• After 15+ years, we've made a big change: Android Forums is now Early Bird Club. Learn more here.

Orbic Wonder Dev Thread

D

Deleted User

Guest
UPDATE: Go to post 10 for some gnarly downloads!

So far we have been successful with a bootloader unlock--on the Verizon variant of all things. I know there used to be an unlocked variant you could get at Best Buy, but I'm not sure if this method will work on there since the guys only had the Verizon variant to try it on. Anyway, here's what you do to unlock the bootloader:

1) Enable ADB Debugging in developer options
2) Plug in the phone, open a terminal/cmd window and type "adb reboot bootloader"
3) Once the phone reboots to a weird looking menu, type "fastboot oem unlock"
4) Use the volume buttons to select YES on the screen, and press the power button to confirm
5) Wait for it to reboot, wave goodbye to your warranty, say hello to unlimited possibilities
6) Never install any more official OTA updates ever again, in case they try to relock your phone

Yes, it really is that simple to unlock the bootloader on the Verizon variant of this phone. We couldn't believe it either.
 
Last edited by a moderator:
awesome sauce thanx guys for the info.

toooooo bad i'm not on verizon.
This might apply to the unlocked variant too. It's going for pretty cheap on Amazon if you wanted to pick up one just to mess around with. Considering it's an msm8937 with an octa core processor it's not a bad price: https://www.amazon.com/gp/offer-listing/B076QRMJPL/ref=dp_olp_0?ie=UTF8&condition=all

I want to upgrade to a Verizon variant soon myself, just so I can get one before they potentially patch anything out.
 
Last edited by a moderator:
Upvote 0
Heya Jason. So you i see here you put our orbic material up on androidforum community now? Awesome. Hopefully any this phone on here will want to help out so we can groom this little buddy into something mature. He's got strength already ust doesn't know how to use it yet. lol

So far guys I have already dumped my handsets partitions and created QPST flashable xml's. I have the Verizon variant and i unlocked my bootloader. Problem is .. person who i obtained phone from corrupted a partition/file so not sure yet where the problem is.Therefore my dump isnt 100% usuable yet for what we are doing. The issue more than likely is the bootloader. So that tosses using for what we want to do.

If ANYONE has this handset the Verizon variant and wants to be a great help to the community please contact one of us and we will do everything remotely to get what we need if you are not capable of doing it yourself. E.G. partition dumps, bootloader unlocking etc.We need all we can on the various builds out so far but with this phone in the wild still its VERY hard to find.

EDIT:
NOTE ON MY FOLLOWING POSTS: When i bring up Team Uni Android Tools that I am on I do not mean to promote the tool whatsoever i just mean to let it be known what was used so that people understand how i did some of what I have done for this device. And of course my team and I accomplishments seeing it was done with it and I did All the Worlds First operations with it. I know Android Forums is a bit more lax than XDA when it comes to this stuff and again I don't mean to advertise just have to explain as it is what I used and I feel its my obligation to represent my team.

Thanks
noidodroid
 
Last edited:
Upvote 0
Good news to those watching. I with my powers that be and my connections had The Orbic Wonder RC55L created by Reliance Mobile Company officially added to UAT Universal Android Tool. And I have done the worlds first frp bypasses in fastboot and EDL modes, full phone partitions dump with xmls for QPST, and next to come is TWRP Recovery and ROOT. We are working hard to get this device to where it can be modified and made into a workhorse. Not a bad phone for as cheap as it can be bought used/new. $30 ive seen it go for on eBay in mint condition used. Specs are quadcore with 2gb of ram and it can run great especially more so once we get the ability to cook a stock or get Lineage OS going.

Screenshots and more coming soon. Out team will get this phone whipped into shape!
 
Upvote 0
If anyone is aware of a method I can use to get a temp root shell on the phone (temp root is fine, doesn't need to stick after a reboot) that would be awesome. Tried kingo and kingroot and nothing worked. Tried using SunShine as well but that won't run unless it detects you're running on a motorola or htc phone

EDIT: don't worry about it anymore, we figured it out
 
Last edited by a moderator:
Upvote 0
Sent the telegram screenshots of what I was able to exploit leading to root which is just a small start.. Look through all the things I have said again.. =] Have r00tkits a plenty and that was from a exploit present for a decade? plus in use before made public a year or 2 back when it came to use in this industry. Its no secret however like I said in the channel there needs to be some level of secrecy until we get to know everyone, form something larger, put people in positions, delegate workload and get things going eventually leading to everything fully commissioned and us able to release. Not saying to not update status, provide recovery and such (as beta testing is always needed) but just saying we need to keep the actual ways underwraps and only for those who want to assist. Then we can get everything out bit by bit so anyone not involved can choose to get in on the first of something that could become more than just fun.. Like the future ideas i mentioned in the chan. With my connections.. bud anything could happen. ;)
 
Upvote 0
A dirty port of TWRP recovery was made. The phone has an msm8937 chipset which is the same as the Moto E4 Plus (whose image we based it on). After some thorough testing, and a workaround to make /data readable (see post 14 below) it's now working just fine.

