Closed 0E800 closed 7 years ago
Spirit ROM is based off of CyanogenMod. Only AOSP based ROMs are supported. Try using either OmniROM, or Paranoid Android. I like Paranoid personally!
@0E800 - Hey old. We ran into something similar during testing previously. Could you try starting msfconsole from a ssh/or adb session also. Also, after any crash could you post the log with:
su
cat /proc/last_kmsg >> /sdcard/crash.log
Hey there binky :)
Here is output of ssh:
root@ubuntu:~# ssh 10.1.101.252 The authenticity of host '10.1.101.252 (10.1.101.252)' can't be established. ECDSA key fingerprint is 8e:9e:bd:1a:f4:d0:48:b0:58:b0:02:82:71:11:cd:09. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added '10.1.101.252' (ECDSA) to the list of known hosts. root@10.1.101.252's password: Linux fringe 2.6.32 #1 SMP Debian 3.14.5-1kali1 (2014-06-07) armv7l
The programs included with the Kali GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright.
Kali GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. debug1: PAM: reinitializing credentials debug1: permanently_set_uid: 0/0 Environment: LANG=en_US.UTF-8 USER=root LOGNAME=root HOME=/root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/usr/bin/X11 MAIL=/var/mail/root SHELL=/bin/bash SSH_CLIENT=10.1.101.110 43173 22 SSH_CONNECTION=10.1.101.110 43173 10.1.101.252 22 SSH_TTY=/dev/pts/3 TERM=xterm root@kali:~# service postgresql start [ ok ] Starting PostgreSQL 9.1 database server: main. root@kali:~# service metasploit start perl: warning: Setting locale failed. perl: warning: Please check that your locale settings: LANGUAGE = (unset), LC_ALL = (unset), LANG = "en_US.UTF-8" are supported and installed on your system. perl: warning: Falling back to the standard locale ("C"). [ ok ] Starting Metasploit rpc server: prosvc. [ ok ] Starting Metasploit web server: thin. [ ok ] Starting Metasploit worker: worker. root@kali:~# msfconsole
Unable to handle kernel NULL pointer dereference at virtual address 0xd34db33f EFLAGS: 00010046 eax: 00000001 ebx: f77c8c00 ecx: 00000000 edx: f77f0001 esi: 803bf014 edi: 8023c755 ebp: 80237f84 esp: 80237f60 ds: 0018 es: 0018 ss: 0018 Process Swapper (Pid: 0, process nr: 0, stackpage=80377000)
Stack: 90909090990909090990909090 90909090990909090990909090 90909090.90909090.90909090 90909090.90909090.90909090 90909090.90909090.09090900 90909090.90909090.09090900 .......................... cccccccccccccccccccccccccc cccccccccccccccccccccccccc ccccccccc................. cccccccccccccccccccccccccc cccccccccccccccccccccccccc .................ccccccccc cccccccccccccccccccccccccc cccccccccccccccccccccccccc .......................... ffffffffffffffffffffffffff ffffffff.................. ffffffffffffffffffffffffff ffffffff.................. ffffffff.................. ffffffff..................
Code: 00 00 00 00 M3 T4 SP L0 1T FR 4M 3W OR K! V3 R5 I0 N4 00 00 00 00 Aiee, Killing Interrupt handler Kernel panic: Attempted to kill the idle task! In swapper task - not syncing
Frustrated with proxy pivoting? Upgrade to layer-2 VPN pivoting with Metasploit Pro -- learn more on http://rapid7.com/metasploit
=[ metasploit v4.10.0-2014100201 [core:4.10.0.pre.2014100201 api:1.0.0]]
msf > Connection to 10.1.101.252 closed by remote host. Connection to 10.1.101.252 closed. root@ubuntu:~# (at this point the Nexus 7 restarted into CWM Recovery)
Here is crash.log:
