|
#1411
|
|||
|
|||
|
@djkprojects: Presumably you've tried to login with the root account you set up? ..though this account may have gone since you subsequently uploaded a user.ini file.
One workaround might be to edit the user.ini file on your computer, section [ mlpuser.ini ]. Put in a line, e.g. add name=Administrator password=_CYP_d41d8cd98f00b204e9800998ecf8427e role=Administrator hash2=a2e279ed6671666bed7738338c8c849f defuser=enabled (the password is blank here, so later you can leave the browsers' password input box empty) Then you could make use of 6.2.2.6's firmware auth bypass exploit to upload user.ini, by visiting: http://bthomehub.home/cgi/b/bandr/fjgfgfgh or http://192.168.1.254/cgi/b/bandr/fjgfgfgh Once uploaded, you should be able to log in. This, in theory, should work, though I haven't tested this. |
|
#1412
|
|||
|
|||
oh dear oh dear. bang goes my confidence in the HH hacking community I've managed to restore the new configuration file, but after it's done that, it asks for a username and password, and this is where I get stuck. I've tried all possible combinations and none work. Does anyone have any idea of how I can get back into the router once the new config file has been put on? Thanks
|
|
#1413
|
|||
|
|||
|
Opening http://www.inaudible.co.uk/temp/st7g...HoA%20user.ini , I see there is the section:
[ mlpuser.ini ] add name=root password=_CYP_21232f297a57a5a743894a0e4a801fc3 role=root hash2=7e57751d84b1460a9b3d7cc4c6a6f5ee descr=root As you can see there is only one account, the root account...so you can only login with this. The password is encoded - but visiting http://md5.rednoize.com seems to decode it - try the username "root" with the password "admin". |
|
#1414
|
|||
|
|||
Opening http://www.inaudible.co.uk/temp/st7g...HoA%20user.ini , I see there is the section: Great - exactly what I was looking for
|
|
#1415
|
|||
|
|||
I know this post is over a year old, but I have just been trying to get these instructions to work and I still can't seem to do it right. |
|
#1416
|
|||
|
|||
|
Hi all. Question and answer time.
![]() 1) Presumably the computer that one's using to flash the CFE _may_ need its BIOS parallel port mode (e.g. EPP) changing in order for this procedure to work? (may be worth mentioning in your document?) 2) It might be nice to include some images and/or text for how to remove the plastic case without breaking it. http://www.jarviser.co.uk/jarviser/hubinside.html 3) Is there any alternative way of attaching the JTAG cable to the PCB other than soldering on direct, given that it's only a temporary connection that's required? I don't know whether I trust myself not to make a mess of it and end up breaking the hub completely. 4) With the newer 7.4.1.7 firmware, have you identified any functionality that does not work as expected? Presumably you've tested the VOIP, wireless etc etc. 5) The wires attached to the PCB look, from the second PCB image, like there are three wires (4,6,8) going to the TPx locations and four wires (1,3,5,7) going to the ground line. Is this correct? (Have the images been resized?..the pin out diagram looks quite small and isn't easy to see) The pinout diagram I am not quite sure what you mean? I can see the test point numbers easily?? 6) This is probably a dumb question, and may well have been explored before .... in order to avoid the JTAG procedure, is there any way to hack the 7.4.1.7 CANT firmware so that it's accepted by the hub regardless of the CFE? (presumably you'd still end up in a situation like with the 6.1.9.6 firmware where the VOIP functionality won't allow DECT phones to be registered?) HTH. Psi
__________________
I hacked the home hub properly! To Insanity.... And Beyond!! |
|
#1417
|
|||
|
|||
|
@Psi: Thanks for your replies
, I'll give it a go once I've sourced some resistors and built the cable. Just to clarify it was this image that I found tricky to see. though obviously things may look very different depending on your monitor/resolution. It looks like its been downsized and consequently the text is a little blurred.
|
|
#1418
|
|||
|
|||
|
I have successfully flashed my HH v1.0 to SpeedTouch 7G 6.1.9.6, I am using a Three dongle and have ICS activated on the connection, but when trying to connection to the internet with my iPhone through WiFi it doesn't work!
Can anyone help? Should I b using a differennt fw? Please post here or PM me thanks! |
|
#1419
|
|||
|
|||
@Psi: Thanks for your replies ![]() Psi
__________________
I hacked the home hub properly! To Insanity.... And Beyond!! |
|
#1420
|
|||
|
|||
|
@PSI: Thanks, that's better!
|
|
#1421
|
|||
|
|||
|
I have a BT home hub v1.0 but i cannot for the life of me unlock it.
I have reset the router to its factory defaults. That means the username is 'admin' and the password is the hubs serial number. I downloaded the flash utility and the older firmware. The router is detected fine and I am prompted to entre the username and password. This takes me to a screen where I can choose a *.bin file. so I chose the old firmware. when I click next is warns me that this is downgrade to so I checked the box to say thats fine. The problem is that the firmware does not flash. First it tries to backup the old details then fails at 15% saying that 'authentication failed' and that i should go back or restart the program and enter the username and password. What is going on here? |
|
#1422
|
|||
|
|||
|
Flash it in kernel mode.
