Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CFE Bootloader without dn command but.. with dump command. #1

Open
Dont-Know-Nothing opened this issue May 3, 2021 · 9 comments
Open

Comments

@Dont-Know-Nothing
Copy link

Hi, I'm trying to dump a Askey RTF8115VW firmware (Movistar Argentina HGU). The CFE has not dn command but it has a DUMP command that returns data in the same way that dn does. Can code of cfenand.py be modified to use this DUMP command?
sorry for my inglish, I don't like translate and paste from google.

@danitool
Copy link
Owner

danitool commented May 3, 2021

Not sure, can you paste an example of the output returned by your command?

@Dont-Know-Nothing
Copy link
Author

Dont-Know-Nothing commented May 3, 2021

Hi, thanks for the quick respond. The only thing I was able to dump was a part of the previously decompressed linux kernel to ram.
I don't think i can dump the flash nand with this...... This is what dump command returns.
Sorry I don't know how to format this.

80002000 08 00 19 54.00 00 00 00.00 00 00 00.00 00 00 00 |...T............| 80002010 00 00 00 00.00 00 00 00.00 00 00 00.00 00 00 00 |................| 80002020 40 08 10 01.35 08 04 00.40 88 10 01.10 00 00 02 |@...5...@.......| 80002030 00 00 00 c0.af 90 00 48.8f a8 00 98.31 08 00 10 |.......H....1...| 80002040 11 00 00 17.00 00 00 00.40 08 10 01.35 08 04 00 |[email protected]...| 80002050 40 88 10 01.00 00 00 c0.8f 86 00 08.30 c8 ff e7 |@...........0...| 80002060 15 00 00 62.00 00 00 00.08 00 08 28.00 00 00 00 |...b.......(....| 80002070 0c 00 fa 02.00 00 00 00.40 08 10 01.35 08 04 00 |[email protected]...| 80002080 40 88 10 01.00 00 00 c0.8f 86 00 08.3c 08 80 00 |@...........<...| 80002090 35 08 ff ef.00 c8 40 24.15 00 00 72.00 00 00 00 |5.....@$...r....| 800020a0 8f 90 00 48.0c 00 89 8c.af 9d 00 48.af 90 00 48 |...H.......H...H| 800020b0 8f b8 00 a0.03 00 00 13.8f b8 00 9c.03 00 00 11 |................| 800020c0 8f a8 00 38.8f a9 00 3c.8f aa 00 40.8f ab 00 44 |...8...<[email protected]| 800020d0 8f ac 00 48.8f ad 00 4c.8f ae 00 50.8f af 00 54 |...H...L...P...T| 800020e0 8f b8 00 78.8f a1 00 1c.8f b0 00 58.8f b1 00 5c |...x.......X...\| 800020f0 8f b2 00 60.8f b3 00 64.8f b4 00 68.8f b5 00 6c |......d...h...l|
80002100 8f b6 00 70.8f b7 00 74.8f be 00 90.40 02 10 01 |...p...t....@...|
80002110 34 42 04 00.40 82 10 01.00 00 00 c0.41 65 00 01 |[email protected]..|
80002120 0c 00 08 a8.00 00 00 00.40 04 60 00.34 84 00 1e |........@..4...| 80002130 38 84 00 1e.40 84 60 00.34 03 ff 00.00 83 20 24 |8...@..4..... $|
80002140 8f a2 00 98.00 03 18 27.00 43 10 24.00 44 10 25 |.......'.C.$.D.%|
80002150 40 82 60 00.8f a3 00 b0.00 00 00 c0.40 04 10 01 |@..........@...| 80002160 30 63 04 00.14 60 00 0c.00 00 00 00.40 02 10 05 |0c.........@...|
80002170 3c 06 80 43.24 c6 ba 34.00 02 14 02.00 c2 30 21 |<..C$..4......0!|
80002180 8c c2 00 00.10 40 00 04.00 00 00 00.40 02 68 00 |.....@[email protected].|
80002190 34 42 02 00.40 82 68 00.30 a5 00 01.10 a0 00 02 |[email protected].......|
800021a0 00 00 00 00.41 60 00 21.38 84 04 00.00 83 20 25 |....A.!8..... %| 800021b0 40 84 10 01.00 00 00 c0.8f a3 00 ac.40 83 70 00 |@[email protected].| 800021c0 8f bf 00 94.8f bc 00 88.8f b9 00 7c.8f a7 00 34 |...........|...4| 800021d0 8f a6 00 30.8f a5 00 2c.8f a4 00 28.8f a3 00 24 |...0...,...(...$| 800021e0 8f a2 00 20.8f bd 00 8c.42 00 00 18.30 c8 00 04 |... ....B...0...| 800021f0 11 00 00 0e.00 00 00 00.0c 00 24 3b.00 00 00 00 |..........$;....| 80002200 40 08 10 01.35 08 04 00.40 88 10 01.00 00 00 c0 |@...5...@.......| 80002210 8f 86 00 08.30 c8 ff e7.11 00 ff a1.00 00 00 00 |....0...........| 80002220 30 c8 00 04.15 00 ff f4.00 00 00 00.03 a0 20 21 |0............. !| 80002230 0c 00 69 bb.24 05 00 00.08 00 08 12.00 00 00 00 |..i.$...........| 80002240 af b0 00 58.af b1 00 5c.af b2 00 60.af b3 00 64 |...X...\......d|
80002250 af b4 00 68.af b5 00 6c.af b6 00 70.af b7 00 74 |...h...l...p...t|
