Tecno Pova (LD7) Flashing done with Hydra Tool
- keep pres boot info
- select firmware and click execute
- keep pres boot info
Code:
-------------------------------------------------------
To Enable BROM Mode :
Method 1 - Bootkey (Vol + - Power) or any combination
Method 2 - Enable Preloader to brom(crashing Method)
Method 3 - Test Point Data0 + ground
To Enable Preloader Mode :
Method 1 - Just Insert cable
-------------------------------------------------------
Searching for MTK Device...Found
MTK Port Type : Flashmode Preloader
FriendlyName : MediaTek PreLoader USB VCOM_V1633 (Android) (COM8)
Device : /6&31203e33&0&3
SymbolicName : \\?\usb#vid_0e8d&pid_2000#6&31203e33&0&3#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Driver Ver : 01/22/2015,3.0.1504.0
Service : wdm_usb
Openning Port [COM8] Ok
Handshaking...Ok
HwCode : 0707 {MT6768}
Hwver : 0000
Target config : 05
SBC : 01 (True)
SLA : 00 (False)
DAA : 04 (True)
SWJTAG : 04 (True)
EPP : 00 (False)
CERT : 00 (False)
MEMREAD : 00 (False)
MEMWRITE : 00 (False)
CMD_C8 : 00 (False)
Connection : Preloader
HW Subcode : 8A00
HW Subcode : CA00
SW Ver : 0000
ME_ID : 45BCB0FF2911A09DF553C71B444556E6
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Preloader To Brom Function.....
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- Method 1 Exploit Executed..... [Successfully Crash Preloader.]
Device now is BROM Port
Exploiting Device...
Successfully Exploited..
Handshaking...Ok
Dumping Preloader from Bootrom..
Seeking preloader address..Found @ 0x00200BC4
Starting to dump...
Prel Size : 0x00048054
Successfully dump preloader.. [C:\Hydra Tool\Boot\PreloaderDump\preloader_ld7_h694.bin]
Target config : 00
SBC : 00 (False)
SLA : 00 (False)
DAA : 00 (False)
SWJTAG : 00 (False)
EPP : 00 (False)
CERT : 00 (False)
MEMREAD : 00 (False)
MEMWRITE : 00 (False)
CMD_C8 : 00 (False)
Connection : BROM
Preparing Download Agent..[MTK_AllInOne_DA_5.2152.bin]
Patching da2 ... Ok
Uploading Stage 1....
Successfully uploaded stage 1, jumping ..
Executing JUMP_DA Address @ 0x00200000
Jumping to 0x00200000 Ok 0xC0
Successfully received DA sync
ONNECTION_AGENT : brom
DRAM config needed for : 90014A6843386150
Sending auto preloader from dump... [preloader_ld7_h694.bin]
Sending emi data.. [DRAM setup passed.]
Sending emi data succeeded.
Uploading stage 2...
Upload data was accepted. Jumping to stage 2...
Successfully uploaded stage 2
ERAM Size : 0x0000000000070000-448 KB
IRAM Size : 0x0000000100000000-4 GB
EMMC Boot1 Size : 0x0000000000400000-4 MB
EMMC Boot2 Size : 0x0000000000400000-4 MB
EMMC RPMB Size : 0x0000000001000000-16 MB
EMMC USER Size : 0x0000000E8F800000-58.242 GB
EMMC CID : 90014A68433861503E02B3D7DFDD76C7 - hC8aP>
HW-CODE : 0x707
HWSUB-CODE : 0x8A00
HW-VERSION : 0xCA00
SW-VERSION : 0x0
CHIP-EVOLUTION : 0x1
DA-VERSION : 1.0
Speed : high-speed
Upload data was accepted. Jumping to stage 2...
DA Extensions successfully added
Reading Partition Table ..
Partition Count : 44
--------------- Reading build.prop content ---------------
Product : tssi_64_tecno
ID : QP1A.190711.020
SDK : 29
Release : 10
ABI : arm64-v8a
CPU abilist : arm64-v8a,armeabi-v7a,armeabi
Locale : en-US
Description : sys_tssi_64_tecno-user 10 QP1A.190711.020 33539 release-keys
Display ID : TECNO-Q-64-200817V588
Security Patch : 2020-07-05
StorageType : mtp
--------------- end of build.prop content ---------------
Reading IMEI........
IMEI1 : 35843**********
IMEI2 : 35843**********
-------------------------------
Bootloader Status...
Bootloader : Locked
-------------------------------
Backing up Security..
