[Xiaomi MI 5] No IMEI after flashing (bricked phone) / blocked bootloader - Android Q&A, Help & Troubleshooting

Hi All,
at the beginning I'll write a brief what happened. I'm using Xiaomi MI 5. Last week phone just turn off and after this I was unable to turn it on - no response. I started with checking battery contacts and after pushing plugs device turn on, but unfortunately in bootloop. I started to search for any information how to repair, so at first I tried to wipe all data by recovery mode, but it not helped. At next step I flashed phone with new firmawe - I had to do it by testpoints method, because bootloader is blocked and I was unable to unlock this since device is broken (as I saw in tutorial it's needed to bind device with account by Android which wasn't work obviously). Device with new firmware started to work but not recognizing any SIM card - I've checked in options an there is no IMEI. I found tutorial how to repair IMEI and for now I have ready QCN file to upgrade device by QPST software, but there is a problem with entering a phone in diagnostic mode. I used a code "*#*#717717#*#*" but I have a problem with part listed below, because it's demanding super user account:
"adb shell
su
dd if=/dev/zero of=/dev/block/sde28
dd if=/dev/zero of=/dev/block/sdf3
dd if=/dev/zero of=/dev/block/sdf5"
I don't have a root and for now it isn't possible to root device, because there is still blocked bootloader. I tried to unlock device since Android is working again but because there is no IMEI I get errors during binding, so i suppose it's impossible to do without IMEI.
In QPST device is only visible when it's in EDL mode by testpoints method, but I can't upload QCN file bacause I get error: Phone isn't in diagnostic mode.
So what I need for now is to enter device into diagnostic mode somehow and that's why I decided to make a new topic, because at first I've searched many forums and threads but I was unable to find working solution. Please help me if you have any ideas. Thanks!

Resolved
Hi all,
I've manage this problem.
This is how I succeed - maybe it will be helpful for someone
First of all I found a Thread with Mi 5 qualcolm diagnostic drivers. After installing these drivers device was recognized by QPST as in diagnostic mode. Unfortunately another problem came up. "Invalid command from device". I did quick research and it was related to broken EFS, so I needed reapair/reset EFS - but theorically it was impossible without root and for rooting device unlocked bootloader is needed (my is blocked). So finally I found a dial code for EFS reset:
*#*#25327337#*#*
It helped. After this all what I needed to do was to check box in QPST "Allow ESN mismatch" and it successfully wrote QCN file.
Now my IMEI is back
Regards

Related

How to unlock Nubia Z7 Mini bootloader - 5.1.

Wonder if anybody can help with this... I upgraded my Nubia Z7 mini to Lollipop 5.1.1 (Cuoco Rom) in multiple steps, and as as result the IMEIs and MEID disappeared completely.
I tried several tutorials to restore them, but all failed. It seems that the QSTN tool does not recognize the phone, and thus cannot write back a correct qcn file. Neither can I access the phone via ADB tools, nor can I boot into Bootloader (it must be locked).
I suspect that I cannot restore IMEIS because of the locked bootloader. Does anybody know how to unlock it (ADB is not working)?
Flerou said:
Wonder if anybody can help with this... I upgraded my Nubia Z7 mini to Lollipop 5.1.1 (Cuoco Rom) in multiple steps, and as as result the IMEIs and MEID disappeared completely.
I tried several tutorials to restore them, but all failed. It seems that the QSTN tool does not recognize the phone, and thus cannot write back a correct qcn file. Neither can I access the phone via ADB tools, nor can I boot into Bootloader (it must be locked).
I suspect that I cannot restore IMEIS because of the locked bootloader. Does anybody know how to unlock it (ADB is not working)?
Click to expand...
Click to collapse
Dial *#7678# to enable factory ports and adb. Hope it helps.
Flerou said:
Wonder if anybody can help with this... I upgraded my Nubia Z7 mini to Lollipop 5.1.1 (Cuoco Rom) in multiple steps, and as as result the IMEIs and MEID disappeared completely.
I tried several tutorials to restore them, but all failed. It seems that the QSTN tool does not recognize the phone, and thus cannot write back a correct qcn file. Neither can I access the phone via ADB tools, nor can I boot into Bootloader (it must be locked).
I suspect that I cannot restore IMEIS because of the locked bootloader. Does anybody know how to unlock it (ADB is not working)?
Click to expand...
Click to collapse
Were you able to solve this?
I updated last week from 4.4 official to 5.1.1. Cuoco92 and I lost the root privileges. Can't even reboot in recovery mode. All my attempts to restore the root have been unsuccessful and I think maybe bootloader is locked.

