Summary:
These instructions will softmod an Australian Xbox v1.6 with the 5838 kernel.
You don't need to open the case! UDE2 and one of the 3 game exploits are
the key. I used an original copy of Splinter Cell, an Australian Xbox bought
in September 2004, and the standard accessories.
Requirements:
- Unmodded Xbox 1.6, PAL, K: 5838, D: 5659
- Modded Xbox (a friend's) running AvaLaunch dash
- Original (not platinum) Splinter Cell PAL
- MS brand memory card
- PC with Ethernet (Linux, Windows, Macintosh, doesn't matter)
- Crossover ethernet cable
Download this file from the "usual places":
| CODE |
ltools_v1.7.5_SC_PAL.rar
|
Instructions:
0) Insert the memory card into a controller connected to the modded xbox.
1) Boot your modded xbox into the MS dashboard, go to Memory.
2) Delete all Splinter Cell save games from the hard disk and memory card.
3) Boot your modded xbox into AvaLaunch or EvoX or any FTP-aware dashboard.
4) Use the ethernet cable to connect the modded xbox and the PC.
5) Change your PC address to 192.168.0.1.
6) Change the modded xbox address to 192.168.0.3 and enable the FTP server.
7) On the PC, unpack ltools_v1.7.5_SC_PAL.rar
| CODE |
prompt$ unrar x ltools_v1.7.5_SC_PAL.rar
|
8) Make sure you have these filesizes and MD5sums
| CODE |
part1.zip 5841290 bytes 11040855345af2204cd1ed68fcc58d91 part2.zip 6418 bytes e998e7c2bdff8ae8cf8a6b3e0270995b
|
9) Unpack both zipfiles
| CODE |
prompt$ unzip part1.zip prompt$ unzip part2.zip
|
10) You will have a UDATA directory with two subdirectories. There are
many files and further subdirectories below these two.
| CODE |
UDATA/21585554 UDATA/5553000c
|
11) Transfer the entire tree to your modded xbox, E:\UDATA. Be sure not
to transfer it to E:\UDATA\UDATA by mistake. You should end up with a
bunch of files in E:\UDATA\21585554 and E:\UDATA\5553000c.
12) Reboot your modded xbox into MS dashboard, go to Memory again.
14) Go to the hard drive save games. Copy the LINUX savegame and the
Splinter Cell savegame to the memory card. Both will have the Debian
Linux logo (a red swirl inside a white circle).
15) Now disconnect your modded xbox. Plug in your unmodded xbox. Connect
the controller, ethernet cable, etc. Insert your memory card into the
controller on the unmodded xbox.
16) Go to Memory. Copy the two saved games from the memory card to the
unmodded xbox hard disk. Now remove the memory card.
17) Boot from the Splinter Cell game disc on the unmodded xbox.
18) After the UBISOFT splash screen, press the START button
19) Choose Start Game from the game menu.
20) Choose Linux from the profiles menu
21) Choose Check Points, you are now booting into LTOOLS. You will see
the funky Matrix screenloader before LTOOLS starts.
22) If LTOOLS shows "Splinter Cell" in the menu then press Back to get
to the toplevel menu. If you start the game you will get an Error 21
and it will freak you out (it freaked me out).
23) Now you MUST do this step. No exceptions. Choose BACKUP from the
toplevel menu. DO NOT SKIP THIS STEP. DO NOT SKIP THIS STEP. DO NOT
SKIP THIS STEP. If I say it three times it will help you remember.
24) Now this is annoying. The XCalibur videochip is not yet supported by
Linux so the screen will go all fuzzy. Don't panic. It's working. You
just can't see what it's displaying.
25) The light on the front of the Xbox will go orange. It is now making
a backup of the original Xbox software, eeprom, and other settings.
This takes a few minutes. When the light starts flashing green it's
finished.
26) Reboot the unmodded xbox and repeat all of the steps to get back to
the LTOOLS toplevel menu. You should start from "Boot from the Splinter
Cell game disc... ".
27) This time choose "Run Mini-Linux" from the toplevel menu. You will
see the fuzzy screen again.
28) From your PC, FTP to your unmodded xbox. It has address 192.168.0.3,
username "root" and password "xbox".
29) Download _everything_ in /mnt/C and /mnt/E. The /mnt/C has the dash
software and MS applications. The /mnt/E has save games and the
backup you just made!
30) Now you SHOULD do this step. Print E/backup_linux/hdd_info.txt. This
contains your hard disk key. If you totally screwup then you will need
this key to recover your xbox. It's also a good idea to make a copy of C
and E/backup_linux to CD-R.
31) From your PC, TELNET to your unmodded xbox. It has address 192.168.0.3,
username "root" and password "xbox".
