Can't unlock permanently bootloader just after reboot (SLAA, DA, SBC etc) - Xiaomi Redmi 6A Questions & Answers

Hi, I'm facing problems with this Xiaomi Redmi 6A for unlock bootloader and root. I have this device for check stuff on webpages, testing apps, dlna and some random stuff I don't put in my personal daily phone.
I don't understand why reset itself protections after unlock bootloader ( when you reboot the phone )
Example I used 1: https://github.com/bkerler/mtkclient#unlock-bootloader
After to do this, when I reboot the phone, on fastboot tell me it's locked status.
Example 2: https://github.com/bkerler/mtkclient#root-the-phone-tested-with-android-9---12
after to do this, phone enter in a bootloop showing the message: The system has been destroyed.
So, for fix it, flash again partitions i've backup.
I tried various PC, USB cables, and the Ubuntu LiveDVD from Bkerler all ready setup.
For some reason, the protections get enabled in the moment of reboot or just disconnect the Usb cable. And don't understand what I'm doing wrong.
Device: Xiaomi Redmi 6A Global
MIUI: V11.0.8.0.PCBMIXM
Android 9
Extra logs with --debug flag
Stock:
[email protected]:/opt/mtkclient$ python mtk gettargetconfig --debugmode
MTK Flash/Exploit Client V1.57 (c) B.Kerler 2018-2022
Main
Main - [LIB]: mtk gettargetconfig --debugmode
Preloader - Status: Waiting for PreLoader VCOM, please connect mobile
DeviceClass
Port - Hint:
Power off the phone before connecting.
For brom mode, press and hold vol up, vol dwn, or all hw buttons and connect usb.
For preloader mode, don't press any hw button and connect usb.
DeviceClass
DeviceClass - [LIB]: Couldn't detect the device. Is it connected ?
DeviceClass
DeviceClass - [LIB]: Detaching kernel driver
Port - Device detected
DeviceClass
DeviceClass - [LIB]: TX:fd
DeviceClass
DeviceClass - [LIB]: echo:0x1
DeviceClass
DeviceClass - [LIB]: RX:fd
DeviceClass
DeviceClass - [LIB]: rdword:0x4
DeviceClass
DeviceClass - [LIB]: RX:07660000
Preloader - CPU: MT6765/MT8768t(Helio P35/G35)
Preloader - HW version: 0x0
Preloader - WDT: 0x10007000
Preloader - Uart: 0x11002000
Preloader - Brom payload addr: 0x100a00
Preloader - DA payload addr: 0x201000
Preloader - CQ_DMA addr: 0x10212000
Preloader - Var1: 0x25
Preloader - Disabling Watchdog...
DeviceClass
DeviceClass - [LIB]: TX:d4
DeviceClass
DeviceClass - [LIB]: echo:0x1
DeviceClass
DeviceClass - [LIB]: RX:d4
DeviceClass
DeviceClass - [LIB]: TX:10007000
DeviceClass
DeviceClass - [LIB]: echo:0x4
DeviceClass
DeviceClass - [LIB]: RX:10007000
DeviceClass
DeviceClass - [LIB]: TX:00000001
DeviceClass
DeviceClass - [LIB]: echo:0x4
DeviceClass
DeviceClass - [LIB]: RX:00000001
DeviceClass
DeviceClass - [LIB]: rword:0x2
DeviceClass
DeviceClass - [LIB]: RX:0001
DeviceClass
DeviceClass - [LIB]: TX:22000064
DeviceClass
DeviceClass - [LIB]: echo:0x4
DeviceClass
DeviceClass - [LIB]: RX:22000064
DeviceClass
DeviceClass - [LIB]: rword:0x2
DeviceClass
DeviceClass - [LIB]: RX:0001
Preloader - HW code: 0x766
DeviceClass
DeviceClass - [LIB]: TX:d8
DeviceClass
DeviceClass - [LIB]: echo:0x1
DeviceClass
DeviceClass - [LIB]: RX:d8
DeviceClass
DeviceClass - [LIB]: rbyte:0x6
DeviceClass
DeviceClass - [LIB]: RX:000000e70000
Preloader - Target config: 0xe7
Preloader - SBC enabled: True
Preloader - SLA enabled: True
Preloader - DAA enabled: True
Preloader - SWJTAG enabled: True
Preloader - EPP_PARAM at 0x600 after EMMC_BOOT/SDMMC_BOOT: False
Preloader - Root cert required: False
Preloader - Mem read auth: True
Preloader - Mem write auth: True
Preloader - Cmd 0xC8 blocked: True
Preloader - Get Target info
DeviceClass
DeviceClass - [LIB]: TX:fe
DeviceClass
DeviceClass - [LIB]: get_blver:0x1
DeviceClass
DeviceClass - [LIB]: RX:fe
Preloader - BROM mode detected.
