e W L A N E R R O R : W r i t e e r r o r
W r i t e W L A N D a t a
W r i t e W L A N B a c k u p D a t a
W r i t e M F G E R R O R : W r i t e e r r o r
L e n g t h > M F G _ D A T A _ L E N G T H !
W r i t e M F G D a t a
R e a d W L A N E R R O R : W r i t e e r r o r
R e a d M F G
3C N A N D F l a s h W r i t e P a g e W i t h S p a r e D a t a c h e c k e r r o r ! !
W S E r r o r = 0 x % x , A = 0 x % x , B = 0 x % x
N A N D F l a s h W r i t e P a g e W i t h S p a r e P r o g r a m f a i l u r e ! !
N a n d _ C h e c k B a c k u p - E r a s e B l o c k
N a n d _ C h e y ýÿûÿc k B a c k u p - W r i t e S e c t o r
N a n d _ C h e c k B a c k u p - W r i t e I n f o
N a n d _ C h e c k B a c k u p
N a n d r e a d A d d r E r r o r = 0 x % x
N a n d R e a d - T o o m a n y b a d b l o c k
H T C N a n d R e a d !
N a n d r e a d a d d r e r r o r , a d d r = 0 x % x
N a n d W r i t e - T o o m a n y b a d b l o c k
W r i t e N a n d S u c c e s s
H T C z ýÿûÿN a n d W r i t e !
N a n d w r i t e a d d r e r r o r , a d d r = 0 x % x
3@ AD P@ @ LS P@ x LS ì)€ðÀ KS ì
. . .

test1.txt comes out empty so activate putty logging to file of All session output. It needs a "set 1e 1" before every rbmc command.

Another thought I had while on the bathroom, can't we find out the mem addresses that we need by eliminating the parts already covered by ROM dumps used to kitchen?
I mean, to extract the *.nb from the stock_ROM.exe to use on cooked ROMS we know we have parts for example from mem addresses x05 to x10 SPL, x11 to x15 CID, x40 to x42 MainSplash.
The WLAN block should be one of the parts not written during the stock ROM flashing, in the example above from x16 to x39. We can use a USB sniffer to see that memory blocks address being flashed during a stock rom flashing, and create a trinity memory map.

SuperSport
27th November 2009, 09:35 AM
We can use a USB sniffer to see that memory blocks address being flashed during a stock rom flashing, and create a trinity memory map.Uh oh! I'm lost again. This all goes over my head... I'm willing to flash whatever you guys come up with, but this does not make sense to me. I think I'm too old... ;)

sterh
27th November 2009, 10:17 AM
Uh oh! I'm lost again. This all goes over my head... I'm willing to flash whatever you guys come up with, but this does not make sense to me. I think I'm too old... ;)

I second that !!!
PS "too old to rock n roll too young not to have wlan"

Going through an mtty log found this

[W00:00:09:227]WLANMSG: Turn On WLAN power...
11/26/2009 09:01:27 [D :: USB_FUNCTION] USB Suspend
11/26/2009 09:01:27 [D :: USB_FUNCTION] USB Suspend: UFN_ATTACH
[W00:00:09:603]WLANMSG: Wlan Monitor thread create...
11/26/2009 09:01:27 [D :: USB_FUNCTION] USB Resume
11/26/2009 09:01:27 [D :: USB_FUNCTION] Enter Resume!!
11/26/2009 09:01:27 [D :: USB_FUNCTION] SuspendResumeTime 402
[W00:00:09:748]WLANMSG: map CountryID=0x0 to channel table
11/26/2009 09:01:27 [D :: BATTERY] +BALHW_InitialBatteryStatus
11/26/2009 09:01:27 [D :: BATTERY] -BALHW_InitialBatteryStatus
11/26/2009 09:01:27 [D :: BATTERY] +BAHW_Init
11/26/2009 09:01:27 [D :: BATTERY] Device didn't happen OverTemperature!
11/26/2009 09:01:27 [D :: BATTERY] RegQuery 'RadioOffForPowerOff' failed with 2
11/26/2009 09:01:27 [D :: BATTERY] -BAHW_Init
11/26/2009 09:01:27 [D :: BATTERY] Load:BAHW_GetBatteryStatus
11/26/2009 09:01:27 [D :: USB_FUNCTION] USB Reset
[W00:00:09:878]WLANMSG: whalBus_FwCtrl_Boot_StartInstance...
[W00:00:09:908]WLANMSG: CHIP ID IS 0x7020101
[W00:00:09:916]WLANMSG: whal_hwIntr_CheckAndAck OK!!!
11/26/2009 09:01:28 [D :: USB_FUNCTION] Set Configuration!!!
[W00:00:10:081]WLANMSG: Retrieve FW info: preamble=0, fwVer=Rev 6.0.2.71, radioType=0x3, EepromVer=6.3.28.3
[W00:00:10:081]WLANMSG: FW Version = Rev 6.0.2.71 StationId=00-01-02-03-04-05
11/26/2009 09:01:28 [D :: BATTERY] Get CBI not ready
BAT: gBootw
11/26/2009 09:01:28 [D :: FRONTLIGHT] LCM = Hitachi
OEM_LED SetBrightness2uP API not ready!
<Ser_Cmd>Create MonitorCmdTimedOutThread() success
<Ser_cmd>MonitorCmdTimedOutThread() running...

