NCK Box Premium v2 / NCK Pro MTK Preloader Tool v1.0 Released - [26/01/2024]

Vishnu Mishra

Product Supporter
Nov 7, 2018
235
47
Sonork ID
100.1654602





Added:

BROM Exploit:

  • MT6739
  • MT6761
  • MT6763
  • MT6765
  • MT6768
  • MT6771
  • MT6779
  • MT6781
  • MT6785
  • MT6797
  • MT6833
  • MT6853
  • MT6873
  • MT6877
  • MT6885
  • MT6893


Preloader Exploit:

  • Infinix V1 (Infinix/Tecno/iTel)
  • Infinix V2 (Infinix/Tecno/iTel)
  • Infinix V3 (Infinix/Tecno/iTel)
  • Motorola XT2025
  • Motorola XT2029
  • Motorola XT2053
  • Motorola XT2055
  • Motorola XT2095
  • Motorola XT2097
  • Motorola XT2331
  • Motorola XT2333
  • Oppo V1 (MT6765/68/71/33/53/77/85/93)
  • Oppo V2 (MT6765/68/71/33/53/77/85/93)
  • Samsung MT6765 (A03s)
  • Samsung MT6765 (A04)
  • Samsung MT6765 (A04e)
  • Samsung MT6833
  • Vivo V1 (Old Security)
  • Vivo V2 (September 2023) (MT6765/68/81/83/53/77/93)
  • Vivo V3 (December 2023) (MT6765/68/81/83/53/77/93)


Supported Functions:

- Erase Userdata
- Reset FRP
- Reset FRP + Userdata
- Unlock Bootloader
- Relock Bootloader
- Read RPMB
- Write RPMB
- Erase RPMB

Added option to select custom preloader for BROM Exploit

Added Screenshot button to take screenshot and save in PNG format

Official Website:

NCK Box
NCK Dongle
NCK Pro


Official Shop:
Fast Unlocking Shop


Payments by Credit Card via
  • Stripe gateway
  • Paypal
  • Google Pay
  • Apple Pay



Download From Support Area


OR

NCKBox_Premiumv2_MTK_Preloader_Installer_v1.rar

Password for Zip:

NckTeam


 

GsmToto

Super Moderator
Jan 1, 2021
3,736
19,006
UK
Skype
gsmtoto
Sonork ID
100.1684601
[Reset FRP]
Waiting for device...Found
Port Info : MediaTek PreLoader USB VCOM_V1632 (Android) (COM3) [\\?\usb#vid_0e8d&pid_2000#6&10c694e1&0&2#{86e0d1e0-8089-11d0-9ce4-08003e301f73}]
: MediaTek Inc., 3.0.1504.0 [usb2ser.sys]
: PRELOADER PORT
HW ID : MT6768 [0707] Helio P65/G85 k68v1
HW VER : 8A00,CA00,0000
Sec. Cfg : [SBA Active] [SLA Inactive] [DAA Active]
MEID : B711167F521E4966A15ED4D6639A7645
SoC ID[0] : C710A6A3299078DFDCD17FD3DC7F001D
SoC ID[1] : 25F7441434444D022D9DC9A7D36F0D59
Sending DA1...Done
Running DA1...Done
Waiting DA SYNC Signal...OK
Setting Checksum Level...Done [Storage]
Connection : preloader
Speed : high-speed
Running Exploit (Old)...Done
Sending DA2...OK
Activating DA Extension...Done
SRAM : 0x0000000000070000 [448,00 KB]
DRAM : 0x0000000100000000 [4,00 GB]
EMMC ID : Y29128
EMMC CID : 7001005932393132385B5A78467B2411
BOOT[1] : 0x0000000000400000 [4,00 MB]
BOOT[2] : 0x0000000000400000 [4,00 MB]
RPMB : 0x0000000000400000 [4,00 MB]
USERAREA : 0x0000001D29800000 [116,65 GB]
Reading Parititon Info...OK
Reset FRP Data...Done
Process finished
[NCK MTK Exploit Tool v1.0]
LOG TXT : 20240201_185133.txt
 
  • Like
Reactions: .::Gorbagy::.

