PDA

View Full Version : Card unlocked help


palehri
06-05-2009, 06:58 AM
Hi I have a Rom102 opened card which I always programmed. Yesterday it suddenly stops. I was using DNAUTOROLL AIO LA-locals.bn102 file. So I tried updating keys...it keep showing me nag "your smart card is not auth". while searching online I came accross
"c0d3sP4c3 - ROM 102 Blocker v16.0 Hot Fix v11 MECM 60 Update - Modified' blocker so I programmed my card with my LA bin and patched this blocker on top of it. Now I am getting hard time unlocking my card. I was under the impression that applying patch doesn't effect the password any help will be apprciated.
here is the patch

------------------------------------
; ------------------------------------
; ------------------------------------
; c0d3sP4c3 - ROM 102 Blocker v16.0i/p
; Hot Fix v11 MECM 60 Post Hash Update
; Public Release Date: 5-2-2008
; EEP - Bugtable Write Removed
; ------------------------------------
; ------------------------------------
; ------------------------------------
; Application instructions: RTFM
;
; Option 1: Unlock your Rom 102 using
; c0d3sP4c3 v16.0i/p Blocker. Read
; card, test and apply this patch,
; then write card.
;
; Option 2: Follow original c0d3sP4c3
; v16.0i/p instructions then apply
; this patch last before writing to
; your card.
; ------------------------------------
; ------------------------------------
; ------------------------------------
; - MECM 60 - MECM 60 - MECM 60 -
; - MECM 60 - MECM 60 - MECM 60 -
; - MECM 60 - MECM 60 - MECM 60 -
; - MECM 60 - MECM 60 - MECM 60 -
; ------------------------------------
; 00 = Use decrypted MECM 60 (default)
; 01 = Use encrypted MECM 60 - $92D7
; ------------------------------------
$35C0 1 00 ; Enabled
; ------------------------------------
; Decrypted and/or modified MECM 60
; code. If you update this code you
; must update the encrypted code at
; address $92D7 and the corresponding
; provider 0106 Key 96 used for
; decrypting that code block. Used for
; proper RAM setup. If decrypted code
; is enabled this code will replace
; the original code @ $0100 in RAM
; before execution.
; ------------------------------------
$35D0=998A9D9D9D9D9D9D9D9D9D9D9D9D9D9D
$35E0=9D9D9D9D9D9D9D9D9D9D9D9D9D9DC60A
$35F0=00CA0A09C70A00AE058D80910CA642B1
$3600=1025FAB11025F6CD54BD13121312A602
$3610=B748AD5FAD52A604AD5EA605AD5AA606
$3620=AD56A607AD52A603AD4EAE02D60BEAE7
$3630=495A2AF8A61FB44AB74AC60A01A438AA
$3640=441316B716AA0297C60A03B715B60D88
$3650=A4F790979EC70B92C60A04A43FAB2090
$3660=BF0DBF16CD38409DA60BB744A6A2B745
$3670=3F48818D00A82281ADF9B645AB10B745
$3680=24023C44813F0B0D6003CC5F23ADD9C6
$3690=0A02A4042605C60A02A403AB09ADD4AE
$36A0=0BD60BA6D80BA2D70BA25A2AF4CD59DA
$36B0=0BA67CC60B929584B70DCD54A0121286
$36C0=98870000000020BD0000000000000000
; ------------------------------------
; ------------------------------------
; ------------------------------------
; Patch Encrypted MECM 60 Code
; Required for RAM Init/Setup even if
; using decrypted and modified code.
; ------------------------------------
$92D7=7EA0485E0EE7B811D5EE45BA8944BA4F
$92E7=21D9FFCFD47A15CBB682D7ACE3313923
$92F7=9E490E6357DD32D5FD4B7DB4D5AAEBFA
$9307=C6FB933E9536686AEE6092A93F354F06
$9317=F268131AE936401BECF7785AE1502293
$9327=73C998EEF639E9069E90EE5ACF15D73D
$9337=9BA41A3BD49180C4444218AEA5FC9CE7
$9347=BD10E9FB30D2FEBAA08BF8BEC25BB480
$9357=1152FBA4F6CDB146599A047351FFB457
$9367=5E212085D1A29C77A84763273F39FDBB
$9377=8385EC38582492EB58BC8514A2AD8C2B
$9387=94409480B19308C23BEB471F227BC210
$9397=1E36FF15D732561B9B26D79C03217CCD
$93A7=4F931449AC1FF15170F80AAA3209577D
$93B7=C0E2331D77A12E7D28186A15EDCA89B6
$93C7=B3C8E07364BC2F71C8D023BFD08F279B
; ------------------------------------
; Provider 0106 IDEA Key for MECM 60
; ------------------------------------
!RemoveEqual 06 05 06 0106 204608 10
!ADD 06 1A 13DB 0001 0106 204608 10 4EB1A8DA2D9290D9E63C5ECEE4FEE386
; ------------------------------------
; - MECM 60 - MECM 60 - MECM 60 -
; - MECM 60 - MECM 60 - MECM 60 -
; - MECM 60 - MECM 60 - MECM 60 -
; - MECM 60 - MECM 60 - MECM 60 -
; ------------------------------------
; ------------------------------------
; ------------------------------------
; ------------------------------------
; If you want to lock it manually
; change the 00 below to 01 otherwise
; the blocker will lock itself
; automatically when inserted in the
; receiver.
; 00 = Unlocked - Autolock active.
; 01 = Locked - Manually Locked.
; (locked by default)
; ------------------------------------
$3320 1 01
; ------------------------------------
; ------------------------------------
; New Bug Table Entry
; Timer 2 Interrupt Vector
; Interrupting Map 39.
; ------------------------------------
; ------------------------------------
$31A6500405E01F6
$31763013232

old school
06-05-2009, 06:23 PM
Did you clean the codespace back to rev103 before writing your new blocker? If it's not opening with any of the passwords you've tried, you'll probably have to glitch back in to the card again.

palehri
06-05-2009, 06:54 PM
Hi old school..thanks for the reply...which script I should use to glitch back in..Thanks again

gizmolite
06-05-2009, 07:12 PM
RM1A or RM1C with that rom102

pswine1
06-05-2009, 07:15 PM
Verify what rev is on the CAM and use the latest RM_1C. In looking at that script the lock is set to 01 which is a manual lock. Did you enter a password when you applied the blocker?

palehri
06-05-2009, 07:50 PM
Hi Guys...Thanks for the replies....regarding question Did you enter a password when you applied the blocker?
No

I cleaned code space 3 times..open my Autoroll bin and added above listed blocker...and then wrote to card and read it and it says failed to unlock...then put in my ird..black screen...took it out and tried reprogramming...No luck opening it with my password and other passwords like aabb..etc

pswine1
06-05-2009, 09:06 PM
You stated you opened your Autoroll bin. Why would you open an Autoroll bin and the blocker that you are using have all that included. This was your reason for getting this blocker and applying it right? Well glitch back into the CAM and make another clean image with all your tiers and try it again.

zerocool
06-06-2009, 02:43 AM
Looks like you just applied the hotfix for codespace and not the actual codespace blocker. That's why there is no password in the code you posted. So you will probably have to glitch back into card and then first apply the codespace blocker and then the hotfix.

mudbug_kid
06-09-2009, 03:17 AM
hummm,,zc