and this

[W00:00:15:478]WLANMSG: Turn off wifi...
[Power_Service]: DLL_PROCESS_ATTACH, Version=[V2.18-20070201], dwTickCount=[15577].
11/26/2009 09:01:33 [D :: BATTERY] Init CBI_Value(2)
WiFi is currently on, so turn it off.
[W00:00:15:669]WLANMSG: D3+

and many more occurances

in red is my correct mac address (changed here)
can anybody find something useful out of this mess?????

arpcpro
28th November 2009, 06:46 AM
A USB snoop is a software tool to log all data exchange between USB Device and its driver under a windows environment. I saw a post about someone on xda using it to find out some memory addresses, and it is also used to reverse engineering drivers.
My idea is to make a usb snoop while flashing again the radio ROM to see in what sections it doesn't write. I'll work on this option on Sunday so no need for more people to invest time in this. I'll post if anything usefull comes out of this.

...can anybody find something useful out of this mess?????

Not really. Just seems the normal output like in this one where WLAN works:

1, radioType=0x3, EepromVer=6.3.28.3
[W00:00:10:401]WLANMSG: FW Version = Rev 6.0.2.71 Station Id=00-18-41-00-0D-67
+SerOpen 10498
...

If there's an error in that output, it should appear some lines below in this section:
...
W00:00:06:959]WLANMSG: Turn On WLAN power...
01/01/2007 00:24:47 [D :: USB_FUNCTION] USB Reset
01/01/2007 00:24:47 [D :: USB_FUNCTION] USB Suspend
01/01/2007 00:24:47 [D :: USB_FUNCTION] USB Suspend: UFN_ATTACH
[W00:00:07:407]WLANMSG: Wlan Monitor thread create...
[W00:00:07:537]WLANMSG: whalBus_FwCtrl_Boot_StartInstance...
01/01/2007 00:24:47 [D :: USB_FUNCTION] USB Resume
[W00:00:07:565]WLANMSG: CHIP ID IS 0x7020101
[W00:00:07:573]WLANMSG: whal_hwIntr_CheckAndAck OK!!!
01/01/2007 00:24:47 [D :: USB_FUNCTION] Enter Resume!!
01/01/2007 00:24:47 [D :: USB_FUNCTION] SuspendResumeTime 243
01/01/2007 00:24:47 [D :: USB_FUNCTION] USB Reset
[W00:00:07:729]WLANMSG: Retrieve FW info: preamble=0, fwVer=Rev 6.0.2.71, radioType=0x3, EepromVer=6.3.28.3
[W00:00:07:730]WLANMSG: FW Version = Rev 6.0.2.71 Station Id=00-18-41-00-0D-67
...

I think that our WLAN is unable to Ack, although it says so in the diagnostics.

Edit: I was trying to use the command rbmc but just saw now that: "Also 'rbmc' does only read memory, but not nand. So you will not be able to dump radio for example due to MPU."

gruptnt
28th November 2009, 10:06 AM
ok

this is part hex of olipro 1.30


0000ed40h: 5B 65 4D 61 70 69 55 70 64 61 74 65 57 6C 61 6E ; [eMapiUpdateWlan
0000ed50h: 44 61 74 61 48 65 61 64 65 72 5D 20 57 72 6F 6E ; DataHeader] Wron
0000ed60h: 67 20 73 69 67 6E 61 74 75 72 65 0A 00 00 00 00 ; g signature.....
0000ed70h: 5B 65 4D 61 70 69 52 65 61 64 4D 41 43 5D 46 41 ; [eMapiReadMAC]FA
0000ed80h: 54 41 4C 20 45 52 52 4F 52 21 21 20 52 65 67 41 ; TAL ERROR!! RegA
0000ed90h: 64 64 72 20 3D 20 30 78 25 78 2C 20 53 44 49 4F ; ddr = 0x%x, SDIO
0000eda0h: 41 64 64 72 20 3D 20 30 78 25 78 21 21 0A 00 00 ; Addr = 0x%x!!...
0000edb0h: 5B 65 4D 61 70 69 57 72 69 74 65 4D 41 43 5D 46 ; [eMapiWriteMAC]F
0000edc0h: 41 54 41 4C 20 45 52 52 4F 52 21 21 20 52 65 67 ; ATAL ERROR!! Reg
0000edd0h: 41 64 64 72 20 3D 20 30 78 25 78 2C 20 53 44 49 ; Addr = 0x%x, SDI
0000ede0h: 4F 41 64 64 72 20 3D 20 30 78 25 78 21 21 0A ; OAddr = 0x%x!!.



