Monday, January 10, 2011

Know How BB5 SECURITY SYSTEM

BB5 SECURITY SYSTEM

1. security certificate stored at the CMT flash + RAP3G & security simlock CMT areas will also be stored in flash, and RAP3G
When a corrupted or missing NPC (nokia public certificate) or simlock data will have a contact phone retailer, or restart
it is because because of data entered into the memory had previously been through an encryption process based on the algo from NPC and simlock data.!!
so if one replaced the security authentication process to be wrong.

2. when RAP3G and NOR flash (CMT flash) mounted together (with provisions RAP3G and CMT flash from normal HP), the encryption key will be matched with at RAP3G security area on the flash and the phone will be normal.!
This exact same process on the security system platform 4 hp (DCT4 & WD2). if UEM and FLASH on the same encryption key pairs will be matched.
PROCESS:
* Encryption key will be sent to the logic system certificate who is in the OTP system. if true, then the encryption key will be lit with a normal HP.

DIFFERENCES IN SECURITY PLATFORM 4 (DCT4 & WD2) and BASE BAND 5 (BB5)
security system platform 4. logic using a metronome or delay in the voltage or can call (flip - flop logic voltage) / watchdog. so if one replaced (UEM or FLASH), so the process of security and authentication into one processor will perform calculations based on the RPL. if processors find untruth encryption key calculation she will do shutsdown system

but differ in the security system BASE BAND 5 (BB5)
flip-flop logic there is no voltage if the encryption key and flash RAP3G different / not match then the HP will not experience 30 seconds of death (watchdog), the problem lies not in place its security in the power management logic.

Understanding PROBLEM SX4 or PM AUTHOR:
SX-4 algorithm for storing decrypted process in / out in the programming of data into the phone, this protection algorithm can only be taken by dump on security RAP3 and CMT flash.
if we do read full PM (permanent memory) on BB5 illuminating the SX4 does not come to capture ..!!!!
From the above explanation we'd have to know how to repair BB5 without doing SX4 ....
BB5 repair and illuminating without the SX4 has been avaible...

Please Correct if wrong my little article....Good Help...

Nokia Permanent Memory..!

Here is little discription about Nokia PM file..!


Quote:PM field [1] - RF tunning

Protected pm field for phone RF tunning, callibration data

Quote:PM field [4,3] - Production SN

[4]
3=4D564834383034393300 - MVH480493

convert this hex data to ascii and cut null char.

4D = M
56 = V
48 = H
34 = 4
38 = 8
30 = 0
34 = 4
39 = 9
33 = 3


Quote:PM field [4,4] - Product code.

5=3035373530363900 - 0569445

Quote:PM field [4,5] - Basic production code

3035373530363900 - 0575069

Quote:PM field [4,6] - Module code

6=3032303431393700 - 0204197

Quote:PM field [4,9] - HardWare ID

9=3330303000 - 3000

Quote:PM field [4,18] - Phone oryginal IMEI

18=33353135343130343035323331393100555555555555555 55555555555555555555555555555555555555555555555555 55555555555555555555555555555555555555555555555555 5555555555555

351541040523191 - 55 55 55 are useless, when convert to ascii its UUU and two 00 are null char.

Quote:PM [58, 59, 60, 61] - Phonebook contacts, old saved contacts will be in PM 58 and recently added contacts will be saved to rest fields.
if PM 58 has 250 entires mean it has 250 contacts stored.

Quote:PM [88,0] - life timer is stored here


Quote:PM field [120] - Phone SIMLock data and SIMLock data key are stored here

PM [239] - Phone MCU version, MCU release date, and all other details are stored here

Quote:[239]
1=0D001D52303478524D343431303130303931323031303930 30303030312E584608001A00000000000000002F0000520478 09000000010CD907010009020900AC00080030003315450104 251319FFFFFFFFFFFFFFFF00000070760100010001562031302E31300A31382D31312D30390A524D2D3434330A286329204E6F6B696120003A

2031302E31300A31382D31312D30390A - ' 10.10.18-11-09' and 524D2D3434330A286329204E6F6B6961 - RM-443.(c) Nokia

Quote:PM [302] - MMC lock code

Quote:PM [308,1] - Old BB5 Phone SIMLock, Superdongel, MCU, DSP signatures and phone code in newer rapido phone!