- preloader(preloader.bin), 512 KB = Ok [preloader_ld7_h694.bin]
*Creating Scatter file... C:\Hydra Tool\Backup\MTKBKUP\0707_45BCB0FF2911A09DF553C71B4442DDE6\Auto\070723122258\6768_Android_scatter.txt
- pgpt(pgpt.bin), 32 KB = Ok
- nvram(nvram.bin), 64 MB = Ok
- nvdata(nvdata.bin), 64 MB = Ok
- frp(frp.bin), 1024 KB = Ok
- protect1(protect1.bin), 8 MB = Ok
- protect2(protect2.bin), 8 MB = Ok
- persist(persist.bin), 48 MB = Ok
- proinfo(proinfo.bin), 3 MB = Ok
- nvcfg(nvcfg.bin), 32 MB = Ok
- sec1(sec1.bin), 2 MB = Ok
- seccfg(seccfg.bin), 8 MB = Ok
- lk(lk.bin), 2 MB = Ok
Backup Done!!!
Elapsed Time : 00:00:55
- select firmware and click execute
Code:
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
MTK Flash Function...
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Searching for MTK Device...Found
MTK Port Type : Flashmode BROM
FriendlyName : MediaTek USB Port_V1633 (COM5)
Device : /6&31203e33&0&3
SymbolicName : \\?\usb#vid_0e8d&pid_0003#6&31203e33&0&3#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Driver Ver : 01/22/2015,3.0.1504.0
Service : wdm_usb
Openning Port [COM5] Ok
Reading Partition Table ..
ERAM Size : 0x0000000000070000-448 KB
IRAM Size : 0x0000000100000000-4 GB
EMMC Boot1 Size : 0x0000000000400000-4 MB
EMMC Boot2 Size : 0x0000000000400000-4 MB
EMMC RPMB Size : 0x0000000001000000-16 MB
EMMC USER Size : 0x0000000E8F800000-58.242 GB
EMMC CID : 90014A68433861503E02B3D7DFDD76C7 - hC8aP>
HW-CODE : 0x707
HWSUB-CODE : 0x8A00
HW-VERSION : 0xCA00
SW-VERSION : 0x0
CHIP-EVOLUTION : 0x1
DA-VERSION : 1.0
Speed : high-speed
Partition Count : 44
--------------- Reading build.prop content ---------------
Product : tssi_64_tecno
ID : QP1A.190711.020
SDK : 29
Release : 10
ABI : arm64-v8a
CPU abilist : arm64-v8a,armeabi-v7a,armeabi
Locale : en-US
Description : sys_tssi_64_tecno-user 10 QP1A.190711.020 33539 release-keys
Display ID : TECNO-Q-64-200817V588
Security Patch : 2020-07-05
StorageType : mtp
--------------- end of build.prop content ---------------
Reading IMEI........
IMEI1 : 35843**********
IMEI2 : 35843**********
-------------------------------
Bootloader Status...
Bootloader : Locked
-------------------------------
Write Selected Partitions..
- preloader(preloader_ld7_h694.bin), 288.082 KB[Erasing...Ok] Status :C0010001 Error= Failed
- tkv(tkv.img), 1024 KB = Ok
- recovery(recovery.img), 32 MB = Ok
- md1img(md1img.img), 54.123 MB = Ok
- spmfw(spmfw.img), 37.094 KB = Ok
- scp1(scp.img), 556.625 KB = Ok
- scp2(scp.img), 556.625 KB = Ok
- sspm_1(sspm.img), 491.922 KB = Ok
- sspm_2(sspm.img), 491.922 KB = Ok
- lk(lk.img), 1.054 MB = Ok
- lk2(lk.img), 1.054 MB = Ok
- logo(logo.bin), 1.496 MB = Ok
- boot(boot.img), 32 MB = Ok
- dtbo(dtbo.img), 69.016 KB = Ok
- tee1(tee.img), 2.171 MB = Ok
- tee2(tee.img), 2.171 MB = Ok
- vbmeta(vbmeta.img), 4 KB = Ok
- vbmeta_system(vbmeta_system.img), 4 KB = Ok
- vbmeta_vendor(vbmeta_vendor.img), 4 KB = Ok
- super(super.img), 4.98 GB = Ok
- cache(cache.img), 212.145 KB = Ok
- tranfs(tranfs.img), 136.168 KB = Ok
- userdata(userdata.img), 2.235 MB = Ok
Rebooting Device...
Rebooting Device...
Reboot Option : RebootToNormal
Rebooting Operation Done!!!! = Ok
----------------------------------
Elapsed Time : 00:04:01