CUSTOM XXJL2 needed - Bada Software and Hacking General

guys i really neeed a xxjl2 bada 1.2 to be modified for me
as i dont know how to work with trix
please i will be very thankfull if someone makes it for me
inbox me if someone is ready to do this + for him if he does it!

Please better "improve" TriX.
It is very simple to use.
But maybe we need better description.
As you can see.
English is not my native Language...
Maybe other user can help to write How to... but first see here and maybe post please your problems:
http://forum.xda-developers.com/showthread.php?t=912672
I could try to make more Video Tutorials...
But I don't know, where you failed...
Best Regards

adfree said:
Please better "improve" TriX.
It is very simple to use.
But maybe we need better description.
As you can see.
English is not my native Language...
Maybe other user can help to write How to... but first see here and maybe post please your problems:
http://forum.xda-developers.com/showthread.php?t=912672
I could try to make more Video Tutorials...
But I don't know, where you failed...
Best Regards
Click to expand...
Click to collapse
well when i select the input file which is the *.csc file i add the script fs_shel to dump the csc file!!
there i get the error that it cant open dmtbada plugin and another scree thing!

You mean this file?
TriX_fmtBADA.txz
You have to copy it into folder plugins...
Or you use the link to Download complete package.
http://forum.xda-developers.com/showpost.php?p=11463122&postcount=7
All files included...
Best Regards

adfree really thanks
after alot of tries it finally worked when i downloaded it from your post
used it to extract the firmware files but don't know how to compress them again as they were can you help me please????

I will try to make Video Tutorial.
Yes I know. But this time really.
Maybe other user is faster.
Best Regards

donot really need a video just words will be enough at this point

man i got understand anything this error apppears that smtbada plugin cant open

i cant understand anyhing can you upload your TRIx software please anyone whixh is working fine?

the file you ported gives and error with windows 7!

Well thnak you very much but i cant upload ShpApps again it causes an error please help!

Related

apps_compressed.bin

With PSAS (only FULLversion) it is possible to "decompress" apps_compressed.bin for investigation.
It uses Algo:
TkToolVer:1.6.3
I don't know way to make own apps_compressed.bin.
As Multiloader for instance not accept decrypted apps_compressed.bin
As example some older apps_compressed.bin from S8500.
http://www.megaupload.com/?d=2JIKS8QD
Best Regards
u reache some limit bro........... cant download from RS........but good going
can u write a tutorial
so that other members too can find something
thanx!
gr8 gng mate
PSAS can only decrypt in Full Version.
Costs 30 Euro...
BUT I can upload via Request some decrypted files for study.
I'm not an Seller of PSAS nor I force you to buy PSAS.
But this is the only Tool I know, which decrypt these apps_compressed.bin and bootloader.mbn. Tested by me with:
S5250
S5330
S5750
S7230
S8500
S8530
http://forum.revskills.de/viewtopic.php?f=14&t=700
Wait few minutes. I will upload to megaupload... from S8500 as example.
Best Regards
Edit:
Download example apps_compressed.bin taken from S8500:
http://www.megaupload.com/?d=2JIKS8QD