GsmToto

Super Moderator
Jan 1, 2021
3,736
19,006
UK
Skype
gsmtoto
Sonork ID
100.1684601
Exe version: Nck Box Premium V2 AndroidMTK 1.0
Selected model: 0-By CPU AUTO
[auto]Action: Reset FRP
Phone must be off with battery inside.
Battery must be charged
Please insert USB cable now...
Keep "VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+ and VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+" button untill inserting USB cable.
Detected(3) : MediaTek USB Port (COM7)
[3] \\?\usb#vid_0e8d&pid_0003#5&105fb9be&0&2#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
CPU: MT6761 CPU code: 717 Target config: e7
***********************
Secure boot enabled: true
Need serial link authorization: true
Need download agent authorization: true
SWJTAG enabled: true
EPP_PARAM at 0x600 after EMMC_BOOT/SDMMC_BOOT: false
Root cert required: false
Memory read authorization: true
Memory write authorization: true
Cmd 0xC8 blocked: true
***********************
Executing exploit, do not disconnect phone
Exploit has been executed successfully.
[3ba00]Dumping phone preloader.
Preloader: C:\nckbox\android_mtk\Android_MTK_Backup_Folder\pr eloader_backup\preloader_jettaatt_61.bin
Waiting for handle to become active......
Reseived active handle repply from phone......
Booting phone
Detected(3) : MediaTek USB Port (COM7)
[3] \\?\usb#vid_0e8d&pid_0003#5&105fb9be&0&2#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Boot mode: Brom
Phone detected...Please wait
BBCHIP: 6761 200 ca01
Using Algo 1.
Helio MT6761 phone detected, swithing to helio api
Helio enabled DRAM in First Da: FALSE
Sending loader.....
BBCHIP MT6761
[1]Storage EMMC
Block size: 512
EMMC FW VERSION: 00:00:00:00:00:00:00:00
EMMC CID: F4012241524A31 : 000000000000000000
EMMC UA SIZE: 0x748000000
BOOT STYLE: EMMC BOOT
FULL LENGTH: 0x748c00000 [29.137 GB]
[EMMC]FORMAT
[0]FRP Reset Done.
[helio]Wait untill phone will start charging.
[0]All done.
 
  • Like
Reactions: .::Gorbagy::.

GsmToto

Super Moderator
Jan 1, 2021
3,736
19,006
UK
Skype
gsmtoto
Sonork ID
100.1684601
Exe version: Nck Box Premium V2 AndroidMTK 1.0
Selected model: 0-By CPU MT6761
[auto]Action: Reset FRP
Phone must be off with battery inside.
Battery must be charged
Please insert USB cable now...
Keep "VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+ and VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+" button untill inserting USB cable.
Detected(14) : MediaTek PreLoader USB VCOM (Android) (COM7)
[14] \\?\usb#vid_0e8d&pid_2000#5&9c15405&1&7#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Switch preloader to bootrom...
CPU: MT6580(6580) sub_code: 8a00 hw_version: ca00 sw_version: 0
crash succeed!
CPU: MT6580 CPU code: 6580 Target config: 5
***********************
Secure boot enabled: true
Need serial link authorization: false
Need download agent authorization: true
SWJTAG enabled: true
EPP_PARAM at 0x600 after EMMC_BOOT/SDMMC_BOOT: false
Root cert required: false
Memory read authorization: false
Memory write authorization: false
Cmd 0xC8 blocked: false
***********************
Executing exploit, do not disconnect phone
Exploit has been executed successfully.
[1e800]Dumping phone preloader.
Preloader: C:\nckbox\android_mtk 2.8.6\Android_MTK_Backup_Folder\preloader_backup\p reloader_k80_bsp.bin
Waiting for handle to become active......
Reseived active handle repply from phone......
Booting phone
Detected(13) : MediaTek USB Port (COM7)
[13] \\?\usb#vid_0e8d&pid_0003#5&9c15405&1&7#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Boot mode: Brom
BBCHIP: 6580 0 ca00
Using Algo 1.
Phone detected...Please wait
Sending DA agent, please wait...
[emmi]EMMC CID: 15010051583633414
Preloader: C:\nckbox\android_mtk 2.8.6\Android_MTK_Backup_Folder\preloader_backup\p reloader_k80_bsp.bin
----------------------------------------------------
BaseBand CPU :MT6580
BaseBand CPU Secure Version : 05
BaseBand CPU Bootloader Version : FE
----------------------------------------------------
INT RAM: 128 KB SDRAM
EXT RAM: 2 GB DRAM
----------------------------------------------------
EMMC: (233Gb+16384Mb) SAMSUNG 0x515836334142
EMMC FW VERSION: 03:00:00:00:00:00:00:00
EMMC CID: 150100515836334142 : 00000000000000
EMMC UA SIZE: 0x747c00000
BOOT STYLE: EMMC BOOT
FULL LENGTH: 0x748800000 [29.133 GB]
Checking data, wait...