DeviceClass
DeviceClass - [LIB]: TX:ff
DeviceClass
DeviceClass - [LIB]: get_bromver:0x1
DeviceClass
DeviceClass - [LIB]: RX:05
DeviceClass
DeviceClass - [LIB]: TX:fc
DeviceClass
DeviceClass - [LIB]: mtk_cmd:0x1
DeviceClass
DeviceClass - [LIB]: RX:fc
DeviceClass
DeviceClass - [LIB]: mtk_cmd:0x8
DeviceClass
DeviceClass - [LIB]: RX:8a00ca0000000000
Preloader - HW subcode: 0x8a00
Preloader - HW Ver: 0xca00
Preloader - SW Ver: 0x0
DeviceClass
DeviceClass - [LIB]: TX:fe
DeviceClass
DeviceClass - [LIB]: get_meid:0x1
DeviceClass
DeviceClass - [LIB]: RX:fe
DeviceClass
DeviceClass - [LIB]: TX:e1
DeviceClass
DeviceClass - [LIB]: get_meid:0x1
DeviceClass
DeviceClass - [LIB]: RX:e1
DeviceClass
DeviceClass - [LIB]: get_meid:0x4
DeviceClass
DeviceClass - [LIB]: RX:00000010
DeviceClass
DeviceClass - [LIB]: get_meid:0x10
DeviceClass
DeviceClass - [LIB]: RX:3c4f55a8a50fa8bda683ef19eeb4ffce
DeviceClass
DeviceClass - [LIB]: get_meid:0x2
DeviceClass
DeviceClass - [LIB]: RX:0000
Preloader - ME_ID: 3C4F55A8A50FA8BDA683EF93EKF9L4P
DeviceClass
DeviceClass - [LIB]: TX:fe
DeviceClass
DeviceClass - [LIB]: get_socid:0x1
DeviceClass
DeviceClass - [LIB]: RX:fe
DeviceClass
DeviceClass - [LIB]: TX:e7
DeviceClass
DeviceClass - [LIB]: get_socid:0x1
DeviceClass
DeviceClass - [LIB]: RX:e7
DeviceClass
DeviceClass - [LIB]: get_socid:0x4
DeviceClass
DeviceClass - [LIB]: RX:00000020
DeviceClass
DeviceClass - [LIB]: get_socid:0x20
DeviceClass
DeviceClass - [LIB]: RX:9a1cb9175183008325493cf1f50ab3ddc12441ec922a2ede02153e69905f3c66
DeviceClass
DeviceClass - [LIB]: get_socid:0x2
DeviceClass
DeviceClass - [LIB]: RX:0000
Preloader - SOC_ID: 9A1CB9175183008325493CF1F50AB3DDC12441EC922A2EDE02153E66842F716
Main - Getting target info...
DeviceClass
DeviceClass - [LIB]: TX:d8
DeviceClass
DeviceClass - [LIB]: echo:0x1
DeviceClass
DeviceClass - [LIB]: RX:d8
DeviceClass
DeviceClass - [LIB]: rbyte:0x6
DeviceClass
DeviceClass - [LIB]: RX:000000e70000
Preloader - Target config: 0xe7
Preloader - SBC enabled: True
Preloader - SLA enabled: True
Preloader - DAA enabled: True
Preloader - SWJTAG enabled: True
Preloader - EPP_PARAM at 0x600 after EMMC_BOOT/SDMMC_BOOT: False
Preloader - Root cert required: False
Preloader - Mem read auth: True
Preloader - Mem write auth: True
Preloader - Cmd 0xC8 blocked: True
Click to expand...
Click to collapse
After of unlock bootloader:
[email protected]:/opt/mtkclient$ python mtk payload
MTK Flash/Exploit Client V1.57 (c) B.Kerler 2018-2022
Preloader - Status: Waiting for PreLoader VCOM, please connect mobile
Port - Device detected
Preloader - CPU: MT6765/MT8768t(Helio P35/G35)
Preloader - HW version: 0x0
Preloader - WDT: 0x10007000
Preloader - Uart: 0x11002000
Preloader - Brom payload addr: 0x100a00
Preloader - DA payload addr: 0x201000
Preloader - CQ_DMA addr: 0x10212000
Preloader - Var1: 0x25
Preloader - Disabling Watchdog...
Preloader - HW code: 0x766
Preloader - Target config: 0x0
Preloader - SBC enabled: False
Preloader - SLA enabled: False
Preloader - DAA enabled: False
Preloader - SWJTAG enabled: False
Preloader - EPP_PARAM at 0x600 after EMMC_BOOT/SDMMC_BOOT: False
Preloader - Root cert required: False
Preloader - Mem read auth: False
Preloader - Mem write auth: False
Preloader - Cmd 0xC8 blocked: False
Preloader - Get Target info
Preloader - BROM mode detected.
Preloader - HW subcode: 0x8a00
Preloader - HW Ver: 0xca00
Preloader - SW Ver: 0x0
Preloader - ME_ID: 3C4F55A8A50FA8BDA683EF93EKF9L4P
Preloader - SOC_ID: 9A1CB9175183008325493CF1F50AB3DDC12441EC922A2EDE02153E66842F716
PLTools - Loading payload from mt6765_payload.bin, 0x264 bytes
PLTools - Kamakiri / DA Run
Kamakiri - Trying kamakiri2..
Kamakiri - Done sending payload...
PLTools - Successfully sent payload: /opt/mtkclient/mtkclient/payloads/mt6765_payload.bin
Click to expand...
Click to collapse
GPT Tables:
boot_para
recovery
para
expdb
frp
nvcfg
nvdata
metadata
protect1
protect2
seccfg
persist
secl
proinfo
efuse
mdlimg
spmfw
scp1
scp2
sspm_1
sspm_2
gz1
gz2
nvram
lk
lk2
boot
logo
odmdtbo
cust
tee1
tee2
pad
vendor
system
devinfo
cache
userdata
otp
flashinfo
Click to expand...
Click to collapse

Related

Hermes pdocread WM6 dump requested

Hi,
I was curious if anyone has an extracted imgfs from a WM6 install that they can point me over to? I would like to play with some WM6 to WM5 programs. I cannot for the life of me get any of the WM6 Roms to extract properly I keep getting errors.
Thanks,
Rich
have you tried "Rom Koch?" It in one of the stickies at the top of the page.
RichTJ99 said:
Hi,
I was curious if anyone has an extracted imgfs from a WM6 install that they can point me over to? I would like to play with some WM6 to WM5 programs. I cannot for the life of me get any of the WM6 Roms to extract properly I keep getting errors.
