Hack the 360: The Tutorial

font face=arial size=-1 color=blue>
« back to results for ""
Below is a cache of http://dwl.xbox-scene.com/tutorial/xbox360firmwaretutorialv18.pdf. It's a snapshot of the page taken as our search engine crawled the Web.
The web site itself may have changed. You can check the current page or check for previous versions at the Internet Archive. Yahoo! is not affiliated with the authors of this page or responsible for its content.
Hack the 360: The Tutorial V18
Hack the 360: The
Tutorial

Backing Up, Modifying & Flashing the
Samsung Drive
&
How to Create Game Backups
&
Backing up the Hitachi/LG Drive
&
Bad Flash Recovery



Written by: geebee

(
geebee@gmail.com
for any changes)



BEFORE YOU START, READ

Start Your Reading Here

http://forums.xbox-scene.com/index.php?s=cdbaa5713c3134aa66aa2493c814c259&showtopic=513412


Then if you want more background read here
www.kev.nu


Now read this tutorial, twice. If you dont understand any terms, think twice about
doing this.

This tutorial will explain every step in backing up your original firmware, creating
a working hacked firmware for your Toshiba-Samsung DVD-Drive and flashing it
back to the DVD-Drive. It will also explain how to create successful game back-
ups.

It is really important to keep in mind that the complete process can be risky if
you dont know what you are doing.




WARNINGS

IF YOU WANT TO KEEP YOUR WARANTY DO NOT TRY THIS.
OPENING THE CASE INVALIDATES THE WARRANTY.

Dont ask for illegal files. ANYWHERE. Especially not on public forums.
Read all the forum rules. Do not talk about .ISO images you have
downloaded.


We are not responsible for any misreading or damage done to your
Microsoft Xbox 360 in any way.

Please
do not attempt to try this if you dont understand any of the steps
below. Normal to Average PC experience is required in order to
successfully complete the installation.

Do not stick your fingers into live electrical parts. Do not stick any other
parts of your anatomy in either.


Lasers BLIND! Do not look into them if you need to hotswap disks when
using WxRipper (to follow)

Overview:


Firmware Tasks:


Disassemble Xbox360
Connect Xbox360 Drive to PC
(Samsung Only)Make floppy/usb/cd boot disk with mktflash on it
(Samsung Only)Boot PC with bootable disk
(Samsung Only)Backup Xbox360 Drive firmware
Boot to Windows
(Hitachi Only)Backup Xbox360 Drive firmware
Backup Xbox360 Drive firmware to 2 other places for safety
Extract unique key from backed-up firmware
Inject key into xtremes hacked firmware
Flash Xbox360 Drive with xtremes hacked firmware
Rebuild Xbox360 (unless you want to make some backups now)
Test Xbox360



Game Backup Tasks:


Disassemble Xbox360
Connect Xbox360 Drive to PC
Add Xtrm0800.bin firmware to bootable disk
Boot PC with bootable disk
Flash Xbox360 Drive with Xtrm0800.bin
Boot to Windows
Extract Security Sectors
Make Image with wxRipper or Isobuster
Combine SS and game image with SS Merger 1.4
Burn image
Flash Xbox360 Drive with xtremes hacked firmware with your key in again
Rebuild Xbox360
Test backups


WARNING: If you are going to connect your 360 and PC together in *any* way, then
you *must* provide the 360 with a path to true earth ground. This is because the 360 has
a floating ground and horrible things happen if all connected systems do not agree on the
reference voltage. I used a couple of croc clips from the chassis of the 360 to the chassis
of my PC to achieve this.
Tools:

1)
Xbox 360 with Samsung Drive




2)
Xtreme/Commodore4Eva/KDX Xbox 360 firmware on a bootable
floppy/USB stick/CD: This must be the KDX F360TEAM patched version if
you want to use KDX v1.5.
Xtreme_Firmware_PROPER_PATCH_XBOX360-iND is the release name
for the patch.

3)
KDX1.5-by-F360TEAM.rar
to patch the firmware with your key



4)
A PC with a suitable SATA chipset:


PCI SATA:

VIA VT 8237
WORKS

VIA VT 6421L
WORKS (with edited mtkflash)
Nforce 410 chipset (mcp51)
WORKS (with edited mtkflash)
Download Nforce 410 Edited MTKFLASH
(Thanks Grim187, elitedev & will5)
Sil3112 Chipset
Does not work

Sil3114
Does not work

Sil3512 (CompUsa)
Does not work

Maxtor SATA card w Promise chipset (free with hard drives)
Does not work


Onboard SATA:
MSI k7n2 delta (Promise SATA) -
Does not work


ASUS with sil3114 Controller (ICH6) -
Compatible for some?


