Hacking [Release] 0-key movable.sed 『No more CIA installation!!!』

tony_2018

Well-Known Member
Member
Joined
Jan 3, 2014
Messages
3,107
Trophies
0
XP
1,012
Country
United States
I like seeing these one-sided arguments, makes me feel I did the right thing when I clicked ignore on whoever it is.

Likes...I've been ignoring alot of posts/threads lately.

On topic: its a 50/50 chance of bricking if you know what this can be used for and what can happen if you fuck up. Use at your own risk and stop asking if its safe or not. Nothing is guaranteed.
 

Maq47

Lord of Pyro
Member
Joined
Jan 7, 2012
Messages
1,243
Trophies
1
Location
Your basement
Website
idont.have.one
XP
3,297
Country
United States
I just tried 'injecting' this by copying the file as-is with FBI to CTRNAND. Instant brick. I'm guessing that it was encrypted and that it should not be just 'copied', right? Sucks to be me, considering that I happened to 'forget' to make a NAND backup with Gateway BEFORE choosing 'Format emuNAND'.

Edit: Safe Mode also won't work, so a System Update is out of the question, too.
 
Last edited by Maq47,
  • Like
Reactions: DrkBeam

Olmectron

Well-Known Member
Member
Joined
Dec 31, 2012
Messages
2,657
Trophies
2
Age
31
Location
A game
XP
3,855
Country
Mexico
I just tried 'injecting' this by copying the file as-is with FBI to CTRNAND. Instant brick. I'm guessing that it was encrypted and that it should not be just 'copied', right? Sucks to be me, considering that I happened to 'forget' to make a NAND backup with Gateway BEFORE choosing 'Format emuNAND'.

Edit: Safe Mode also won't work, so a System Update is out of the question, too.
What CFW do you have?

Did you brick EmuNAND or SysNAND?
 
  • Like
Reactions: Dannyo15

Maq47

Lord of Pyro
Member
Joined
Jan 7, 2012
Messages
1,243
Trophies
1
Location
Your basement
Website
idont.have.one
XP
3,297
Country
United States
you need a hardmod to restore your sysnand now.

in the future, if you modify movable.sed (bad idea!), you need to do it within Decrypt9WIP and use "Autofix CTRNAND".

I got another 2DS, and the latest release of D9WIP doesn't seem to have an 'Autofix CTRNAND' option. Not only that, but there is no option to 'explore' NAND or emuNAND in order to delete the contents of the '/data/' folder as outlined in the guide here. Am I missing something? Also, the movable.sed file in the OP is only 288 bytes, but when I backup my emuNAND's copy, it's 320 bytes. Is that normal? I didn't install anything on emuNAND prior to backing up my emuNAND's movable.sed, either.
 

ihaveahax

Well-Known Member
Member
Joined
Apr 20, 2015
Messages
6,070
Trophies
2
XP
7,835
Country
United States
I got another 2DS, and the latest release of D9WIP doesn't seem to have an 'Autofix CTRNAND' option. Not only that, but there is no option to 'explore' NAND or emuNAND in order to delete the contents of the '/data/' folder as outlined in the guide here. Am I missing something? Also, the movable.sed file in the OP is only 288 bytes, but when I backup my emuNAND's copy, it's 320 bytes. Is that normal? I didn't install anything on emuNAND prior to backing up my emuNAND's movable.sed, either.
Decrypt9WIP -> "SysNAND/EmuNAND Options" -> "CTRNAND transfer..." -> "Autofix CTRNAND"

GodMode9 -> SYSNAND/EMUNAND CTRNAND

also, if you are trying to explore the contents of one emunand intended for a different system, it won't work. NAND contents are encrypted per-console.
 

Maq47

Lord of Pyro
Member
Joined
Jan 7, 2012
Messages
1,243
Trophies
1
Location
Your basement
Website
idont.have.one
XP
3,297
Country
United States
Decrypt9WIP -> "SysNAND/EmuNAND Options" -> "CTRNAND transfer..." -> "Autofix CTRNAND"

GodMode9 -> SYSNAND/EMUNAND CTRNAND

I didn't think to look in the "CTRNAND transfer..." section. Thanks! I guess D9WIP doesn't have the option to explore emuNAND, only GodMode9, right?

also, if you are trying to explore the contents of one emunand intended for a different system, it won't work. NAND contents are encrypted per-console.

