RIFF JTAG – RIFF JTAG Manager v1.28, RIFF Box firmware v1.20 released

14.03.2011  RIFF JTAG Manager v1.28, RIFF Box firmware v1.20 released

Whats new :

Firmware 1.20

  • Optimised connection to the PXA270 core
  • Added DCC TX channel (host-to-debugger) cleanup (flushing) feature (happens now during DCC Read with 0 timeout parameter) for Cortex-A8
  • Optimized Cortex-A8 connection establishment after coming out of reset (after NRST signal assertion)
  • Added emergency script processing for Cortex-A8 core (h/w script which is executed immediately after core was halted)

JTAG Manager 1.28

  • Added RAM selft-test right before uploading DCC loader.
  • Added functionality to handle complex memory devices (like MDOC H3) with lengths not necessary to be alighned to MBs;
  • Added DCC TX channel flushing command before starting DCC Loader – thus it is guaranteed that next first DCC read will get DCC Loader’s packet and not some residual trash data.
  • Added 1GB and 2GB OneNAND chips to the size autodetection list.
  • Added progress indication during saving files which were read on the DCC Read/Write page

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – CDMA Samsung SPH-D700 Galaxy S Epic 4G Unbrick, Dead Boot repair supported

14.03.2011 CDMA Samsung SPH-D700 Galaxy S Epic 4G Unbrick, Dead Boot repair supported

Samsung SPH-D700 is based on the S5PC110 Processor (ARM core is Cortex-A8). Depending on firmware state resurrection can be a bit confusing: for successful connection you will require charged battery. Please note – no matter whether you have USB cable or not – it must not be connected to phone. This is important.
Resurrector will reflash IBL, PBL, SPL and PARAM areas. Additionally you can select KERNEL and RECOVERY partitions to be reflashed too. Though them are required only for recovery mode and not needed for following USB firmware update by Odin software. So if you don’t need recovery mode don’t select these 2 partitions – otherwise you will just waste time waiting for them to be reflashed.
If after resurrection the download mode still cannot be initiated (LCD remains blank) do repeat resurrection with ‘Clone Gremlin zone’ option checked.

To resurrect Samsung SPH-D700:

  • Solder JTAG cable to Samsung SPH-D700 JTAG pads;
  • Make sure USB cable or charger is not connected;
  • Make sure Samsung SPH-D700 is selected in the list of models;
  • Make sure a fixed TCK frequency is selected;
  • Insert battery;
  • Click Resurrect button;
  • Press Power On key; when you will see “Establish communication with the phone…” message – press Power On ey again (and hold it pressed for 1-2 seconds);
  • Wait till software signals a successful operation completion;
  • Disconnect USB cable, de-solder JTAG wires;

Now phone is in bootable condition, that is, even if it does not start up normally, you can flash it using original Samsung downloader software to restore it to the working state.

To enter download or recovery mode:

  • Disconnect PC cable;
  • Insert battery;
  • Hold ‘1’ key on the keypad and press Power-On to enter download mode;
  • Hold both ‘Volume Down’ and ‘Camera’ keys and press Power-On to enter recovery mode.

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – Samsung SGH-i607 BlackJack PDA Unbrick, Dead Boot repair supported

12.03.2011  Samsung SGH-i607 BlackJack PDA Unbrick, Dead Boot repair supported

Resurrecting Samsung i607 PDA part is easy. Phone requires battery presence in order to establish JTAG connection. If you additionally connect charger the phone will be auto powered on and there will be no need to press Power on key.
In case you experience connection problems, de-power phone completely, disconnect charger (if it was used), then insert battery, click Resurrection button in the JTAG Manger and immediately (within 0…1 seconds) press Power On key.

To unbrick Samsung i607 PDA part:

  • Solder JTAG cable to Samsung i607 PDA JTAG pads;
  • Make sure Samsung i607 PDA is selected in the list of models;
  • If only battery is connected – press Power On key shortly;
  • Click Resurrect button;
  • Wait till software signals a successful operation completion;
  • Disconnect power supply, de-solder JTAG wires;

Now phone is in bootable condition, that is, even if it does not start up normally, you can flash it using known flashing methods.