[ 0.000000] Initializing cgroup subsys cpu [ 0.000000] Linux version 3.1.10-g30c5396 (hudson@koushik-lion) (gcc version 4.7 (GCC) ) #1 SMP PREEMPT Sun Oct 6 05:18:12 PDT 2013 [ 0.000000] CPU: ARMv7 Processor [412fc099] revision 9 (ARMv7), cr=10c5387d [ 0.000000] CPU: VIPT nonaliasing data cache, VIPT aliasing instruction cache [ 0.000000] Machine: grouper [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Ignoring unrecognised tag 0x41000801 [ 0.000000] Found tegra_fbmem: 007d0c80@abe01000 [ 0.000000] Tegra reserved memory: [ 0.000000] LP0: bddf9000 - bddfafff [ 0.000000] Bootloader framebuffer: abe01000 - ac5d1fff [ 0.000000] Framebuffer: bec00000 - bf4fffff [ 0.000000] 2nd Framebuffer: bf500000 - bfdfffff [ 0.000000] Carveout: 00000000 - 00000000 [ 0.000000] Vpr: 00000000 - 00000000 [ 0.000000] Memory policy: ECC disabled, Data cache writealloc [ 0.000000] fuse_speedo_calib: ATE prog ver 3.6 [ 0.000000] Tegra3: CPU Speedo ID 7, Soc Speedo ID 1 [ 0.000000] Tegra Revision: A03 SKU: 0x83 CPU Process: 3 Core Process: 0 [ 0.000000] tegra: PLLP fixed rate: 408000000 [ 0.000000] Lowering cpu_lp maximum rate from 620000000 to 500000000 [ 0.000000] Lowering sbus maximum rate from 378000000 to 267000000 [ 0.000000] Lowering vi maximum rate from 470000000 to 409000000 [ 0.000000] Lowering vde maximum rate from 600000000 to 416000000 [ 0.000000] Lowering mpe maximum rate from 600000000 to 416000000 [ 0.000000] Lowering 2d maximum rate from 600000000 to 416000000 [ 0.000000] Lowering epp maximum rate from 600000000 to 416000000 [ 0.000000] Lowering 3d maximum rate from 600000000 to 416000000 [ 0.000000] Lowering 3d2 maximum rate from 600000000 to 416000000 [ 0.000000] Lowering se maximum rate from 625000000 to 416000000 [ 0.000000] Lowering host1x maximum rate from 300000000 to 267000000 [ 0.000000] Lowering cbus maximum rate from 700000000 to 416000000 [ 0.000000] Lowering pll_c maximum rate from 1400000000 to 1066000000 [ 0.000000] Lowering ndflash maximum rate from 240000000 to 200000000 [ 0.000000] Lowering sbc1 maximum rate from 160000000 to 100000000 [ 0.000000] Lowering sbc2 maximum rate from 160000000 to 100000000 [ 0.000000] Lowering sbc3 maximum rate from 160000000 to 100000000 [ 0.000000] Lowering sbc4 maximum rate from 160000000 to 100000000 [ 0.000000] Lowering sbc5 maximum rate from 160000000 to 100000000 [ 0.000000] Lowering sbc6 maximum rate from 160000000 to 100000000 [ 0.000000] Lowering dsia maximum rate from 500000000 to 275000000 [ 0.000000] Lowering dsib maximum rate from 500000000 to 275000000 [ 0.000000] Lowering cpu_g maximum rate from 1700000000 to 1300000000 [ 0.000000] tegra dvfs: VDD_CPU nominal 1025mV, scaling enabled [ 0.000000] tegra dvfs: VDD_CORE nominal 1200mV, scaling enabled [ 0.000000] L310 cache controller enabled [ 0.000000] l2x0: 8 ways, CACHE_ID 0x410000c7, AUX_CTRL 0x7e080001, Cache size: 1048576 B [ 0.000000] PERCPU: Embedded 8 pages/cpu @c1b5a000 s11136 r8192 d13440 u32768 [ 0.000000] Built 1 zonelists in Zone order, mobility grouping on. Total pages: 254468 [ 0.000000] Kernel command line: tegra_wdt.heartbeat=30 tegraid=30.1.3.0.0 mem=1022M@2048M android.commchip=0 vmalloc=512M androidboot.serialno=015d18844d340c00 video=tegrafb no_console_suspend=1 console=none debug_uartport=hsport usbcore.old_scheme_first=1 lp0_vec=8192@0xbddf9000 tegra_fbmem=8195200@0xabe01000 core_edp_mv=0 audio_codec=rt5640 board_info=f41:a00:1:44:2 tegraboot=sdmmc gpt gpt_sector=30535679 androidboot.bootloader=4.18 androidboot.baseband=unknown [ 0.000000] PID hash table entries: 2048 (order: 1, 8192 bytes) [ 0.000000] Dentry cache hash table entries: 65536 (order: 6, 262144 bytes) [ 0.000000] Inode-cache hash table entries: 32768 (order: 5, 131072 bytes) [ 