Sponsored Links

Sponsored Links

PS3 eEID RKDumper (from GameOS) PKG by Flat_z is Now Available


Sponsored Links
115w ago - Following up on the PS3 LV1, LV2, NAND / NOR Flash & eEID Dumper and PS3 XMB eEIDx Dumper Tool, this weekend [Register or Login to view links] released a PS3 eEID RKDumper PKG which allows users to dump their eid_root_key from PlayStation 3 3.55 GameOS in seconds without OtherOS.

Download: [Register or Login to view links] / [Register or Login to view links] (Mirror) / [Register or Login to view links] / [Register or Login to view links] by jarmster (eid4, not eid4d.bin)

To quote: eEID_RKDumper (from GameOS) by flatz

Howto

  • Install package and run it
  • It will then black screen (no GUI) and restart the console automatically
  • FTP (other otherwise) retrieve your eid_root_key / PCK1 from /dev_hdd0/tmp/eid_root_key

Guide

  • Install eEID_RKDumper.pkg
  • Unplug all USB devices
  • Run eEID_RKDumper from XMB
  • It will show a black screen (no GUI) for 10-15 seconds, then 3 beeps and restart the console automatically
  • FTP (other otherwise) retrieve your eid_root_key / PCK1 from /dev_hdd0/tmp/eid_root_key (48 bytes)

Hashes

CRC-16: 8058
CRC-32 (Ethernet and PKZIP): BFD3BD8A
SHA-1: 4C3E775BC9DB1755B1396C0200B5EA49B2F46A87
SHA-256: 29C2DB61D8BA28E427BE2464E2B45365F2C6861B96D0C8B8EF2E45CD4BF84D39
SHA-384: F8765BBABAE0FEE2EEEF6C807E0E6881ECFB10609536C6923E570974C606B48DCCBB3FE62D83735266310A4B6C6D7C63
SHA-512: A2F84F53921AE28B3886FB779BC5F007C36903E6216222B6BCFDDC9C7ECCFB39E74881CDBBA45C01E11AB4187708E6620FA207446141411EA5AABC18AE490F30
MD-2: 2126B37F69204E32C8B26F2FF2A623FD
MD-4: 6A2451F8A3D2F4EC9170E491CEE2D933
MD-5: E93213E630EF700E4ABADDFECCD0CCC2

Before starting the eEID_RKDumper from XMB, remove ALL your USB devices. Otherwise, it will freeze in a black screen and you will have to unplug the power cord from the PS3 (or turn it off using the power switch in back of the PS3 phat).

PlayStation 3 developer aldostools compared the eid_root_key (48 bytes) with the first 48 bytes of his dump_eid0.bin (obtained via linux & metldrpwn), and they are the same.

From haz367: The eEID dumper works perfect, could not get eid_root_key working on 4.21 with "dispath settings" ticked in Rebug's Toolbox(runs boot hangs after loading with the symbol on the right upper corner" = hard rest, anyone knows correct settings for eid_root_key dumper... no required here but for anyone wanted to test... let me be the noob here asking some stuff

eid4 is the bd drive part (offset 303A0 > 303CF) the 3k3y_keydumper dumps the "eid4+root_key" as "3Dump.bin" = Disc key = eid4+root_key

when using the manual way using zecoxao's tool we get an "eid3" error because of missing sha etc..correct?! on the provided 5KB "eid" then end up with "eid4&eid4d.bin" > eid4 identical as "3k3y dumper+added root_key" = Disc key?

[Register or Login to view code]

so anyone can skip all this ^ if u have the root_key and a dump of the flash? add the "eid4+root_key" in 1 file = disc key?

[Register or Login to view code]

updating the linux atm.. gonna waste some time on the wiki later on.. let's how long my patience lasts.

Finally, zecoxao who has created a PS3 HDD / eEID decryption repository stating the following:

You only need the eEID and the eid_root_key. entire flash is not needed. and i don't have the slightest idea why the heck they made a pkg that only dumps eid4 (someone talked about hash comparison and they said eid4 from the program and the dump from the pkg match in comparison)

The first key is used for encrypting data sent from host to BD drive. The second key is used for decrypting data sent from BD drive to host. Two keys infact (via ps3devwiki.com/wiki/BD_Drive_Reverse_Engineering#Information_about_EID4)

[Register or Login to view code]

Basically, the first 16 bytes contain a key, the second 16 contain another, and the last 16 are the hash check from OMAC1. you get that by "digesting" the two keys. that's a hash function.

So, I decided to create a ps3 hdd/eEID decryption repository, just for the gist of it. Bear in mind that the code is adapted from naehrwert’s code, so it’s not 100% my code, but i did modify some things and made it so that it’d be more user-friendly. for now, it only runs on linux, and people who want to use it on windows or mac have to adapt the code (the cygwin zip i have also works for windows, but i want to improve it a bit)

Here's my repository: github.com/zecoxao/ps3_decrypt_tools

That should work on linux if you have build-essential, openssl, and libpolarssl-dev installed. just read the readme, and you're good to go. Note: gitorious didn't seem to work for me, so i decided for github instead.




Stay tuned for more PS3 Hacks and PS3 CFW news, follow us on Twitter and be sure to drop by the PS3 Hacks and PS3 Custom Firmware Forums for the latest PlayStation 3 scene updates and homebrew releases!

Comments 15 Comments - Go to Forum Thread »

• Please Register at PS3News.com or Login to make comments on Site News articles. Thanks!

IslaTurbine's Avatar
#15 - IslaTurbine - 103w ago
Ok thanks. Unfortunately it locks up my fat 60gb on 3.55Kmeaw every time I try to dump the flash. The other 3 dumps work fine.

Nevermind. Looks like it was an issue with my flash drive. Tried a new one and it dumps perfectly.

jensen76's Avatar
#14 - jensen76 - 103w ago
use gnpdrm...

IslaTurbine's Avatar
#13 - IslaTurbine - 103w ago
Quote Originally Posted by 4218kris View Post
...my question is what .pkg do i use gnpdrm or npdrm?


This is what I want to know as well. Anyone?

Thanks.

JOshISPoser's Avatar
#12 - JOshISPoser - 115w ago
So, any updated guide with this included for turning a console dex?

daivyphuong's Avatar
#11 - daivyphuong - 115w ago
this is easy way cex2dex thanks

Sponsored Links

Sponsored Links
Sponsored Links

Sponsored Links







Advertising - Affiliates - Contact Us - PS3 Downloads - Privacy Statement - Site Rules - Top - © 2014 PlayStation 3 News