0003d86bh: 02 11 56 05 1B 06 00 18 11 01 00 01 09 56 12 00 ; ..V..........V..
0003d87bh: 00 00 01 0D 56 55 00 00 00 02 6D 54 00 00 32 28 ; ....VU....mT..2(
0003d88bh: 00 08 00 00 01 31 56 00 00 00 00 01 55 09 01 00 ; .....1V.....U...
0003d89bh: 00 00 01 E5 58 02 00 00 00 01 F1 58 08 00 00 00 ; ...X.....X....
0003d8abh: 01 D5 58 10 00 00 00 01 B1 58 04 00 00 00 00 00 ; .X.....X......
0003d8bbh: 00 00 00 00 00 0C 00 6F 00 AA 00 B4 00 C0 00 D2 ; .......o....
0003d8cbh: 00 F0 00 F9 00 FB 00 11 01 4B 01 5B 01 63 01 01 ; ......K.[.c..
0003d8dbh: 39 00 00 11 00 04 01 01 01 00 05 01 06 00 02 01 ; 9...............
0003d8ebh: 02 01 02 1E 00 0A 00 02 05 02 04 11 22 44 03 06 ; ............"D..
0003d8fbh: 10 20 30 31 32 40 04 09 54 49 20 41 43 58 31 30 ; . 012@..TI ACX10
0003d90bh: 30 05 07 54 49 20 54 65 73 74 01 08 00 00 00 00 ; 0..TI Test......
0003d91bh: 00 00 00 00 05 02 00 00 3B 00 81 00 C6 00 22 01 ; ........;...".
0003d92bh: 04 04 44 10 00 00 45 10 00 00 18 5A 40 00 14 5A ; ..D...E....Z@..Z
0003d93bh: 20 00 02 0E A0 01 ED 00 08 01 4F 02 8C 00 CA 01 ; ...*....O...
0003d94bh: 6C 09 80 00 F8 00 06 01 6A 02 8C 00 C7 01 6C 09 ; l.....j...l.
0003d95bh: 01 07 00 01 40 00 00 00 01 00 00 05 04 00 01 01 ; ....@...........
0003d96bh: 00 00 00 00 FF FF FF FF FD FD FD FD FB FB FB FB ; ....
0003d97bh: FB 0E 04 09 09 09 09 09 09 09 09 09 09 09 09 09 ; ...............
0003d98bh: 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 ; ................
0003d99bh: 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 ; ................
0003d9abh: 09 09 09 09 09 09 09 09 09 09 09 0E 01 00 00 00 ; ................
0003d9bbh: 00 00 00 00 00 01 02 02 02 02 02 03 02 D4 08 D4 ; ..............
0003d9cbh: 08 07 00 01 20 ; ....


this is part hex of herm1.nb
we can find here
http://forum.xda-developers.com/misc.php?do=showattachments&t=322225