0.000000] Memory: 1003MB = 1003MB total [ 0.000000] Memory: 994784k/994784k available, 51744k reserved, 625844K highmem [ 0.000000] Virtual kernel memory layout: [ 0.000000] vector : 0xffff0000 - 0xffff1000 ( 4 kB) [ 0.000000] fixmap : 0xfff00000 - 0xfffe0000 ( 896 kB) [ 0.000000] DMA : 0xff000000 - 0xffe00000 ( 14 MB) [ 0.000000] vmalloc : 0xd8800000 - 0xf8000000 ( 504 MB) [ 0.000000] lowmem : 0xc0000000 - 0xd8000000 ( 384 MB) [ 0.000000] pkmap : 0xbfe00000 - 0xc0000000 ( 2 MB) [ 0.000000] modules : 0xbf000000 - 0xbfe00000 ( 14 MB) [ 0.000000] .text : 0xc0008000 - 0xc094499c (9459 kB) [ 0.000000] .init : 0xc0945000 - 0xc098ab80 ( 279 kB) [ 0.000000] .data : 0xc098c000 - 0xc0a51a10 ( 791 kB) [ 0.000000] .bss : 0xc0a51a34 - 0xc0bd67f0 (1556 kB) [ 0.000000] Preemptible hierarchical RCU implementation. [ 0.000000] NR_IRQS:800 [ 0.000000] sched_clock: 32 bits at 1000kHz, resolution 1000ns, wraps every 4294967ms [ 0.000175] Calibrating delay loop... 1993.93 BogoMIPS (lpj=9969664) [ 0.060080] pid_max: default: 32768 minimum: 301 [ 0.060189] Security Framework initialized [ 0.060218] SELinux: Initializing. [ 0.060312] Mount-cache hash table entries: 512 [ 0.060977] Initializing cgroup subsys debug [ 0.060987] Initializing cgroup subsys cpuacct [ 0.061034] Initializing cgroup subsys freezer [ 0.061042] Initializing cgroup subsys bfqio [ 0.061067] CPU: Testing write buffer coherency: ok [ 0.061292] hw perfevents: enabled with ARMv7 Cortex-A9 PMU driver, 7 counters available [ 0.181465] CPU1: Booted secondary processor [ 0.241460] CPU2: Booted secondary processor [ 0.301448] CPU3: Booted secondary processor [ 0.321270] Brought up 4 CPUs [ 0.321281] SMP: Total of 4 processors activated (7975.73 BogoMIPS). [ 0.324645] print_constraints: dummy: [ 0.324848] NET: Registered protocol family 16 [ 0.325612] host1x bus init [ 0.325672] Serial: 8250/16550 driver, 4 ports, IRQ sharing disabled
[ 0.442787] The pingroup KB_ROW0 was configured to RSVD3 instead of
[ 1.629432] Wake18 for irq=118
[ 1.629508] Enabling wake18
[ 1.631895] print_constraints: max77663_sd0: 600 <--> 3387 mV at 1025 mV normal standby
[ 1.632873] print_constraints: max77663_sd1: 800 <--> 1587 mV at 1200 mV normal standby
[ 1.633922] print_constraints: max77663_sd2: 1800 mV normal standby
[ 1.634991] print_constraints: max77663_sd3: 600 <--> 3387 mV at 1350 mV normal standby
[ 1.635973] print_constraints: max77663_ldo0: 800 <--> 2350 mV at 1000 mV normal standby
[ 1.636125] set_supply: max77663_ldo0: supplied by max77663_sd3
[ 1.637201] print_constraints: max77663_ldo1: 800 <--> 2350 mV at 1200 mV normal standby
[ 1.637293] set_supply: max77663_ldo1: supplied by max77663_sd3
[ 1.638353] print_constraints: max77663_ldo2: 800 <--> 3950 mV at 2800 mV normal standby
[ 1.639400] print_constraints: max77663_ldo3: 800 <--> 3950 mV at 3000 mV normal standby
[ 1.640623] print_constraints: max77663_ldo4: 800 <--> 1587 mV at 1000 mV normal standby
[ 1.641650] print_constraints: max77663_ldo5: 800 <--> 2800 mV at 2800 mV normal standby
[ 1.642686] print_constraints: max77663_ldo6: 800 <--> 3950 mV at 3300 mV normal standby
[ 1.643679] print_constraints: max77663_ldo7: 800 <--> 3950 mV at 1200 mV normal standby
[ 1.643831] set_supply: max77663_ldo7: supplied by max77663_sd3
[ 1.644886] print_constraints: max77663_ldo8: 800 <--> 3950 mV at 1200 mV normal standby
[ 1.644978] set_supply: max77663_ldo8: supplied by max77663_sd3
[ 1.645371] max77663 register misc device for I2C stress test rc=0
[ 1.650585] Advanced Linux Sound Architecture Driver Version 1.0.24.