Same as in first post.
So what did u get inside that?? What was compressed in layman terms pls.......
Expect not too much. Depend on knowledge...
Now file is "human readable"... Ready for Reverse engineering.
Minimum Requirement HEX Editor...
Then you can find Text like this:
Please receive DB2 by TkFileExplorer.exe !!primaryRecord
Click to expand...
Click to collapse
Remember where u saw TkFileExplorer.exe else...
You could search for Textstrings... like:
widget
bondi
.
.
.
So many things to explore.
Best Regards
hi guys I'm working on some bada's modding projects...
is it possible to have an example of uncompressed files?
thank you in advance
edit : I have now seen the uploaded uncompressed file...
I hoped it was more "human" readable...
http://www.megaupload.com/?d=PFWCKTGZ
This is from XXJID... bada 1.2 S8500 stuff.
Best Regards
adfree said:
But this is the only Tool I know, which decrypt these apps_compressed.bin and bootloader.mbn.
Click to expand...
Click to collapse
Hi,
could you upload the decrypted bootloader, too? Maybe someone here will find some exploitable code in that will help "jailbrake"-ing the system, or allow booting unencrypted OS (modified Bada or Android from Galaxy S for exmaple...)
TIA!
@ anghelyi
http://forum.xda-developers.com/showpost.php?p=10304951&postcount=3
Here I have attached some more things about Bootloader... some ELF files included... maybe "easier" for Reversing.
Best Regards
adfree said:
@ anghelyi
http://forum.xda-developers.com/showpost.php?p=10304951&postcount=3
Here I have attached some more things about Bootloader... some ELF files included... maybe "easier" for Reversing.
Best Regards
Click to expand...
Click to collapse
Thanks! I'll check it!
Little overview...
Best Regards
Hi adfree,
Can you say me the name of PSAS software please?
http://psas.revskills.de/
RevSkills is the new name of PSAS.
This feature only in registered Fullversion possible.
NOT in Trial Version.
Best Regards
Thanks but seems to be not compatible with windows 7 64 bits
Will try later, Have a good night adfree
look like that apps_compressed.bin contains a big secret
i flashed amss.bin file & apps_compressed.bin file from spoofable fw as an update for non spoofable fw and the result was getting a spoofable fw with its code name in the about phone menu but i lost all the updates made in the non spoofable fw
can anyone know where is the part in the app_compessed.bin that allow spoofed games run or not?????
To clarify:
I'm NOT support spoofing.
Prior files were not decompressed, "only" decrypted.
But now.
http://rapidshare.com/files/453882158/XXJL2decrypted_apps_decompressed.rar
File is from XXJL2.
Maybe we can find other usefull infos.
Best Regards
Now we can encrypt.
Thanx to ho1od
Any suggestions?
Mabye few things can be enabled or disabled...
TRUE can be found 600 x
FALSE over 700 x
Best Regards
I'm working on decompression QMD, thanks to mijoma
I was looking for the decompressed files of apps_compressed.bin (S8500XXJL2 and S8500XEKC1 only), but the link does not work.
If anyone (or you, adree) can decompress (not only decrypt) those files and upload them somewhere, that would be very kind/nice. Maybe I can work something out and if we are ever able to encrypt the files back, we may have a new better cleaned up version by that time.
Btw, thanks for the efforts, adree and ho1od.