0001f840h: 02 11 56 05 1B 06 00 11 31 01 00 01 09 56 12 00 ; ..V.....1....V..
0001f850h: 00 00 01 0D 56 71 00 00 00 02 6D 54 FF FF FF 2D ; ....Vq....mT-
0001f860h: 09 00 00 00 01 05 5A 64 00 00 00 01 09 5A 00 00 ; ......Zd.....Z..
0001f870h: 00 00 01 0D 5A 00 00 00 00 01 01 0C 03 00 00 00 ; ....Z...........
0001f880h: 01 01 5A 00 00 00 00 01 55 09 01 00 00 00 01 E5 ; ..Z.....U......
0001f890h: 58 02 00 00 00 01 F1 58 08 00 00 00 01 D5 58 10 ; X.....X.....X.
0001f8a0h: 00 00 00 01 B1 58 04 00 00 00 00 00 00 00 00 00 ; ....X..........
0001f8b0h: 00 0C 00 8B 00 C6 00 D0 00 DC 00 EE 00 0C 01 15 ; ...........
0001f8c0h: 01 17 01 2D 01 67 01 77 01 7F 01 01 39 00 00 11 ; ...-.g.w...9...
0001f8d0h: 00 04 01 01 01 00 05 01 06 00 02 01 02 01 02 1E ; ................
0001f8e0h: 00 0A 00 02 05 02 04 11 22 44 03 06 41 20 30 31 ; ........"D..A 01
0001f8f0h: 32 40 04 09 54 49 20 41 43 58 31 30 30 05 07 54 ; 2@..TI ACX100..T
0001f900h: 49 20 54 65 73 74 01 08 00 00 00 00 00 00 00 00 ; I Test..........
0001f910h: 05 02 00 00 36 00 6F 00 AB 00 EA 00 04 04 44 10 ; ....6.o.....D.
0001f920h: 00 00 45 10 00 00 18 5A 40 00 14 5A 20 00 02 0E ; ..E....Z@..Z ...
0001f930h: A0 01 DC 00 08 01 5A 02 78 00 BE 01 8A 09 80 00 ; *....Z.x....
0001f940h: DC 00 08 01 4C 02 78 00 AC 01 8A 09 01 07 00 01 ; ...L.x.......
0001f950h: 40 00 00 00 01 00 00 05 04 00 01 01 00 00 00 00 ; @...............
0001f960h: FF FF FF FF FD FD FD FD FB FB FB FB FB 0E 04 09 ; ...
0001f970h: 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 ; ................
0001f980h: 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 ; ................
0001f990h: 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 09 ; ................
0001f9a0h: 09 09 09 09 09 09 09 0E 01 00 00 00 00 00 00 00 ; ................
0001f9b0h: 00 00 00 00 00 00 00 03 02 D4 08 D4 08 07 00 01 ; ..............

mi7
1st December 2009, 06:24 PM
ciao gruptnt non vedo post da 3 giorni il che mi fa pensare che la situazione di far vivere dinuovo il wifi lontana, spero molto che mi sbagli e ho fiducia in voi.
grazie

mi7
1st December 2009, 08:09 PM
ITA
ciao gruptnt non vedo post da 3 giorni il che mi fa pensare che la situazione di far vivere dinuovo il wifi lontana, spero molto che mi sbagli e ho fiducia in voi.
grazie

ENG
hello gruptnt not see post from 3 days which makes me think that situation to live dinuovo the wifi is far away, I hope much I'm wrong and I trust in you.
thanks

sterh
3rd December 2009, 07:21 AM
Hey everybody , i've been away for a week and when i came back first thing was searching the threat with a hope to find the next piece of the puzzle or a solution but nothing.
What happenned ?? no more ideas??
Cmon lets brainstorm , i cant accept that an erased little chip beat us 'cause i believe we are somewhere in the middle of the way to the solution.
Yo gurus and code writters help us out on this !!!

mac_es
3rd December 2009, 10:05 AM
The first NECESARY step is to get valid backup of a working device.

To archieve this someone has to modify the SPL 1.30 to remove the limit for rbmc command.

Someone whith IDA knowledge? :confused: olipro?...
Whithout this, is quite improbable to get a proper fix ...

sterh
3rd December 2009, 10:58 AM
Someone posted - idont remember enymore where - that olipro 2.30 from hermes was flashed to a trinity ,after he flashed herm1b.zip and everything was ok. I tried every known way to flash olipro 2.30,did no succeed,i changed every string herm100 in the file with trin100,but not possible.

arpcpro
3rd December 2009, 12:51 PM
...
To archieve this someone has to modify the SPL 1.30 to remove the limit for rbmc command....

Yup, as far as I read somewhere currently on HardSPL 1.30 'rbmc' does only read memory, but not nand. So you will not be able to dump radio with this limitation.

There's another way of reviving WLAN that I haven't suggested yet because I prefer an easy acessible and safe solution usable by everyone. But since it is taking so long maybe it's not a bad idea to start looking at the JTAG procedure. It will be necessary to open the phone and connect 3 or 4 wires to the motherboard to flash directly. This method is flawless and is for sure able to restore everything on the phone. An added bonus is that it will also solve the No GSM problem that some people have on their trinity, in case it is not an hardware issue.
I've worked with JTAG before and have a lot of experience in flashing Satellite receivers this way. Blocking point for this is that I will need to encourage someone with a working trinity to disassemble the device, build a simple JTAG and make a flash dump via Jkeys.

mac_es
3rd December 2009, 04:14 PM
Yup, as far as I read somewhere currently on HardSPL 1.30 'rbmc' does only read memory, but not nand. So you will not be able to dump radio with this limitation.

There's another way of reviving WLAN that I haven't suggested yet because I prefer an easy acessible and safe solution usable by everyone. But since it is taking so long maybe it's not a bad idea to start looking at the JTAG procedure. It will be necessary to open the phone and connect 3 or 4 wires to the motherboard to flash directly. This method is flawless and is for sure able to restore everything on the phone. An added bonus is that it will also solve the No GSM problem that some people have on their trinity, in case it is not an hardware issue.
I've worked with JTAG before and have a lot of experience in flashing Satellite receivers this way. Blocking point for this is that I will need to encourage someone with a working trinity to disassemble the device, build a simple JTAG and make a flash dump via Jkeys.