Quote:PM [308,5] - Phone security code, old one :d

32323232320000000000 - 22222

Quote:PM [309] - battery callibration


Quote:PM field [355,1] - Dynamic camera configratoin - back Camera

[355]
1=00000014000007EC4E494D4D4949494952524646304130323130303100000000000000000000000007D80C11303032003030370000000000000000013FFFFFFF3FFFFFFF3FFFFFFF3FFFFFFF 3FFFFFFF3FFFFFFF3FFFFFFF3FFFFFFF3FFFFFFF3FFFFFFF00 0000000000000000000000000000003FFFFFFF3FFFFFFF3FFF FFFF3FFFFFFF3FFFFFFF3FFFFFFF3FFFFFFF3FFFFFFF3FFFFF FF3FFFFFFF3FFFFFFF3FFFFFFF3

4E494D4D4949494952524646304130323130303100000000000000000000000007D80C1130303200303037 - NIMMIIIIRRFF0A021001_002007

4E = M
49 = I
4D = M

And.... just convert them and you will get DCC file name and version.

Quote:PM field [355,0] - Dynamic camera configratoin - front Camera

In DCT4 phone PM fields are almost same. Just some fields are change.

Hope this helps to users. And sorry for the long post

How to Free More RAM on Your Phone !!!

Method 1: Flight mode:
Put your phone in “Flight mode” with Psiloc System Tools. Install System Tools, open it and select “Flight mode”. This way you can restart the phone without your SIM card so there will be no running phone tasks in the background. Now you can have up to 3,5 MB of free RAM!

Note: ironically enough, Flight mode doesn’t work when Smart Launcher is installed, at least in my case.
But i’ve also heard several reports of people who have both apps running without any problems.



Method 2: Smart Launcher trick:

Install Smart Launcher and open it. Go to Options, Settings and put Launcher ON.
Now plug in your charger and switch off your phone. Wait untill the battery meter appears and short press the Menu button (don’t hold).
The menu should appear and now you can have 3,5 to 4,5 MB free RAM! (Hold Menu button to check RAM).

The trick is that with the charger plugged in, the phone must get a minimum software support for charging, even when
the phone is switched off. And somehow Smart Launcher has still got it’s shortcut running and that’s the Menu button. So when
you press the Menu button, you go directly to the Menu without any other phone tasks running in the background so
you trick the phone and you have more free RAM!
Note: when you unplug the charger, the phone will switch off.

Method 3: Menu :
This method I found it by myself, it frees a little about 100~200 KB but I guess it’s useful sometime

Close your menu not by selecting the right selection key “exit”, or pressing the menu key another time, they only hide the menu app but do not close it, to close it select the left selection key “option” and scroll down and select “exit”

So when you open an app needs more ram reopen menu and close it, it’s useful when play low bit rate video in realplayer paradis.

FS: Apple iPhone 4 HD 32GB / Blackberry Torch 9800 Slider e.t.c

We are wholesalers and distributors of new and original iphones , nokia phones and blackberry.

Our phones are all brand new and comes with 12months warranty.

Apple iPhone 4G HD 32GB Unlocked Phone 350USD
Apple iPhone 3GS 32GB Unlocked Phone 250 USD

Apple iPad 3G 64GB Unlocked Phone 350 USD

Blackberry Torch 9800 Slider $280USD
Blackberry 9700 Bold $240usd

Nokia N8 Unlocked 280usd
Nokia N900 Unlocked 240usd

package Content:

1 Battery
1 Charger
1 Data Cable
1 Stereo Hands free
1 User’s Guide.

Buy 3 Pieces and get 1 Free…
Buy 12 Pieces and get 4 Free with 10% discount and free shipping.

Email- jowonloju@gmail.com
jowonloju@yahoo.com

MSN MESSAGER : egbewa@hotmail.com
Yahoo Messenger - jowonloju@yahoo.com

Contact:
Name: Yousuf Almieda
Email: jowonloju@gmail.com

jowonloju@yahoo.com

Shipping conditions: We ship internationally.

Shipping Duration: 2 Working Days

Warranty: Live international warranty policy

Return Policy: 90 Days of Inspections after which you can return if the item purchase is not working fine.