QuB an mighty Tool for Samsung handsets

This Tool is amazing. Many features.
Source is here:
http://rk-team.net/showthread.php?11-%CD%EE%E2%FB%E5-%E2%E5%F0%F1%E8%E8-QuB
"Lesson 1"
Make hidden folders visible for research and Backup.
For instance folder System is the RC1 file, mounted into RAM...
Many Thanx RusEm and Team.
Best Regards
Hi thank you for this tool but it is only for "qualcomm" platforms i think (not sure). In s8500 qualcomm is only processor for calls.
QuB is designed for Samsung handsets.
This command is 100 % working on S8500 and U700, tested by me.
You have to select same COM Port like you would choose for File Manager...
No magic.
Then you have access to nvm folder, system folder and few more...
System folder is read only as it is the mounted RC1 file...
Best Regards
But... with this... what kind of researches could be done?
"Lesson 2"
Decrypt Firmware files, like:
apps_compressed.bin
and
boot_loader.mbn
Best Regards
adfree said:
"Lesson 2"
Decrypt Firmware files, like:
apps_compressed.bin
and
boot_loader.mbn
Best Regards
Click to expand...
Click to collapse
If you can decrypt bootloader... that's mean you're closer to install other os?
Ok, maybe the information given in "lessons" can cause more expectation
Waiting for lesson three!
does all these features run on trial mode???
or should i buy the app
there is no profile for s8500 why???
i know you are not the developer of the app adfree but i just wanted to put those questions
does all these features run on trial mode???
Click to expand...
Click to collapse
Yes.
Public solution.
Tested with QuB_public_v.0.3_001_beta.rar
Best Regards
@adfree: take a look at the screen, i got only question mark on the application. do you know what is the problem?? may be due to lang files ??
Main Language is Russian.
See Screenshot. Blue marked... then you see right Russian-> change into English.
Not all Text is translated.
Best Regards
wonderful new tool
-i am able now to view the files in the ram but don't know what to do with them
-after decryption of apps_compressed.bin i found out that i have a very little brain to modify in that file
i can't wait for lesson 3
thanks adfree and good luck
"Lesson 3"
apps_compressed.bin
Decompressed example from XXJL2 is here:
http://forum.xda-developers.com/showpost.php?p=12300153&postcount=17
Code:
Type : Unofficial Version
Number : 362
Builder : Administrator
Host : S1-AGENT05
Date : 2010/12/23
Time : 14:24:54
[B][COLOR="Red"]Size[/COLOR][/B] : 82576764 bytes
CheckSum : 0x32cdbee8
I was not able to decompress with QuB, maybe my fault...
Helpfull would be, to know which part is with CheckSum.
82576764 bytes
Best Regards
Really nice tool.
Setting FmSecureMode to off gives us the chance to see where everything is located and we can investigate and chang the files on the pc. now we need to find a way to get them back to the wave
Maybe with PfsDeleteList.txt / *.pfs ?
Also after reboot FmSecureMode is set to on again.
But we can already see where the fonts are located, that the sms viewer is html/css based like the one for email and any other messages (so we can easiely change layout, colors, font-size,...) and a lot of other things like replacing images etc.
When we get this working, nothing keeps us anymore from a fully customized bada
In combination of TkFileExplorer 2.4 you can see this.
Caution!
Renaming or other Directory Manipulation can lead to Bootcycle.
At your own risk.
http://forum.xda-developers.com/showpost.php?p=12515691&postcount=20
Thank you very much for posting Xenon.
Best Regards
yes indeed the tool works fine
adfree said:
Main Language is Russian.
See Screenshot. Blue marked... then you see right Russian-> change into English.
Not all Text is translated.
Best Regards
Click to expand...
Click to collapse
How did you get the s8500 otion in handset? I dont have it. Do you have a plugin for it?
How did you get the s8500 otion in handset?
Click to expand...
Click to collapse
I've made my own... but not all Settings... So it makes no sense to upload.
Best Regards
adfree said:
I've made my own... but not all Settings... So it makes no sense to upload.
Best Regards
Click to expand...
Click to collapse
Still can u please upload it? Its a kind request.
There is nothing special...
Make folder + S8500XXJL2.ini...
Folder is nearly empty... I've made an Logo.jpg with text.
But again. You NOT need it. As mandatory parameter are wrong or missing...
[Loader]
[PreConf]
[Patch]
...
1.
You can use S8500 or other not listed Samsung handsets like U700 with QuB. BUT not with all features...
2.
Many features NOT need attached handset...
Best Regards
Need help in decompressing Rc1 and Rc2 files. I see some tabs in Qub saying Rc1 and Rc2. Dont know how to use them to dump rc1 and rc2 files. And if I do, is there any way to upload them back like in trix. Or can you use trix to decompress rc1 and rc2 files? If yes, how? Help would be very much appreciated.

[Q] How can I use Trix? Please help..

Hi, i have trix but i dont know how I use it. How will I do dump ? csc, pfs etc. files.. I am not noob but it's too mixed for me, now... Script, editor.. And how will I upload files again? I have badaeditor but it's like chinese I'm waiting your help. Thank you
for dumps use Wave Remaker. Scripts for TriX were written in the end of 2010 when no other tools was available. ho1od program is much more user friendly (and TriX is not
Thank you b.kubica for your honesty
Although you are one of the Devs of Trix , you are saying wave remaker is simpler
you are a great Dev
Good luck with whatsoever you are doing
Best Regards
Thanks your answers but how I can upload files after edit? I need to merge again.. Waveremaker just can see?
About TriX maybe here you can find some "input"...
http://forum.xda-developers.com/showthread.php?t=912672
Here about Wave Remaker:
http://forum.xda-developers.com/showthread.php?t=1028714
Best Regards
if out of curiosity u want to know jow to use trix , i had mad a video long ago.. audio quality is not that great but jst follow the mouse steps
http://www.youtube.com/watch?v=CtXicjlfo4c
Thanks your answers. I solved this problem and even I made firmware with shp active

