Announcement

Collapse
No announcement yet.

Announcement

Collapse
No announcement yet.

Evolveo H4 - debrick

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    Evolveo H4 - debrick

    Hello all,
    I accidentally brick my Evolveo H4 box. I have installed CoreELEC on internal memory for years. Yes, I know, it is generally bad idea. I want to try newer CoreELEC and probably overwrite boot or u-boot. So currently my box is bricked
    After power on, the led is flashing. I found serial pins on board, make it connectable and monitor what is happen. I try everything - make a bootable sd card from Knowledge and Tutorials but nothing helps. I try to search for firmware image, but the vendor didn't supply it. The box looks like any other generic Android S905X box. I make some photos so someone can tell if it is clone of some other better supported box. I use gxl_p212_2g.dtb which works good.
    Please can anyone helps me? Is there any way I can save this box?

    Serial output:

    Code:
    GXL:BL1:9ac50e:a1974b;FEAT:ADFC318C;POC:3;RCY:0;EMMC:0;READ:0;0.0;CHK:0;
    TE: 120108
    
    BL2 Built : 13:48:56, Sep 23 2016.
    gxl g7459bd4 - jianxin.pan@droid06
    
    set vcck to 1120 mv
    set vddee to 1000 mv
    Board ID = 2
    CPU clk: 1200MHz
    DQS-corr enabled
    DDR scramble enabled
    DDR3 chl: Rank0+1 @ 912MHz - PASS
    Rank0: 1024MB(auto)-2T-13
    Rank1: 1024MB(auto)-2T-13
    DataBus test pass!
    AddrBus test pass!
    -s
    Load fip header from eMMC, src: 0x0000c200, des: 0x01400000, size: 0x00004000
    New fip structure!
    Load bl30 from eMMC, src: 0x00010200, des: 0x01100000, size: 0x0000d600
    Load bl31 from eMMC, src: 0x00020200, des: 0x10100000, size: 0x00015400
    Load bl33 from eMMC, src: 0x00038200, des: 0x01000000, size: 0x000a9a00
    NOTICE: BL3-1: v1.0(debug):fb68908
    NOTICE: BL3-1: Built : 18:30:11, Nov 1 2016
    aml log : bl31 normal boot !
    [Image: gxl_v1.1.3154-065f772 2016-09-29 14:08:54 yan.wang@droid05]
    OPS=0x82
    c 1 f9 5 9d 16 2c ad 19 14 17 91 [0.363001 Inits done]
    secure task start!
    high task start!
    low task start!
    INFO: BL3-1: Initializing runtime services
    WARNING: No OPTEE provided by BL2 boot loader
    ERROR: Error initializing runtime service opteed_fast
    INFO: BL3-1: Preparing for EL3 exit to normal world
    INFO: BL3-1: Next image address = 0x1000000
    INFO: BL3-1: Next image spsr = 0x3c9
    
    
    U-Boot 2015.01-g5272651-dirty (Feb 08 2017 - 09:49:27)
    
    DRAM: 2 GiB
    Relocation Offset is: 76ec9000
    GXL:BL1:9ac50e:a1974b;FEAT:ADFC318C;POC:3;RCY:0;EMMC:0;READ:0;0.0;CHK:0;
    TE: 118790
    
    BL2 Built : 13:48:56, Sep 23 2016.
    gxl g7459bd4 - jianxin.pan@droid06
    
    set vcck to 1120 mv
    set vddee to 1000 mv
    Board ID = 2
    CPU clk: 1200MHz
    DQS-corr enabled
    DDR scramble enabled
    DDR3 chl: Rank0+1 @ 912MHz - PASS
    Rank0: 1024MB(auto)-2T-13
    Rank1: 1024MB(auto)-2T-13
    DataBus test pass!
    AddrBus test pass!
    -s
    Load fip header from eMMC, src: 0x0000c200, des: 0x01400000, size: 0x00004000
    New fip structure!
    Load bl30 from eMMC, src: 0x00010200, des: 0x01100000, size: 0x0000d600
    Load bl31 from eMMC, src: 0x00020200, des: 0x10100000, size: 0x00015400
    Load bl33 from eMMC, src: 0x00038200, des: 0x01000000, size: 0x000a9a00
    NOTICE: BL3-1: v1.0(debug):fb68908
    NOTICE: BL3-1: Built : 18:30:11, Nov 1 2016
    aml log : bl31 normal boot !
    [Image: gxl_v1.1.3154-065f772 2016-09-29 14:08:54 yan.wang@droid05]
    OPS=0x82
    c 1 f9 5 9d 16 2c ad 19 14 17 91 [0.361495 Inits done]
    secure task start!
    high task start!
    low task start!
    INFO: BL3-1: Initializing runtime services
    WARNING: No OPTEE provided by BL2 boot loader
    ERROR: Error initializing runtime service opteed_fast
    INFO: BL3-1: Preparing for EL3 exit to normal world
    INFO: BL3-1: Next image address = 0x1000000
    INFO: BL3-1: Next image spsr = 0x3c9
    
    
    U-Boot 2015.01-g5272651-dirty (Feb 08 2017 - 09:49:27)
    
    DRAM: 2 GiB
    Relocation Offset is: 76ec9000
    GXL:BL1:9ac50e:a1974b;FEAT:ADFC318C;POC:3;RCY:0;EMMC:0;READ:0;0.0;CHK:0;
    See the photos:
    Click image for larger version

Name:	IMG_20220420_133248.jpg
Views:	127
Size:	136.7 KB
ID:	829093 Click image for larger version

Name:	IMG_20220420_133344.jpg
Views:	121
Size:	149.2 KB
ID:	829094 Click image for larger version

Name:	IMG_20220420_133350.jpg
Views:	120
Size:	152.1 KB
ID:	829095 Click image for larger version

Name:	IMG_20220420_133401.jpg
Views:	125
Size:	132.9 KB
ID:	829096
    Attached Files

    #2
    These should be the pins you'll need to short to put it in mask rom but I'm not 100% certain.



    Comment


      #3
      Hello again and thank you. I made it.

      1) the pins to short are on other side
      So NAND chip of Samsung KLMAG2WEPD-B031, so according to numbering of IO, these are pins 7 and 8.

      Click image for larger version

Name:	evolveo-h4-nand.jpg
Views:	55
Size:	133.3 KB
ID:	829122

      2) Because the vendor didn't supply the full image of OS, I flash (using Amlogic USB Burning Tool V2) image of A96X, which looks similar in hardware. And yes, all is working again - wlan and BT.

      This information could help someone.
      Thank you.

      Comment

      Working...
      X