DEV ONLY - NAND access + Full Unlock for Lumia 710 & 800

Search This thread

meLIanTQ

Senior Member
Mar 4, 2010
292
4
40
Seine Maritime

Attachments

  • navi.jpg
    navi.jpg
    39.8 KB · Views: 30
Last edited:

ChrisKringel

Senior Member
Jan 6, 2009
356
70

As far as I can see it is only available for the Lumia 800C. So you would have to do some customization in order to make it work with Facebook and Twitter. These services are blocked by a provxml. But back to topic.


I sent my Lumia 800 (with an open bootloader) in for a replacement of the screen. It had white dots when displaying gray/green colors. The repair tracking states that they also performed a software update and changed faulty parts. I'll report back whether the BL stayed unlocked or not.
 

ale07

Member
Apr 29, 2009
49
3
From the file names it seems like a rom to be flashed using the qualcomm method, explained in the leaked slides.
 

amritpal2489

Senior Member
Oct 3, 2010
418
100
Did anybody try it???
What was the result??
I dont have my L800 around me at the moment.. Ahhhhh.. Guys.. Quick.. Tell us whats new??
 

biktor_gj

Senior Member
Jan 25, 2008
1,408
7,008
compare this *.osb file with yours

The file you uploaded is a 404.. could you reupload please?

Code:
<html> 
<head> 
<title>404 Page Not Found</title> 
<style type="text/css"> 
 
body {
background-color:	#fff;
margin:				40px;
font-family:		Lucida Grande, Verdana, Sans-serif;
font-size:			12px;
color:				#000;
}
 
#content  {
border:				#999 1px solid;
background-color:	#fff;
padding:			20px 20px 12px 20px;
}
 
h1 {
font-weight:		normal;
font-size:			14px;
color:				#990000;
margin: 			0 0 4px 0;
}
</style> 
</head> 
<body> 
	<div id="content"> 
		<h1>404 Page Not Found</h1> 
		<p>The page you requested was not found.</p>	</div> 
</body> 
</html>

Thank you!
 

biktor_gj

Senior Member
Jan 25, 2008
1,408
7,008
i can not seem to flash to stock anymore using NCS after installing the Russian firmware and downgrading bootloader. any help? thanks.

That question belongs to the Q&A thread. Please leave this thread for development only.

Link to Q&A: http://xdaforums.com/showthread.php?t=1599401

I will answer to your question though:
* UNLOCKED BOOTLOADER = NO NCS = YES CUSTOM ROM
* LOCKED BOOTLOADER = YES NCS = NO CUSTOM ROM

It's a personal choice :)
Any mod can cleanup this thread a bit please?

Now back to the topic:
Nokia OSBL: Unless someone can find a flaw in the RSA verification algorithm, there's no reason to keep trying to patch it, since you cannot upload it anyway.
I wouldn't even attempt to write lumia 710's bootloader to the 800. They share cpu, and probably half of the memory regions, but if there's a single GPIO/mem address, i2c call, mddi call or whatever the thing uses to access the nand chip different on the 710 it may very well leave the phone as a brick. The fact that they share the chipset doesn't mean they use the same pins for the same things. If it were for any other thing I would understand, if you want to try it from an unlocked bootloader by overwriting EMMCBOOT.MBN, or if you want to chainload it from LK loader fine, but please be careful if you're going to try to overwrite it directly on the flash since it's too easy to break it down and end up seeing yourself going to ebay to get a JTAG adapter and tapping the test points on the mainboard to attempt to recover it.

I wish I knew enough assembler (or any at all) to understand the loader and be able to guess if there's something wrong, but the truth is I don't. I can see the functions, I can find the verification functions, but don't have a clue on how to even know if there's a problem somewhere.

I would start looking at differences between updates to try to find a hole in the OS. After all, it's Microsoft, it's not like there aren't going to be any bugs on 1412 fixed on newer versions. Since we can downgrade, it could be possible to get interop unlock from there, and THEN, attempt to rewrite the Qualcomm loader back to the flash, from within Windows.

At least that's what I think...

@ultrashot: here you have my config for OSBuilder, you see anything wrong with it?
 

Attachments

  • OSBuilder.txt
    4.4 KB · Views: 47
Last edited:

rescbr

Member
Mar 1, 2008
31
11
From the file names it seems like a rom to be flashed using the qualcomm method, explained in the leaked slides.