! Remove MI ACCOUNT of the Thief !

Redmi 5 Plus
Bought on AliExpress with fake Global Rom(chinese) and Locked BL
After 2 months Stolen
Found by Police Yesterday 3 months after denounced
Buyer of the stolen Phone not practical and his Friend had Setup Find my Phone
Factory Reset at the police station
And HE DOESN'T REMEMBER THE PASSWORD AND I HAVE NO WAY CONTACTING HIM and also CAN'T
Tried flashing oldest Chinese Rom via test points Through fastboot
Clean all + Persist.img
Still requires the password as soon as you connect to WiFi or SIM Data
Tried through QuickShortcutMaker and adb shell method but I'm stuck
Through adb shell i can uninstall the findmyphone app but i can't backup it and install it again because the system tells me it's installed on Second Space and I can't seem to find the user number userid of secondspace!
I NEED HELP!
dissidius said:
Redmi 5 Plus
Bought on AliExpress with fake Global Rom(chinese) and Locked BL
After 2 months Stolen
Found by Police Yesterday 3 months after denounced
Buyer of the stolen Phone not practical and his Friend had Setup Find my Phone
Factory Reset at the police station
And HE DOESN'T REMEMBER THE PASSWORD AND I HAVE NO WAY CONTACTING HIM and also CAN'T
Tried flashing oldest Chinese Rom via test points Through fastboot
Clean all + Persist.img
Still requires the password as soon as you connect to WiFi or SIM Data
Tried through QuickShortcutMaker and adb shell method but I'm stuck
Through adb shell i can uninstall the findmyphone app but i can't backup it and install it again because the system tells me it's installed on Second Space and I can't seem to find the user number userid of secondspace!
I NEED HELP!
Click to expand...
Click to collapse
Wipe via fastboot via emergency USB under phone cover. Reflash. Must have service USB cable. Easiest way to do it - take to service.

Corrupted Bootloader & Missing IMEI (But phone still works)

So basicaly I was being lazy and in a rush. I had done something like this before on much older phone(s) with no issues...
I backed up my working LG G5 in TWRP all partitions. I brought exactly the same model for my wife and wanted to restore my backup to that phone (I have made many customisations on my rom and didnt want to have to manually do it all again for her)
However after unlocking the bootloader, flashing TWRP and installing new base rom (all went fine) I then went to restore my old backup onto this new phone, stupidly I ticked all partitions to restore. I have a feeling that I should have only done the larger partitions. Once I rebooted I got the "cant be trusted" message, I reflashed in UPPERCUT but then the phone booted and then had secureboot enabled. I hit the wrong password (as there was none) 30 times which then forced a format. Now the phone boots fine and works 100% BUT...BUT....
I now can no longer unlock the bootloader as I think its trying to use MY phones bootloader (as its unlock.img says its the wrong one, I have tried both MY phones original unlock.img and my wifes new phones unlock.img but both dont work) I cannot relock the bootloader as it says its already locked... this also now means that through LG official software I cannot recover the phone. Only UPPERCUT can see the phone. I can get to download mode and fastboot.
Also the phones IMEI now says 0, this worried me however her SIM card is working 100% fine (I guess that the IMEI
is cached somewhere, but im worried that if I use some cleaning tools it may scrub it and then she will have no network access)
So basicaly if her phone starts to play up (or I want to upgrade it to Oreo / Lineage at a later date) can anyone offer me advice on how to...
A: Fix / Restore the bootloader (I dont mean recovery) Im confused as to if this is stored on a chip or can be reflashed from the kdz firmware images.
B: Resore the IMEI (I have it written down) incase we get any network issues in the future. Can it be resored or regenerated without some fancy hardware, ie only through software.
C: I dont have Root or TWRP access it seems, any way of Getting Magisk or Super SU on a phone without bootloader unlock, root access or TWRP?
I have had many years experience and never bricked a phone but almost did this time.
I decided to post a solution here, because it was one of the first Google results when I was looking for some help.
Long story short, I did exactly same mistake of restoring all partitions, including the EFS, between two same LG devices. Turns out it messes with IMEI, which is a big no no and phone locks. Now you can't unlock the device again, because there is no IMEI to use in unlocking. Also no flashing or erasing anymore, because it just fails.
So the IMEI needs to be restored first.
My phone was in a bootloop constantly showing the "cant be trusted" message, but I managed to fix that using LGUP. Apparently not all partitions are locked, because trying to flash the same system with LGUP fixed the bootloop, but failed to flash clean system and the data that TWRP flashed was still there. Trying to restore system to factory settings also fails, but it doesn't matter.
Fortunately I was able boot the system, which made fixing it easier than you'd expect:
1. Fixing the IMEI from booted system (no root or unlocking needed):
- Access the hidden menu on your device by dialing a proper number. For LG G5 H850 it is *#546368#*#850#
Where 850 in the last part is your phone model. The number will vary for different models.
- Go to SVC Menu -> CRCWIZARD Test
- Switch tab to Auto MID
- Here you can enter your new IMEI and WiFi and BT MAC addresses, or you can just generate it.
You can also use the generate option for all values and then manually change only the IMEI for the original one.
- Press MID Write button and reboot your device.
- That's it. IMEI issue should be fixed now.
2. Now that you restored your original IMEI, you can again unlock your device using the same unlock.bin file that you used to unlock bootloader the first time.
Voila. From now on the device is again unlocked and you can just go back to flashing whatever you need.