AFAIK, writing is not a problem. So If one gets a backup via JTAG it should be possible to write it back via SPL...

Th3Hunter
3rd December 2009, 07:30 PM
...
There's another way of reviving WLAN ...
It will be necessary to open the phone and connect 3 or 4 wires to the motherboard to flash directly....
I will need to encourage someone with a working trinity to disassemble the device, build a simple JTAG and make a flash dump via Jkeys.
Mine is working, but i have no idea of the mentioned procedure

sterh
3rd December 2009, 08:20 PM
JTAG procedure. It will be necessary to open the phone and connect 3 or 4 wires to the motherboard to flash directly. This method is flawless and is for sure able to restore everything on the phone. An added bonus is that it will also solve the No GSM problem that some people have on their trinity, in case it is not an hardware issue.
I've worked with JTAG before and have a lot of experience in flashing Satellite receivers this way. Blocking point for this is that I will need to encourage someone with a working trinity to disassemble the device, build a simple JTAG and make a flash dump via Jkeys.

Jtag is not so simple as it seems first you have to buid it then program the chip and then flash it ,it uses theparallel port of pc most of the times with errors due to fast pcs these days.I searched the net and i did not find Jtags for sale, then we have to find the code to flash the chip, and third how we can share?? or everybody with a F... up trinity has to build his own Jtag.
Believe me using jtag interface to flash nokia satellite decoders was part of my job some years ago.

http://forum.xda-developers.com/showthread.php?t=391047
http://forum.xda-developers.com/showthread.php?t=369681
http://forum.xda-developers.com/showthread.php?t=510602

Th3Hunter
3rd December 2009, 11:44 PM
Jtag is not so simple as it seems first you have to buid it then program the chip and then flash it ,it uses theparallel port of pc most of the times with errors due to fast pcs these days.I searched the net and i did not find Jtags for sale, then we have to find the code to flash the chip, and third how we can share?? or everybody with a F... up trinity has to build his own Jtag.
Believe me using jtag interface to flash nokia satellite decoders was part of my job some years ago.

http://forum.xda-developers.com/showthread.php?t=391047
http://forum.xda-developers.com/showthread.php?t=369681
http://forum.xda-developers.com/showthread.php?t=510602



i look at the posts it is really a difficult job and someone with experience with these things has to do it :(

zoko
3rd December 2009, 11:53 PM
i have a HTC GENE, of a friend and fix their phone with Jtag! but, i´ve got some questions, doubt´s! the cable connection is the same? i think not! anyone know, the correct pin out, of the trinity? the jtag program configuration?! I do not mind trial of with this process! if anyone know´s this.
For example on HTC GENE the cable, don´t have any buffer/line driver, unlike HTC HERMES.

the GENE example

http://rapidshare.com/files/164878535/gene_jtag_restore.zip (for cable seeing)

arpcpro
4th December 2009, 02:18 AM
Let's not give up of JTAG option yet. I also don't like it but since no expert (like the ones that developed hardspl) are helping us it seems a profitable way to invest time to fix WLAN. Also if "mac_es" says writing the binary JTAG dump will not be a problem, that's awesome. We can probably assemble a working eeprom.nb from the JTAG binary, and the rest of the people can flash it the normal way with the USB cable and putty.

I'm glad you also have experience with JTAG, but these are some of the assumptions I have:

Jtag is not so simple as it seems first you have to buid it
I've done it before. To build a simple resistor JTAG its necessary to buy a few resistors for some cents, get an old printer cable from my personal old PC junkyard and solder some cables to make something like this:
http://img686.imageshack.us/img686/5118/sl65.png

... then program the chip and then flash it
I'm not sure why you think we need to program any chip? I thought we just needed use the programmer from Samsung that works on Hermes. The Qualcomm 6275 is the same for both phones.
But still at the moment we should just start by reading it from a working phone.


it uses theparallel port of pc most of the times with errors due to fast pcs these days.
Still nowadays I keep using a home made resister Jtag to update keys on my sat receiver and the full eeprom. I don't have any problem flashing it connected to the parallel port of a Pentium 4 3,2GHz neither to my Core2Duo laptop. Always works fine. This is directly connected to the parallel port and not with a USB to parallel adapter.

