TS-H943 DVD TS-H943 DVD Firmware Hack for Xbox 360 Out in the Wild

Discussion in 'Xbox 360 Development' started by san186, May 15, 2006.

  1. san186

    san186 Rapidly Rising Member

    Joined:
    Jan 20, 2006
    Messages:
    98
    Likes Received:
    0
    14 May 2006

    ------------------------------------------------------
    Xtreme firmware for TS-H943 Xbox 360
    ------------------------------------------------------

    Here it is, the long awaited World first Xbox 360 backup firmware modification to boot all game backups!

    LINK REMOVED

    Features
    -----------------

    Boots all Xtreme Xbox 360 backups
    Boots all Xtreme Xbox 1 backups
    Boots all Xbox 360 originals
    Boots all Xbox 1 originals on Xbox 360
    Xtreme0800 extraction firmware enables drive to function natively under Windows without any hardware conversion/adaptors
    Use on Xbox Live at own risk

    Technical details
    ------------------------

    Reads Xbox 360 security sector from PSN 04FB1F (Layer 0)
    Reads Xbox 1 security sector from PSN 605FF (Layer 0)
    Security sector must be extrated using Xtreme0800 360 firmware for Xbox360 games and Xbox 1 games
    Will not boot Xbox 1 backups made with Xbox1 605b 0800 firmware (maybe in future release)

    Flashing your drive
    ---------------------------

    Advisable to make a backup of your dvd drive firmware first.("mtkflash r /m orig.bin")
    Please make sure you hexedit the Xtreme.bin firmware (Not Xtrm0800.bin firmware) to include your dvd drive key from your original firmware (usually at $4000-4200).
    Plug SATA cable from DVD drive to PC. Power cable drive still connected to Xbox 360
    Power on Xbox 360
    Power on PC
    Boot with standard dos boot disk with included mtkflash utility
    Run "mtkflash w /m firmwarename.bin" with relevant firmware file (Xtreme.bin for running backups or Xtrm0800.bin for security sector extraction)

    Extracting Security Sector
    ---------------------------------------

    Ensure DVD drive has been flashed with Xtrm0800.bin firmware. Drive can now work under Windows.
    Insert original game disk into drive and wait for windows to detect disk change
    Run DVDinfoPro
    Enter the following four custom cdb commands:

    AD 00 FF 02 FD FF FE 00 08 00 01 C0
    AD 00 FF 02 FD FF FE 00 08 00 03 C0
    AD 00 FF 02 FD FF FE 00 08 00 05 C0
    AD 00 FF 02 FD FF FE 00 08 00 07 C0

    Then save hexadecimal display as bin file as SS.bin

    Creating a game backup
    -----------------------------------

    Ensure DVD drive has been flashed with Xtrm0800.bin firmware. Drive can now work under Windows.
    Extract Isobuilder.rar
    Insert original game disk into drive and wait for windows to detect disk change
    Run DVDinfoPro
    Enter the following custom cdb command to unlock drive: (game data visable)

    FF 08 01 01

    Run Isobuster
    Right click on DVD and select Extract From-To
    Click Length and enter number of LBAs as follows:

    Xbox 1 Original Number of LBA to read 3431264 decimal
    or
    Xbox 360 Original Number of LBA to read 3567872 decimal
    Select User Data (2048 bytes/block)
    Click Start Extraction
    Enter filename as game.iso and click Save
    Upon read error dialogue box choose fill with blank zeros for sector and select use this selection for all errors
    Copy game.iso and ss.bin to the relevent isobuilder directory (Depending on Xbox 360 or Xbox 1 game)
    Run build360.bat (Xbox 360 game) or build.bat (xbox 1 game)
    Ensure your burner will set the booktype of DVD+R DL to DVDRom
    Burn with CloneCd and choose the image.dvd file


    Thanks to everyone at Xboxhacker.net for all their discussions. Now you guys will have to get homebrew running.
    Next on the list will be the PS3 and this one will be done much quicker (once it comes out!)

    http://www.xboxhacker.net/index.php?...33&topic=779.0
     
  2. san186

    san186 Rapidly Rising Member

    Joined:
    Jan 20, 2006
    Messages:
    98
    Likes Received:
    0
    according to xbox scene you need a Toshiba drive

    DVD Firmware Hack?
    The hack is a modified firmware of the Xbox 360 Toshiba-Samsung TS-H943 DVD-ROM drive. It will ONLY work on that drive - the Hitachi-LG drives will need their own modified firmware).
    It's easy to find out what drive your Xbox 360 has (no need to void warranty) ... just open the DVD tray and compare to the image below:

    http://pictures.xbox-scene.com/xbox3...S-HLG_s400.jpg

    All Xbox 360 executables (XEX containers files) are signed by Microsoft (with a private key only MS has). This means that if you try to change anything to the XEX file, the signature will be wrong and the file will not boot.
    To protect from booting raw/unmodified copies of a game from a DVD-R or other recordable media, microsoft gave each XEX file a 'mediaflag'. This mediaflag tells the Xbox 360 from which media (cd-r, dvd-r, dvd+r, dvd-rw, hdd, dvdxbox, dvdxbox360, ...) the XEX is allowed to boot. Changing this mediaflag in the XEX is not an option as it'll break the signature of the file (see above), so ... what's done in this firmware hack is 'break' the detection of the disc.
    Retail 360 games usually get a mediaflag where they only allow 'DVDXBOX360' (Xbox 360 discs - different than a normal DVD because they have some specific bad sectors and special info in lead-in/out that can't be written with a standard dvd burner). The modified firmware will trick the DVD drive into reporting a DVD-R (or other) as a 'DVDXBOX(360)' to the Xbox 360.

