Kartminer7 icon indicating copy to clipboard operation
Kartminer7 copied to clipboard

Testing report for EUR New and Old3DS (EUR crashing issues)

Open iCRON862 opened this issue 2 years ago • 110 comments

Hello, i have used time to testing the exploit in EUR n3ds and o3ds.

  • Both wont works. Systems are on 11.17 and the game version is 1.2 as cartridge. It crashes after pressing 'Start Race'.

  • the .bat says that i need to put in an hard drive in \device\harddisk2\dr2. I must close the window 3 times. Is this normal?

  • If you set the language to english then you can't get past after open 'Streetpass List' because it crashes on the mii list.

iCRON862 avatar Jul 04 '23 07:07 iCRON862

"\device\harddisk2\dr2" what in the world is this, lol. Are you using Windows? 3ds wifi off?

zoogie avatar Jul 04 '23 07:07 zoogie

"\device\harddisk2\dr2" what in the world is this, lol. Are you using Windows? 3ds wifi off?

Hello, yeah i used windows 7, i used windows 10 too, same result 😅 wifi on console turned off. image That's the message from the .bat in ger. You need an tranzlator to english 😅

iCRON862 avatar Jul 04 '23 08:07 iCRON862

When the app crashes, does it go to a luma crash screen? And what is your sd card's drive letter?

zoogie avatar Jul 04 '23 08:07 zoogie

When the app crashes, does it go to a luma crash screen? And what is your sd card's drive letter?

The system is crashed to normal home menu. The sd drive letter is F:

iCRON862 avatar Jul 04 '23 08:07 iCRON862

Can you make a copy of your backup folder, and from that backup - copy, click on the backup_EUR.bat, the upload the 307 folder? I just want to see what the system might have done to alter the save.

zoogie avatar Jul 04 '23 08:07 zoogie

307.zip That's the exploited backup from Old. The backup-bat get the missing hard driver window too.

iCRON862 avatar Jul 04 '23 08:07 iCRON862

As long as you get the

Clearing the original contents... Importing new contents... "extdata/307\boss" "extdata/307\boss\wTRu2!!!(`!!+s(@" "extdata/307\icon" "extdata/307\user" "extdata/307\user\data.dat" Finished Press any key to continue . . .

Then I suppose that nonsense warning is ok. Are you sure you downloaded that 307 folder from the 3ds and not the extdata folder from the Release_BETA archive?

zoogie avatar Jul 04 '23 08:07 zoogie

As long as you get the Clearing the original contents... Importing new contents... "extdata/307\boss" "extdata/307\boss\wTRu2!!!(`!!+s(@" "extdata/307\icon" "extdata/307\user" "extdata/307\user\data.dat" Finished Press any key to continue . . .

Then I suppose that nonsense warning is ok. Are you sure you downloaded that 307 folder from the 3ds and not the extdata folder from the Release_BETA archive?

I have installed the exploit on an clean o3ds to test. Then i go to my pc and maked an backup-dump from the exploit extdata used the backup-bat what created this 307 in 'backup' folder.

iCRON862 avatar Jul 04 '23 08:07 iCRON862

Try this if you don't mind: change your region to United Kingdom / Scotland (this is old3ds EUR only btw) Confirm the language is English and try again.

I have a bad feeling this is super skaterhax all over again.

zoogie avatar Jul 04 '23 09:07 zoogie

Try this if you don't mind: change your region to United Kingdom / Scotland (this is old3ds EUR only btw) Confirm the language is English and try again.

I have a bad feeling this is super skaterhax all over again.

Not working, crashes after streetpass list button

iCRON862 avatar Jul 04 '23 09:07 iCRON862

debug_luma.zip Could you run the exploit with that so I can get a crash dump? This is the last thing I'll ask today. That particular luma doesn't have rosalina, so it can boot homebrew.

zoogie avatar Jul 04 '23 09:07 zoogie

crash_dumps.zip

I have dumps from your english and one for the other languages settings. Have a nice day.

iCRON862 avatar Jul 04 '23 09:07 iCRON862

Thank you very much for your help.

zoogie avatar Jul 04 '23 09:07 zoogie

@iCRON862 If you have some time to spare, could you try the this new test data on your old3ds EUR set to English? EUR_test_mk7v1.2.zip It's intended for this to crash. The debug data I need will be displayed in r0 of the crash dump, ex. R0 0x44440120. That's all I need -- except if the R0 value doesn't start with 0x4444, then just upload the full .dmp file please.