Thanks,
Rich
Click to expand...
Click to collapse
the correct procedure is as follows (manually)
NBHExtract (or use my NBHDump, it's faster!) --> aChef/aWaiter to generate imgfs from OS.nb --> Imgfs tools (imgfsview, addfile) etcetera --> aChef/aWaiter to rebuild OS.nb --> NBHGen to generate flashable NBH
I had been using, NNHextract to the ruu_signed.nbh file to generate an 02_OS.nb file, then I use the prepare_imgfs.exe 02_OS.NB, this generates imgfs_raw_data.bin
Then I use viewimgfs.exe imgfs_raw_data.bin ---- Did I miss a step somewhere?
Code:
Here was the output:
C:\imgfs_tools_182>viewimgfs.exe imgfs_raw_data.bin
guidBootSignature: F8 AC 2C 9D E3 D4 2B 4D BD 30 91 6E D8 4F 31 DC
dwFSVersion: 00000001
dwSectorsPerHeaderBlock: 00000001
dwRunsPerFileHeader: 00000001
dwBytesPerHeader: 00000034
dwChunksPerSector: 00000008
dwFirstHeaderBlockOffset: 00000200
dwDataBlockSize: 00001000
szCompressionType: XPR
dwFreeSectorCount: 0001D317
dwHiddenSectorCount: 00000100
dwUpdateModeFlag: 00000000
Address: 00000200, dwBlockSignature: 00003100
dwNextHeaderBlock: FFFBFFFF (size: FFFBFDFF)
Header type: 2F5314CE, Addr: 00000208
Unknown header type, FS_DATA_TABLE??
Header type: 00000400, Addr: 0000023C
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 00000270
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 000002A4
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 000002D8
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 0000030C
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 00000340
Unknown header type, FS_DATA_TABLE??
Header type: 000004C0, Addr: 00000374
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 000003A8
Unknown header type, FS_DATA_TABLE??
Address: FFFBFFFF, dwBlockSignature: 00000000
dwNextHeaderBlock: 00000000 (size: 00040001)
Header type: 00000000, Addr: FFFC0007
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC003B
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC006F
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC00A3
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC00D7
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC010B
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC013F
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC0173
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: FFFC01A7
Unknown header type, FS_DATA_TABLE??
do not use prepareimgfs.exe, use aChef.
So I was able to use the Achef to get the imgfs_raw_data.bin file out of the 02_OS.nb. How do I extract all the files / directories from the imgfs_raw_data.bin to a sub directory?
BTW, my goal is to fully extract the WM6 onto windows to play with the OS itself.
use viewimgfs now on the new bin file.
I used the command:
Code:
Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.
C:\aChef-v_0_2_1>viewimgfs.exe imgfs_raw_data.bin
C:\aChef-v_0_2_1>
Nothing happens?
No errors, just nothing at all...
Any ideas, I think I am pretty close to where I need to be.
Sorry to come accross as a newb but I am really confused on what I might be doing wrong to dump this rom. Any suggestions?
Thanks,
Rich

how to dump the rom

I have a Rom http://www.dopodasia.com/download/RUU_1.32.707.0_DOPODWWE_Ship.exe
I use WinRAR open the RUU_1.32.707.0_DOPODWWE_Ship.exe,I find the nksigned.nbh. Rename to nk.nbh.
1. cmd
D:\tt2>NBHextract.exe nk.nbh -v
=== NBHextract v1.0
=== Extract contents from HTC NBH files
=== (c)2007 xda-developers.com
=== by: pof & TheBlasphemer based on itsme perl scripts
Device: StarTrek
CID: DOPOD001
Version: 1.32.707.0
Language: WWE
Extracting: 00_G3IPL.nb
Extracting: 01_G4IPL.nb
Extracting: 02_SPL.nb
Extracting: 03_GSM.nb
Extracting: 04_ExtROM.nb
Extracting: 05_MainSplash.nb
Encoding: 05_MainSplash.bmp
Extracting: 06_OS.nb
rename 06_OS.nb to OS.nb
2.
D:\tt2>NBSplit -hermes OS.nb
NBSplit 2.0 RC 2
Done.
3.
D:\tt2>ImgfsFromNb OS.nb.payload imgfs.bin
ImgfsFromNb 2.0 RC 2
Searching for IMGFS start...
Found IMGFS at 0045e860.
Dumping IMGFS at offset 0045e860 (size 02217a08)
Done!
4.
D:\tt2>ImgfsToDump imgfs.bin
ImgfsToDump 2.0 RC 2
guidBootSignature: F8 AC 2C 9D E3 D4 2B 4D BD 30 91 6E D8
dwFSVersion: 00000001
dwSectorsPerHeaderBlock: 00000001
dwRunsPerFileHeader: 00000001
dwBytesPerHeader: 00000034
dwChunksPerSector: 00000008
dwFirstHeaderBlockOffset: 00000200
dwDataBlockSize: 00001000
szCompressionType: LZX
dwFreeSectorCount: 00002B22
dwHiddenSectorCount: 00000100
dwUpdateModeFlag: 00000000
Address: 00000200, dwBlockSignature: FFFFFEFE
dwNextHeaderBlock: 00000000 (size: FFFFFE00)
Header type: 00000270, Addr: 00000208
Unknown header type, FS_DATA_TABLE??
Header type: 00760070, Addr: 0000023C
Unknown header type, FS_DATA_TABLE??
Header type: 000002A4, Addr: 00000270
Unknown header type, FS_DATA_TABLE??
Header type: 000002D8, Addr: 000002A4
Unknown header type, FS_DATA_TABLE??
Header type: 0000030C, Addr: 000002D8
Unknown header type, FS_DATA_TABLE??