(Trackfone) Alcatel Tcl Lx [A502dl] : Help unlock bootloader & rooting

As in the title, I have an, Alcatel Tcl Lx A502dl, Android phone, originally purchased from Walmart with a Trackfone Sim card (Now there is no sim card insterted).
I have spent all day, up until now, figuring out how to link abd and fastboot to the phone using USB debugging, and I have been successful this far. I had downloaded latest "platform-tools_r29.0.1-windows" from here on XDA, and I downloaded latest "fatsboot" from "HighonAndroid.com", for a quicker experience, without wasting time and effort on Java downloads. In addition to all this, I let the computer search the network for updating driver software, for my Alcatel phone. I also downloaded "UniversalAdbDriverSetup", from the former link, @highonandroid.com.
I linked both file pathways for corresponding "Fastboot", and "platform-tools", into the environment variables, under the term: "Path", yes, using a ";" with no spaces to add the new pathways.
I had success linking my phone onto the "abd" program, the phone is listed under "abd devices" command. I could not seem to get a listing of my phone serial number, under the "fastboot devices" command?
I have tried to get "platform-tools" to put the phone into "fastboot/bootloader" mode, but the phone simply reboots, back to the lockscreen. I have also tried on "Fastboot", to "fastboot reboot bootloader", and my Alcatel again reboots to the lockscreen. All the while, I activated the OEM unlocking switch/setting in the "developer options" of my phone, from the beginning, before I ever gave any commands?
Why won't my Alcatel phone reboot into the "fastboot/bootloader" screen, where I could command "fastboot oem unlock"? Why does my phone respond to both programs, yet still she loads the lockscreen?
I am new to all this, not really a tech savvy individual, just wanted a liberated operating system for my line of work...
I need bootloader unlocked in order to root my device via computer, correct?
I can not check to see if my bootloader is unlocked, not by abd tools, or by numerical code in my "dialer app". The app crashes, and any time I attempt the "fastboot oem device-info" command, no device is listed, only a <looking for a device> prompt of sorts appears. I have been told this may be because, the drivers were not installed properly, or the device was not properly connected under some other issue, and I can try to fix this error by reinstalling drivers... what would the issue be?
I need help, and I would appreciate some guidance on rooting my Android, as there are not any threads in the forum, on this model of Alcatel, that I am aware of?
I am doing all of this on a Windows 7 computer, in a Library, just so you all know. I ask for administrative approval for most things.
Thank you.
tcl trackfone
Hello i was wondering if you ever got your phone rooted?
me to i have that problem on my tcl lx
to
Temporary mtk- root. Use init.d for always root
Sonjouten said:
Temporary mtk- root. Use init.d for always root
Click to expand...
Click to collapse
I can't possibly express how much I would love for you to elaborate on the 'use init.d for always root' part. Anyone else who knows, please jump in. Start by pretending I am an idiot. Then stop pretending and explain it to me as if I were an adult who needs a full-time minder. First one to help me achieve "always root" on this terrible, wretched, little excuse for an electronic device gets my undying gratitude and um, maybe some Google Play money? I am open to ideas here on that score. To reiterate, need help rooting my Tracfone TCL LX A502DL that has a castrated recovery (seriously, you can't flash anything from adb, the option is flat-out missing) and apparently no fastboot access AT ALL. I could do another seriously in parentheses, but you need to take my word for it w/o a bunch of examples. The bright spot is the vulnerability the device has to the mtk-su exploit. Get a # in like no time at all. Time elapsed from executing the file to getting the prompt is too short for my flesh computer to register (unless you -v, then about 1.5 seconds.) So how do I turn a root prompt into full root?
I can't possibly express how much I would love for you to elaborate....
Click to expand...
Click to collapse
WHAT HE SAID
+1
X2
etc
Thank you, H
Did he get that?
So did he earn that Google Play Store money or was he just full of it?
Just bumping this thread in case anyone has ideas for me. Seems like Alcatel has bootloader mode hidden on some phones. Here's my story: https://forum.xda-developers.com/showthread.php?p=81780645#post81780645
BTW - I am using mtk-su and have root and Magisk via init.d scripts, but still can't touch /system or flash recovery because of