80002260 af be 00 90.3c 08 80 00.35 08 00 08.01 06 40 24 |....<...5.....@$|
80002270 11 00 ff de.00 00 00 00.40 08 10 01.35 08 04 00 |[email protected]...|
80002280 39 08 04 00.40 88 10 01.00 00 00 c0.03 a0 20 21 |9...@......... !|
80002290 0c 00 66 18.24 05 00 01.10 00 ff 6b.00 00 00 00 |..f.$......k....|
800022a0 03 e0 04 08.00 00 00 00.00 00 00 00.00 00 00 00 |................|
800022b0 00 00 00 00.00 00 00 00.00 00 00 00.00 00 00 00 |................|
800022c0 8f 88 00 08.00 00 00 00.31 08 00 04.15 00 00 04 |........1.......|
800022d0 00 00 00 00.00 00 00 00.00 00 00 00.42 00 00 20 |............B.. |
800022e0 03 e0 00 08.00 00 00 00.00 00 00 00.00 00 00 00 |................|
800022f0 00 00 00 00.00 00 00 00.00 00 00 00.00 00 00 00 |................|
80002300 40 1a 70 00.3c 1b 80 00.27 7b 22 c0.37 5a 00 1f |@.p.<...'{".7Z..|
80002310 3b 5a 00 1f.17 5b 00 02.00 00 00 00.40 9a 70 00 |;Z...[[email protected].|
80002320 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!| 80002330 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!| 80002340 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....| 80002350 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......| 80002360 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,|
80002370 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]....0...4|
80002380 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....|
80002390 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.|
800023a0 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<|
800023b0 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....|
800023c0 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T|
800023d0 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...|
800023e0 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l| 800023f0 af b6 00 70.af b7 00 74.af be 00 90.40 08 10 01 |...p...t....@...| 80002400 3c 09 18 00.35 29 1c 00.01 09 40 25.39 08 18 00 |<...5)....@%9...| 80002410 40 88 10 01.00 00 00 c0.40 08 60 00.35 08 00 06 |@.......@..5...|
80002420 39 08 00 06.40 88 60 00.00 00 00 c0.8f 90 00 48 |9...@.........H| 80002430 af 9d 00 48.3c 1f 80 00.08 0c c0 00.27 ff 20 34 |...H<.......'. 4| 80002440 40 1a 70 00.3c 1b 80 00.27 7b 22 c0.37 5a 00 1f |@.p.<...'{".7Z..| 80002450 3b 5a 00 1f.17 5b 00 02.00 00 00 00.40 9a 70 00 |;Z...[[email protected].| 80002460 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!|
80002470 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!|
80002480 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....|
80002490 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......|
800024a0 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,| 800024b0 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]| 800024c0 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....| 800024d0 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.| 800024e0 af a1 00 1c.34 04 00 00.3c 02 00 00.08 00 09 3d |....4...<......=| 800024f0 34 42 00 00.00 00 18 10.af a8 00 38.af a9 00 3c |4B.........8...<| 80002500 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....| 80002510 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T| 80002520 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...\| 80002530 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l|
80002540 af b6 00 70.af b7 00 74.af be 00 90.40 08 10 01 |...p...t....@...|
80002550 3c 09 18 00.35 29 1c 00.01 09 40 25.39 08 18 00 |<...5)....@%9...|
80002560 40 88 10 01.00 00 00 c0.40 08 60 00.35 08 00 06 |@.......@..5...| 80002570 39 08 00 06.40 88 60 00.00 00 00 c0.8f 90 00 48 |9...@.........H|
80002580 af 9d 00 48.3c 1f 80 00.00 40 00 08.27 ff 20 34 |...H<....@..'. 4|
80002590 40 9a f8 00.40 1a b8 00.00 1a d7 80.07 41 00 8e |@[email protected]..|
800025a0 00 00 00 00.3c 1a 80 3e.27 5a c7 74.af 5b 00 00 |....<..>'Z.t.[..|