And they are using it with Hermes to recover bricked phones where not even the boot loader came up.

arpcpro
4th December 2009, 02:20 AM
Let's not give up of JTAG option yet. I also don't like it but since no expert (like the ones that developed hardspl) are helping us it seems a profitable way to invest time to fix WLAN. Also if "mac_es" says writing the binary JTAG dump will not be a problem, that's awesome. We can probably assemble a working eeprom.nb from the JTAG binary, and the rest of the people can flash it the normal way with the USB cable and putty.

I'm glad you also have experience with JTAG, but these are some of the assumptions I have:

Jtag is not so simple as it seems first you have to buid it
I've done it before. To build a simple resistor JTAG its necessary to buy a few resistors for some cents, get an old printer cable from my personal old PC junkyard and solder some cables to make something like this:
http://img686.imageshack.us/img686/5118/sl65.png

... then program the chip and then flash it
I'm not sure why you think we need to program any chip? I thought we just needed use the programmer from Samsung that works on Hermes. The Qualcomm 6275 is the same for both phones.
But still at the moment we should just start by reading the flash from a working phone. We can think about writing later.


it uses theparallel port of pc most of the times with errors due to fast pcs these days.
Still nowadays I keep using a home made resister Jtag to update keys on my sat receiver and the full eeprom. I don't have any problem flashing it connected to the parallel port of a Pentium 4 3,2GHz neither to my Core2Duo laptop. Always works fine. This is directly connected to the parallel port and not with a USB to parallel adapter.

And they are using it with Hermes to recover bricked phones where not even the boot loader came up.

sterh
4th December 2009, 07:35 AM
I'm not sure why you think we need to program any chip? I thought we just needed use the programmer from Samsung that works on Hermes. The Qualcomm 6275 is the same for both phones.
But still at the moment we should just start by reading the flash from a working phone. We can think about writing later..

'Cause the jtags i have in mind look like these:252985

always with an IC programmed with different code for each device.
The photos you posted is a child play. And you believe we can easily find software and the correct test points of trinity???

mac_es
4th December 2009, 09:48 AM
Also if "mac_es" says writing the binary JTAG dump will not be a problem, that's awesome. We can probably assemble a working eeprom.nb from the JTAG binary, and the rest of the people can flash it the normal way with the USB cable and putty.

I mean, people have flashed the data from hermes and they bot a good block from a bad block, so they can write.

The problem is that the data from the hermes is not the same for trinity, so if we got the exact content of the block from a working trinity whith the SAME version of IPL, RADIO and SPL via JTAG you should be able to write and revive the WLAN.

Regarding the radio, to assure compability you will have to flash the greatest version of radio which have been flashed and then the actual version.

I mean, in donor trinity:

It has had flashed 1.56 Radio, and after that it is actually in 1.50 radio.

So in the trinity to be fixed:

you will have to flash 1.56, and then flash 1.50. This is due to each radio update the radio loader, and it is not downgraded when changing the radio.

Take care that we are changing eeprom data directly, so the instructions, jumps of code, data have to been the same.



All I can help is in "theory" becuase my trinity works flawlessly and I need it for daily work so I can't open it, or brick it, or loss wlan..

Th3Hunter
4th December 2009, 02:47 PM
there are maybe members that came up with this idea before me but no one shared it
well my idea is why we ask for help Olipro or some else who knows how to do the work, we will DONATE to stimulate their work and buy them a drink :)
well?

zoko
4th December 2009, 10:53 PM
I mean, people have flashed the data from hermes and they bot a good block from a bad block, so they can write.

The problem is that the data from the hermes is not the same for trinity, so if we got the exact content of the block from a working trinity whith the SAME version of IPL, RADIO and SPL via JTAG you should be able to write and revive the WLAN.

Regarding the radio, to assure compability you will have to flash the greatest version of radio which have been flashed and then the actual version.

I mean, in donor trinity:

It has had flashed 1.56 Radio, and after that it is actually in 1.50 radio.

So in the trinity to be fixed:

you will have to flash 1.56, and then flash 1.50. This is due to each radio update the radio loader, and it is not downgraded when changing the radio.

Take care that we are changing eeprom data directly, so the instructions, jumps of code, data have to been the same.



All I can help is in "theory" becuase my trinity works flawlessly and I need it for daily work so I can't open it, or brick it, or loss wlan..

mac_es i´ve tried with a workin trinity, who´s have the same RADIO, IPL and SPL, and the the file becomes always empty!!! so a cannot flash on my fuk...d device!

arpcpro
5th December 2009, 08:38 PM
there are maybe members that came up with this idea before me but no one shared it
well my idea is why we ask for help Olipro or some else who knows how to do the work, we will DONATE to stimulate their work and buy them a drink :)
well?