I already installed a fresh Gateway emuNAND on this new 2DS, so it's fine. ^_^
 

ihaveahax

Well-Known Member
Member
Joined
Apr 20, 2015
Messages
6,070
Trophies
2
XP
7,835
Country
United States
I didn't think to look in the "CTRNAND transfer..." section. Thanks! I guess D9WIP doesn't have the option to explore emuNAND, only GodMode9, right?
only GodMode9(arm9 payload) and FBI(as CIA) can explore NAND contents.

also random tip: I would suggest using EmuNAND9 for formatting SD cards instead of Gateway's crap-ish formatter.
 

Maq47

Lord of Pyro
Member
Joined
Jan 7, 2012
Messages
1,243
Trophies
1
Location
Your basement
Website
idont.have.one
XP
3,297
Country
United States
only GodMode9(arm9 payload) and FBI(as CIA) can explore NAND contents.

also random tip: I would suggest using EmuNAND9 for formatting SD cards instead of Gateway's crap-ish formatter.

Thanks for the tip. I will keep that in mind. Also, any idea on why the movable.sed files' sizes don't match up? Would that be a problem in this case? Also, when I tried deleting the contents of the /data/ folder in FBI on the previously bricked system, a few folders gave an 'access denied' error. I was using rxTools' Pasta Mode, which I assume didn't give all needed permissions. Would doing this in Gateway Mode on emuNAND present any error in this case?

Edit: I was using the latest FBI in .cia format. Just FYI.
 
Last edited by Maq47,

ihaveahax

Well-Known Member
Member
Joined
Apr 20, 2015
Messages
6,070
Trophies
2
XP
7,835
Country
United States
Thanks for the tip. I will keep that in mind. Also, any idea on why the movable.sed files' sizes don't match up? Would that be a problem in this case? Also, when I tried deleting the contents of the /data/ folder in FBI on the previously bricked system, a few folders gave an 'access denied' error. I was using rxTools' Pasta Mode, which I assume didn't give all needed permissions. Would doing this in Gateway Mode on emuNAND present any error in this case?
for things under nand/data, you probably need to do that under GodMode9. FBI is running under the 3DS kernel which is actively using a few files, so you can't touch them.

as for sizes, who knows? it should be 320 bytes.

--------------------- MERGED ---------------------------

@MarcusCarter actually, it's 288 bytes, until you do a system transfer, then it's 320 bytes.

https://3dbrew.org/wiki/Nand/private/movable.sed
 

Maq47

Lord of Pyro
Member
Joined
Jan 7, 2012
Messages
1,243
Trophies
1
Location
Your basement
Website
idont.have.one
XP
3,297
Country
United States
for things under nand/data, you probably need to do that under GodMode9. FBI is running under the 3DS kernel which is actively using a few files, so you can't touch them.

as for sizes, who knows? it should be 320 bytes.

--------------------- MERGED ---------------------------

@MarcusCarter actually, it's 288 bytes, until you do a system transfer, then it's 320 bytes.

https://3dbrew.org/wiki/Nand/private/movable.sed

Would MenuHax be enough to launch GodMode9 for full NAND access? I don't have Cubic Ninja.
 

Maq47

Lord of Pyro
Member
Joined
Jan 7, 2012
Messages
1,243
Trophies
1
Location
Your basement
Website
idont.have.one
XP
3,297
Country
United States
Here, just put your gateway away and follow Plailect's guide:
https://github.com/Plailect/Guide/wiki

Um, no thanks. I like Gateway's Cheat Menu too much for A9LH. And I know about NTR Debugger, and I think that it's a little easier to just use Gateway's Cheat Menu instead of launching BootNTR on my 2DS, then launching NTR Debugger on PC, yada, yada, et cetra, et cetra.
 

Aletron9000

Well-Known Member
Member
Joined
May 10, 2016
Messages
1,716
Trophies
0
Location
Classified
XP
1,604
Country
United States
Um, no thanks. I like Gateway's Cheat Menu too much for A9LH. And I know about NTR Debugger, and I think that it's a little easier to just use Gateway's Cheat Menu instead of launching BootNTR on my 2DS, then launching NTR Debugger on PC, yada, yada, et cetra, et cetra.

A9lh can run a Gateway Menu payload I think.