32) Now the UDE2 hack (which is the softmod we're trying to install) will
only work on an xbox from Region 1 (US/Canada). You need to change your
xbox from Region 4 (Australia) into a region 1.
33) Type "xberegion". Enter "1" to create a file new_region.bin containing
the new eeprom.
34) Enter "xtool -a -f new_region.bin" and compare it against the output
from "xtool -a". They should be EXACTLY the same except for the region
code. If they are not the same then DO NOT PROCEED.
35) Now whatever you do, if this step does not work then DO NOT REBOOT. You
might permanently break your xbox. Enter "xtool -w new_region.bin". Then
IMMEDIATELY run "xtool -a" and check the output. It must be EXACTLY the
same as the hdd_info.txt from before except for the region code. If it is
not exactly the same then DO NOT REBOOT. Get an xbox guru to save you.
36) If all went well then simply enter "UDE -UDE2" (exactly as typed with the
single space between UDE and -UDE2). It will ask a bunch of questions. You
should make these choices:
| CODE |
PBL Metoo (the virtual bios loader) EvoX M8 (the hacked BIOS that works with 1.6) EvoX Dash (this dash works well for me)
|
37) If UDE spits out no errors then enter "shutdown". Then enter "sync". Now
turn off the xbox-formerly-known-as-unmodded-xbox.
38) Turn on your new xbox. You should see the xbox splash screen and then the
EvoX dash will load. All done.
Modifications:
a) You can use any method you like to get the saved game onto the memory
card. You might prefer something simpler like Action Replay, or one of
the memory card to USB cables. The modded xbox isn't necessary if you
use one of these other methods.
b) The hard drive hotswap trick is also possible to get the saved games to
the unmodded xbox hard disk. Then you don't need the unmodded xbox or
the memory card! I didn't want to risk breaking the hard disk nor did I
want to open the case.
c) You can use any saved game exploit you like to get into LTOOLS. I used
Splinter Cell but you could also use MechAssault or 007.
d) If you are already in region 1 then you don't need to muck about with
xberegion or xtool. Skip all of those steps.
Applause:
I have sincere admiration for the people who work on these hacks. Just
reading the script for UDE made me woop for joy... comments and failsafe
checks on everything! Smooth reliable software. Thank you, xbox gurus.
NB:
All of this information was found on the XS forums. All I have done is put
it together in a single tutorial. Any mistakes are my own. I'm a complete
n00b at all this so if you think any of the steps are in error, they might
be! Read the XS forums to get the original information.
-- nathanh (sept 2004)
Awesome job man!
I was really curious how you would navigate without any video and your tutorial explained it wonderfully!
I would love it if you could write a simple tutorial on the easiest way to upgrade your newly exploited xbox's HDD to a much larger one.
| QUOTE (Broadband @ Sep 3 2004, 01:04 PM) |
| I would love it if you could write a simple tutorial on the easiest way to upgrade your newly exploited xbox's HDD to a much larger one. |
Just use XboxHDM. There are tuts on how to do this....
Just to make sure I follow correctly. If I have a Region 1 Xbox, I woud skip steps 32-35?
I am also assumming that the steps would be no different for a NTSC box, correct?
Thanks for the very precise tutorial!
- tazukia
| QUOTE (tazukia @ Sep 8 2004, 11:52 AM) |
Just to make sure I follow correctly. If I have a Region 1 Xbox, I woud skip steps 32-35?
|
Correct. For a region 1 xbox you can skip steps 32 through 35.
| QUOTE (tazukia @ Sep 8 2004, 11:52 AM) |
I am also assumming that the steps would be no different for a NTSC box, correct?
|
You will need to use a different game exploit. The Splinter Cell PAL game probably won't even boot on your xbox. Try the Splinter Cell NTSC zipfile in the same "usual location", or one of the other zipfiles if you have an original for one of the other games.
| QUOTE |
| You will need to use a different game exploit. The Splinter Cell PAL game probably won't even boot on your xbox. |
Of course, I have the 'ltools_v1.7.5_SC_NTSC.rar' package. Thanks again for the tutorial.
- tazukia
This could ofcourse be done with all the exploitable games. I also would rather use mechassault since you can still use that after the region is switched and something went wrong. The other games will leave you with a worthless xbox.
how do i tellnet to the xbox
been trying to work out how to change the xbox region
have an old xbox with ude installed wanted to go through the steps before trying it on a new box
use FLASSFXP TO GET INTO THE BOX DO I NEED A TELLNET PROGRAM
if so then how
do i type in the lines given on the computer or on the xbox how do i type on the xbox
sorry dont know and cant find it anywhere
thanks
you telnet from a dos window on your pc. Type: telnet followed by the ip. there is a tutorial to change the region in the tutorials topic.
good tutorial but dont use ms telnet cus that will fuck up your xbox software when it comes to the installation of UDE2, at least that's what happened to me today. after recovering the xbox software (now that was such a damn bitch but hell i fixed it) i used shelltelnet instead and now i got a working softmodded 1.6 pal xbox.
quick question i still got:
is it safe to remove the 007 savegame and the ltools save from the ms dashboard after the software modification?
just curious
thanks
| QUOTE (MeLv @ Sep 9 2004, 11:59 PM) |
quick question i still got: is it safe to remove the 007 savegame and the ltools save from the ms dashboard after the software modification? just curious thanks |
I would just keep it there. If your xbox once somehows doesn't boot again you need it to restore it. Otherwise you will end up hotswapping.
