Hacking Wii Menu Uninstaller and Disk Check v1.01 COMING SOON!

Status
Not open for further replies.

Drihscol

Well-Known Member
Member
Joined
Aug 7, 2008
Messages
204
Trophies
0
Age
28
Website
Visit site
XP
110
Country
guys, the reserve on the ebay item hasent been met.
if it doesnt get met in 12 and a half hours, that wii is not getting sold!
 

tsampiras

Well-Known Member
Newcomer
Joined
Feb 24, 2007
Messages
65
Trophies
0
XP
111
Country
Greece
Just as i thought. Xyzzy and Key grabber (a derivative of Xyzzy), won't even install :S. the error is "-BAD HASH"

i believe it has something to do with the different common-key of the dev-kits. We'll need a custom key grabber for RVT-R machines
 

carbonyle

Well-Known Member
Member
Joined
Jan 9, 2009
Messages
360
Trophies
0
Age
40
Location
Switzerland
Website
Visit site
XP
116
Country
Swaziland
tsampiras said:
Just as i thought. Xyzzy and Key grabber (a derivative of Xyzzy), won't even install :S. the error is "-BAD HASH"

i believe it has something to do with the different common-key of the dev-kits. We'll need a custom key grabber for RVT-R machines
You have to ask Twizzler team I think (or another wii hacker/coder)
 

techboy

Well-Known Member
Member
Joined
Mar 15, 2009
Messages
1,720
Trophies
0
Age
31
Location
Pennsylvania
Website
Visit site
XP
306
Country
United States
As above, you'll likely need a custom dumper. The problem is that we don't know the common key of the RVT wii, so making such a tool would be difficult to impossible to do. You could ask TT about it though.

This app: http://wiibrew.org/wiki/FSToolbox can dump raw files from NAND (not an image, so no need for the NAND key to unpack the image). Not sure if it would work on an RVT wii. Just be careful with it, as it can overwrite/delete and fakesign as well. Avoid those functions.

We'd still need the common key to make use of the files, but hey, if it works at least its only one key (just the common key) instead of two (common and NAND key).

Brute forcing the common key could take a while: 3.19626579 × 10^38 possible keys if i did my math right (assuming its a 16 byte key like a normal wii.)
 

Vegeta

Well-Known Member
Member
Joined
Nov 8, 2002
Messages
203
Trophies
2
Website
Visit site
XP
1,610
Country
alumi181 said:
It is very powerfull tools

it can let wiis for 6x speed ,paly backup game~! in Officialmod and you don't need use modchip.

If thats true then its well worth getting hold of this stuff!
 

tsampiras

Well-Known Member
Newcomer
Joined
Feb 24, 2007
Messages
65
Trophies
0
XP
111
Country
Greece
Vegeta said:
alumi181 said:
It is very powerfull tools

it can let wiis for 6x speed ,paly backup game~! in Officialmod and you don't need use modchip.

If thats true then its well worth getting hold of this stuff!


believe me they are not. the first it just uninstalls the system menu (title id of the channel ".WMU") and reverts you back in the special boot2, the other just check the disc for errors (title id ".DCK" if I remember correctly) and presents a CRC16 hash.
Another thing is the Devkit doesNOT have a IOS4 but a IOS10 (that one was added bug-signed-fixed to retail wiis on FW4.0)
 

Vegeta

Well-Known Member
Member
Joined
Nov 8, 2002
Messages
203
Trophies
2
Website
Visit site
XP
1,610
Country
tsampiras said:
believe me they are not. the first it just uninstalls the system menu (title id of the channel ".WMU") and reverts you back in the special boot2, the other just check the disc for errors (title id ".DCK" if I remember correctly) and presents a CRC16 hash.
Another thing is the Devkit doesNOT have a IOS4 but a IOS10 (that one was added bug-signed-fixed to retail wiis on FW4.0)

So what benefits are there for these two utilities for the homebrew community?
 

techboy

Well-Known Member
Member
Joined
Mar 15, 2009
Messages
1,720
Trophies
0
Age
31
Location
Pennsylvania
Website
Visit site
XP
306
Country
United States
There doesn't seem to be any good benefit, it's more like to say we did it and to have more wads floating around on the net.
laugh.gif
Plus, we can hopefully learn the common key used on these wiis.