VIA Chipset -
Compatible

Intel Chipset (ICH5 / ICH6)
Compatible

ASUS p5ad2 premium (with ich6) -
Compatible

Intel Chipset ICH7) -
Compatible
with hex-edited mtkflash?
Promise Sata controller on the ASUS P4C800E-Deluxe -
Compatible
, not HDD
NF4SAT1 nForce 4 SATA Controller -
Compatible
with proper Mtkflash
Abit NF7-S2GNnforce2 SATA (mapped as IDE ports 3+4) -
Compatible



SATA NOTES:

Mtkflash.exe must have the Xbox360 Drive on a SATA channel, not an ide
channel (ie not with SATA-to-IDE converter).

Mtkflash cannot flash via a USB or Firewire connection (DOS doesn't have
drivers!)

Mtkflash has the following support documented inside the compiled executable:
ICH5, ICH6P, ICH6, ICH6M, VIA8237, Si3114, SiS964, SiS180, SiS965, NV
nForce3

Make sure your SATA ports are set to NATIVE/IDE mode NOT RAID

You can hexedit Mtkflash to modify support for which channel, etc. the
application scans. This differs by machine/card/controller, so this is obviously
only something more advanced users can do.


WARNING: If you are going to connect your 360 and PC together in *any* way, then
you *must* provide the 360 with a path to true earth ground. This is because the 360 has
a floating ground and horrible things happen if all connected systems do not agree on the
reference voltage. I used a couple of croc clips from the chassis of the 360 to the chassis
of my PC to achieve this.
Xbox 360 Disassembly:


To disassemble your Xbox 360 to get the DVD Drive
out, follow these instructions but you do NOT need to remove the black heatsink
screws:

Anandtech Xbox 360 Stripping Guide

Keep the power connecter plugged in your Xbox 360.


Opening the 360 (the perfect way)
Take the tub your spindle of discs came and cut a bit from the side of it and put it over
the console as shown. Mark out where the holes are...

... then make it into a key like this. the tabs need to be about 1cm long.



Do the same for the other side and you'll get two xbox 360 case opening keys that look
like these...


Step 2

Open the front of the console as normal and put a bit of newspaper or something inside
the case to hold the front open a bit, then insert the key, push with a bit of force and you
should hear it click and the case will open....
... repeat for the other side and you're done!




Thanks to Hydra!


Xbox 360 Connection:


Unplug the SATA cable from the back of the Xbox360 Drive. Connect a SATA
cable from your PC SATA connection to the back of the Xbox360 Drive. Connect
the video cable to the back of the Xbox360. If you do not do this, the Xbox360
will power off at an inappropriate moment (like when flashing). Power on the
Xbox360.


Bootable Floppy Disk:


Make a bootable floppy disk. To do this inset a floppy in your A: drive. Right Click
on the A: drive in My Computer. Select Format then tick Create an MS-DOS
startup disk. Then copy onto this disk MTKFLASH.EXE, MTKFLASH.TYP,
XTREME.BIN and XTRM0800.BIN. Thats your disk prepared. If you prefer to
use a USB stick or CD just put those same files on it. If you have an Nforce4
chipset motherboard, use the version of MTKFLASH found in MTK-NF4.rar. See
the forums for info on editing mtkflash for other chipsets.



Backing Up Your Firmware:

Turn on your Xbox360 and boot your PC with your bootable floppy. At the prompt
type:

A:> mtkflash r /m orig.bin
(If you are not using a floppy change directory to wherever you put the files)


Press Enter


Now you have the choice to select SEC Master or SEC Slave: select Master. The
application should start reading the flash. After its finished it will tell you to reboot
the system.

Remove the floppy and boot into Windows. Open the floppy from My Computer
and select the file ORIG.BIN. This is your Xbox360 Drives firmware and needs to be kept safe! Make a copy of the file. Then make another one on another drive or
CD or USB Stick. Then make another somewhere else. You get the drift.


Getting Your Key:


Now that we have the firmware, we need to extract the Key out of it
so we can inject it into the hack