Thanx mate !
Worked perfectly on my brand new v1.6, European region Xbox.
Used a SanDisk Cruzer Mini 256MB (hispeed usb 2.0) pendrive and followed the instructions over here :
http://forums.xbox-scene.com/index.php?showtopic=262740
to copy the exploits to the X-box.
Hi!
i'm modding my crystal with this tutorial at this time. but i've got a problem. when i type UDE -UDE2 some text is coming and after this continue(y/n). when i type "y" it writtes no such file or directory. please help me.
nem0
| QUOTE (_nem0_ @ Sep 12 2004, 03:37 PM) |
i'm modding my crystal with this tutorial at this time. but i've got a problem. when i type UDE -UDE2 some text is coming and after this continue(y/n). when i type "y" it writtes no such file or directory. please help me. |
Cut and paste the contents of the TELNET window. I can't guess what the problem might be from what you've written.
If you start UDE -UDE2 it askes you:
Do you want to continue [y/n]
If you enter y and then press Enter, UDE ends and the linux shell says:
can not find y. no such file or directory
What to do?
use another telnet client like shelltelnet.
| QUOTE (smeyer82 @ Sep 14 2004, 10:14 PM) |
If you start UDE -UDE2 it askes you:
Do you want to continue [y/n]
If you enter y and then press Enter, UDE ends and the linux shell says:
can not find y. no such file or directory
What to do? |
Yeah I got this exact same prob on my PAL V1.6 xbox. Latest Dash. (Can't remember number 5960??)
If anyone could help out it would be awesome!!
after you backuped you're eeprom.bin and Hddkey with the start;
it's done when youy're Xbox was in PAL regio-mode .
The HDD key for locking the drive is made with the settings into this eeprom.bin file.
But after you change the region to NTSC, instead of PAL, then the eeprom is changed. then the HDD key is different, right? Or is it still the same, (in this case) because the regiosetting don't have influence on the HDD key algoritm??.
So I ask; does regionchanging of the eeprom also changes the HDD key?!
| QUOTE (Staz @ Sep 15 2004, 09:39 PM) |
Yeah I got this exact same prob on my PAL V1.6 xbox. Latest Dash. (Can't remember number 5960??) If anyone could help out it would be awesome!! |
Other people are saying that the Windows TELNET client is at fault. Use a different TELNET client like Putty. I can't confirm that's the actual problem (I don't have a Windows computer) but it sounds likely. It seems that when UDE prompts you for "y/n" then it's actually dropping straight to the Linux shell. That smells like a bad interaction with the TELNET client.
Yeah, I'll try other telnet clients. I did attempt to install UDE2 straight from the LDots menu rather than through TELNET. Of course I could not see anything happening on my screen but then the LED started flashing green indicating it was finished. I rebooted and it appears nothing at all happened and it goes straight back to the MSDASH when rebooting.
Anyone help out?
Cheers
Ben
I had the same 'no such file' problem using putty. I used the windows telnet client to connect (while still connected with putty) and it worked fine.
i am confused ;)
| QUOTE (_nem0_ @ Sep 12 2004, 03:37 PM) |
Hi!
i'm modding my crystal with this tutorial at this time. but i've got a problem. when i type UDE -UDE2 some text is coming and after this continue(y/n). when i type "y" it writtes no such file or directory. please help me.
nem0 |
had the same problem with windows telnet client. used putty - still the same. then used shellTelnet. that gave me other errors. after checking TERMINAL MODE in shellTelnet's menu, it worked.
why don't you guys just use UXE, this works fine without having to change the eeprom of your xbox...
| QUOTE (lenselijer @ Oct 26 2004, 05:07 PM) |
| why don't you guys just use UXE, this works fine without having to change the eeprom of your xbox... |
AFAIK UXE uses 1.8 ltools...which require MA game, 1.7.5 with UDE2 work with MA,007 and SC
| QUOTE (lenselijer @ Oct 26 2004, 05:07 PM) |
| why don't you guys just use UXE, this works fine without having to change the eeprom of your xbox... |
Yup I can confirm that, done a crystal (which interestingly wasn't 1.6) and a black 1.6 recently :D I love ltools