800025b0 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!| 800025c0 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!| 800025d0 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....| 800025e0 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......| 800025f0 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,|
80002600 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]....0...4|
80002610 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....|
80002620 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.|
80002630 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<|
80002640 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....|
80002650 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T|
80002660 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...|
80002670 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l| 80002680 af b6 00 70.af b7 00 74.af be 00 90.0c 00 72 d7 |...p...t......r.| 80002690 03 a0 20 21.8f b8 00 a0.03 00 00 13.8f b8 00 9c |.. !............| 800026a0 03 00 00 11.8f a8 00 38.8f a9 00 3c.8f aa 00 40 |.......8...<...@| 800026b0 8f ab 00 44.8f ac 00 48.8f ad 00 4c.8f ae 00 50 |...D...H...L...P| 800026c0 8f af 00 54.8f b8 00 78.8f b0 00 58.8f b1 00 5c |...T...x...X...\| 800026d0 8f b2 00 60.8f b3 00 64.8f b4 00 68.8f b5 00 6c |......d...h...l|
800026e0 8f b6 00 70.8f b7 00 74.8f be 00 90.8f a1 00 1c |...p...t........|
800026f0 40 02 10 01.34 42 04 00.40 82 10 01.00 00 00 c0 |@...4B..@.......|
80002700 41 65 00 01.0c 00 08 a8.00 00 00 00.40 04 60 00 |Ae..........@..| 80002710 34 84 00 1e.38 84 00 1e.40 84 60 00.34 03 ff 00 |4...8...@..4...|
80002720 00 83 20 24.8f a2 00 98.00 03 18 27.00 43 10 24 |.. $.......'.C.$|
80002730 00 44 10 25.40 82 60 00.8f a3 00 b0.00 00 00 c0 |.D.%@..........| 80002740 40 04 10 01.30 63 04 00.14 60 00 0c.00 00 00 00 |@...0c.........|
80002750 40 02 10 05.3c 06 80 43.24 c6 ba 34.00 02 14 02 |@...<..C$..4....|
80002760 00 c2 30 21.8c c2 00 00.10 40 00 04.00 00 00 00 |..0!.....@......|
80002770 40 02 68 00.34 42 02 00.40 82 68 00.30 a5 00 01 |@[email protected]...|
80002780 10 a0 00 02.00 00 00 00.41 60 00 21.38 84 04 00 |........A.!8...| 80002790 00 83 20 25.40 84 10 01.00 00 00 c0.8f a3 00 ac |.. %@...........| 800027a0 40 83 70 00.8f bf 00 94.8f bc 00 88.8f b9 00 7c |@.p............|| 800027b0 8f a7 00 34.8f a6 00 30.8f a5 00 2c.8f a4 00 28 |...4...0...,...(| 800027c0 8f a3 00 24.8f a2 00 20.8f bd 00 8c.3c 1a 80 3e |...$... ....<..>| 800027d0 27 5a c7 74.8f 5b 00 00.40 1a f8 00.42 00 00 1f |'Z.t.[[email protected]...| 800027e0 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!|
800027f0 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!|
80002800 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....|
80002810 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......|
80002820 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,| 80002830 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]| 80002840 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....| 80002850 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.| 80002860 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<| 80002870 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....| 80002880 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T| 80002890 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...\| 800028a0 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l|
800028b0 af b6 00 70.af b7 00 74.af be 00 90.0c 00 74 bd |...p...t......t.|
800028c0 03 a0 20 21.8f b8 00 a0.03 00 00 13.8f b8 00 9c |.. !............|
800028d0 03 00 00 11.8f a8 00 38.8f a9 00 3c.8f aa 00 40 |.......8...<...@|
800028e0 8f ab 00 44.8f ac 00 48.8f ad 00 4c.8f ae 00 50 |...D...H...L...P|
800028f0 8f af 00 54.8f b8 00 78.8f b0 00 58.8f b1 00 5c |...T...x...X...|
80002900 8f b2 00 60.8f b3 00 64.8f b4 00 68.8f b5 00 6c |......d...h...l| 80002910 8f b6 00 70.8f b7 00 74.8f be 00 90.8f a1 00 1c |...p...t........| 80002920 40 02 10 01.34 42 04 00.40 82 10 01.00 00 00 c0 |@...4B..@.......| 80002930 41 65 00 01.0c 00 08 a8.00 00 00 00.40 04 60 00 |Ae..........@..|