Header type: 00000000, Addr: 0000030C
Unknown header type, FS_DATA_TABLE??
Header type: 000003A8, Addr: 00000340
Unknown header type, FS_DATA_TABLE??
Header type: 0072006F, Addr: 00000374
Unknown header type, FS_DATA_TABLE??
Header type: 00300053, Addr: 000003A8
Unknown header type, FS_DATA_TABLE??
It's defeated .What can I do??
Please Help me! Thanks!!!
um, i'd try posting in the general tech area... more chance for a reply

[Q] A70 - USB HOST...What to do?

Hi!
Usb host on my A70 IT doesn't works(or works not properly?)
Result is the same with 4 different usb flash...
PHP:
<6>request_suspend_state: wakeup (3->0) at 34543067291305 (2011-03-20 08:55:26.774108889 UTC)
<7>omapdss omapdss: regulator_enable omapdss-vdds_dsi enabled 0
<4>omapdss DPI: Could not find exact pixel clock. Requested 41575 kHz, got 41574 kHz
<6>panel_enable [lcd]
<7>usb usb1: usb auto-resume
<7>ohci-omap ohci-omap.0: resume root hub
<7>hub 1-0:1.0: hub_resume
<7>hub 1-0:1.0: port 2: status 0107 change 0000
<7>hub 1-0:1.0: state 7 ports 3 chg 0000 evt 0000
<7>usb 1-2: usb resume
<7>hub 1-0:1.0: state 7 ports 3 chg 0000 evt 0004
<7>ohci-omap ohci-omap.0: GetStatus roothub.portstatus [1] = 0x00040103 PSSC PPS PES CCS
<7>usb 1-2: finish resume
<7>ohci-omap ohci-omap.0: urb c5bc9b40 path 2 ep0in 5ec20000 cc 5 --> status -62
<7>usb 1-2: retry with reset-resume
<7>hub 1-0:1.0: state 7 ports 3 chg 0000 evt 0004
<7>ohci-omap ohci-omap.0: GetStatus roothub.portstatus [1] = 0x00100103 PRSC PPS PES CCS
<6>usb 1-2: reset full speed USB device using ohci-omap and address 2
<7>hub 1-0:1.0: state 7 ports 3 chg 0000 evt 0004
<7>ohci-omap ohci-omap.0: GetStatus roothub.portstatus [1] = 0x00100103 PRSC PPS PES CCS
<7>usb 1-2: ep0 maxpacket = 16
<4>mma7660fc_ctrl_ioctl: Set polling delay 200
<4>usb_switch_print_state: 3 ATTACHED_HOST
<4>
<4>usb_switch_print_state: 3 ATTACHED_HOST
<4>
<7>twl4030_usb twl4030_usb: regulator_enable twl4030_usb-usb1v5 enabled 0
<7>twl4030_usb twl4030_usb: regulator_enable twl4030_usb-usb1v8 enabled 0
<7>twl4030_usb twl4030_usb: regulator_enable twl4030_usb-usb3v1 enabled 0
<6>musb_hdrc: version 6.0, musb-dma, peripheral, debug=0
<7>twl4030_usb twl4030_usb: regulator_enable twl4030_usb-usb3v1 enabled 1
<7>twl4030_usb twl4030_usb: regulator_enable twl4030_usb-usb1v8 enabled 1
<7>twl4030_usb twl4030_usb: regulator_enable twl4030_usb-usb1v5 enabled 1
<6>musb_hdrc: USB Host mode controller at fa0ab000 using DMA, IRQ 92
<6>musb_hdrc musb_hdrc: MUSB HDRC host driver
<7>/mnt/flash/releases/G8A/AX08_r2.1.2/arcbuild/linux/drivers/usb/core/inode.c: creating file '002'
<6>musb_hdrc musb_hdrc: new USB bus registered, assigned bus number 2
<7>usb usb2: default language 0x0409
<6>usb usb2: New USB device found, idVendor=1d6b, idProduct=0002
<6>usb usb2: New USB device strings: Mfr=3, Product=2, SerialNumber=1
<6>usb usb2: Product: MUSB HDRC host driver
<6>usb usb2: Manufacturer: Linux 2.6.29-omap1 musb-hcd
<6>usb usb2: SerialNumber: musb_hdrc
<7>usb usb2: uevent
<7>usb usb2: usb_probe_device
<6>usb usb2: configuration #1 chosen from 1 choice
<7>usb usb2: adding 2-0:1.0 (config #1, interface 0)
<7>usb 2-0:1.0: uevent
<7>hub 2-0:1.0: usb_probe_interface
<7>hub 2-0:1.0: usb_probe_interface - got id
<6>hub 2-0:1.0: USB hub found
<6>hub 2-0:1.0: 1 port detected
<7>hub 2-0:1.0: standalone hub
<7>hub 2-0:1.0: individual port power switching
<7>hub 2-0:1.0: no over-current protection
<7>hub 2-0:1.0: power on to power good time: 10ms
<7>hub 2-0:1.0: 100mA bus power budget for each child
<7>hub 2-0:1.0: local power source is good
<7>hub 2-0:1.0: enabling power on all ports
<7>/mnt/flash/releases/G8A/AX08_r2.1.2/arcbuild/linux/drivers/usb/core/inode.c: creating file '001'
<7>hub 2-0:1.0: state 7 ports 1 chg 0000 evt 0000
<7>hub 2-0:1.0: state 7 ports 1 chg 0000 evt 0002
<7>hub 2-0:1.0: port 1, status 0101, change 0001, 12 Mb/s
<7>hub 2-0:1.0: debounce: port 1: total 100ms stable 100ms status 0x101
<6>usb 2-1: new high speed USB device using musb_hdrc and address 2
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<3>usb 2-1: device descriptor read/64, error -110
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<3>usb 2-1: device descriptor read/64, error -110
<6>usb 2-1: new high speed USB device using musb_hdrc and address 3
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<3>usb 2-1: device descriptor read/64, error -110
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<7>usb 2-1: khubd timed out on ep0in len=0/64
<3>usb 2-1: device descriptor read/64, error -110
<6>usb 2-1: new high speed USB device using musb_hdrc and address 4
...and no external drive presented
Help!!! What should I do?