The FFU files should be flasheable using UpdateWP.
I did a quick look on those FFU files, and found that both _fullmodem.ffu and _FlashClean.ffu unfortunately contain Nokia DLOAD OSBL.

Edit: what's weird is that the oem.sku.xml file includes some conditions to package an OEM_7x30_BLDR (Qualcomm's?) if IMGBOOTEMMC is set. Which is set, according to the environment variables listed on the env.txt file.

The question is: are those FFU files built with IMGBOOTEMMC or they deleted the FFU files containing Qualcomm bootloader?
 
Last edited:

biktor_gj

Senior Member
Jan 25, 2008
1,408
7,008
I got my flaw, WP7 Root tools working fine now on Lumia 800 too!
Uploading files to mediafire, will update main thread when ready

Thank you ultrashot for your infinite patiente.
In the end it was my mess, but it was a stupid mistake. When inserting packages into cif/sof, they got on the upper side of the list, and were being overwritten by the Core package in \SYS...

EDIT:
Nokia Lumia 800 Full unlock:
http://www.mediafire.com/?8zyow23pb1ulc4o
http://www.mediafire.com/?12tvc1bsbzgsal1
http://www.mediafire.com/?n0mgq321wb3wzf1
http://www.mediafire.com/?dnklajs1ned5yy5

Enjoy!
 
Last edited:

meLIanTQ

Senior Member
Mar 4, 2010
292
4
40
Seine Maritime
The FFU files should be flasheable using UpdateWP.
I did a quick look on those FFU files, and found that both _fullmodem.ffu and _FlashClean.ffu unfortunately contain Nokia DLOAD OSBL.

+1 :eek:

Think a full easy package for lock the phone.

for unlocked lumia phone:
<?xml version="1.0"?>
<!-- SDPCC_MOD_BEGIN: vwu: Sept-09-2011: REQ 1862406: eMMC partition change from MS -->
<!-- Set WPB to 64MB, MODEM_BKP to readonly, NOKIA_PMM to readonly, combine Modem bits to fat.bin -->
<configuration>
<parser_instructions>
WRITE_PROTECT_BOUNDARY_IN_KB = 65536
GROW_LAST_PARTITION_TO_FILL_DISK= true
ALIGN_ALL_LOGICAL_PARTITIONS_TO_WP_BOUNDARY=false
</parser_instructions>
<physical_partition>
<partition label="DBL" size_in_kb="500" type="4d" bootable="true" readonly="true">
<file name="RM801_12w07_prod_generic_dbl.mbn" offset="0"/>
</partition>
<partition label="OSBL" size_in_kb="1500" type="46" bootable="false" readonly="true">
<file name="RM801_12w07_prod_generic_osbl.mbn" offset="0"/>
</partition>
<partition label="FAT" size_in_kb="150000" type="c" bootable="false" readonly="true">
<file name="RM801_12w07_prod_generic_fat.bin" offset="0"/>
</partition>
<partition label="NOKIA_PMM" size_in_kb="64" type="ef" bootable="false" readonly="true">
</partition>
<partition label="MODEM_BKP" size_in_kb="3072" type="58" bootable="false" readonly="true">
<file name="RM801_12w07_prod_generic_dummy_fs.bin" offset="0" />
</partition>
<partition label="MODEM_ST1" size_in_kb="3072" type="4a" bootable="false" readonly="false">
<file name="RM801_12w07_prod_generic_dummy_fs.bin" offset="0" />
</partition>
<partition label="MODEM_ST2" size_in_kb="3072" type="4b" bootable="false" readonly="false">
<file name="RM801_12w07_prod_generic_dummy_fs.bin" offset="0" />
</partition>
<partition label="APPS" size_in_kb="425000" type="48" bootable="false" readonly="false" align="true">
<file name="RM801_12w07_prod_euro1.img" offset="0" />
</partition>
</physical_partition>
</configuration>
<!-- SDPCC_MOD_END: vwu: Sept-09-2011: REQ 1862406: eMMC partition change from MS -->
 
Last edited:

beidl

Senior Member
Apr 30, 2009
467
217
Vienna
fredl.me
We should applaud and thank biktor, ultrashot, lucifer3006, Heathcliff74 and everybody else involved for making our Lumias more enjoyable.


*clapclap*
 
  • Like
Reactions: biktor_gj

ombadboy

Senior Member
Oct 11, 2008
318
31
London
I got my flaw, WP7 Root tools working fine now on Lumia 800 too!
Uploading files to mediafire, will update main thread when ready

Thank you ultrashot for your infinite patiente.
In the end it was my mess, but it was a stupid mistake. When inserting packages into cif/sof, they got on the upper side of the list, and were being overwritten by the Core package in \SYS...

