Masoud.ebi
05-16-2010, 07:06 AM
I changed a2 imei with this method :
method by SEMCSEC :
Extract phone_app.cxc from any A2 phone
1. Run A2Uploader
2. Hit Filesystem Tool
3. Connect phone using 'c' or 2+5
4. Go to /boot directory
5. Right click on phone_app.cxc and read file
6. After file has been read, open it up in any Hex Editor
7. Search for IMEI 00 text string
8. Replace the zeros with numbers (this will have a simple calculation for output imei for a2 phone i had attached at rapidlink below together with cxchash)
9. Close and save the phone_app.cxc
10. Drag it into cxchash.exe
11. Copy the file back to phone using A2Uploader (drag&drop)
12. Click Shutdown Filesystem in A2Uploader
I changed imei till DB3210 with this method BUT someone told me :
In this method operator still recieve the OTP IMEI because the otp imei not disabled or patched .
question : Is it true ?
the_laser said :
get from phone phone_acc.cxc
find Cops_HandleSignal (pattern: 00xxxxxxxxxxxxxxxxxxxxxxxxxx00), find and patch COPS_IMEI_Read (pattern: 0Fxxxxxxxxxx)
patch cops handler, insert own imei
recalc sha1 signatures
upload phone_acc.cxc back to phone
which methods is correct ?
thx
method by SEMCSEC :
Extract phone_app.cxc from any A2 phone
1. Run A2Uploader
2. Hit Filesystem Tool
3. Connect phone using 'c' or 2+5
4. Go to /boot directory
5. Right click on phone_app.cxc and read file
6. After file has been read, open it up in any Hex Editor
7. Search for IMEI 00 text string
8. Replace the zeros with numbers (this will have a simple calculation for output imei for a2 phone i had attached at rapidlink below together with cxchash)
9. Close and save the phone_app.cxc
10. Drag it into cxchash.exe
11. Copy the file back to phone using A2Uploader (drag&drop)
12. Click Shutdown Filesystem in A2Uploader
I changed imei till DB3210 with this method BUT someone told me :
In this method operator still recieve the OTP IMEI because the otp imei not disabled or patched .
question : Is it true ?
the_laser said :
get from phone phone_acc.cxc
find Cops_HandleSignal (pattern: 00xxxxxxxxxxxxxxxxxxxxxxxxxx00), find and patch COPS_IMEI_Read (pattern: 0Fxxxxxxxxxx)
patch cops handler, insert own imei
recalc sha1 signatures
upload phone_acc.cxc back to phone
which methods is correct ?
thx