Homebrew Accidentally stuck on 4.5.0-4U

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
This,
The exploit uses 5 different ROP chains based on the browser's version, detected using the user agent string.

  • 3DS System version 2.0 = "Mozilla/5.0 (Nintendo 3DS; U; ; en) Version/1.7412.US"
  • 3DS System version 2.1-3.X = "Mozilla/5.0 (Nintendo 3DS; U; ; en) Version/1.7455.US"
  • 3DS System version 4.0-4.X = "Mozilla/5.0 (Nintendo 3DS; U; ; en) Version/1.7498.US"
  • 3DS System version 5.0-7.0 = "Mozilla/5.0 (Nintendo 3DS; U; ; en) Version/1.7552.US"
  • 3DS System version 7.1-9.2 = "Mozilla/5.0 (Nintendo 3DS; U; ; en) Version/1.7567.US"
This confirms what im trying to show you. The exploit can work on a full 2.1 firm (which I'm sure it does because theres no other way Gateway people can run their badly coded A9LH installer on 2.1), but it does work with any browser.

The ROP chains the Spider Exploit uses have codes to run on -4 browser(which is basically the 2.1 browser)

Just to let you know, i am not going to keep arguing about this. There was another guy stuck in the same way as the OP and he managed to run Decrypt9 with the -4 browser.
I didn't know this either. This is going to help a friend of mine, thanks. Can you PM me what you had the guy you help do(that you shouldn't have). Might help me help my friend.
 
Last edited by BL4Z3D247,

Tenshi_Okami

Well-Known Member
Member
Joined
Nov 3, 2015
Messages
1,490
Trophies
0
Age
25
XP
1,616
Country
Puerto Rico

The Catboy

GBAtemp Official Catboy™: Boywife
Member
Joined
Sep 13, 2009
Messages
27,974
Trophies
4
Location
Making a non-binary fuss
XP
39,420
Country
Antarctica
The guide actually covers upgrading from 2.1 on New3DS. You just needed to boot into hourglass9 and and flash the NAND backup you made before downgrading to 2.1.
Either way, try these
https://3ds.guide/decrypt9-(browser)
https://3ds.guide/decrypt9-(mset)
From there you can safely downgrade back to 2.1
https://3ds.guide/2.1.0-ctrtransfer
if you accidentally removed A9LH and want to re-install it.
Or if you still have A9LH
Go to this
https://3ds.guide/9.2.0-ctrtransfer

Also reformatting your SD card wouldn't update your system. Your SD card has nothing to do with your OFW. If you didn't backup the SD card before reformatting, you basically just lost everything, including your NAND backup.
 

Distrance

矢澤にこ
Member
Joined
Nov 23, 2008
Messages
1,151
Trophies
1
XP
800
Country
Finland
Also reformatting your SD card wouldn't update your system. Your SD card has nothing to do with your OFW. If you didn't backup the SD card before reformatting, you basically just lost everything, including your NAND backup.

You're right, but it is recoverable if he hasn't put anything on the SD card. If he has, then recovering the file could be more dicey. Whenever I've had to recover files (sometimes hundreds), I've used EaseUS Recovery Tool. It's amazing. I can wholeheartedly recommend this option @Lightwolfe . However the free version has some stupid limitations so you'll have to acquire the full version through some other means *cough*. There's free file recovery softwares too so you could try those. Either way, do NOT write anything to your SD card right now. Run a recovery tool on it and recover these files : nandmin.bin AND nandmin.bin.sha . With latter we can verify the intergrity of the former and if all checks out you can then restore a backup.

If you can not restore these files then you are seemingly out of luck unless you can update back to 11.2 or downgrade to 2.1 somehow.

I know you don't want to hear this but I still am going to say this: Why did you try to do something that strayed off the guide and only then came here for help. Why did you not come for help when you ran into trouble during 2.1? One of the stupidest things you can do while hacking your device is straying from the guide when you don't know what you're doing and what effect it will have on the system.
 
Last edited by Distrance,
  • Like
Reactions: The Catboy

Distrance

矢澤にこ
Member
Joined
Nov 23, 2008
Messages
1,151
Trophies
1
XP
800
Country
Finland
They can't update or they'll brick. It's a N3DS.