EDIT:
Nokia Lumia 800 Full unlock:
http://www.mediafire.com/?8zyow23pb1ulc4o
http://www.mediafire.com/?12tvc1bsbzgsal1
http://www.mediafire.com/?n0mgq321wb3wzf1
http://www.mediafire.com/?dnklajs1ned5yy5

Enjoy!

Great job man! Was waiting for the full unlock.. Now gotta wait till I grow the balls to flash it on my unlocked Lumia 800.. Usually don't mind but I love my Lumia wudnt wanna brick it! Now onto unlocking the bootloaders!!

Had a look at the firmware released today on Navifirm, didnt find anything on a first glance that could help us
 
Last edited:

Top Liked Posts

  • There are no posts matching your filters.
  • 81
    UPDATE: First custom rom with Interop Unlock flashed succesfully. Requires hard reset after installing and an unlocked bootloader. See post for proof:
    http://xdaforums.com/showpost.php?p=24818275&postcount=242
    BIG THANK YOU TO ULTRASHOT!
    Without you I couldn't have done it!
    NOTICE: Testing full unlock (XIP unlock etc) with ultrashot. Will post new files as soon as I get a working build which doesn't get stucked on boot ;)

    Disclaimer:
    I AM NOT RESPONSIBLE IF YOU LOOSE DATA, BREAK YOUR PHONE, OR SET YOUR HOUSE ON FIRE. DO THIS AT YOUR OWN RISK. BTW, REQUIRES A HARD RESET SO YOU WILL LOOSE ALL THE DATA IN YOUR PHONE BY FLASHING THIS. IF UNSURE, DON'T DO IT.
    PLEASE STOP PM'ING ME FOR HELP, I CAN'T REPLY 20 PMS/HR. Please use the forum, maybe someone can create a discussion topic to help others and leave this for links and development. Thank you very much!

    PLEASE STOP SENDING ME PMS ASKING FOR HELP AND USE THE DEDICATED THREAD
    THIS THREAD IS FOR DEVELOPMENT ONLY, PLEASE RESPECT THAT AND USE THE Q&A THREAD FOR YOUR QUESTIONS.
    LINKS:
    Lumia 800: Full Unlock
    New firmware: May 16, 2012 (removed foursquare and stuff)
    sdb3.rar: Flash it to PARTITION #3. It contains 12070's amss & adsp. Not absolutely required but if you have an older version this should give you better battery life.
    http://www.mediafire.com/?kwjladlgvq81rha
    OS-NEW:
    As always, flash it to PARTITION #9.
    Part1: http://www.mediafire.com/?21by2oj7acnhkhw
    Part2: http://www.mediafire.com/?wkeduvp9l4199qh
    Part3: http://www.mediafire.com/?cnbkms40dy4y06z
    Part4: http://www.mediafire.com/?rabunpmnaqclq3o
    Complete Mediafire folder access: http://www.mediafire.com/?uo2dqcl34b9cy
    ___________________
    Alternate ROM with Full Unlock + Some apps:
    Part1: http://www.mediafire.com/?8gnqm418v32im3e
    Part2: http://www.mediafire.com/?bgtg2t5infrnua1
    Part3: http://www.mediafire.com/?l0sl5hbr0v9gfi1
    Part4: http://www.mediafire.com/?emt2dfswdhn0z0w
    Apps preinstalled:
    DS Supertool
    File Deployer
    Metro Theme
    WebServer
    WinTT
    WM Device Center
    WP7 Root Tool

    ___________________
    Lumia 710: Interop Unlock (no full unlock yet)
    ROM Based on: RM803_059N2L6_1600.3015.8107.12070_010
    Mediafire folder access: http://www.mediafire.com/?9z6og65ozgrnr
    http://www.mediafire.com/download.php?d3bj3dkfbffbakn
    http://www.mediafire.com/download.php?l35zjaebdrsm315
    http://www.mediafire.com/download.php?ys5bapu8ubezybo
    http://www.mediafire.com/download.php?tnadd4uuoxhatv3
    CAUTION: I don't have a 710, so these images AREN'T TESTED. Use at your own risk. Be careful, people are reporting problems with this rom.
    Full Unlock Image for Lumia 710 by lucifer3006 -BE CAREFUL, IT HAS BUGS, FOR TESTING PURPOSES ONLY- (thanks ultrashot & lucifer3006): http://www.mediafire.com/?p3318y5l19abb

    You have a mirror of all the stuff on mediafire on xdafil.es: http://xdafil.es
    Thank you mousey_!