Decided ...
There was no connection between contact 4 and signal ground on usb-microusb adapter.
P.S. But this adapter works properly with HP Voice Messenger ...

Serial console and early kernel boot process - HOW?

Hello.
I want to look, what happened at early boot stage of kernel (right from Uncompressing Linux stage).
Trying to do boot into fastboot mode and run fastboot oem boot - got this:
Code:
...
(bootloader) setup_tag addr=0x48000100 cmdline add=0x801E6708
(bootloader) TAG:Ramdisk OK
(bootloader) TAG:skuid 0x2A408
(bootloader) TAG:hero panel = 0x940026
(bootloader) TAG:engineerid = 0x0
(bootloader) TAG: PS ID = 0x2
(bootloader) Device CID is not super CID
(bootloader) CID is 0202
(bootloader) setting->cid::0202
(bootloader) serial number: HT22PV******
(bootloader) commandline from head: console=ttyHSL0
(bootloader) command line length =535
(bootloader) active commandline: poweron_status=1 board_shooter_u.disable
(bootloader) _uart3=0 diag.enabled=0 board_shooter_u.debug_uart=0 userdat
(bootloader) a_sel=0 androidboot.emmc=true androidboot.pagesize=2048 skui
(bootloader) d=0 ddt=20 androidboot.lb=0 androidboot.baseband=11.23.3504.
(bootloader) 09_M2 androidboot.cid=0202 androidboot.batt_poweron=good_b
(bootloader) attery androidboot.carrier=COMMON androidboot.mid=PG8630000
(bootloader) androidboot.keycaps=qwerty androidboot.dq=PASS androidboot.m
(bootloader) ode=normal androidboot.serialno=HT22PV****** androidboot.boo
(bootloader) tloader=1.49.0018 zygote_oneshot=off msm_watchdog.enable=1 c
(bootloader) onsole=ttyHSL0
(bootloader) aARM_Partion[0].name=misc
(bootloader) aARM_Partion[1].name=recovery
(bootloader) aARM_Partion[2].name=boot
(bootloader) aARM_Partion[3].name=system
(bootloader) aARM_Partion[4].name=cache
(bootloader) aARM_Partion[5].name=userdata
(bootloader) aARM_Partion[6].name=devlog
(bootloader) aARM_Partion[7].name=pdata
(bootloader) aARM_Partion[8].name=radio
(bootloader) aARM_Partion[9].name=adsp
(bootloader) aARM_Partion[A].name=radio_config
(bootloader) aARM_Partion[B].name=modem_st1
(bootloader) aARM_Partion[C].name=modem_st2
(bootloader) partition number=13
(bootloader) Valid partition num=13
(bootloader) ddr_get_size: rank 0 reg = E000
(bootloader) ddr_get_size: rank 1 reg = E000
(bootloader) ddr_get_size: ddr_size = 1024
(bootloader) TZ_HTC_SVC_SET_DDR_MPU ret = 0
(bootloader) smem 50006000 (phy 50006000): TZ_HTC_SVC_UPDATE_SMEM ret = 0
(bootloader) TZ_HTC_SVC_LOG_OPERATOR ret = 0
(bootloader) TZ_HTC_SVC_DISABLE ret = 6381568 (0x616000)
(bootloader) jump_to_kernel: machine_id(3358), tags_addr(0x48000100), ker
(bootloader) nel_addr(0x48008000)
(bootloader) -------------------hboot boot time:16517 msec
FAILED (status read failed (No such device))
finished. total time: 8.679s
And got this in computer's dmesg:
Code:
[317564.496129] usb 2-3: khubd timed out on ep0in len=0/5
[317564.496134] usb 2-3: unable to get BOS descriptor
[317564.499991] usb 2-3: default language 0x0409
[317564.502996] usb 2-3: udev 51, busnum 2, minor = 178
[317564.503016] usb 2-3: New USB device found, idVendor=0bb4, idProduct=0ff0
[317564.503022] usb 2-3: New USB device strings: Mfr=1, Product=2, SerialNumber=3
[317564.503025] usb 2-3: Product: Android 1.0
[317564.503027] usb 2-3: Manufacturer: htc, Inc
[317564.503029] usb 2-3: SerialNumber: HT22PV******
[317564.503152] usb 2-3: usb_probe_device
[317564.503156] usb 2-3: configuration #1 chosen from 1 choice
[317564.504131] usb 2-3: adding 2-3:1.0 (config #1, interface 0)
[317564.504251] drivers/usb/core/inode.c: creating file '051'
[317574.071377] ehci_hcd 0000:00:1d.7: detected XactErr len 0/64 retry 1
[317574.071406] hub 2-0:1.0: state 7 ports 6 chg 0000 evt 0008
[317574.071418] ehci_hcd 0000:00:1d.7: detected XactErr len 0/64 retry 2
[317574.071426] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001002 0 ACK POWER sig=se0 CSC
[317574.071440] hub 2-0:1.0: port 3, status 0100, change 0001, 12 Mb/s
[317574.071445] usb 2-3: USB disconnect, device number 51
[317574.071447] usb 2-3: unregistering device
[317574.071450] usb 2-3: unregistering interface 2-3:1.0
[317574.071453] ehci_hcd 0000:00:1d.7: detected XactErr len 0/64 retry 3
[317574.071484] ehci_hcd 0000:00:1d.7: detected XactErr len 0/64 retry 4
[317574.071505] ehci_hcd 0000:00:1d.7: detected XactErr len 0/64 retry 5
[317574.071535] ehci_hcd 0000:00:1d.7: detected XactErr len 0/64 retry 6
[317574.071543] ehci_hcd 0000:00:1d.7: shutdown urb e63d4d80 ep1in-bulk