80002940 34 84 00 1e.38 84 00 1e.40 84 60 00.34 03 ff 00 |4...8...@..4...| 80002950 00 83 20 24.8f a2 00 98.00 03 18 27.00 43 10 24 |.. $.......'.C.$| 80002960 00 44 10 25.40 82 60 00.8f a3 00 b0.00 00 00 c0 |.D.%@..........|
80002970 40 04 10 01.30 63 04 00.14 60 00 0c.00 00 00 00 |@...0c.........| 80002980 40 02 10 05.3c 06 80 43.24 c6 ba 34.00 02 14 02 |@...<..C$..4....| 80002990 00 c2 30 21.8c c2 00 00.10 40 00 04.00 00 00 00 |..0!.....@......| 800029a0 40 02 68 00.34 42 02 00.40 82 68 00.30 a5 00 01 |@[email protected]...| 800029b0 10 a0 00 02.00 00 00 00.41 60 00 21.38 84 04 00 |........A.!8...|
800029c0 00 83 20 25.40 84 10 01.00 00 00 c0.8f a3 00 ac |.. %@...........|
800029d0 40 83 70 00.8f bf 00 94.8f bc 00 88.8f b9 00 7c |@.p............||
800029e0 8f a7 00 34.8f a6 00 30.8f a5 00 2c.8f a4 00 28 |...4...0...,...(|
800029f0 8f a3 00 24.8f a2 00 20.8f bd 00 8c.42 00 00 18 |...$... ....B...|
80002a00 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!| 80002a10 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!| 80002a20 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....| 80002a30 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......| 80002a40 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,|
80002a50 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]....0...4|
80002a60 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....|
80002a70 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.|
80002a80 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<|
80002a90 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....|
80002aa0 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T|
80002ab0 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...|
80002ac0 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l| 80002ad0 af b6 00 70.af b7 00 74.af be 00 90.40 08 40 00 |...p...t....@.@.| 80002ae0 af a8 00 a4.40 02 10 01.30 43 04 00.34 42 04 00 |[email protected]..| 80002af0 40 82 10 01.00 00 00 c0.41 62 0b c1.03 e0 40 21 |@.......Ab....@!| 80002b00 0c 00 08 a8.00 00 00 00.01 00 f8 21.40 08 60 00 |...........!@..|
80002b10 3c 09 10 00.35 29 00 1e.01 09 40 25.39 08 00 1e |<...5)....@%9...|
80002b20 40 88 60 00.00 00 00 c0.30 42 80 00.10 40 00 02 |@......0B...@..| 80002b30 00 00 00 00.41 60 0b e1.40 02 10 01.34 42 04 00 |....A[email protected]..|
80002b40 38 42 04 00.00 62 10 25.40 82 10 01.00 00 00 c0 |8B...b.%@.......|
80002b50 03 a0 20 21.3c 1f 80 00.08 00 7c 26.27 ff 20 20 |.. !<.....|&'. |
80002b60 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!| 80002b70 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!| 80002b80 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....| 80002b90 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......| 80002ba0 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,|
80002bb0 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]....0...4|
80002bc0 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....|
80002bd0 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.|
80002be0 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<|
80002bf0 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....|
80002c00 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T|
80002c10 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...|
80002c20 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l| 80002c30 af b6 00 70.af b7 00 74.af be 00 90.40 08 40 00 |...p...t....@.@.| 80002c40 af a8 00 a4.40 02 10 01.30 43 04 00.34 42 04 00 |[email protected]..| 80002c50 40 82 10 01.00 00 00 c0.41 62 0b c1.03 e0 40 21 |@.......Ab....@!| 80002c60 0c 00 08 a8.00 00 00 00.01 00 f8 21.40 08 60 00 |...........!@..|
80002c70 3c 09 10 00.35 29 00 1e.01 09 40 25.39 08 00 1e |<...5)....@%9...|
80002c80 40 88 60 00.00 00 00 c0.30 42 80 00.10 40 00 02 |@......0B...@..| 80002c90 00 00 00 00.41 60 0b e1.40 02 10 01.34 42 04 00 |....A[email protected]..|