Thanks!

zoogie avatar Jul 07 '23 07:07 zoogie

@iCRON862 If you have some time to spare, could you try the this new test data on your old3ds EUR set to English? EUR_test_mk7v1.2.zip It's intended for this to crash. The debug data I need will be displayed in r0 of the crash dump, ex. R0 0x44440120. That's all I need -- except if the R0 value doesn't start with 0x4444, then just upload the full .dmp file please.

Thanks!

crash_dumps.zip

the ...000 is with Germany/ -- and ...001 is with your UK/ Scotland setting

iCRON862 avatar Jul 07 '23 15:07 iCRON862

@iCRON862 If you have some time to spare, could you try the this new test data on your old3ds EUR set to English? EUR_test_mk7v1.2.zip It's intended for this to crash. The debug data I need will be displayed in r0 of the crash dump, ex. R0 0x44440120. That's all I need -- except if the R0 value doesn't start with 0x4444, then just upload the full .dmp file please. Thanks!

crash_dumps.zip

the ...000 is with Germany/ -- and ...001 is with your UK/ Scotland setting Unfortunately, both of those crash dumps are corrupted, they both crash python.

Was English the set language on both? My research so far has shown that region/subregion don't matter, only lang matters. In any event, try to get crash dumps where the game reaches "start race: OK", and report which languages crash early by not making it past "Streetpass List", but I don't need .dmps from those.

zoogie avatar Jul 07 '23 17:07 zoogie

@iCRON862 If you have some time to spare, could you try the this new test data on your old3ds EUR set to English? EUR_test_mk7v1.2.zip It's intended for this to crash. The debug data I need will be displayed in r0 of the crash dump, ex. R0 0x44440120. That's all I need -- except if the R0 value doesn't start with 0x4444, then just upload the full .dmp file please. Thanks!

crash_dumps.zip the ...000 is with Germany/ -- and ...001 is with your UK/ Scotland setting Unfortunately, both of those crash dumps are corrupted, they both crash python.

Was English the set language on both? My research so far has shown that region/subregion don't matter, only lang matters. In any event, try to get crash dumps where the game reaches "start race: OK", and report which languages crash early by not making it past "Streetpass List", but I don't need .dmps from those.

Yeah both are english. So any language except english go past the streetpass list up to 'OK' with the same crash dump. crash_dump.zip

iCRON862 avatar Jul 07 '23 19:07 iCRON862

@iCRON862 If you have some time to spare, could you try the this new test data on your old3ds EUR set to English? EUR_test_mk7v1.2.zip It's intended for this to crash. The debug data I need will be displayed in r0 of the crash dump, ex. R0 0x44440120. That's all I need -- except if the R0 value doesn't start with 0x4444, then just upload the full .dmp file please. Thanks!

crash_dumps.zip the ...000 is with Germany/ -- and ...001 is with your UK/ Scotland setting Unfortunately, both of those crash dumps are corrupted, they both crash python.

Was English the set language on both? My research so far has shown that region/subregion don't matter, only lang matters. In any event, try to get crash dumps where the game reaches "start race: OK", and report which languages crash early by not making it past "Streetpass List", but I don't need .dmps from those.

Yeah both are english. So any language except english go past the streetpass list up to 'OK' with the same crash dump. crash_dump.zip

Gah, zero bytes! Well, we'll try something different...

This will be the last thing today. Could you use that debug luma I posted above to make make an fcram dump? This works by simply pressing START when you see the luma crash screen and then waiting about 15 seconds until the system turns off automatically. On the SD root will be a file, "fcram.bin". Just zip that up and upload it.

Again, only do this with a crash that gets to ""start race: OK". Thank you VERY much : ) I'm certain this file will shed some light on things.

zoogie avatar Jul 07 '23 20:07 zoogie

No problem,

Gah, zero bytes! Well, we'll try something different...

This will be the last thing today. Could you use that debug luma I posted above to make make an fcram dump? This works by simply pressing START when you see the luma crash screen and then waiting about 15 seconds until the system turns off automatically. On the SD root will be a file, "fcram.bin". Just zip that up and upload it.

Again, only do this with a crash that gets to ""start race: OK". Thank you VERY much : ) I'm certain this file will shed some light on things.