Code:
/dev/block/dm-0' is read-only
which won't change unti bl unlocked...
I never did get her to root. Alas she is a broken phone now RIP. Sorry for the disappointments. But I move on more hopeful. ?
As posted by Viva La Android in another thread about the tcl a501dl:
The TCL A1 (A501DL) cannot be bootloader unlocked. Although the OEM Unlocking option can be enabled in the Developer Options menu, fastboot mode has been made inaccessible by TCL. Because the bootloader cannot be unlocked, it simply is not possible to flash a custom recovery or a patched boot image for systemless root support. System-wide root is not possible due to TCL's secure boot chain configuration and dm-verity. Until an exploit is found to bootloader unlock this device, rooting is not possible.
Click to expand...
Click to collapse
levone1 said:
Just bumping this thread in case anyone has ideas for me. Seems like Alcatel has bootloader mode hidden on some phones. Here's my story: https://forum.xda-developers.com/showthread.php?p=81780645#post81780645
BTW - I am using mtk-su and have root and Magisk via init.d scripts, but still can't touch /system or flash recovery because of
Code:
/dev/block/dm-0' is read-only
which won't change unti bl unlocked...
Click to expand...
Click to collapse
I have tried everything, and can't even get temporary root on my A502DL. How did you do this, if you don't mind? Thanks!
fliproc said:
I have tried everything, and can't even get temporary root on my A502DL. How did you do this, if you don't mind? Thanks!
Click to expand...
Click to collapse
Sorry, I honestly don't remember now - I just happened to have tje phone for a short time at that moment, so I was messing around with it... I remember there was nothimg special about it. I jist followed the instructions from the mtk-root thread and it worked.
Amazing Temp Root for MediaTek ARMv8 [2020-08-24] | XDA ...
Braadleyah said:
As in the title, I have an, Alcatel Tcl Lx A502dl, Android phone, originally purchased from Walmart with a Trackfone Sim card (Now there is no sim card insterted).
I have spent all day, up until now, figuring out how to link abd and fastboot to the phone using USB debugging, and I have been successful this far. I had downloaded latest "platform-tools_r29.0.1-windows" from here on XDA, and I downloaded latest "fatsboot" from "HighonAndroid.com", for a quicker experience, without wasting time and effort on Java downloads. In addition to all this, I let the computer search the network for updating driver software, for my Alcatel phone. I also downloaded "UniversalAdbDriverSetup", from the former link, @highonandroid.com.
I linked both file pathways for corresponding "Fastboot", and "platform-tools", into the environment variables, under the term: "Path", yes, using a ";" with no spaces to add the new pathways.
I had success linking my phone onto the "abd" program, the phone is listed under "abd devices" command. I could not seem to get a listing of my phone serial number, under the "fastboot devices" command?
I have tried to get "platform-tools" to put the phone into "fastboot/bootloader" mode, but the phone simply reboots, back to the lockscreen. I have also tried on "Fastboot", to "fastboot reboot bootloader", and my Alcatel again reboots to the lockscreen. All the while, I activated the OEM unlocking switch/setting in the "developer options" of my phone, from the beginning, before I ever gave any commands?
Why won't my Alcatel phone reboot into the "fastboot/bootloader" screen, where I could command "fastboot oem unlock"? Why does my phone respond to both programs, yet still she loads the lockscreen?
I am new to all this, not really a tech savvy individual, just wanted a liberated operating system for my line of work...
I need bootloader unlocked in order to root my device via computer, correct?
I can not check to see if my bootloader is unlocked, not by abd tools, or by numerical code in my "dialer app". The app crashes, and any time I attempt the "fastboot oem device-info" command, no device is listed, only a <looking for a device> prompt of sorts appears. I have been told this may be because, the drivers were not installed properly, or the device was not properly connected under some other issue, and I can try to fix this error by reinstalling drivers... what would the issue be?
I need help, and I would appreciate some guidance on rooting my Android, as there are not any threads in the forum, on this model of Alcatel, that I am aware of?
I am doing all of this on a Windows 7 computer, in a Library, just so you all know. I ask for administrative approval for most things.
Thank you.
