but the data from eeprom is encrypted and kept in D1 D2 D3 files, as i see.so you have Flash and Eeprom in your VCDS folder
you dont need to decrypt FW, just write old FW, fully lock atmega, and update, here you have the new FW
![]()
but the data from eeprom is encrypted and kept in D1 D2 D3 files, as i see.so you have Flash and Eeprom in your VCDS folder
you dont need to decrypt FW, just write old FW, fully lock atmega, and update, here you have the new FW
![]()
allent (17th December, 2013)
i agree that some authentification data is in d1 d2 d3 files.. by these files VCDS.exe shows serial number in About window.. but how its doing that i dont know.. maybe there is just some data from eeprom not all. And if you want to get FW you no need to lock atmega.. just leave it unlocked.. so after update you can read atmega and have Decrypted Flash side of atmega.![]()
Fw (aka FLASH part of atmega) are posted here, 1.84, 1.92... few or more pages earlier. Signature/serial (aka EEPROM) for free is only for 11.11.0.
the most interesting thing for me is, that i am preaty sure, that VCDS reads EEPROM in unsecured channel, so if you have logs, you should see the data beeing read.but i dont have a good usb sniffer to test my ideas
maybe someone could recomend me one?
![]()
im loged it via Logic Analyzer .. on TXD RXD lines of FT232 chip, it sends data but its encrypted for sure.. and it allways different..
do not know why but they are loaded brush eeprom 10.64 and 11.3 beta. Now test was 11.11 new chip to be more stable.
has given some good results this version.
If I have clone VCDS 11.2 which is self-repairing(unplug from OBD, plug again and serial is green back), can I update only FW to 1.91 or 1.92 and it will be still self-repairing?
Why woud you even need to update firmwire mate.
Not nesesery,ok,let us say you update firmwire for example what good it is when you still have 11.2 version of program??
11.11.0. Still use 1.84 firmwire and no need to think about that mate...
I want to check newer file from VCDS 11.11.4 for RNS510 navigation, I know that there is some new adaptation channels written and I want to read them. I don't want to make this clone "not self-repairing".
FW in dump for my clone and for 11.11.0 is the same, so self-repairing is in EEPROM maybe?
Just one tip, lots of guys here know this trick but are not sharing.
Use Ollygbd you will be amazed with what you can see
Tip 2: Test with a known EEPROM and try to find where those values are passed.
For example. Use 11.11.0 and try to find if the decrypted content of the EEPROM can be seen in Olly.
SPOILER ALERT: Yes it can be seen
This trick is only used to read the EEPROM from original or clones VCDS cables... This trick is not to create dumps that will work in newer versions of VCDS.
Regards.
allent (17th December, 2013)
but if you have eeprom you can write it and have a copy cabel or not?![]()
HELLO I am francais who can help me has lira and to schedule(program) atmega and fti?
I possede April usb I how look for to read and has to schedule(program) atmega 162 and the fti can help me?
What are the programs has to use?
Thank you for reponse
Bookmarks