Well that's why I said "somehow". I tried to imply thru not normal methods. Though I guess ctrtransfer is not exactly "updating" but yeah you know. So if he has A9LH can he actually do something or is restoring the backup his only hope?
 

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
Well that's why I said "somehow". I tried to imply thru not normal methods. Though I guess ctrtransfer is not exactly "updating" but yeah you know. So if he has A9LH can he actually do something or is restoring the backup his only hope?
Ah, wasn't sure if you knew that. If they have A9LH all they have to do is restore their NANDmin.bin with the (keep a9lh) option.
 

Distrance

矢澤にこ
Member
Joined
Nov 23, 2008
Messages
1,151
Trophies
1
XP
800
Country
Finland
Ah, wasn't sure if you knew that. If they have A9LH all they have to do is restore their NANDmin.bin with the (keep a9lh) option.

Yes but they don't have that backup - which means they need to restore it with a File Restoration software which may or may not work. What I was asking is if there's anything else he can do without the said backup.
 

The Catboy

GBAtemp Official Catboy™: Boywife
Member
Joined
Sep 13, 2009
Messages
27,974
Trophies
4
Location
Making a non-binary fuss
XP
39,420
Country
Antarctica
You're right, but it is recoverable if he hasn't put anything on the SD card. If he has, then recovering the file could be more dicey. Whenever I've had to recover files (sometimes hundreds), I've used EaseUS Recovery Tool. It's amazing. I can wholeheartedly recommend this option @Lightwolfe . However the free version has some stupid limitations so you'll have to acquire the full version through some other means *cough*. There's free file recovery softwares too so you could try those. Either way, do NOT write anything to your SD card right now. Run a recovery tool on it and recover these files : nandmin.bin AND nandmin.bin.sha . With latter we can verify the intergrity of the former and if all checks out you can then restore a backup.

If you can not restore these files then you are seemingly out of luck unless you can update back to 11.2 or downgrade to 2.1 somehow.

I know you don't want to hear this but I still am going to say this: Why did you try to do something that strayed off the guide and only then came here for help. Why did you not come for help when you ran into trouble during 2.1? One of the stupidest things you can do while hacking your device is straying from the guide when you don't know what you're doing and what effect it will have on the system.
I mean yeah you can. It's just hit and miss. Every time I recovered files, they were renamed. But maybe that's because I was using the free version or something. i never really worry about restoring files because I keep multiple backups.

Still I am going to level in on this one as well. OP: The steps are seriously right on the same page as "Installing arm9loaderhax." It's Section IV - Restoring the System. If you seriously couldn't scroll down a little more to figure this out and went rouge from there. Then this is your own fault
You can try these options right here. Or sell your system, buy a new one and do some research before doing something like this.

The guide actually covers upgrading from 2.1 on New3DS. You just needed to boot into hourglass9 and and flash the NAND backup you made before downgrading to 2.1.
Either way, try these
https://3ds.guide/decrypt9-(browser)
https://3ds.guide/decrypt9-(mset)
From there you can safely downgrade back to 2.1
https://3ds.guide/2.1.0-ctrtransfer
if you accidentally removed A9LH and want to re-install it.
Or if you still have A9LH
Go to this
https://3ds.guide/9.2.0-ctrtransfer

Also reformatting your SD card wouldn't update your system. Your SD card has nothing to do with your OFW. If you didn't backup the SD card before reformatting, you basically just lost everything, including your NAND backup.
 

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
Yes but they don't have that backup - which means they need to restore it with a File Restoration software which may or may not work. What I was asking is if there's anything else he can do without the said backup.
Oh, when I first read the OP I thought they had a NAND backup. It says they made a backup or thought they did. Lol. That's what confused me. Well in that case if they have A9LH they can ctrtransfer to 9.2, then they can update but they'll have to fix the DS/DSi mode since the ctrtransfer breaks that on a N3DS.
 