__________________
I hacked the home hub properly! To Insanity.... And Beyond!! |
|
#1423
|
|||
|
|||
|
bro PSI ... i want to know that if u tried the JTAG hack on the V1 hub and if after changing the firmware to speedtouch ... does the hub phone work with VoIP and Landline ? .. also does the landline work thru the phone port on the back of the HUB ? ..
|
|
#1424
|
|||
|
|||
|
No it doesn't work and to be honest it's a bit like closing the door after the horse has bolted as the firmware is in already in place and only half there. Reason for that is because there are 2 parts to the flash for the Speedtouch 6.1.9.6 firmware you can edit the main header to load the main part it but the sub header remains as the original and hence isn't flashed as it sees it as a wrong firmware
After some feedback on this from brave souls that have done the JTAG mod detailed on my page I can quite safely say the the landline works straight off I can only guess the reason it did not work for me was because of some dodgy phone wiring in my house that has now been replaced. In short the JTAG hack detailed on http://www.psidoc.com/homehub is a fully working solution. This includes the Hub Phone and the Rear Phone port on both FXS (VOIP) and FXO (landline). Psi
__________________
I hacked the home hub properly! To Insanity.... And Beyond!! |
|
#1425
|
|||
|
|||
|
you da man PSI !
... ill try this out on the hub im using .. its unlocked using the old method ...
|
|
#1426
|
|||
|
|||
|
Thought I'd report back and let you all know that I have managed to get the home hub working with my cable internet connection (which many people here said couldn't be done). I have connected the modem to the 'wan' port at the back of the hub, the other ethernet port serves as a lan port, wireless works, voip works (via ring capacitor with normal phone), USB ports work with my USB drive too! Didn't bother with the FXO as I do not have a phone line. Finally I can put this cheap bit of crap to some use.
PS: One of my hubs has the older firmware 6.1.1.M or is it R, can't remember now. This firmware allows you to edit the VOIP settings such as username, sip server, sip port etc in the web interface. Has anyone used this firmware and can comment on it's stability? Last edited by sarahjones1975; 06-December-2009 at 23:31. |
|
#1427
|
|||
|
|||
|
Hi Guyz.
i got a Bt home hub and i could successfully unblock it by downgrading the firmware to the speedtouch 7G firmware version 6.1.something anyways i can configure the router now but i can't find the advanced configuration options, like the WAN configuration that i could put a static IP and Gatewate for the WAN interface.. All i can do it to set to set the service to bridged but i want it to be bridged LLC. where i can find these options ? i will appreciate it if anyone helped me Thank you guys |
|
#1428
|
|||
|
|||
|
I have been looking for help till i found some help may be useful but i still need your help:
i have seen that there is something called TEMPLATES that could be added to the speedtouch so could anyone help with finding me the right template for 7G that allow me to set static IP for WAN and change the type of Encapsulation ???? and when i ftped the router, i couldn't paste any file inside, so i need help about how to add templates to the the 7G Thank you very much |
|
#1429
|
|||
|
|||
|
I am having trouble with unlocking my BT Home Hub - when I run the upgradeSt program it detects the hopme hub as Speedtouch BTHH and when I enter the login and password as admin - it just goes into a loop - presumably because it rejects the password - I have even tried the password with a capital A.
ANy ideas? Nick |
|
#1430
|
|||
|
|||
|
Flash it in kernel mode. No need for passwords then.
__________________
I hacked the home hub properly! To Insanity.... And Beyond!! |
|
#1431
|
|||
|
|||
|
I am sorry I thought I had asked a fairly straight forward question. Your answer means nothing to me and does not help at all.
If you like to explain further - it would be appreciated. You may reply direct to me by email if you like. |
|
#1432
|
|||
|
|||
|
__________________
I hacked the home hub properly! To Insanity.... And Beyond!! |
|
#1433
|
|||
|
|||
|
hi all could any 1 plz help iv flash the hh with the 7g firm were all is well apart from the sead things but i cant get my head round the dsl droping when the house phone rings, iv try the dubble filtring changing filters evn geting my isp 2 do a line check all is well, .................... i like the ider of keeping it as bt firm were but cant under stand how 2 do it that way untill some brite spark puts a pack 2 make gether and makes it easy fore us not so clever 1s ges im stuck ..thax any help will be gr8t full
|
|
#1434
|
|||
|
|||
|
Thanks jarviser, hiddenvision, psidoc and all other great members that have given so much useful information about the HH.
I have a question (sorry if it has already been answered... didnt see it though) I want to use an internet service that comes via the TV cable (Switzerland, Cablecom) and I have a HH V1.0 that I was given by a friend from the UK. The cable company offers for free a dumb "modem" which connects via coaxial to the TV cable and has ONE ethernet cable port. That's all. My question is: Can I use the HH as a router, DHCP server, Wireless access point, and Analog Telephone Adapter and NOT use the ADSL interface, by connecting via ETH1 or ETH2 to the Cablecom dumb modem? Can I do this using the BT firmware? Thanks. |
|
#1435
|
|||
|
|||
|
Hey there,
We Have a BT HUB (white) Firmware 6.2.6.H We got up to accessing the https:// blah, blah, blah root. The light for the wireless went from yellow to green. We could not do the recovery from the https:// since we asked for a further password which we could not get through (we tried the bt_test user one). It seems we are almost there. I downloaded the BT Recovery software. What else to I need it now? |
![]() |
| Tags |
| sipgate, tiscali |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Unlocking BT Home Hub V1.5 *Upgrade at your own risk* | Hiddenvision | Hardware | 58 | 19-December-2009 19:41 |
| lsass.exe Windows XP | DigitalAlex | General Software | 17 | 13-August-2007 00:49 |