[Q] Deleting SMS make restarting

Hello everyone!
I foung bug in my firmware:
After I pressed on the trash icon in SMS application, my wave restarted.
Any solution??
More details please ??
Like what custom your phone runs ??
I guess it is a bug in Strings files
Best Regards
mylove90 said:
More details please ??
Like what custom your phone runs ??
I guess it is a bug in Strings files
Best Regards
Click to expand...
Click to collapse
in the SMS application there is a delete icon, when I pressed it my WAVE restarted.
I think it is in String file too. but which one?
Helpfull would be...
Firmwareversion...
Custom or Original Firmware...
We have no idea if you have bada 1 or 2...
Also you could check how big your DB2 folder is...
Maybe Database is now too big... or failure...
Best Regards
adfree said:
Helpfull would be...
Firmwareversion...
Custom or Original Firmware...
We have no idea if you have bada 1 or 2...
Also you could check how big your DB2 folder is...
Maybe Database is now too big... or failure...
Best Regards
Click to expand...
Click to collapse
it is bada 2 and it is custom firmware.
im sure the problem came from string files. but I dont know which one.
If you know what is the file, i'll glad if you will tell me.
Google Translate :laugh:
HELP!!
shaiws said:
HELP!!
Click to expand...
Click to collapse
hello
string is only language , please what's your custom firmware name?
yakapa40 said:
hello
string is only language , please what's your custom firmware name?
Click to expand...
Click to collapse
Bada IL rom V4
any solution?
please:crying::crying::crying:
someone?
Why you dont answer me??
It is vety important..:crying:
PLEASE
Also you could check how big your DB2 folder is...
Maybe Database is now too big... or failure...
Click to expand...
Click to collapse
This was my first suggestion...
No real answer...
Second idea is use WinComm for logging...
http://forum.xda-developers.com/showthread.php?t=928170
Best Regards
Edit 1...
Forgotten... You can only set Debug to High... then maybe Bluescreen gives you more answers...
*#33284*#
I'd rather recommend looking for the developer of the firmware to fix his own bug
The fix is easy
Know original CSC....get strings of that CSC
Compare Strings from original CSC with Modded ones
Find the bug and fix it
Place back new strings files via CSC flashing
Done !
I won't do it as i don't know anything about your custom except its name
Best Regards
adfree said:
This was my first suggestion...
No real answer...
Second idea is use WinComm for logging...
http://forum.xda-developers.com/showthread.php?t=928170
Best Regards
Edit 1...
Forgotten... You can only set Debug to High... then maybe Bluescreen gives you more answers...
*#33284*#
Click to expand...
Click to collapse
Thank you, but I do not understand the written in the blue screens.
mylove90 said:
I'd rather recommend looking for the developer of the firmware to fix his own bug
The fix is easy
Know original CSC....get strings of that CSC
Compare Strings from original CSC with Modded ones
Find the bug and fix it
Place back new strings files via CSC flashing
Done !
I won't do it as i don't know anything about your custom except its name
Best Regards
Click to expand...
Click to collapse
I compared between the original String to my custom String and I did not find any differences in number of the lines.
But thank you anyway
Thank you, but I do not understand the written in the blue screens.
Click to expand...
Click to collapse
Post here... or Photo...
Maybe someone can "translate" for you...
Best Regards
A little up here.
I got the same problem with Turko v6 for S8530.
One other strange thing is that I can't delete my e-mail "basket". But no restart.
I will investigate a bit and send something if I find something.
I set debug level to high and I succeeded in deleting the "e-mail basket".
I got blue screen when trying to deleting messages
Seven. I took photos of them as much as I could as I was obliged to go 2 pages by 2.
By the way how to upload the content ? I found that I must press Home button during blue screen but which program should I use after entiring in upload mode ?
Rest is here
Sorry I had trouble with one I couldn't shot.
Simple Solution.
Just flash another firmware.
adi4u4882 said:
Simple Solution.
Just flash another firmware.
Click to expand...
Click to collapse
Yes but I don't want. It is not that grave since I have SD card.
For the moment I haven't the time to check problem if solvable without flashing another firmware.