Consider this more of a learning experience than an attempt to get official software (even though that'll hopefully be the outcome).
 

tsampiras

Well-Known Member
Newcomer
Joined
Feb 24, 2007
Messages
65
Trophies
0
XP
111
Country
Greece
techboy said:
There doesn't seem to be any good benefit, it's more like to say we did it and to have more wads floating around on the net.
laugh.gif
Plus, we can hopefully learn the common key used on these wiis.

Consider this more of a learning experience than an attempt to get official software (even though that'll hopefully be the outcome).


EXACTLY
 

fogbank

Well-Known Member
Member
Joined
Oct 28, 2008
Messages
413
Trophies
0
XP
56
Country
United States
techboy said:
This app: http://wiibrew.org/wiki/FSToolbox can dump raw files from NAND (not an image, so no need for the NAND key to unpack the image). Not sure if it would work on an RVT wii. Just be careful with it, as it can overwrite/delete and fakesign as well. Avoid those functions.

That tool requires an IOS with the ES_Identify bug still intact. Unless the RVT system has an older IOS installed the app will not be able to gain the necessary access to the NAND.
 

WiiThoko

Well-Known Member
Member
Joined
Apr 5, 2009
Messages
353
Trophies
0
Age
28
XP
154
Country
United States
No, because if that was true, Nintendo would have patched the vulnerable Boot1 a long time ago. I might be wrong though...
 

techboy

Well-Known Member
Member
Joined
Mar 15, 2009
Messages
1,720
Trophies
0
Age
31
Location
Pennsylvania
Website
Visit site
XP
306
Country
United States
Seeing that the system could run YawnD, which relied on Trucha Capable IOSes, it wouldn't surprise me if it had the ES_identify bug as well. I think ES_Identify was fixed around the same time or after trucha. The only way to know is to try it. You'll get an error if its been fixed.

@WiiThoko - You are right. There is no way to change boot1. Any attempt at changing it will brick the wii.
 

tsampiras

Well-Known Member
Newcomer
Joined
Feb 24, 2007
Messages
65
Trophies
0
XP
111
Country
Greece
fogbank said:
techboy said:
This app: http://wiibrew.org/wiki/FSToolbox can dump raw files from NAND (not an image, so no need for the NAND key to unpack the image). Not sure if it would work on an RVT wii. Just be careful with it, as it can overwrite/delete and fakesign as well. Avoid those functions.

That tool requires an IOS with the ES_Identify bug still intact. Unless the RVT system has an older IOS installed the app will not be able to gain the necessary access to the NAND.



QUOTE(techboy @ Jun 7 2009, 10:29 PM)
Seeing that the system could run YawnD, which relied on Trucha Capable IOSes, it wouldn't surprise me if it had the ES_identify bug as well. I think ES_Identify was fixed around the same time or after trucha. The only way to know is to try it. You'll get an error if its been fixed.

@WiiThoko - You are right. There is no way to change boot1. Any attempt at changing it will brick the wii.


I believe it could work. The RVT is kinda old. Newest system menu on the disc menu installer is 3.0x. It has 1.0u,2.2x,3.0x to choose from and up to IOS33 (old ones). Also i never updated. I think it needs special IOSes from the nintendo server anyway with a devkit common key. So no RETAIL IOS WADS. Which reminds me.

if the 2 dev certs in the pinkfish do anything special. they were .wad format and you couldn't install them in a retail wii because of the different common-key.

http://wiibrew.org/wiki/Wii_Backup_Disc


I dumped the NAND with YAWND(normal with EEC) and WiiND. Will try FStoolbox once i get some free time.
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    Xdqwerty @ Xdqwerty: Also the wood ui for twl menu is back... +2