Give a hefty, hearty thanks to @Member1660584 for that E4 Plus image I used, whose TWRP builds are located here, as well as @noidodroid for pulling the image for me to work with

EDIT: Heck yeah I'm number 308, that's a good round

11weu6e.pg
 
Last edited by a moderator:
Upvote 0
https://mega.nz/#F!hpsSkapA!vOgSJvP1ea0AyjEaAU148A

Here's the long awaited repo. This contains the stock boot/recovery images, as well as a modded boot image that has magisk pre-loaded and the test dirty port TWRP recovery (that as of now still can't mount /data but this might be fixed soon). As always you alone are responsible for what you flash to your phone... Have fun!

This couldn't have been done without help. XDA user Ghostoftime risked his phone MULTIPLE times testing the **** I would throw at him that I wasn't even sure would break his phone or not. This phone doesn't have the "fastboot boot _____" option to safely test an image before permanently flashing it. When I wanted him to test stuff he'd outright flash the whole thing on there.

And of course, the real MVP here is @noidodroid. He managed to pull a full system dump for us to work with, WITHOUT ROOT PRIVILEGES... all with a broken Orbic himself. Even to this very moment he continues to surprise me with what he's capable of. We would not have any of the images we do if it weren't for his knowledge and expertise helping us all out.
 
Last edited by a moderator:
  • Like
Reactions: MrJavi
Upvote 0
Here comes another Dev Diary entry since that's what it seems like this thread is turning into

I was in the process of trying to dirty port Lineage 14.1 to this thing from @bcrichster's build for the owens, when I realized in the build.prop that the Orbic actually runs 64 bit android! This by itself is honestly pretty damn cool but that means I can't then dirty port from the owens zip. So it's back to the drawing board for us. Hopefully Orbic shares its kernel source soon so we don't have to do this crap

2zeimf.jpg

2zeimf
 
  • Like
Reactions: bcrichster
Upvote 0
It should still work.. you can run a 32bit OS on a 64bit processor all day, every day (Owens & Perry are that way). Just not the other way around
Its not that its a 64 bit processor its that it actually runs 64 bit android. Combining 64 bit stuff from stock with 32 bit stuff from the Owens lineage to make a dirty port is not gonna work out right
 
  • Like
Reactions: Bob Hutchingson
Upvote 0
Good news, so apparently the reason TWRP wasn't able to mount /data was because this phone has a force-verity encryption thing going on with it. I worked with Ghostoftime and we fixed it right up easily. First we flashed the disable-encryption-and-verity zip (version 6.0) that you can easily find online, then we rebooted to fastboot and flashed stock non-TWRP recovery. The phone booted up and gave us a warning about not being able to decrypt /data and needing to do a factory reset. We went through with this and did the factory reset through stock recovery. After that the phone booted up just fine. At this point we rebooted back into fastboot and re-flashed our dirty port of TWRP and now /data is able to be read just fine

EDIT: also, on the Mega repo linked in my previous post, I now have a TWRP flashable zip called "debloated-stock". Unfortunately google play and package installer seem broken in it, but at least it provides a semi-stable baseline anyone can flash back to so now they feel safer flashing other stuff and messing around with the phone a bit more. Basically it's just the stock /system and boot image (pre-patched with Magisk) that turned into a flashable ZIP via SuperR kitchen, plus some debloating here and there. After you flash that stock ROM, you must also subsequently flash the disable encryption zip I was talking about in this post, or else it'll just re-encrypt everything and you'll be back at square 1
 
Last edited by a moderator:
Upvote 0
Ok, I just purchased the Verizon Pre-paid version of the Orbic Wonder (RC555l) and I would like to be able to use OTG features. I haven't rooted the phone yet. Is there a way to access OTG or do I need to root it?
Not sure, never used OTG myself. Hey, never hurts to root though. Get that bootloader unlocked before our overlords at Verizon find out about this and patch it out.
 
  • Like
Reactions: noidodroid
Upvote 0
World first orbic RC555L unlocking done by YONAS MOBILE from ethiopia !!!

steps
1 root the phone by orangeFox recovery and magisk
2 enable diag port by NCK box qualcomm module
3 backup QCN by NCK box qualcomm module
4 rest EFS by NCK box qualcomm module
5 write QCN you backupd befor with NCK box qualcomm module
6 no more step its unlock
 
Last edited:
Upvote 0
World first orbic RC555L unlocking done by YONAS MOBILE from ethiopia !!!

steps
1 root the phone by orangeFox recovery and magisk
2 enable diag port by NCK box qualcomm module
3 backup QCN by NCK box qualcomm module
4 rest EFS by NCK box qualcomm module
5 write QCN you backupd befor with NCK box qualcomm module
6 no more step its unlock
Okay, this is pretty awesome. Thanks for posting this. Can you confirm what networks it works on?