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – CDMA Huawei C5005 Unbrick – Repair supported

11.03.2011  CDMA Huawei C5005 Unbrick – Repair supported

Resurrecting Huawei C5005 is simple. Phone is auto powered on with USB Data Cable connected to the PC. Battery presence is not required; connection can be established with detached board.
Resurrector re-flashes only firmware zone of the phone (0x000000 to 0xBFFFFF).

To resurrect Huawei C5005:

  • Solder JTAG cable to Huawei C5005 JTAG pads;
  • Insert USB Data cable into board and PC;
  • Make sure Huawei C5005 is selected in the list of models;
  • Click Resurrect button;
  • Wait till software signals a successful operation completion;
  • De-solder JTAG wires;

 

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – HTC Tattoo A3232 (HTC Click 1100) Unlock, Unbrick, IMEI repair, CID Update

10.03.2011 HTC Tattoo A3232 (HTC Click 1100) Unlock, Unbrick, IMEI repair, CID Update supported

Resurrecting HTC Click is easy. Phone is auto powered on with USB Data Cable connected to the PC while battery is inside.
There are two different hardware versions exist – one based on the MSM7225 chipset (CLIC10000) and other – on the ESM7225 chipset (CLIC11000). In resurrector settings you can select a desired version.
Resurrector will reflash radio’s boot zone and will re-write PDA’s SPL to 0.52.0001 SPL version.
As well, you can change CID – for this make sure ‘Repair Custom ID’ field is checked in the Resurrection Guide dialog.

To resurrect HTC Click:

  • Solder JTAG cable to HTC Click JTAG pads;
  • Make sure HTC Click is selected in the list of models;
  • Click Resurrect button;
  • Wait till software signals a successful operation completion;
  • Disconnect power supply, de-solder JTAG wires;

Now phone is in bootable condition, that is, even if it does not start up normally, you can flash it using known flashing methods.

To Unlock HTC Click :

  • Solder JTAG cable to HTC Click JTAG pads;
  • Make sure HTC Click is selected in the list of models;
  • Click Resurrect button;
  • Select “Unlock Settings” TAB
  • Select Unlock method
  • Click “Unlock”

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – HTC Desire DLL Update – Unlock Code reading supported

10.03.2011  HTC Desire DLL Update – Unlock Code reading supported

New HTC Desire DLL has additional option to select between reading NCK Code, or direct unlock.
This should also solve “error 0x45” problem with some of the HW revisions.

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – ASUS P526 Unbrick, Dead Boot repair supported

10.03.2011   ASUS P526 Unbrick, Dead Boot repair supported

Resurrection of ASUS P526 is slightly complicated. JTAG pads are very small and sensitive thus extreme care must be taken when soldering wires to the board. Battery must be connected in order to establish JTAG connection.
Current resurrector re-flashes only the IPL area, and will not re-write MDOC XLOADER area (though write of this area is supported too).
Please note: DiskOnChip G4 memory has security features, due to which there is a risk of permanently blocking the access to the flash memory while re-flashing the XLOADER areas. Current resurrector will not touch the XLOADER zone, but it is possible you’re already holding such killed device in hands. If it is so you will see this error:
****************************************************************
Detected a Not Initialized FLASH1 Chip ID: 0x0400/0xFBFF
ERROR: Selected FLASH Chip was not initialized by the DCC Loader
****************************************************************

This can happen due to unknown protection keys used or due to permanently blocked MDOC chip. If latter is true we advise you to solder a new flash memory chip or throw this phone away to the trash bin.

To resurrect ASUS P526:

  • Solder JTAG cable to ASUS P526 JTAG pads;
  • Insert battery and connect USB cable to phone and PC;
  • Make sure ASUS P526 is selected in the list of models;
  • Click Resurrect button;
  • Wait till software signals a successful operation completion;
  • Disconnect USB cable, de-solder JTAG wires;

Now phone is in bootable condition, that is, even if it does not start up normally, you can flash it using known flashing methods.
If phone not enters download mode after resurrection then it means XLOADER was damaged too but memory chip is still usable. In this case repeat resurrection using RAM Downloader Mode and when USB connection is established reflash the phone with official firmware.