Not Gateway a9lh, a gateway menu payload
 

ihaveahax

Well-Known Member
Member
Joined
Apr 20, 2015
Messages
6,070
Trophies
2
XP
7,835
Country
United States
Um, no thanks. I like Gateway's Cheat Menu too much for A9LH. And I know about NTR Debugger, and I think that it's a little easier to just use Gateway's Cheat Menu instead of launching BootNTR on my 2DS, then launching NTR Debugger on PC, yada, yada, et cetra, et cetra.
using a9lh doesn't mean you need to give up Gateway, it's just another exploit, and you can use Gateway through it. this isn't really on-topic though.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Xdqwerty @ Xdqwerty:
    good night
  • BakerMan @ BakerMan:
    as to you
  • K3Nv2 @ K3Nv2:
    How do you know if the night will be good when you're asleep
  • BakerMan @ BakerMan:
    because i didn't say i was asleep
  • BakerMan @ BakerMan:
    i said i was sleeping...
  • BakerMan @ BakerMan:
    sleeping with uremum
  • K3Nv2 @ K3Nv2:
    Even my mum slept on that uremum
  • TwoSpikedHands @ TwoSpikedHands:
    yall im torn... ive been hacking away at tales of phantasia GBA (the USA version) and have so many documents of reverse engineering i've done
  • TwoSpikedHands @ TwoSpikedHands:
    I just found out that the EU version is better in literally every way, better sound quality, better lighting, and there's even a patch someone made to make the text look nicer
  • TwoSpikedHands @ TwoSpikedHands:
    Do I restart now using what i've learned on the EU version since it's a better overall experience? or do I continue with the US version since that is what ive been using, and if someone decides to play my hack, it would most likely be that version?
  • Sicklyboy @ Sicklyboy:
    @TwoSpikedHands, I'll preface this with the fact that I know nothing about the game, but, I think it depends on what your goals are. Are you trying to make a definitive version of the game? You may want to refocus your efforts on the EU version then. Or, are you trying to make a better US version? In which case, the only way to make a better US version is to keep on plugging away at that one ;)
  • Sicklyboy @ Sicklyboy:
    I'm not familiar with the technicalities of the differences between the two versions, but I'm wondering if at least some of those differences are things that you could port over to the US version in your patch without having to include copyrighted assets from the EU version
  • TwoSpikedHands @ TwoSpikedHands:
    @Sicklyboy I am wanting to fully change the game and bend it to my will lol. I would like to eventually have the ability to add more characters, enemies, even have a completely different story if i wanted. I already have the ability to change the tilemaps in the US version, so I can basically make my own map and warp to it in game - so I'm pretty far into it!
  • TwoSpikedHands @ TwoSpikedHands:
    I really would like to make a hack that I would enjoy playing, and maybe other people would too. swapping to the EU version would also mean my US friends could not legally play it
  • TwoSpikedHands @ TwoSpikedHands:
    I am definitely considering porting over some of the EU features without using the actual ROM itself, tbh that would probably be the best way to go about it... but i'm sad that the voice acting is so.... not good on the US version. May not be a way around that though
  • TwoSpikedHands @ TwoSpikedHands:
    I appreciate the insight!
  • The Real Jdbye @ The Real Jdbye:
    @TwoSpikedHands just switch, all the knowledge you learned still applies and most of the code and assets should be the same anyway
  • The Real Jdbye @ The Real Jdbye:
    and realistically they wouldn't

    be able to play it legally anyway since they need a ROM and they probably don't have the means to dump it themselves
  • The Real Jdbye @ The Real Jdbye:
    why the shit does the shitbox randomly insert newlines in my messages
  • Veho @ Veho:
    It does that when I edit a post.
  • Veho @ Veho:
    It inserts a newline in a random spot.
  • The Real Jdbye @ The Real Jdbye:
    never had that i don't think
  • Karma177 @ Karma177:
    do y'all think having an sd card that has a write speed of 700kb/s is a bad idea?
    trying to restore emunand rn but it's taking ages... (also when I finished the first time hekate decided to delete all my fucking files :wacko:)
  • The Real Jdbye @ The Real Jdbye:
    @Karma177 that sd card is 100% faulty so yes, its a bad idea
  • The Real Jdbye @ The Real Jdbye:
    even the slowest non-sdhc sd cards are a few MB/s
    The Real Jdbye @ The Real Jdbye: even the slowest non-sdhc sd cards are a few MB/s