Writing FRP, wait...
FRP Reset Done.
Wait untill phone will start charging.
[0]All done.
 
  • Like
Reactions: .::Gorbagy::.

GsmToto

Super Moderator
Jan 1, 2021
3,736
19,006
UK
Skype
gsmtoto
Sonork ID
100.1684601
USING PL_EXLOIT [INFINIX V3]
Brand/Model : *Auto* / *Auto Detect*
Operation : Reset FRP
Waiting for Device...Found
Port : MediaTek PreLoader USB VCOM_V1632 (Android) (COM4)
Device Path : \\?\usb#vid_0e8d&pid_2000#6&437997&0&3#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Driver : MediaTek Inc., 3.0.1504.0 [usb2ser.sys]
Mode : PRELOADER
Hw ID : MT6765 [0766] Helio P35/G35
Details : 8A00,CA00,0000
Sec. Config : [SBA:True] [SLA:False] [DAA:True]
MEID : B62D7A7E969E92A3A8F39AB84FC2C24F
SoC ID[0] : 6A29321B87A664B6E304CA4D2783CBCF
SoC ID[1] : 98EF52ECA172F33B5BF7C0BC617871A6
Sending 1st DA..OK
Jump DA Address...OK
Syncing...OK
Checksum Level is Storage
Connection : preloader
Speed : HIGH-SPEED
Reading RAM Configuration...OK
Running PL_EXPLOIT [1]...Done
Sending 2nd DA...OK
Loading Extension...Done
Int. RAM : 0x000000000003A000 [232.00 KB]
Ext. RAM : 0x0000000100000000 [4.00 GB]
Flash ID : A3A562
CID : D601034133413536321104AC47237A2B
BOOT1 : 0x0000000000400000 [4.00 MB]
BOOT2 : 0x0000000000400000 [4.00 MB]
RPMB : 0x0000000001000000 [16.00 MB]
USERAREA : 0x0000001CCF000000 [115.23 GB]
PRE EOL : NORMAL
Life. Est.A : 0%-10% LIFE TIME USED
Life. Est.B : UNDEFINED
Reading Partition Table...OK
Bootloader : LOCKED
Resetting FRP...OK
Operation Finished.
[UltimateMTK2 v1.1]
 
  • Like
Reactions: .::Gorbagy::.

GsmToto

Super Moderator
Jan 1, 2021
3,736
19,006
UK
Skype
gsmtoto
Sonork ID
100.1684601
Exe version: Nck Box Premium V2 AndroidMTK 1.0
Selected model: 0-By CPU AUTO
[auto]Action: Reset FRP
Keep "VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+ and VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+" button untill inserting USB cable.
Detected(14) : MediaTek PreLoader USB VCOM (Android) (COM14)
[14] \\?\usb#vid_0e8d&pid_2000#5&9c15405&1&7#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Boot mode: Preloader
Phone detected...Please wait
BBCHIP: 6765 0 ca00
Using Algo 1.
Helio MT6765 phone detected, swithing to helio api
Helio enabled DRAM in First Da: FALSE
Sending loader.....
Helio connect da error, aborting.
[SECURE BOOT]Not supported by exe or wrongly selected, aborting
If model is listed, please select correct model
If model is not listed, select bypass security checkbox and repeat operation again
BBCHIP MT6765
Boot Fail.!!!.
[helio]Wait untill phone will start charging.
[0]All done.


Exe version: Nck Box Premium V2 AndroidMTK 1.0
Selected model: 0-By CPU AUTO
[auto]Action: Reset FRP
Phone must be off with battery inside.
Battery must be charged
Please insert USB cable now...
Keep "VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+ and VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+" button untill inserting USB cable.
Detected(14) : MediaTek PreLoader USB VCOM (Android) (COM14)
[14] \\?\usb#vid_0e8d&pid_2000#5&9c15405&1&7#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Switch preloader to bootrom...
CPU: MT6765(766) sub_code: 8a00 hw_version: ca00 sw_version: 0
crash succeed!
[DeviceNotExists]Libusb: no match for VID: e8d PID: 3
Check if libusb filter is installed
LibUSB Filter is not installed.
Go to setting tab and press button Instll LibUsb filter.
After installing filter for this device, Execute again opperation.

