Equipment: Xbox 360
Motherboard version: Trinity
The Xbox 360 is nearing the end of its life. Time to hack it! I know I am late to the game but I love old game consoles. The difficulty right now is that there is so much out dated information about modding the Xbox 360 on the internet that it is kind of hard to find the relevant bits. I have decided that I want to be able to play any game (backup and Xbox Live Arcade (XBLA)) and don’t care about playing online. This can only be done by installing a mod chip in the Xbox, I have chosen the Team Xecuter Coolrunner 4 XL. I bought mine in Canada from Modchipcentral.
The big picture is that the Xbox is vulnerable to a hardware hack that allows unauthorized software to run on the Xbox. To do this you need to do two major things:
- Install unauthorized software
- Add hardware hack
The world of the Xbox modders uses some fancy words for all these modifications. The software on the Xbox is usually called the NAND and the latest hardware hack is called the Rest Glitch Hack 2 (RGH2), the Coolrunner 4 implements the RGH2.
First of all we need to replace the Xbox’s software (aka firmware aka NAND). To do this you need some hardware, I bought Team Xecuter’s J-R Programmer V2.
The J-R Programmer has 7 wires which need to be connected to the motherboard, they should be connected to the motherboard like in the image on the right (Trinity motherboard, use Google for other motherboards). I initially bought an Quick Solder Board (QSB), but could not read the NAND with it, so I just soldered the wires right onto the motherboard.
Next up is reading the original NAND with the J-R Programmer and software called J-Runner.
Before you can use J-Runner you need to install Windows drivers for the J-R Programmer:
Disable driver signature verification
Install generic libusb drivers: Zadig.exe => Install driver: WinUSB (v6.1.7600.16385)
Install drivers from the J-Runner/common/drivers directory
Launch J-Runner, connect power to your Xbox, but don’t turn it on! and read the NAND at least twice by pressing the button “Read Nand”. Reading the Nand J-Runner gave me:
Flash Config: 0x00023010
Trinity, Jasper 16MB
CB Version: 9231
Keep the file you read in a save place, this is your original Xbox’s software! The problem now is that this software is encrypted. To be able to decrypt it we need a key, which is stored in the Xbox’s CPU. To retrieve this key we need to flash a certain program to the Xbox’s Nand (Xell), to make this software you need to click the “Create ECC” button in J-Runner. Write Xell to your Xbox’s Nand by clicking “Write ECC” button in J-Runner.
If you would now try to turn on your Xbox it would try to load the Xell software, but the Xbox would not allow this software to run. So now we need to install the RGH in the Xbox so that the Xbox will allow Xell to load.
The Coolrunner 4 XL connects with 5 wires to the motherboard (find your points with Google), I found this one the hardest to connect:
Once the Coolrunner is installed, connect your Xbox to a TV and turn it on. If everything is alright you should see Xell on your TV. It will tell you your CPU key. Take a picture of the screen. Turn off your Xbox.
The next step is to decrypt the original Nand with the CPU key and create a new Nand to flash to your Xbox. Put the CPU key in J-Runner and click the “Create XeBuild Image” button. (You might have to download the latest dashboard on the left.) Now write the new Nand to your Xbox and your done!
Well sort off, when you now turn on your Xbox it will look like nothing has changed. However your Xbox will now be able to run unauthorized software.
Install XeXmenu on your Xbox, from XeXMenu install the Aurora dashboard and Dashlauncher. Dashlauncher can be used to boot the Xbox by default to Aurora.
Add XBLA content to your Xbox with “360 Content Manager”.
Set game paths in Aurora via the “Settings” menu.
Download Xbox 360 game iso files and extract them with an extraction tool (eq: ISO extractor or XBOX BACKUP CREATOR(doesn’t work on Win10 anymore)) and put the game on your Xbox 360.