80002ca0 38 42 04 00.00 62 10 25.40 82 10 01.00 00 00 c0 |8B...b.%@.......|
80002cb0 03 a0 20 21.3c 1f 80 00.08 00 7c 26.27 ff 20 20 |.. !<.....|&'. |
80002cc0 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!| 80002cd0 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!| 80002ce0 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....| 80002cf0 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......| 80002d00 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,|
80002d10 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]....0...4|
80002d20 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....|
80002d30 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.|
80002d40 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<|
80002d50 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....|
80002d60 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T|
80002d70 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...|
80002d80 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l| 80002d90 af b6 00 70.af b7 00 74.af be 00 90.40 08 10 01 |...p...t....@...| 80002da0 3c 09 18 00.35 29 1c 00.01 09 40 25.39 08 18 00 |<...5)....@%9...| 80002db0 40 88 10 01.00 00 00 c0.40 08 60 00.35 08 00 06 |@.......@..5...|
80002dc0 39 08 00 06.40 88 60 00.00 00 00 c0.03 a0 20 21 |9...@........ !| 80002dd0 3c 1f 80 00.08 00 7b 4f.27 ff 20 20.00 00 00 00 |<.....{O'. ....| 80002de0 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!|
80002df0 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!|
80002e00 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....|
80002e10 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......|
80002e20 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,| 80002e30 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]| 80002e40 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....| 80002e50 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.| 80002e60 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<| 80002e70 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....| 80002e80 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T| 80002e90 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...\| 80002ea0 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l|
80002eb0 af b6 00 70.af b7 00 74.af be 00 90.40 08 10 01 |...p...t....@...|
80002ec0 3c 09 18 00.35 29 1c 00.01 09 40 25.39 08 18 00 |<...5)....@%9...|
80002ed0 40 88 10 01.00 00 00 c0.40 08 60 00.35 08 00 06 |@.......@..5...| 80002ee0 39 08 00 06.40 88 60 00.00 00 00 c0.03 a0 20 21 |9...@........ !|
80002ef0 3c 1f 80 00.08 00 7b 4f.27 ff 20 20.00 00 00 00 |<.....{O'. ....|
80002f00 40 1a 60 00.00 1a d0 c0.07 40 00 06.03 a0 d8 21 |@.......@.....!| 80002f10 40 1a 10 02.3c 1b 80 43.00 1a d4 c2.03 7a d8 21 |@...<..C.....z.!| 80002f20 8f 7b b3 f8.03 a0 d0 21.27 7d ff 48.af ba 00 8c |.{.....!'}.H....| 80002f30 af a3 00 24.af a0 00 18.40 03 10 01.af a3 00 b0 |...$....@.......| 80002f40 40 03 60 00.af a2 00 20.af a4 00 28.af a5 00 2c |@..... ...(...,|
80002f50 af a3 00 98.40 03 68 00.af a6 00 30.af a7 00 34 |[email protected]....0...4|
80002f60 af a3 00 a8.40 03 70 00.af b9 00 7c.af bc 00 88 |[email protected]....|....|
80002f70 af bf 00 94.af a3 00 ac.37 bc 3f ff.3b 9c 3f ff |........7.?.;.?.|
80002f80 af a1 00 1c.00 00 18 10.af a8 00 38.af a9 00 3c |...........8...<|
80002f90 af aa 00 40.af ab 00 44.af ac 00 48.af a3 00 9c |[email protected]....|
80002fa0 00 00 18 12.af ad 00 4c.af ae 00 50.af af 00 54 |.......L...P...T|
80002fb0 af b8 00 78.af a3 00 a0.af b0 00 58.af b1 00 5c |...x.......X...|
80002fc0 af b2 00 60.af b3 00 64.af b4 00 68.af b5 00 6c |......d...h...l| 80002fd0 af b6 00 70.af b7 00 74.af be 00 90.00 00 00 c0 |...p...t........| 80002fe0 40 08 10 01.3c 09 18 00.35 29 1c 00.01 09 40 25 |@...<...5)....@%| 80002ff0 39 08 1c 00.40 88 10 01.00 00 00 c0.40 08 60 00 |9...@.......@..|`