[317574.071618] usb 2-3: usb_disable_device nuking all URBs
[317574.175056] hub 2-0:1.0: debounce: port 3: total 100ms stable 100ms status 0x100
[317575.066817] hub 2-0:1.0: state 7 ports 6 chg 0000 evt 0008
[317575.066837] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001803 0 ACK POWER sig=j CSC CONNECT
[317575.066846] hub 2-0:1.0: port 3, status 0501, change 0001, 480 Mb/s
[317575.170062] hub 2-0:1.0: debounce: port 3: total 100ms stable 100ms status 0x501
[317575.221350] ehci_hcd 0000:00:1d.7: port 3 high speed
[317575.221356] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001005 0 ACK POWER sig=se0 PE CONNECT
[317575.272142] usb 2-3: new high-speed USB device number 52 using ehci_hcd
[317575.323349] ehci_hcd 0000:00:1d.7: port 3 high speed
[317575.323355] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001005 0 ACK POWER sig=se0 PE CONNECT
[317575.386551] usb 2-3: default language 0x0409
[317575.386948] usb 2-3: udev 52, busnum 2, minor = 179
[317575.386951] usb 2-3: New USB device found, idVendor=0bb4, idProduct=0ff0
[317575.386954] usb 2-3: New USB device strings: Mfr=2, Product=3, SerialNumber=4
[317575.386957] usb 2-3: Product: Android Phone
[317575.386959] usb 2-3: Manufacturer: HTC
[317575.386961] usb 2-3: SerialNumber: HT22PV******
[317575.387075] usb 2-3: usb_probe_device
[317575.387079] usb 2-3: configuration #1 chosen from 1 choice
[317575.387389] usb 2-3: adding 2-3:1.0 (config #1, interface 0)
[317575.387668] libusual 2-3:1.0: usb_probe_interface
[317575.387679] libusual 2-3:1.0: usb_probe_interface - got id
[317575.387705] usb-storage 2-3:1.0: usb_probe_interface
[317575.387711] usb-storage 2-3:1.0: usb_probe_interface - got id
[317575.387988] scsi629 : usb-storage 2-3:1.0
[317575.388135] drivers/usb/core/inode.c: creating file '052'
[317576.390942] scsi 629:0:0:0: Direct-Access HTC Android Phone 0000 PQ: 0 ANSI: 2
[317576.391193] sd 629:0:0:0: Attached scsi generic sg2 type 0
[317576.398144] sd 629:0:0:0: [sdb] Attached SCSI removable disk
[317577.895522] hub 2-0:1.0: state 7 ports 6 chg 0000 evt 0008
[317577.895540] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001002 0 ACK POWER sig=se0 CSC
[317577.895552] hub 2-0:1.0: port 3, status 0100, change 0001, 12 Mb/s
[317577.895561] usb 2-3: USB disconnect, device number 52
[317577.895563] usb 2-3: unregistering device
[317577.895566] usb 2-3: unregistering interface 2-3:1.0
[317577.902263] usb 2-3: usb_disable_device nuking all URBs
[317578.006049] hub 2-0:1.0: debounce: port 3: total 100ms stable 100ms status 0x100
[317578.133715] hub 2-0:1.0: state 7 ports 6 chg 0000 evt 0008
[317578.133734] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001803 0 ACK POWER sig=j CSC CONNECT
[317578.133746] hub 2-0:1.0: port 3, status 0501, change 0001, 480 Mb/s
[317578.237057] hub 2-0:1.0: debounce: port 3: total 100ms stable 100ms status 0x501
[317578.288350] ehci_hcd 0000:00:1d.7: port 3 high speed
[317578.288356] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001005 0 ACK POWER sig=se0 PE CONNECT
[317578.339057] usb 2-3: new high-speed USB device number 53 using ehci_hcd
[317578.390348] ehci_hcd 0000:00:1d.7: port 3 high speed
[317578.390355] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001005 0 ACK POWER sig=se0 PE CONNECT
[317578.453590] usb 2-3: default language 0x0409
[317578.453940] usb 2-3: udev 53, busnum 2, minor = 180
[317578.453943] usb 2-3: New USB device found, idVendor=0bb4, idProduct=0ff0
[317578.453945] usb 2-3: New USB device strings: Mfr=2, Product=3, SerialNumber=4
[317578.453948] usb 2-3: Product: Android Phone
[317578.453950] usb 2-3: Manufacturer: HTC
[317578.453952] usb 2-3: SerialNumber: HT22PV******
[317578.454066] usb 2-3: usb_probe_device
[317578.454071] usb 2-3: configuration #1 chosen from 1 choice
[317578.454504] usb 2-3: adding 2-3:1.0 (config #1, interface 0)
[317578.454696] libusual 2-3:1.0: usb_probe_interface
[317578.454703] libusual 2-3:1.0: usb_probe_interface - got id
[317578.454718] usb-storage 2-3:1.0: usb_probe_interface
[317578.454723] usb-storage 2-3:1.0: usb_probe_interface - got id
[317578.457454] scsi630 : usb-storage 2-3:1.0
[317578.457589] usb 2-3: adding 2-3:1.1 (config #1, interface 1)
[317578.457673] drivers/usb/core/inode.c: creating file '053'
[317578.981002] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 1
[317578.981032] hub 2-0:1.0: state 7 ports 6 chg 0000 evt 0008
[317578.981042] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 2
[317578.981050] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001002 0 ACK POWER sig=se0 CSC
[317578.981065] hub 2-0:1.0: port 3, status 0100, change 0001, 12 Mb/s
[317578.981069] usb 2-3: USB disconnect, device number 53
[317578.981072] usb 2-3: unregistering device
[317578.981075] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 3
[317578.981078] usb 2-3: unregistering interface 2-3:1.0
[317578.981111] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 4
[317578.981134] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 5
[317578.981164] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 6
[317578.981193] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 7
[317578.981350] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 8
[317578.981374] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 9
[317578.981389] usb 2-3: unregistering interface 2-3:1.1
[317578.981397] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 10
[317578.981419] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 11
[317578.981441] ehci_hcd 0000:00:1d.7: detected XactErr len 0/24 retry 12
[317578.981479] ehci_hcd 0000:00:1d.7: shutdown urb f5a2ff00 ep2in-bulk
[317578.981546] usb 2-3: usb_disable_device nuking all URBs
[317579.085116] hub 2-0:1.0: debounce: port 3: total 100ms stable 100ms status 0x100
[317579.223614] hub 2-0:1.0: state 7 ports 6 chg 0000 evt 0008
[317579.223633] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001803 0 ACK POWER sig=j CSC CONNECT
[317579.223646] hub 2-0:1.0: port 3, status 0501, change 0001, 480 Mb/s
[317579.327057] hub 2-0:1.0: debounce: port 3: total 100ms stable 100ms status 0x501
[317579.378348] ehci_hcd 0000:00:1d.7: port 3 high speed
[317579.378355] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001005 0 ACK POWER sig=se0 PE CONNECT
[317579.429034] usb 2-3: new high-speed USB device number 54 using ehci_hcd
[317579.480225] ehci_hcd 0000:00:1d.7: port 3 high speed
[317579.480231] ehci_hcd 0000:00:1d.7: GetStatus port:3 status 001005 0 ACK POWER sig=se0 PE CONNECT
[317579.543964] usb 2-3: skipped 1 descriptor after configuration
[317579.543968] usb 2-3: skipped 4 descriptors after interface
[317579.544233] usb 2-3: default language 0x0409
[317579.545121] usb 2-3: udev 54, busnum 2, minor = 181
[317579.545128] usb 2-3: New USB device found, idVendor=0bb4, idProduct=0ff0
[317579.545131] usb 2-3: New USB device strings: Mfr=2, Product=3, SerialNumber=4
[317579.545134] usb 2-3: Product: Android Phone
[317579.545139] usb 2-3: Manufacturer: HTC
[317579.545141] usb 2-3: SerialNumber: HT22PV******
[317579.545262] usb 2-3: usb_probe_device
[317579.545266] usb 2-3: configuration #1 chosen from 1 choice
[317579.549522] usb 2-3: adding 2-3:1.0 (config #1, interface 0)
[317579.549956] rndis_host 2-3:1.0: usb_probe_interface
[317579.549959] rndis_host 2-3:1.0: usb_probe_interface - got id
[317579.552878] rndis_host 2-3:1.0: usb0: register 'rndis_host' at usb-0000:00:1d.7-3, RNDIS device, d6:cc:25:**:**:**
[317579.552914] usb 2-3: adding 2-3:1.1 (config #1, interface 1)
[317579.553971] usb 2-3: adding 2-3:1.2 (config #1, interface 2)
[317579.554292] libusual 2-3:1.2: usb_probe_interface
[317579.554302] libusual 2-3:1.2: usb_probe_interface - got id
[317579.554320] usb-storage 2-3:1.2: usb_probe_interface
[317579.554329] usb-storage 2-3:1.2: usb_probe_interface - got id
[317579.559101] scsi631 : usb-storage 2-3:1.2
[317579.559239] usb 2-3: adding 2-3:1.3 (config #1, interface 3)
[317579.559323] drivers/usb/core/inode.c: creating file '054'
[317579.743564] usb 2-3: link qh32-0001/f2839d00 start 7 [1/0 us]
[317580.561186] scsi 631:0:0:0: Direct-Access HTC Android Phone 0000 PQ: 0 ANSI: 2
[317580.561419] sd 631:0:0:0: Attached scsi generic sg2 type 0
[317580.568777] sd 631:0:0:0: [sdb] Attached SCSI removable disk
[317590.178019] usb0: no IPv6 routers present
I have tried to modify arch/arm/mach-msm/include/mach/htc_usb.h and arch/arm/mach-msm/board-shooter_u.c files to use same dVendor=0bb4, idProduct=0ff0 at all bootup time, but device do reset usb port and I can't see what's happening after kernel got control.
Thank You!
So i rooted my POCO X2 and installed orange fox recovery, used the same rom which came pre-installed. Now a persistent notification of "SERIAL CONSOLE ENABLED, performance maybe impacted check bootloader to disable" hovers in my notifications, my device is running on ANDROID 11. Please help!

MT6620 no Wi-FI, no BT, no FM - Lenovo A10-70F Stock 4.4.4, TWRP2870, multi-user mod

Lenovo A10-70F KitKat 4.4.4 Stock ROM build A10-70F_S000021_150501_ROW
multi-user mod in build.prop
TWRP2870 recovery
SuperSU
Terminal Emulator as root
This uses a MediaTek MT6620 for Wi-Fi, Bluetooth, GPS & FM
All these functions have stopped working. Attempting to turn on the wi-fi in settings
gives
Code:
adb logcat wpa_supplicant:V *:S
Code:
D/wpa_supplicant(23240): wpa_supplicant v2.1-devel-4.4.4
D/wpa_supplicant(23240): Add randomness: count=1 entropy=0
D/wpa_supplicant(23240): random pool - hexdump(len=128): [REMOVED]
D/wpa_supplicant(23240): random_mix_pool - hexdump(len=8): [REMOVED]
D/wpa_supplicant(23240): random_mix_pool - hexdump(len=20): [REMOVED]
D/wpa_supplicant(23240): random pool - hexdump(len=128): [REMOVED]
D/wpa_supplicant(23240): random: Added entropy from /data/misc/wifi/entropy.bin
(own_pool_ready=2)
D/wpa_supplicant(23240): random: Trying to read entropy from /dev/random
D/wpa_supplicant(23240): Get randomness: len=20 entropy=1
D/wpa_supplicant(23240): random from os_get_random - hexdump(len=20): [REMOVED]
D/wpa_supplicant(23240): random_mix_pool - hexdump(len=20): [REMOVED]
D/wpa_supplicant(23240): random from internal pool - hexdump(len=16): [REMOVED]
D/wpa_supplicant(23240): random_mix_pool - hexdump(len=20): [REMOVED]
D/wpa_supplicant(23240): random from internal pool - hexdump(len=16): [REMOVED]
D/wpa_supplicant(23240): mixed random - hexdump(len=20): [REMOVED]
D/wpa_supplicant(23240): random: Updated entropy file /data/misc/wifi/entropy.bi
n (own_pool_ready=2)
D/wpa_supplicant(23240): Global control interface '@android:wpa_wlan0'
D/wpa_supplicant(23240): Using Android control socket 'wpa_wlan0'
I/wpa_supplicant(23240): Successfully initialized wpa_supplicant
D/wpa_supplicant(23240): Override interface parameter: ctrl_interface ('(null)'
-> '/data/misc/wifi/sockets')
D/wpa_supplicant(23240): Initializing interface 'wlan0' conf '/data/misc/wifi/wp
a_supplicant.conf' driver 'nl80211' ctrl_interface '/data/misc/wifi/sockets' bri
dge 'N/A'
D/wpa_supplicant(23240): Configuration file '/data/misc/wifi/wpa_supplicant.conf
' -> '/data/misc/wifi/wpa_supplicant.conf'
D/wpa_supplicant(23240): Reading configuration file '/data/misc/wifi/wpa_supplic
ant.conf'
D/wpa_supplicant(23240): ctrl_interface='wlan0'
D/wpa_supplicant(23240): update_config=1
D/wpa_supplicant(23240): manufacturer='MediaTek Inc.'
D/wpa_supplicant(23240): device_name='Wireless Client'
D/wpa_supplicant(23240): model_name='MTK Wireless Model'
D/wpa_supplicant(23240): model_number='1.0'
D/wpa_supplicant(23240): serial_number='2.0'
D/wpa_supplicant(23240): os_version=01020300
D/wpa_supplicant(23240): config_methods='display push_button keypad'
D/wpa_supplicant(23240): p2p_no_group_iface=1
D/wpa_supplicant(23240): driver_param='use_p2p_group_interface=1'
D/wpa_supplicant(23240): Reading configuration file '/system/etc/wifi/wpa_suppli
cant_overlay.conf'
D/wpa_supplicant(23240): p2p_no_group_iface=1
D/wpa_supplicant(23240): driver_param='use_p2p_group_interface=1'
I/wpa_supplicant(23240): rfkill: Cannot open RFKILL control device
D/wpa_supplicant(23240): nl80211: RFKILL status not available
D/wpa_supplicant(23240): interface wlan0 doesn't exist, wait 1s to retry
D/wpa_supplicant(23240): interface wlan0 doesn't exist, wait 1s to retry
D/wpa_supplicant(23240): interface wlan0 doesn't exist, wait 1s to retry
D/wpa_supplicant(23240): interface wlan0 doesn't exist, wait 1s to retry
I/wpa_supplicant(23240): nl80211: Driver does not support authentication/associa
tion or connect commands
D/wpa_supplicant(23240): netlink: Operstate: linkmode=0, operstate=6
E/wpa_supplicant(23240): Could not read interface wlan0 flags: No such device
D/wpa_supplicant(23240): set wowlan for if wlan0, index 0
D/wpa_supplicant(23240): nl80211: set_wowlan failed; err=-19 No such device)
D/wpa_supplicant(23240): nl80211: Set mode ifindex 0 iftype 2 (STATION)
D/wpa_supplicant(23240): nl80211: Failed to set interface 0 to mode 2: -19 (No s
uch device)
E/wpa_supplicant(23240): wlan0: Failed to initialize driver interface
D/wpa_supplicant(23240): Failed to add interface wlan0
there is no rfkill entry in /sys/class
An unfiltered adb logcat spews this repeatedly
Code:
D/agps ( 197): [agps] WARNING: [CP] cp2_fd_1_reconnect_timeout
E/agps ( 197): [agps] ERR: [CP] get_ccci_uart open failed node=[/dev/ttyC2]
reason=[No such file or directory]
E/agps ( 197): [agps] ERR: [CP] get_eemcs_uart open failed node=[/dev/eemcs
_ipc_uart] reason=[No such file or directory]
E/agps ( 197): [agps] ERR: [CP] ccci_uart_1 open failed
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
I/6620_launcher( 184): Can't open device node(/dev/stpwmt)
however, the expected mt6620 devices are present in /dev, e.g.
Code:
crw-rw---- system system 190, 0 2010-01-02 01:01 stpwmt
Any known fixes, or is MT6620 chip dead ?
Unhappy 7-year-old :crying:
Tab wasn't rooted when wi-fi stopped working - I have only rooted it as part of diagnostics today

Categories

Resources