Action : Skip boot mode auth.
Exe version: Nck Box Premium V2 AndroidMTK 1.0
Phone must be off with battery inside.
Battery must be charged
Please insert USB cable now...
Keep "VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+ and VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+" button untill inserting USB cable.
Detected(14) : MediaTek PreLoader USB VCOM (Android) (COM14)
[14] \\?\usb#vid_0e8d&pid_2000#5&9c15405&1&7#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Switch preloader to bootrom...
CPU: MT6765(766) sub_code: 8a00 hw_version: ca00 sw_version: 0
crash succeed!
[DeviceNotExists]Libusb: no match for VID: e8d PID: 3
Check if libusb filter is installed
LibUSB Filter is not installed.
Go to setting tab and press button Instll LibUsb filter.
After installing filter for this device, Execute again opperation.
Action : Skip boot mode auth.
Exe version: Nck Box Premium V2 AndroidMTK 1.0
Phone must be off with battery inside.
Battery must be charged
Please insert USB cable now...
Keep "VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+ and VOL-" button untill inserting USB cable.
For some phones need to keep "VOL+" button untill inserting USB cable.
Detected(14) : MediaTek PreLoader USB VCOM (Android) (COM14)
[14] \\?\usb#vid_0e8d&pid_2000#5&9c15405&1&7#{a5dcbf10-6530-11d2-901f-00c04fb951ed}
Switch preloader to bootrom...
CPU: MT6765(766) sub_code: 8a00 hw_version: ca00 sw_version: 0
crash succeed!
[DeviceNotExists]Libusb: no match for VID: e8d PID: 3
Check if libusb filter is installed
LibUSB Filter is not installed.
Go to setting tab and press button Instll LibUsb filter.
After installing filter for this device, Execute again opperation.
 
  • Like
Reactions: .::Gorbagy::.

GsmToto

Super Moderator
Jan 1, 2021
3,736
19,006
UK
Skype
gsmtoto
Sonork ID
100.1684601
[Reset FRP]
Waiting for device...Found
Port Info : MediaTek USB Port (COM53) [\\?\usb#vid_0e8d&pid_0003#5&bd8dbc1&0&1#{86e0d1e0-8089-11d0-9ce4-08003e301f73}]
: MediaTek Inc., 3.2.0.0 [usb2ser.sys]
: BROM PORT
Hw ID : MT6761 [0717] Helio A20/P22/A22/A25/G25
Details : 8A00,CA01,0200
Sec. Cfg : [SBA Inactive] [SLA Inactive] [DAA Inactive]
MEID : A894863684F4AFF248CDF7D01CFAD69A
SoC ID[0] : 61F8C44B25C9FE6F3219A1E55EDAA749
SoC ID[1] : DFD9809A79740985AEEA216740459A46
Executing Exploit...Done
Reading Preloader...OK
Saved as : preloader_tb8766p1_64_bsp.bin
Loading EMI Config from Preloader...OK
Sec. Cfg : [SBA Inactive] [SLA Inactive] [DAA Inactive]
Sending DA1...OK
Running DA1...OK
Waiting DA SYNC Signal...OK
Setting Checksum Level...Done [Storage]
Connection : brom
Speed : HIGH-SPEED
Reading EMI Configuration...OK
EMMC CID : 2F011130395330303010A42205C55AA9
Sending EMI Config...OK
Sending 2nd DA...OK
Activating DA Extension...OK
Int. RAM : 0x0000000000039000 [228.00 KB]
Ext. RAM : 0x00000000C0000000 [3.00 GB]
Flash ID : 09S000
CID : 2F011130395330303010A42205C55AA9
BOOT1 : 0x0000000000400000 [4.00 MB]
BOOT2 : 0x0000000000400000 [4.00 MB]
RPMB : 0x0000000000400000 [4.00 MB]
USERAREA : 0x0000000EAA000000 [58.66 GB]
Enable HiSpeed DA Port...Done
Connecting to DA Port...Connected
Reading Parititon Info...OK
And. Ver. : 13
Build Dt. : Wed May 24 21:04:49 CST 2023
Display ID : SKY PAD10Max_V5.0_20230524
Ver. Inc. : 20230524.1830
Locale : en-US
Patch : 2023-06-05
Reset FRP Data...Done
Process finished
 
  • Like
Reactions: .::Gorbagy::.
Top