Click to expand...
Click to collapse
I have heard elsewhere that it's not possible to unlock the bootloader of a Tracfone. Sorry. But at least we know why Tracfones are sold for so cheap lol
$cronos_ said:
I have heard elsewhere that it's not possible to unlock the bootloader of a Tracfone. Sorry. But at least we know why Tracfones are sold for so cheap lol
Click to expand...
Click to collapse
unlock bootloader and root with https://github.com/bkerler/mtkclient
This device cannot be rooted. To date, there has not been a single validated claim of a rooted TCL A509DL. The bootloader cannot be unlocked, preventing root, custom ROM installs,etc.
UPDATE: After hearing from some members regarding the Hydra Tool, and doing a little bit of research on the method, it appears that I was completely wrong on my.statement. Members here on XDA as well as Hovatek have confirmed that the A509DL bootloader can indeed be exploited with the Hydra Tool method, opening the door to systemless root with Magisk. Thanks guys for the info and guidance. I have one of these devices and look forward to unlocking & rooting soon. Thanks @PrivyetCyka for the info.
Yes it can .. it was extremely easy to do so also..i have a rooted one in my hand as we speak the only issue is I was stupid and tried to flash the magisk zip in twrp and it set off secureboot so in working on fixing that .. but .. if you just use MTKClient you can pull the entire firmware , magisk patch then reflash the boot.img using the same tool and you can even install twrp I have the entire firmware , twrp, and magisk patched boot imgs for the device saved ,. If someone knows how to disable secureboot I would really appreciate it
Viva La Android said:
This device cannot be rooted. To date, there has not been a single validated claim of a rooted TCL A509DL. The bootloader cannot be unlocked, preventing root, custom ROM installs,etc.
Click to expand...
Click to collapse
I sure would like to give it a whirl, but I haven't had that phone in over a year
Anyway, I decided to stop buying devices made deliberately less functional by their manufacturers.
PrivyetCyka said:
Yes it can .. it was extremely easy to do so also..i have a rooted one in my hand as we speak the only issue is I was stupid and tried to flash the magisk zip in twrp and it set off secureboot so in working on fixing that .. but .. if you just use MTKClient you can pull the entire firmware , magisk patch then reflash the boot.img using the same tool and you can even install twrp I have the entire firmware , twrp, and magisk patched boot imgs for the device saved ,. If someone knows how to disable secureboot I would really appreciate it
Click to expand...
Click to collapse
I stand corrected on my statement. I was incorrect. Out of curiosity, does the Hydra tool require the dongle in order to unlock the bootloader?
@PrivyetCyka send me the Magisk packed boot image and I will unpack it and disable secure boot. I can then pack it back up and link it to you. Are you referring to only secure boot or also AVB 2.0/dm-verity?
I didn't use hydra tool I used MTKClient from GitHub and did an entire system read back to have a backup then just renamed boot.bin to boot.img used magisk to patch it and then used the same MTKClient tool to reflash it... I have a twrp I made for it also but I don't know how functional it is as far as flashing things and backups , the only thing I tried to flash was the magisk zip just to see what would happen and that tripped the secureboot , I used the mediatek secureboot tool and it says it's disabled but it's still not booting past the secureboot fail screen.. when I get home I'll get the files and upload them tonight

Redmi 8A locked out

Hello All,
I have a weird situation. I found a phone somewhere which is Redmi 8A. It doesnt have any sim card nor memory card.
I tried to resent the phone and booted into recovery. but couldnt do it as there is no option to erase/reset the phone. Also tried to flash it with the Mi lashing tool it returned the error "cant erase phone is locked". Did tried to bruteforce the login screen but "usb debugging/developer mode is not enabled"
i would be really grateful if you can suggest a solution. I can give this to my community watchmen who doesnt have a phone.
the major three issues are
1. Recovery doesnt have reset option
2. USB debugging/developer mode not enabled
3. Screen is locked with 4 digit pin.
Thank you all in advance.
This is a bit tricky but you could just open up the phone take out the drive and modify it directly by adapting it
That's the best you could do I guess
Because for anything more you will have to get into the phone
Good luck

Categories

Resources