    Because executables also get a regionflag, this modified DVD firmware will not allow to boot region-locked games (changing region of game would require changing the regionflag which would break the warranty). So if a game is region-locked it MSUT match the region of your console to work.

    Can Microsoft detect it via Xbox LIVE? They probably can ... and when they start checking they will probably act like with the Xbox1, ban your Xbox 360 console serial from the LIVE servers ... or maybe even more, who knows what they are planning. You've been warned!

    More soon.
    This news item will be updated often over next few hours.

    Download: n/a (firmware contains copyrighted code and might be illegal under DMCA/EUCD - don't ask for it and don't link to it from our site, thx)
    News-Source: xboxhacker.net forums
    Discuss this news item on our forums: forums.xbox-scene.com
     
  3. Paulo

    Paulo PoeticHalo

    Joined:
    Mar 13, 2004
    Messages:
    5,354
    Likes Received:
    7
    The only use of this is to play copied games...
     
  4. JohnA

    JohnA Active Member

    Joined:
    May 13, 2006
    Messages:
    39
    Likes Received:
    0
    Indeed, and it's a good thing.

    Despite the fact i've never moved my 360 when its on/has disk in drive I have noticed a couple of odd marks on some disks data surface.
     
  5. Paulo

    Paulo PoeticHalo

    Joined:
    Mar 13, 2004
    Messages:
    5,354
    Likes Received:
    7
    No its not a good thing at all unless you plan to pirate games really.
     
  6. Barc0de

    Barc0de Mythical Member from Time Immemorial

    Joined:
    Oct 29, 2005
    Messages:
    11,205
    Likes Received:
    23
    not a game worth pirating on the 360 yet :p
     
  7. Micjohvan

    Micjohvan Familiar Face

    Joined:
    Oct 18, 2005
    Messages:
    1,149
    Likes Received:
    2
    It could be good if you wanted to back up all YOUR games i suppose. But outside of that and being just for giggles, thats all its good for.
     
  8. JohnA

    JohnA Active Member

    Joined:
    May 13, 2006
    Messages:
    39
    Likes Received:
    0
    Yep it is :) It means I can play backups instead of the retail copy, saves any damage to the retail in case my 30 decides to have it for lunch.

    I quite like this method tbh, it has to be 1:1 to work which means no cheats etc.
     
  9. Giel

    Giel Intrepid Member

    Joined:
    Jul 2, 2005
    Messages:
    660
    Likes Received:
    0
    How come these hackers manage to make all Xbox 1 titles playable on the Xbox, while Microsoft hasn't been able to achieve that so far.

    It makes you wonder...
     
  10. Ringo

    Ringo Guest

    Huh?

    With this hack you can play copied 360 games on a 360. I don't quite understand what you mean.
     
  11. dhau

    dhau Spirited Member

    Joined:
    Oct 21, 2005
    Messages:
    130
    Likes Received:
    0
    You can only play specially prepared Xbox 1 backups of games that do work on 360 as originals.
     
  12. jp.

    jp. Be Attitude For Gains

    Joined:
    Feb 18, 2006
    Messages:
    1,983
    Likes Received:
    74
    Quick OT question (my apologies).


    How do I do this?
     
  13. Pikkon

    Pikkon "Moving in Stereo"

    Joined:
    Mar 4, 2005
    Messages:
    2,695
    Likes Received:
    80
    The region flag is embedded into the xex file of each game,if its changed in anyway the game will not boot.
     
    Last edited: Jul 11, 2006
  14. Alchy

    Alchy Illustrious Member

    Joined:
    Apr 6, 2004
    Messages:
    6,216
    Likes Received:
    19
    As I understand it - until the encryption gets broken, you'd need to recompile the executable from source to have a different region flag.
     
  15. Barc0de

    Barc0de Mythical Member from Time Immemorial

    Joined:
    Oct 29, 2005
    Messages:
    11,205
    Likes Received:
    23
    booting xbox1 games means making them seem as if they were originals. If they work or not is not something that the hackers control with a firmware hack, no-brainer.

    regionflag query could be genuinly "locked" to a certain region perhaps with an update on the hack? thus any regionflag in the .xex will equal the "proper" value?
     
sonicdude10
Draft saved Draft deleted
Insert every image as a...
  1.  0%

Share This Page