[Q] fix Wave III lock screen

Hi !
as you know Wave III lock screen have a problem with incoming massage ! it doses't show the message first time.
i think it's because of the SWF script . i have NOT any knowledge about Falsh Script but i think you may help me.
i just can get the ٍُّSWF scripts with "Flash Decompiler Trillix"
can any body (with enough knowledge) compare tow scripts and fix the problem?
hotfile.com/dl/165423381/9e51d59/XML.rar.html
VIVASAMSUNG. said:
Hi !
as you know Wave III lock screen have a problem with incoming massage ! it doses't show the message first time.
i think it's because of the SWF script . i have NOT any knowledge about Falsh Script but i think you may help me.
i just can get the ٍُّSWF scripts with "Flash Decompiler Trillix"
can any body (with enough knowledge) compare tow scripts and fix the problem?
hotfile.com/dl/165423381/9e51d59/XML.rar.html
Click to expand...
Click to collapse
Although I dont have any flash knowledge, I am trying to check this with the default lock screen of 5750. I was able to port it to get it working on wave 5750. Need to check the file you have provided.
How exactly did you get the xml file?
How exactly did you get the xml file?
Click to expand...
Click to collapse
Decompile *.swf with this Tool:
i just can get the ٍُّSWF scripts with "Flash Decompiler Trillix"
Click to expand...
Click to collapse
Best Regards
adfree said:
Decompile *.swf with this Tool:
Best Regards
Click to expand...
Click to collapse
I am looking for some tool that will allow me to apply changes back to the swf file after modifying xml file or any tool that allows me to edit the swf file directly.
Flash Decompiler Trillix
Click to expand...
Click to collapse
But you tried this Tool ?
With this you can modify *.swf, save and use modified *.swf...
Best Regards
adfree said:
But you tried this Tool ?
With this you can modify *.swf, save and use modified *.swf...
Best Regards
Click to expand...
Click to collapse
I am not sure if Flash Decompiler Trillix allows editing of ActionScript.
You can edit the whole *.swf.
ALL parts of it.
But you need Flash knowledge or minimum reading with Text Editor...
http://www.flash-decompiler.com/
Best Regards
adfree said:
You can edit the whole *.swf.
ALL parts of it.
But you need Flash knowledge or minimum reading with Text Editor...
http://www.flash-decompiler.com/
Best Regards
Click to expand...
Click to collapse
After comparing the code of wave 575 default screen and the wave 3 lock screen, i am interested to try changing some things in the actionscript but i am unable to do that with this editor
Edit 1: converting to fla and back seems to be a pain and am looking for a direct editor like Zlash but its not free
Edit 2: found a good tool for direct editing. ASDEC. However, the change in code does not seem to have fixed the sms bug. Continuing further with further investigation using trial and error method.
http://developer.bada.com/library/Flash-Lock-Screen-Implementation-using-System-Information-1
Maybe here few hints...
Best Regards
Played a bit with "incoming call" screen...
Taxidriver05 said:
Played a bit with "incoming call" screen...
Click to expand...
Click to collapse
Looks good, how do I get it working for my wave 5750? Please advice.
Currently just for Wave I & II...
What is the resolution for Wave 575?
I think, SWF must be modded to new resolution...
Taxidriver05 said:
Currently just for Wave I & II...
What is the resolution for Wave 575?
I think, SWF must be modded to new resolution...
Click to expand...
Click to collapse
240*400, which swf file do I need to work on? I will extract your firmware files. whats the path to these swf files?
I Think, it is "CallLockScreen.swf" or sth like that...
It could be found in RC1-file...
Do not have the exact path in mind...
Should be easy to find...
Taxidriver05 said:
I Think, it is "CallLockScreen.swf" or sth like that...
It could be found in RC1-file...
Do not have the exact path in mind...
Should be easy to find...
Click to expand...
Click to collapse
Ya, found it
Taxidriver05 said:
I Think, it is "CallLockScreen.swf" or sth like that...
It could be found in RC1-file...
Do not have the exact path in mind...
Should be easy to find...
Click to expand...
Click to collapse
I got it working for wave 5750 (240*400); however there is a pink layer showing up as shown in the attached screenshot (1st file). I have also attached my modified swf file. Please let me know what is wrong. Thanks in advance.
http://www.4shared.com/photo/zMgZxszl/capture.html
http://www.4shared.com/document/AS2NWDMb/CallLockScreen.html

Categories

Resources