Last edited by BL4Z3D247,

Distrance

矢澤にこ
Member
Joined
Nov 23, 2008
Messages
1,151
Trophies
1
XP
800
Country
Finland
I believe in the EaseUS program if you're using the free version there's a size limit or something - You can scan for the file, but you can't recover it with the program. I might be wrong on this but I think that's actually a thing. And given that the backup is at least 800MB, I don't think it can be recovered with the free one. The file names usually don't stay intact either way, not sure why or if that's just a thing in general when recovering files that are deleted, but the file extensions will remain. It is unlikely the SD card had any other .bin files at ~800MB and any other .sha files on it so it's pretty much self explanatory which files must be recovered.
 

Lightwolfe

Member
OP
Newcomer
Joined
Jan 29, 2017
Messages
14
Trophies
0
Age
36
XP
51
Country
United States
The guide actually covers upgrading from 2.1 on New3DS. You just needed to boot into hourglass9 and and flash the NAND backup you made before downgrading to 2.1.
Either way, try these
https://3ds.guide/decrypt9-(browser)
https://3ds.guide/decrypt9-(mset)
From there you can safely downgrade back to 2.1
https://3ds.guide/2.1.0-ctrtransfer
if you accidentally removed A9LH and want to re-install it.
Or if you still have A9LH
Go to this
https://3ds.guide/9.2.0-ctrtransfer

Also reformatting your SD card wouldn't update your system. Your SD card has nothing to do with your OFW. If you didn't backup the SD card before reformatting, you basically just lost everything, including your NAND backup.

I tried this guide - https://3ds.guide/decrypt9-(browser)
The first two links did not work. This link - http://www.reboot.ms/3ds/load.html?Launcher.dat - came up but the following text showed up once the link loaded.

Initializing SD card... success
Build: Decrypt9WIP (2017/01/15)
Work directory: /files9
Game directory: /files9
sector0x96 Key: otp.bin not found
0x03 KeyX & KeyY: already set up
0x05 KeyY: not found
0x25 KeyX: not found
0x18 KeyX: not found
0x1B KeyX: not found
0x24 KeyY: not found
Finalizing Initialization...

Initialization: failed!
(A to exit)

The last link - http://dukesrg.dynu.net/3ds/rop?GW17567.dat&Launcher.dat - came up on the bottom screen then gave an error.
 

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
I tried this guide - https://3ds.guide/decrypt9-(browser)
The first two links did not work. This link - http://www.reboot.ms/3ds/load.html?Launcher.dat - came up but the following text showed up once the link loaded.

Initializing SD card... success
Build: Decrypt9WIP (2017/01/15)
Work directory: /files9
Game directory: /files9
sector0x96 Key: otp.bin not found
0x03 KeyX & KeyY: already set up
0x05 KeyY: not found
0x25 KeyX: not found
0x18 KeyX: not found
0x1B KeyX: not found
0x24 KeyY: not found
Finalizing Initialization...

Initialization: failed!
(A to exit)

The last link - http://dukesrg.dynu.net/3ds/rop?GW17567.dat&Launcher.dat - came up on the bottom screen then gave an error.
This is from the troubleshooting link if none of the links work:
A browser based exploit is not working
Browser based exploits (such as browserhax or 2xrsa) are often unstable and crash frequently, but they can sometimes be fixed by doing the following steps

  1. Open the browser, then open the browser settings
  2. Scroll to the bottom and Initialize Savedata (it also may be called Clear All Save Data)
  3. Try the exploit again
It's worth a try.
 
Last edited by BL4Z3D247,

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
Last edited by BL4Z3D247,

Lightwolfe

Member
OP
Newcomer
Joined
Jan 29, 2017
Messages
14
Trophies
0
Age
36
XP
51
Country
United States
So I got Cubic Ninja but I'm unsure what to do next. Can't really find a straight forward guide. Any help or links?
 

Tenshi_Okami

Well-Known Member
Member
Joined
Nov 3, 2015
Messages
1,490
Trophies
0
Age
25
XP
1,616
Country
Puerto Rico
So I got Cubic Ninja but I'm unsure what to do next. Can't really find a straight forward guide. Any help or links?
Wait, you said this booted right?

This link - http://www.reboot.ms/3ds/load.html?Launcher.dat - came up but the following text showed up once the link loaded.