    PLEASE DO A FULL BACKUP OF THE NAND BEFORE PLAYING AROUND.
    If you are developing fixes for the bootloader 'problem', feel free to grab a copy of the rest of partitions and stuff I posted over this thread here: http://www.mediafire.com/?kknt4lnc3tn7w


    INSTRUCTIONS:
    Requires an unlocked bootloader (a.k.a. qualcomm development bootloader).
    Easy to check: Turn the phone OFF, then press and hold VOLUME UP + POWER until you notice a short vibration. Plug in to the computer. If the phone turns up in disk mode (USB Mass Storage Device), then you have an unlocked bootloader. IF you're in Windows, it will ask if you want to format the disk. SAY NO OR IT WILL EXPLODE (it won't explode but you might break it)
    If the device detected by the computer is Nokia DLOAD you have a locked bootloader and you're out of luck, at least for now.

    I used 'dd' in Linux, I guess you can do it with Windows version too (http://www.chrysocome.net/dd) but it's more involved to find the appropiate partition:
    dd if=./os-new.nb of=/dev/sdX9
    Where X is the disk detected by your linux distribution.
    After that, you'll need to hard reset the phone. Hold Power button for 10 seconds to exit Qualcomm's disk mode, and press and hold POWER+VOLUMEDOWN+CAMERA until you feel the phone vibrate. After that, RELEASE power button but KEEP HOLDING volume down + camera for five or more seconds. This will trigger the hard reset.

    Now time to play with bootloaders and try to get this to work for everyone!

    If you like my work and want to donate for a beer (or two), follow this link
    22
    I'd suggest renaming on of the colors. Would be great if it was possible to interop the phone without losing data.

    Well, you can always make a backup and then restore via zune. The thing is the dumped OS is about 600Mb, the generated image is 378Mb. I don't know how it will reside on the flash, you could always check where the flash starts to get filled with zeros and clean it up before the first boot... If they had done it right and separated user data from the main OS we wouldn't have this problem...

    INTEROP UNLOCK ACHIEVED!

    Now time for a nice beeer ;)
    I'll put mediafire to work and upload the image I just did. Everyone who has an unlocked bootloader: after you flash this to the phone, DO A HARD RESET, otherwise it will get stucked on 'Installing Applications'
    12
    Hey everyone,

    I was hoping to be able to crack Nokia's osbl, but time already run out and wasn't able to get it. So sorry, guys, but I had to return both Lumias. It's been a fun month, and at least I helped getting custom roms for at least some of you.

    I'll be uploading here all the files I have on my computer so anyone can mirror them or use them for whatever you might need. If I can help you with something else (development related please) feel free to drop me a PM.

    Once again big thank you to Ultrashot, Beidl, Xsacha, cdbase, ceesheim, HeathCliff & everyone that helped out with this. Now back to my (almost) forgotten Galaxy S2 & to try Boot 2 Gecko and see what progress has been done since the last time I checked :)
    8
    Btw, here is my DppImplant app.
    Implants DPP partition with your stock Live Id to a custom rom.
    Usage:
    1) Put backup of the biggest partition to the folder with DppImplant.exe and call it "stock.nb"
    2) Put "os-new.nb" there - target firmware in which you want to see your old Live Id.
    3) Open DppImplant.exe. It will extract DPP from stock.nb and create mydpp.bin file. (After that you won't really need to have stock.nb in that folder).
    "os-new.nb" will be patched.
    4) Done.

    P.S. if you open DPP using Notepad or any hex editor, you'll see saved Live Id.
    6
    Ok L710 fully unlocked :)
    Those 2 parts are wrong. I used to narod.ru

    ---------- Post added at 07:29 PM ---------- Previous post was at 06:40 PM ----------
    http://www.youtube.com/watch?v=-rQbFp7yasc


    CAN WE KEEP THIS FOR DEVELOPMENT ONLY PLEEEEEEEEEEEEEASSSEEEEE?

    Gift from our friends at Qualcomm:

    Full AMSS firmware + Secboot Sources (Qualcomm loader)! Grab it while it's hot!

    http://www.mediafire.com/?ir2h15f663ja6wc