Yes it's a good idea and it had also crossed my mind. Because I'm sure that for some experts it should be quite easy to fix this. And I see them accepting donations for projects that seem to require more effort: http://forum.xda-developers.com/showthread.php?t=541786
If each one of the trinity owners that have this problem contribute with a symbolic amouth the expert should get enough cash to buy the latest HTC.

SuperSport
6th December 2009, 05:24 AM
I'd be interested in this. I'm In! :D

I am sorry I've been distant lately. I currently only have Internet through My phone, and it's not a good connection here at home. I am monitoring the threads, but I don't have the speed to download/upload anything right now. As soon as I get High Speed Internet at home again, I will be trying whatever I can to get my ROM's going again, and getting the WIFI working again.

I will contribute $20US towards this, and maybe more later if I can. My illness has kicked in hard lately, so my finances have suffered. But this would be a big help for many people.

So, who do we try to buy? ;)

sterh
6th December 2009, 08:16 AM
Count me in guys !!

mac_es
7th December 2009, 12:56 PM
mac_es ive tried with a workin trinity, whos have the same RADIO, IPL and SPL, and the the file becomes always empty!!! so a cannot flash on my fuk...d device!

I said that AFTER having a backup you should be able to WRITE it. The problem is to READ so you need or a patched SPL or JTAG

zenga
8th December 2009, 11:44 AM
Another one with the same problem.
Count me in to help solving it.
I notice that in the beginning it says "WLAN ERROR" but the Wlan still work.
Yesterday after another flash it stop working.:mad:

gruptnt
8th December 2009, 11:49 AM
Another one with the same problem.
Count me in to help solving it.
I notice that in the beginning it says "WLAN ERROR" but the Wlan still work.
Yesterday after another flash it stop working.:mad:

so +1 :mad:

zenga
8th December 2009, 11:51 AM
so +1 :mad:

:mad: :mad:yep

SuperSport
8th December 2009, 09:23 PM
Another one with the same problem.
Count me in to help solving it.
I notice that in the beginning it says "WLAN ERROR" but the Wlan still work.
Yesterday after another flash it stop working.:mad:

I almost hate to ask, but I'm going to. Was it one of my ROMs? :o

zenga
8th December 2009, 10:38 PM
I honestly don't know. I tried many roms.
But if it was one of yours don't worry, someone has to build the roms for us to try, we must take the risk on triyng them.
I only hask you and all the others not to give up finding a solution.

Sorry for my english.

SuperSport
9th December 2009, 02:56 AM
I honestly don't know. I tried many roms.
But if it was one of yours don't worry, someone has to build the roms for us to try, we must take the risk on triyng them.
I only hask you and all the others not to give up finding a solution.

Sorry for my english.

I'm recommending to everyone to put the phone into BootLoader mode BEFORE flashing to hopefully prevent this from happening. Just in case that is the issue.

zenga
9th December 2009, 10:23 AM
I'm recommending to everyone to put the phone into BootLoader mode BEFORE flashing to hopefully prevent this from happening. Just in case that is the issue.

That's not the issue. I always put the phone in bootloader mode before flashing.
Just one question:
Is it not possible that this is an hardware problem instead of a software one?
I mean, can the wlan module on the board be broken?

arpcpro
9th December 2009, 12:39 PM
It's not likely to be a hardware problem:
- We flash a software ROM and wi-fi stops working
- On HTC Hermes they have the same problem as us and solved it with a eeprom flash

zenga
9th December 2009, 02:12 PM
It's not likely to be a hardware problem:
- We flash a software ROM and wi-fi stops working
- On HTC Hermes they have the same problem as us and solved it with a eeprom flash

Ok
And can't you Trinity masters make an eeprom flash like the one on HTC Hermes?

SuperSport
9th December 2009, 06:35 PM
We are definitely hoping that will be the case. So far, none of us are capable of creating the new HardSPL that will allow a full dump of the eeprom. We are hoping donations, or charity :D, will attract the attention of a programmer that can do this for us.

stepw
9th December 2009, 09:11 PM
We are definitely hoping that will be the case. So far, none of us are capable of creating the new HardSPL that will allow a full dump of the eeprom. We are hoping donations, or charity :D, will attract the attention of a programmer that can do this for us.

You can softload a custom SPL of your choice (using SSPL or spl-xploit), for example MFG SPL, and dump your NAND. May have to patch it up a bit, but that should be doable. Or just use one of the HardSPLs with patched rbmc.

You can also access radio bootloader from MFG SPL and there's a way to dump radio EEPROM from there as well, if I recall correctly.

Flash the same official SHIPPED ROM onto a unit with working WLAN and a unit with failing WLAN. Make a dump of a full NAND image (and full radio EEPROM if possible) from a working unit and a failed unit, compare and find the differences. That should give you an idea of what portions of the firmware are broken.