To enter download mode:

  • Disconnect PC cable;
  • Insert battery;
  • Move ‘Lock’ slider down, hold ‘OK’ key (on the left) and press ‘Power ON’ button. In few seconds you should see TriColor picture.

Additional info:

  • Phone has DiskOnChip G4 memory type, which has security features. It has two password protected partitions (Password1 = 12345678, Password2 = 00000000);
  • XLOADER re-flash is not performed in this resurrector on purpose. While re-flashing the XLOADER area there is a risk of permanently blocking the memory chip.
  • Any write access (Erase or Write) on MDOC NAND memory range 0x00000000 to 0x0017FFFF is rejected by the DCC Loader

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – QUALCOMM QSC60XX Generic NOR DLL-s

Resurrector QSC60XX L24 D08 contains only DCC Loader, thus it is to be used only for operations on DCC Read/Write page in the JTAG Manager.
Embedded DCC Loader is designed to work inside of MCU’s internal RAM memory, thus it is not sensitive to external SDRAM configuration or availability or its physical state.

Initial H/W init sequence will setup MCU’s PLL with these parameters:

  • L/M/N = 0x2A/0x00/0x01;
  • Global Clock Divisor = DIV8

Resurrector QSC60XX L24 D08 contains only DCC Loader, thus it is to be used only for operations on DCC Read/Write page in the JTAG Manager.
Embedded DCC Loader is designed to work inside of MCU’s internal RAM memory, thus it is not sensitive to external SDRAM configuration or availability or its physical state.

Initial H/W init sequence will setup MCU’s PLL with these parameters:

  • L/M/N = 0x2A/0x00/0x01;
  • Global Clock Divisor = DIV8

You can use these two DLL-s with all QSC6xxx CPU devices with NOR flash.
(Any CDMA phones with Qualcomm QSC60xx CPU, with NOR flash chip)

 

RIFF JTAG – CDMA ZTE F285 Repair supported

10.03.2011 CDMA ZTE F285 Repair supported

Resurrecting ZTE F285 is simple. Phone is auto powered on with USB Data Cable connected to the PC. Battery presence is not required; connection can be established with detached board. Resurrector re-flashes only firmware zone of the phone (0x000000 to 0x60FFFF).
To resurrect ZTE F285:

  • Solder JTAG cable to ZTE F285 JTAG pads;
  • Insert USB Data cable into board and PC;
  • Make sure ZTE F285 is selected in the list of models;
  • Click Resurrect button;
  • Wait till software signals a successful operation completion;
  • De-solder JTAG wires;

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.

RIFF JTAG – RIFF JTAG Manager v1.27, RIFF Box Firmware v1.19

10.03.2011   RIFF JTAG Manager v1.27, RIFF Box Firmware v1.19

Whats new :

RIFF JTAG Manager v1.27

  • Fixed access violation bug upon JTAG Manager startup if there is no RIFF Box detected and Cancel button is clicked.
  • (SDK): more functions are now available (exported) for future Resurrector DLLs;
  • Added flags for JTAG Manager to be able to retrieve memory chip size from the DCC Loader.
  • Fixed initialization bug for NOR-related DCC Loadererss
  • ScriptEngine: added options pocessing ‘/byte’, ‘/word’, ‘/long’ to data.save.binary instruction: thus it’s possible now to read memory through script  using desired bus access width (8-,16-, or 32-bit widths).  For example: “data.save.binary c:\myfile.bin 0x00..0x11FF /word” – will read 0x1200 bytes from memory into myfile.bin file starting from address 0x00 using 16-bit bus accesses.

Note: “Read Memory” button on the JTAG Read/Write page reads memory using 32-bit bus accesses only.

RIFF Box Firmware v1.19

  • Added more H/W script (*.has) instructions;
  • Added HTC security processing functions;

Please click “Check For Updates” button in order to download and apply new files. Closing all running application before starting update process is recommended.