@Dont-Know-Nothing
Copy link
Author

This is another dump that contains device data and available commands
putty.log

@Dont-Know-Nothing
Copy link
Author

Nop, dm is not available, i'm using dump command (address, length) sorry i think this is not the place for posting this kind off stuff.

@danitool
Copy link
Owner

danitool commented May 3, 2021

Ok, I see, your board isn't using CFE but bldr instead. Then the rt63365tool.py should work
https://github.com/danitool/bootloader-dump-tools/blob/master/rt63365tool.py

However I don't see any command available for dumping the NAND flash in your bootloader. You may only be able to dump the RAM content.

I already made a dump on one of this Econet based SoC routers. But the readflash comand was available in this case. See:
h367a-flash-backup.tar.gz

@Dont-Know-Nothing
Copy link
Author

Thanks. again sorry, I'm a noob, I learned something using your post on flashing TP-link firmware to a Huawei HG532s and it worked like a charm. Like I told you, I'm a noob, i realy appreciate your help. The only thing i want to do is recover SIP account configurations and if i can ssh credentials.
As you say, no readflash command available only dump and memrl and I have no clue how to get memory addresses.
Again Thanks! for your time and help but i think i have to keep reading and learning a lot more!
Greetings from Argentina!!

@Dont-Know-Nothing
Copy link
Author

This is the last time a bother you, I promise you. I found asp_flash read command that returns this

bldr> asp_flash read 0x000000040000
addr = 262144 (0x00040000), size = 128
addr = 262144 (0x00040000), size = 128, ret = 0

3C524F4D 46494C45 3E0A3C57 616E3E0A ..
093C436F 6D6D6F6E 20547261 6E734D6F .<Common TransMo
64653D22 41544D22 20556E69 7175654D de="ATM" UniqueM
61633D22 31222073 68617265 7076633D ac="1" sharepvc=
22302220 43445654 5F456E61 626C653D "0" CDVT_Enable=
2230222F 3E0A093C 50564330 20416374 "0"/>..<PVC0 Act
6976653D 22596573 22205056 43536361 ive="Yes" PVCSca
6E526573 65727665 643D224E 6F222056 nReserved="No" V

But asp_flash read only takes address parameter, no size or range... Can i do somthing with this and your script?

Thanks man!

@danitool
Copy link
Owner

danitool commented May 3, 2021

The output of asp_flash read is probably more similar to the script used by the realtek rtl8186 bootloader:
https://github.com/danitool/bootloader-dump-tools/blob/master/rtl8186tool.py

I think a new script with minor modifications should be created for it.

@Dont-Know-Nothing
Copy link
Author

Thanks! I'll give it i try, my coding skills are awful but will try!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants