Tutorial  Updated

Registry hacking | Transfer any backup right onto your Vita (games included)

Hello,

This tutorial will allow you to transfer any backup on your Vita, games included, even if you don't own the backup. This is very powerful but comes with a lot of limitations. Most notably, you can NOT USE THE BACKED UP GAMES unless you follow this tutorial to render them usable.

Credit to HackInformer for the original tutorial.

Here is what you require:
  • A Vita on an exploitable firmware that can use MailWriter (3.52 max)
  • QCMA
  • An hex editor (HxD is what I would recommend)
  • An USB cable.
  • A backup of the target AccountID (you can check this by going in the backup's owner QCMA and checking the hex string of 16 numbers and letters)
  • fixreg_vita

Explaination

Here is how this is gonna work: In a normal environment, Vita backups are restricted to a specific account, but are not console-restricted (quite clever, considering it allows basically legal game backups between even Vitas who share the same account.) How this is enforced is with the use of what's called your AccountID. You can find it by going in your QCMA folder: the seemingly random sequence of letters and numbers is a 16 character hex string. For example, 12 34 AB CD 13 37 90 01 is a legitimate AccountID and will be accepted by the Vita when registry hacking.

When your AccountID is modified, however, you can get an backup on your Vita easy peasy as long as the AccountID matches with the one specified in the backup. As such, we simply modify our AccountID and transfer the backup seamlessly.

Modifying registry

You will need to have a functional MailWriter setup beforehand. If you do not have one, follow this guide.

Send yourself an email with these two links:

Code:
email:send?attach=vd0:registry/system.dreg.
email:send?attach=vd0:registry/system.ireg.

For each of those strings, you will have to make hem links. Highlight the first string then embed it, linking it to itself (email:send?attach=vd0:registry/system.dreg.). Do the same with the second string. You can do this easily from Gmail. Do not forget the full stop at the end. Once done, send them to yourself, click the links on your Vita, then send them to your desired email account.

You now have system.dreg and system.ireg on your computer. Run fixreg_vita.exe. After this, you should have a fixed system.dreg and a system.ireg file on your computer. In the case that you use HxD to open the system.dreg file, press Ctrl+F to bring up the search prompt, search for your current AccountID (find this in QCMA by looking at the string of number of letters inside the folders: that is your AccountID) as hex values. Note that the offset is different for every firmware, so you won't find it at the same place (it should be just over a string saying "privacy_confirmation", though, so search for that.)

kFuPmcf.png


Change the AccountID to the one of the backup of which you wish to transfer back. Finally, run fixreg _vita again and write back the modified registry back to your Vita by emailing to yourself with system.dreg renamed as #0 with no extension, and the subject as "vd0:registry/system.dreg" (the path we want the file to be written to.)

Proceed as you would with any MailWriter email: open #0, get an error message, press PS and close the email app completely.

FROM HERE ON, DO NOT POWER OFF/REBOOT YOUR VITA without unslaving the memory card first.
Open the Content Manager and find your backup. If it does not show up, make a system backup and the list of restorable backups will 'update'. Now simply transfer it and you are done!

Congratulations! You now have a backup you don't own, right on your PS Vita. As you'll find out very soon, however, its state is very limited. Working around these restrictions is where the challenge begins.
 
Last edited by xy2_,
  • Like
Reactions: Ridge and Wolfvak

Wolfvak

nyaa~
Member
Joined
Oct 25, 2015
Messages
918
Trophies
1
XP
3,486
Country
Uruguay
Sorry, "I didn't mean to offend" either, but what I mean is, have you done any actual research into this or did you just compile tutorials found all over the net?

EDIT: My particular interest here isn't games, but rather have a cheap XBMC-like machine, ie media player, upscaled emulators, etc. I think games aren't that interesting in the Vita (outside of Digimon :D)
 
Last edited by Wolfvak,
D

Deleted User

Guest
Sorry, "I didn't mean to offend" either, but what I mean is, have you done any actual research into this or did you just compile tutorials found all over the net?
It's more of a "definitive guide" than anything, and they are tutorials written in my own words. Yes they are what I researched on; could you please not jump to conclusions so fast thanks. :)

Plus, have you seen the links in my sig? yeeeaaahhhhh, they're my own tutorials and research too. :)
 

Wolfvak

nyaa~
Member
Joined
Oct 25, 2015
Messages
918
Trophies
1
XP
3,486
Country
Uruguay
It's more of a "definitive guide" than anything, and they are tutorials written in my own words. Yes they are what I researched on; could you please not jump to conclusions so fast thanks. :)

Plus, have you seen the links in my sig? yeeeaaahhhhh, they're my own tutorials and research too. :)
I never said that you didn't, all I said is that @xy2_'s coldswap trick is what lead to this, and is currently working on something bigger. He doesn't deserve to get shat on by people who don't even try (not you btw).
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • K3Nv2 @ K3Nv2:
    I'll reformat and have a 3tb raid0 m. 2 at least
    +1
  • K3Nv2 @ K3Nv2:
    Lmao that sold out fast
    +1
  • Veho @ Veho:
    Yeet the cat.
    +1
  • K3Nv2 @ K3Nv2:
    Good idea
    +1
  • The Real Jdbye @ The Real Jdbye:
    i thought everybody knew cocktails are like 75% ice
  • Veho @ Veho:
    Yeah but not like this.
  • Veho @ Veho:
    It's not like they're complaining that their Slurpee is 99% ice or something, but if the cocktail calls for "shot of vodka, shot of vermouth, shot of gin, shot of Campari, three shots of juice, squirt of lemon" and ends up being a thimbleful of booze, that's a problem.
  • The Real Jdbye @ The Real Jdbye:
    the funny thing is cocktails in norway are only allowed to have 1 20ml shot of booze
  • The Real Jdbye @ The Real Jdbye:
    so..... yeah
  • The Real Jdbye @ The Real Jdbye:
    we're used to only having a thimbleful of booze
  • Veho @ Veho:
    Booo.
  • The Real Jdbye @ The Real Jdbye:
    same thing if you want whisky on the rocks or something, you can't get a double
  • The Real Jdbye @ The Real Jdbye:
    but you could buy as many shots of whisky (or anything else) as you want and ask for a glass of ice and pour them in
  • The Real Jdbye @ The Real Jdbye:
    it's dumb
  • Veho @ Veho:
    Maybe.
  • Veho @ Veho:
    There was a comparison of the number of Ibuprofen poisonings before and after they limited the maximum dosage per box or per pill (i'll look that up). No limit on the number of boxes you can still buy as many as you want, so people argued it was pointless.
  • Veho @ Veho:
    But the number of (accidental) poisonings dropped because drinking an entire package of ibuprofen pills went from "I need a new liver" to "I need a new box of Ibuprofen".
  • Veho @ Veho:
    Here we have ketoprofen that used to be prescription-only because of the risk of toxic dosages, but then they halved the dose per pill and sell them in bottles of six pills apiece instead of twenty and it doesn't need a prescription any more. Yes you can buy more than one bottle but people simply don't.
  • Psionic Roshambo @ Psionic Roshambo:
    Usually accidentally overdose of ibuprofen here is from people taking like cold medicine then ibuprofen for a headache and the combination is over what they need
    Veho @ Veho: https://imgur.com/gallery/QQkYnQu