Hacking Question Bought a switch after I couldn't repair it... 100% confirmed now that the NAND is messed up...

TheUnknownOne

Well-Known Member
OP
Newcomer
Joined
May 29, 2021
Messages
86
Trophies
0
Age
37
XP
333
Country
United States
So, a customer brought me a switch that would not power on, at all. There are 0 shorts on the main board but just for the hell of it I replaced the M92T36 chip just in case. No go.

Customer offered to sell it to me for $25USD so I said sure, considering it's in mint condition. So I bought it.

Turns out, it's patched but the very weird thing is that if I plug it into my pc and hit power, TegraRCM will say RCM OK! without needing to short out the rail or anything. However unfortunately it looks like this unit is in fact patched as it returns a 0x0000 and not 0x7000.

So, just for the hell of it I decided to see what would happen if I swap the nand board out with one from various other dead switch mainboards that I have and I can actually get the Nintendo logo to show up. Obviously it won't boot past that but what I find weird is how the hell is this switch going into AutoRCM if it's patched? The other NAND when I put it on is not doing this RCM thing.

Any help would be highly appreciated.

If it helps, I do have a 100% clean BOOT0/BOOT1 backup from an unpatched switch that I no longer have.
 
Last edited by TheUnknownOne,

TheUnknownOne

Well-Known Member
OP
Newcomer
Joined
May 29, 2021
Messages
86
Trophies
0
Age
37
XP
333
Country
United States
No, if you disconnect the eMMC from a Switch it goes into RCM. That's it's normal behavior.

Perhaps we're misunderstanding each other.

With the messed up nand it just goes straight to RCM

If I take a nand from another board I know it's not going to work but it doesn't go into RCM unless I use the jig.

I was told to take an unpatched switch, plug the nand in and boot hekate and try to turn off autorcm and then restore boot0 and boot1 since I have clean ones already.

It may be possible someone stuck this nand board in an unpatched before and turned on autorcm apparently. So I will be borrowing another customers unpatched switch soon to see if I can get it going using that.
 
Last edited by TheUnknownOne,

DocKlokMan

Plugin Dev
Member
Joined
Apr 20, 2007
Messages
3,009
Trophies
2
Age
36
XP
4,571
Country
United States
Perhaps we're misunderstanding each other.

With the messed up nand it just goes straight to RCM

If I take a nand from another board I know it's not going to work but it doesn't go into RCM unless I use the jig.

I was told to take an unpatched switch, plug the nand in and boot hekate and try to turn off autorcm and then restore boot0 and boot1 since I have clean ones already.

It may be possible someone stuck this nand board in an unpatched before and turned on autorcm apparently. So I will be borrowing another customers unpatched switch soon to see if I can get it going using that.
I mean that the patched Switch's eMMC doesn't have autoRCM (you can't do that) but more likely it's 100% dead to the point where the Switch doesn't even see that it's there, thus the Switch boots to RCM as if it wasn't, as it's designed to do.
 
  • Like
Reactions: Puppydogpals

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,032
Trophies
2
Age
29
Location
New York City
XP
13,446
Country
United States
So, a customer brought me a switch that would not power on, at all. There are 0 shorts on the main board but just for the hell of it I replaced the M92T36 chip just in case. No go.

Customer offered to sell it to me for $25USD so I said sure, considering it's in mint condition. So I bought it.

Turns out, it's patched but the very weird thing is that if I plug it into my pc and hit power, TegraRCM will say RCM OK! without needing to short out the rail or anything. However unfortunately it looks like this unit is in fact patched as it returns a 0x0000 and not 0x7000.

So, just for the hell of it I decided to see what would happen if I swap the nand board out with one from various other dead switch mainboards that I have and I can actually get the Nintendo logo to show up. Obviously it won't boot past that but what I find weird is how the hell is this switch going into AutoRCM if it's patched? The other NAND when I put it on is not doing this RCM thing.

Any help would be highly appreciated.

If it helps, I do have a 100% clean BOOT0/BOOT1 backup from an unpatched switch that I no longer have.
Its also possible they used some outdated homebrew applications that enable AutoRCM on patched units.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Xdqwerty @ Xdqwerty:
    I only drank alcohol once and it was by accident
  • Xdqwerty @ Xdqwerty:
    I didnt know it was beer, it was on a juice bottle
  • SylverReZ @ SylverReZ:
    Yeah, I'm addicted to smoking, sadly. It's very addictive but I wish I didn't start.
  • K3Nv2 @ K3Nv2:
    May just order a 5700g for a nas/emulation set up tbh
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, atleast you were asleep on 4/20
    +1
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, you played that Mario flash game called Mario 63?
  • SylverReZ @ SylverReZ:
    @Xdqwerty, No, but I've seen it on Vinesauce's stream.
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, that game is one of the reasons i met newgrounds bc the full versión of it is in that site
  • Xdqwerty @ Xdqwerty:
    Also somebody is remaking it
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, the other game where I found newgrounds is new york shark
    +1
  • SylverReZ @ SylverReZ:
    Spoke to Tom Fulp the other day, if he can find his old Newgrounds site content like the mini Flash animations from the 2000's that played on the portal.
  • SylverReZ @ SylverReZ:
    So far no response, but he did say that he'll find them. Wayback Machine doesn't have em.
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, atleast the 1999 versión of pico's school is avaliable (the difference between it, the 2006 versión and the 2016 versión is that the speed of the game depends of the speed of your computer and that it had the og soundtrack)
  • SylverReZ @ SylverReZ:
    @Xdqwerty, Another being Pico VS Bear, the original 1999 version before Jim Henson filed a DMCA takedown.
    +1
  • Xdqwerty @ Xdqwerty:
    The 2006 versión was made when the flash portal was made
  • SylverReZ @ SylverReZ:
    Many people thought it was lost, but was discovered that he hid it on the same page.
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, although the "secrets" system where the game was has been removed. Also pico vs uberkids had a netplay versión that was shutdown, although the swf file has been found
  • SylverReZ @ SylverReZ:
    @Xdqwerty, Nope. There are two download buttons on the same page, where you can download the original under a file called "bear.exe". "bear2.exe", however, is the updated game in a Flash projector. P.s. this was on the archived Pico page from 2000.
  • SylverReZ @ SylverReZ:
    @Xdqwerty, That's been there for a long time, too. People who search for lost media don't look hard enough lmao.
    +1
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, also the pico 2 demos used to be only for the newgrounds patrons but they are on internet archive too (https://archive.org/download/picos_school_2)
    +1
  • Xdqwerty @ Xdqwerty:
    Iirc the demos were removed from newgrounds in 2022
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, or well only the demo with mindchamber's style was on newgrounds
    +1
    Xdqwerty @ Xdqwerty: @SylverReZ, or well only the demo with mindchamber's style was on newgrounds +1