No problem, i like testing exploits

(PS. Do you need the new3ds dump too?)

iCRON862 avatar Jul 08 '23 14:07 iCRON862

Just old3ds is fine for now, but you may need to redump or reupload that fcram file.

It's 0 bytes again, like the previous crash dumps. Is your sd card almost out of memory?

zoogie avatar Jul 08 '23 16:07 zoogie

Just old3ds is fine for now, but you may need to redump or reupload that fcram file.

It's 0 bytes again, like the previous crash dumps. Is your sd card almost out of memory?

Oh, yeah. My sd space was full. Now the fcram is bigger as before. Now i hope these is complete fcram.zip

iCRON862 avatar Jul 08 '23 19:07 iCRON862

With all those sd files showing up as 0 bytes I'd imagine extdata (where the exploit is installed) must have been corrupted too.

But anyway, here's something for you to try. Try to run it in whatever configuration your 3ds was in when you made the fcram dump. EUR_test2_mk7v1.2.zip Old or New 3ds but I'd start with old. They're combined now. This is the first test of a major refactor.

zoogie avatar Jul 09 '23 18:07 zoogie

With all those sd files showing up as 0 bytes I'd imagine extdata (where the exploit is installed) must have been corrupted too.

But anyway, here's something for you to try. Try to run it in whatever configuration your 3ds was in when you made the fcram dump. EUR_test2_mk7v1.2.zip Old or New 3ds but I'd start with old. They're combined now. This is the first test of a major refactor.

Nothing changes but here is the things you need fcram.zip crash_dump_00000000.zip

iCRON862 avatar Jul 10 '23 12:07 iCRON862

Lets try this: EUR_test3_mk7v1.2.zip btw - if a crash occurs at streetpass list, don't send those. Can't even begin debugging them. Just send Start Race: OK crashes.

Thanks for your continued help.

zoogie avatar Jul 10 '23 14:07 zoogie

Lets try this: EUR_test3_mk7v1.2.zip btw - if a crash occurs at streetpass list, don't send those. Can't even begin debugging them. Just send Start Race: OK crashes.

Thanks for your continued help.

The only change i see is that R0 have 000000001 in the dmp. Here we go again. Yeah these get past streetpass list up to OK. crash_dump_00000001.zip fcram.zip

iCRON862 avatar Jul 10 '23 15:07 iCRON862

Lets try this: EUR_test3_mk7v1.2.zip btw - if a crash occurs at streetpass list, don't send those. Can't even begin debugging them. Just send Start Race: OK crashes. Thanks for your continued help.

The only change i see is that R0 have 000000001 in the dmp. Here we go again. Yeah these get past streetpass list up to OK. crash_dump_00000001.zip fcram.zip

That was quite different from the last one. Unfortunately, it looks even more unmanageable. The initial exploit context is completely lost.

I have 6 consoles from the 3 major regions and this works perfectly almost every time. Unless I can figure out what makes my consoles different from yours, I don't see how I can fix this.

I'll let you know if I can think of anything else to try.

zoogie avatar Jul 10 '23 15:07 zoogie

Lets try this: EUR_test3_mk7v1.2.zip btw - if a crash occurs at streetpass list, don't send those. Can't even begin debugging them. Just send Start Race: OK crashes. Thanks for your continued help.

The only change i see is that R0 have 000000001 in the dmp. Here we go again. Yeah these get past streetpass list up to OK. crash_dump_00000001.zip fcram.zip

That was quite different from the last one. Unfortunately, it looks even more unmanageable. The initial exploit context is completely lost.

I have 6 consoles from the 3 major regions and this works perfectly almost every time. Unless I can figure out what makes my consoles different from yours, I don't see how I can fix this.

I'll let you know if I can think of anything else to try.

What if you dumping your working exploit extdata with jksm and send it here that i can try to install this on my console to test it out?

iCRON862 avatar Jul 10 '23 18:07 iCRON862

One thing that i find is weird, that most of the time it crashes when you go to streetpass list, and sometimes you can start the race, but the game crashes then.

JustAnotherGalaxyGuy avatar Jul 11 '23 06:07 JustAnotherGalaxyGuy

Crashing at the streetpass list is very very bad and I can't even begin debugging it. Crashing at Start Race: OK is much closer to expected behavior.

zoogie avatar Jul 11 '23 06:07 zoogie

Yeah, but it's kinda rng

JustAnotherGalaxyGuy avatar Jul 11 '23 07:07 JustAnotherGalaxyGuy