Also, I ask that you post this method up on the XDA Orbic Wonder thread as well, so more people will get to see it and do your method
 
Last edited by a moderator:
Upvote 0
World first orbic RC555L unlocking done by YONAS MOBILE from ethiopia !!!

steps
1 root the phone by orangeFox recovery and magisk
2 enable diag port by NCK box qualcomm module
3 backup QCN by NCK box qualcomm module
4 rest EFS by NCK box qualcomm module
5 write QCN you backupd befor with NCK box qualcomm module
6 no more step its unlock

Sorry but Uni Android Tools - noidodroid were the worlds first. =]

...You guys come in 3rd or so now. I forget who the other team was that got to it after us. No biggie. The more boxes that unlock this phone the better. It needs tons of publicity. All of their phones are slept on so to speak. A lot of potential and even more once our Custom Roms or anyone else's come out! I have currently 3 of their phones, all but one. They have some new devices 5G capable and more coming out soon and big mergers in the works. I'm waiting to do a news piece on www.leakite.com of what comes out once i get what i need.

So just for the record.. lol.. 100% Unlocked with UAT as WorldWide FIRST. I unlocked it manually first then immediately after changes to Module.. unlocked with UAT. It can be unlocked any day by any paid user of UAT. The main reason i did not post the exact details public is because of working deals with unlocking services and the fact that advertising paid services on forums such as AndroidForums and XDA Developers is not allowed and will get your account warned / banned. So i wanted to look for a more simplified way to do the unlock for users of XDA, AF and other non advertising friendly communities. Still I haven't that kind of time to create an AIO unlocker for the Orbic Wonder. Sometime though.

-BTW.. Orbic Wonder RC555L *Factory Unlocked* model Worlds First all operations done by UAT. Just done a day ago by noidodroid and announced today on GSM Forums. Nothing special but UAT managed to temporarily unlock the bootloader which was locked and not able to be unlocked other ways. I have TWRP, manual bootloader unlock, and more in the works as I get time. I am the only one really doing anything with Orbic phones. I encourage others to get involved and down with the cause. The more the merrier and who cares about a race anymore... unless its impossible rooting, unlocking bootloaders on prepaid plans of carriers not known for these things to happen often... or carrier unlocking the same.. These aren't so easy! =P


If anyone reads this wants to assist the team I am looking for more programmers as I have quite a busy workload and do not have all the time I use to work on all the multiple devices I usually have in my weekly workload.

q=]
-noidodroid
 
Upvote 0
Also on one Orbic Wonder device of mine diag port and many more ports were already enabled by default out of the box on this device. Not sure why as i didn't edit build prop values. You might want to dbl check which qualcomm diag driver and actual port is being used as its key to unlocking. Wiping the security EFS is also a must before writing back the QCN and you are correct the only thing after this that needs to be done is writing back the QCN. Originally I did not include the IMEI in QNC, had to repair IMEI and it unlocked fine. However now with using UAT latest ver it's all done and capable. You might want to modify bands as well to improve signal quality. I have it on T-Mobile / AT&T and coverage isn't the greatest at least in my area. I'm still convinced it's due to the bands moreso than the towers locations. -EDIT: I also took a look at the coverage map and my area is not covered to the fullest. When more time for this project I will see what can improve it.
 
Last edited:
Upvote 0
Okay, this is pretty f***ing awesome. Thanks for posting this. Can you confirm what networks it works on?

Also, I ask that you post this method up on the XDA Orbic Wonder thread as well, so more people will get to see it and do your method

He already did!. @mikejah beware as posting that is not really tolerated at all and is against XDA rules as it is promoting the box your team used. I was warned already. Now my original... There is a few ways to do it. It is rather really a coding flaw / vulnerability of the manufacturer in the phone I came across. With UAT it allows the new easier ways by boxes to be used instead of the first way I unlocked it which I really rather not disclose. I think we assisted their sales a bit LOL.. Remember the spike in price shortly after we released what we did? That and we have over 10k? views on our main XDA thread. I just need to get to 2nd or 3rd tier to get to someone on my level so I can help THEM out haha.

Just think if we got more of what we do in this industry recognized by some of these companies and actually used.... That would be one h*ll of an accomplishment and I think would change the phone world and make this somewhat small community of ours grow extremely larger. Just like the days before Nascar racing.. back to the days of bootleg moonshine running... Them fellas took cars and did the impossible to mod them for speed and performance to outrun the law and deliver their shine.. Then came the 40's, 50's, .muscle car's and today beautful muscle'd out cars that are stock out the gate modded and ready to get it off the line any stop light they roll up to. haha... That .. is .. what we are doing with these phones. All in due time.. mark my words.
 
Last edited:
  • Like
Reactions: Xavier Black
Upvote 0

BEST TECH IN 2023

We've been tracking upcoming products and ranking the best tech since 2007. Thanks for trusting our opinion: we get rewarded through affiliate links that earn us a commission and we invite you to learn more about us.

Smartphones