If WLAN calibration data is portable between units, flashing it from one unit to another may revive your WLAN. I don't know where (and whether) MAC is stored in EEPROM on Trinity, but if it's not replaced in the working dump, your WLAN will have donor's MAC on it once donor's calibration data is flashed.

SuperSport
10th December 2009, 12:53 AM
You can softload a custom SPL of your choice (using SSPL or spl-xploit), for example MFG SPL, and dump your NAND. May have to patch it up a bit, but that should be doable. Or just use one of the HardSPLs with patched rbmc.

You can also access radio bootloader from MFG SPL and there's a way to dump radio EEPROM from there as well, if I recall correctly.

Flash the same official SHIPPED ROM onto a unit with working WLAN and a unit with failing WLAN. Make a dump of a full NAND image (and full radio EEPROM if possible) from a working unit and a failed unit, compare and find the differences. That should give you an idea of what portions of the firmware are broken.

If WLAN calibration data is portable between units, flashing it from one unit to another may revive your WLAN. I don't know where (and whether) MAC is stored in EEPROM on Trinity, but if it's not replaced in the working dump, your WLAN will have donor's MAC on it once donor's calibration data is flashed.

My understanding is that the Trinity Olipro 1.30 MFG does not allow rbmc dumps. Is that not the case? As far as patching up the SPL, that's what we are stumped on. If you know of a way to get a full dump, that would be helpful. I think that's what we are waiting for. Thanks for your input.

sterh
10th December 2009, 07:22 AM
Olipro's 2.30 for hermes is already patched- that's how they fixed hermes.There is people saying they flashed it into trinity, i tried every way i could think of exploit, sspl,sd card , over olis 1.20 or 9.99 cp with no success.
As far Konst_kk did it, following hermes instructions. How ?? iwould like to know.
Changing only the string herm100 to trin100 in the file is not enough.

Vital_st
10th December 2009, 10:09 AM
Can anybody make SPL-1.01 MFG for Trinity?

konst_kk
10th December 2009, 10:17 AM
I've done it 1 year ago, I have my corrupted eeprom.nb file and also a full memory dump to prove it but... I can not remember how to do it again. Did you follow step by step the Hermes procedure?

mac_es
10th December 2009, 10:34 AM
If you have a working dump (the file you flash back) it should be enough to try to write it into the trinity.

konst_kk
10th December 2009, 11:42 AM
If that was the case I will had the solution. I performed (unfortunately) the dump after my eeprom corruption.

zenga
10th December 2009, 06:35 PM
Is it just me or gps reception is also gone?

arpcpro
11th December 2009, 02:52 AM
Is it just me or gps reception is also gone?

Nobody else complains about that. Check if you have a radio version equal or greater than v1.38.xxx if I remind correctly.
The older radio versions don't have gps enabled.

zenga
11th December 2009, 12:02 PM
I had radio 1.56.70.11 , and something happend with gps, it always worked and sudently stop working, then i downgrade radio version to 1.46.30.11 and it's working again.

da_gluck
14th December 2009, 10:50 AM
i've looked over the thread... i've got a trinity with working wi-fi and 23003 build WM, can i help us? Mb i can dump the eeprom?

SuperSport
14th December 2009, 08:16 PM
If we could figure out how to get a full dump of the eeprom, that would definately help. So far, as I understand it, we don't have anything working yet that will dump the wifi portion of the eeprom. :( If we find a way, I'm sure we will contact you for help. Thank you for the offer. :D

mi7
14th December 2009, 11:41 PM
hello to all you can to work the wifi running the "ALL
HTC Unlock Service Version 1.2 "to restore eeprom?
My thought is maybe idiot !!!!!!

SuperSport
15th December 2009, 12:56 AM
hello to all you can to work the wifi running the "ALL
HTC Unlock Service Version 1.2 "to restore eeprom?
My thought is maybe idiot !!!!!!Very few thoughts are "Idiot". Thank you for the input. I'm trying now. You never know what the key will be... :)

Unfortunately, I just ran through the whole process, and it did not work. But, thank you for bringing this up. We need to try everything we can.

passaretti1
15th December 2009, 10:35 AM
exuse me for my bad english , i have the problem of wi-fi , there is a method to fix this mistake?

mi7
15th December 2009, 02:52 PM
hello superspot
Have a look here !!!!!!!!!
http://www.news4gsm.com/?p=4632

nikitto
15th December 2009, 04:05 PM
"ALL
HTC Unlock Service Version 1.2 "to restore eeprom?



It didn't work for me :(

Thanks

passaretti1
15th December 2009, 04:15 PM
hello superspot
Have a look here !!!!!!!!!
http://www.news4gsm.com/?p=4632

work ? repair the eeprom for wi-fi?