Initializing SD card... success
Build: Decrypt9WIP (2017/01/15)
Work directory: /files9
Game directory: /files9
sector0x96 Key: otp.bin not found
0x03 KeyX & KeyY: already set up
0x05 KeyY: not found
0x25 KeyX: not found
0x18 KeyX: not found
0x1B KeyX: not found
0x24 KeyY: not found
Finalizing Initialization...

Initialization: failed!
(A to exit)

--------------------- MERGED ---------------------------
 

Lightwolfe

Member
OP
Newcomer
Joined
Jan 29, 2017
Messages
14
Trophies
0
Age
36
XP
51
Country
United States
https://github.com/smealum/ninjhax <--- I am trying to follow this guide but I'm stuck on this part...

"Secondly, you will need to procure files required for building the executable. These files are not my IP so I can not (and will not) distribute them. Note that none of the data from these files ends up in the final product, we only use them to generate patches with our own data. You will need all versions of spider/SKATER's oss.cro file (found in romfs)"
 

Tenshi_Okami

Well-Known Member
Member
Joined
Nov 3, 2015
Messages
1,490
Trophies
0
Age
25
XP
1,616
Country
Puerto Rico
https://github.com/smealum/ninjhax <--- I am trying to follow this guide but I'm stuck on this part...

"Secondly, you will need to procure files required for building the executable. These files are not my IP so I can not (and will not) distribute them. Note that none of the data from these files ends up in the final product, we only use them to generate patches with our own data. You will need all versions of spider/SKATER's oss.cro file (found in romfs)"
Again, i want to be clear (Sorry) you said before that http://www.reboot.ms/3ds/load.html?Launcher.dat booted some text right?
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • K3Nv2 @ K3Nv2:
    Slower speeds for gen4
  • K3Nv2 @ K3Nv2:
    I'll reformat and have a 3tb raid0 m. 2 at least
    +1
  • K3Nv2 @ K3Nv2:
    Lmao that sold out fast
    +1
  • Veho @ Veho:
    Yeet the cat.
    +1
  • K3Nv2 @ K3Nv2:
    Good idea
    +1
  • The Real Jdbye @ The Real Jdbye:
    i thought everybody knew cocktails are like 75% ice
  • Veho @ Veho:
    Yeah but not like this.
  • Veho @ Veho:
    It's not like they're complaining that their Slurpee is 99% ice or something, but if the cocktail calls for "shot of vodka, shot of vermouth, shot of gin, shot of Campari, three shots of juice, squirt of lemon" and ends up being a thimbleful of booze, that's a problem.
  • The Real Jdbye @ The Real Jdbye:
    the funny thing is cocktails in norway are only allowed to have 1 20ml shot of booze
  • The Real Jdbye @ The Real Jdbye:
    so..... yeah
  • The Real Jdbye @ The Real Jdbye:
    we're used to only having a thimbleful of booze
  • Veho @ Veho:
    Booo.
  • The Real Jdbye @ The Real Jdbye:
    same thing if you want whisky on the rocks or something, you can't get a double
  • The Real Jdbye @ The Real Jdbye:
    but you could buy as many shots of whisky (or anything else) as you want and ask for a glass of ice and pour them in
  • The Real Jdbye @ The Real Jdbye:
    it's dumb
  • Veho @ Veho:
    Maybe.
  • Veho @ Veho:
    There was a comparison of the number of Ibuprofen poisonings before and after they limited the maximum dosage per box or per pill (i'll look that up). No limit on the number of boxes you can still buy as many as you want, so people argued it was pointless.
  • Veho @ Veho:
    But the number of (accidental) poisonings dropped because drinking an entire package of ibuprofen pills went from "I need a new liver" to "I need a new box of Ibuprofen".
  • Veho @ Veho:
    Here we have ketoprofen that used to be prescription-only because of the risk of toxic dosages, but then they halved the dose per pill and sell them in bottles of six pills apiece instead of twenty and it doesn't need a prescription any more. Yes you can buy more than one bottle but people simply don't.
  • Psionic Roshambo @ Psionic Roshambo:
    Usually accidentally overdose of ibuprofen here is from people taking like cold medicine then ibuprofen for a headache and the combination is over what they need
    Psionic Roshambo @ Psionic Roshambo: https://www.youtube.com/watch?v=1hp24nDVKvY