[ 1.651071] Bluetooth: Core ver 2.16
[ 1.651187] NET: Registered protocol family 31
[ 1.651337] Bluetooth: HCI device and connection manager initialized
[ 1.651416] Bluetooth: HCI socket layer initialized
[ 1.651548] Bluetooth: L2CAP socket layer initialized
[ 1.651638] Bluetooth: SCO socket layer initialized
[ 1.652034] cfg80211: Calling CRDA to update world regulatory domain
[ 1.652264] NFC: NFC Core ver 0.1
[ 1.652371] NET: Registered protocol family 39
[ 1.652651] print_constraints: fixed_reg_en_3v3_sys_a01: 3300 mV normal standby
[ 1.653046] print_constraints: fixed_reg_en_avdd_hdmi_usb_a01: 3300 mV normal standby
[ 1.653191] set_supply: fixed_reg_en_avdd_hdmi_usb_a01: supplied by fixed_reg_en_3v3_sys_a01
[ 1.653531] print_constraints: fixed_reg_en_1v8_cam: 1800 mV normal standby
[ 1.653677] set_supply: fixed_reg_en_1v8_cam: supplied by max77663_sd2
[ 1.653951] print_constraints: fixed_reg_en_vddio_vid: 5000 mV normal standby
[ 1.654263] print_constraints: fixed_reg_en_vdd_pnl: 3300 mV normal standby
[ 1.654349] set_supply: fixed_reg_en_vdd_pnl: supplied by fixed_reg_en_3v3_sys_a01
[ 1.654696] print_constraints: fixed_reg_en_vdd_com: 3300 mV normal standby
[ 1.654836] set_supply: fixed_reg_en_vdd_com: supplied by fixed_reg_en_3v3_sys_a01
[ 1.655111] print_constraints: fixed_reg_en_3v3_fuse: 3300 mV normal standby
[ 1.655254] set_supply: fixed_reg_en_3v3_fuse: supplied by fixed_reg_en_3v3_sys_a01
[ 1.655588] print_constraints: fixed_reg_cdc_en: 1200 mV normal standby
[ 1.655676] set_supply: fixed_reg_cdc_en: supplied by max77663_sd2
[ 1.656396] tegra: started io power detection dynamic control
[ 1.656474] tegra: NO_IO_POWER setting 0x1200
[ 1.656608] Switching to clocksource timer_us
[ 1.656699] stop_machine_cpu_stop smp=1
[ 1.656705] stop_machine_cpu_stop smp=0
[ 1.656713] stop_machine_cpu_stop smp=2
[ 1.656720] stop_machine_cpu_stop smp=3
[ 1.661289] Switched to NOHz mode on CPU #0
[ 1.661480] Switched to NOHz mode on CPU #3
[ 1.661493] Switched to NOHz mode on CPU #2
[ 1.661503] Switched to NOHz mode on CPU #1
[ 1.668803] nvmap_page_pool_init: nvmap uc page pool size=31087 pages
[ 1.764591] nvmap_page_pool_init: nvmap wc page pool size=31087 pages
[ 1.860492] nvmap_page_pool_init: nvmap iwb page pool size=31087 pages
[ 1.957558] tegra-nvmap tegra-nvmap: created carveout iram (255KiB)
[ 1.958744] NET: Registered protocol family 2
[ 1.958978] IP route cache hash table entries: 16384 (order: 4, 65536 bytes)
[ 1.959444] TCP established hash table entries: 65536 (order: 7, 524288 bytes)
[ 1.960363] TCP bind hash table entries: 65536 (order: 7, 786432 bytes)
[ 1.961488] TCP: Hash tables configured (established 65536 bind 65536)
[ 1.961621] TCP reno registered
[ 1.961702] UDP hash table entries: 256 (order: 1, 8192 bytes)
[ 1.961846] UDP-Lite hash table entries: 256 (order: 1, 8192 bytes)
[ 1.962146] NET: Registered protocol family 1
[ 1.962535] RPC: Registered named UNIX socket transport module.
[ 1.962612] RPC: Registered udp transport module.
[ 1.962745] RPC: Registered tcp transport module.
[ 1.962818] RPC: Registered tcp NFSv4.1 backchannel transport module.
[ 1.962955] PCI: CLS 0 bytes, default 32
[ 1.963180] Unpacking initramfs...
[ 2.062815] Freeing initrd memory: 2368K
[ 2.063885] host1x host1x: initialized
[ 2.064038] PMU: registered new PMU device of type 0
[ 2.064531] Tegra auto-hotplug initialized: disabled
[ 2.064676] cpu-tegra: init EDP limit: 1150 MHz
[ 2.065482] audit: initializing netlink socket (disabled)
[ 2.065650] type=2000 audit(5.514:1): initialized
[ 2.083294] highmem bounce pool size: 64 pages
[ 2.083538] ashmem: initialized
[ 2.084659] NTFS driver 2.1.30 [Flags: R/O].
[ 2.084812] fuse init (API version 7.17)
[ 2.084996] SELinux: Registering netfilter hooks
[ 2.085434] Registering char device tf_driver (122:0)
[ 2.085605] TF : INFO 00000001 00:00:00.000 ------ ------ Kernel --------- Booting... (t=00:00:05.542) TFNXBF01.15.36932 /Trusted-Logic
[ 2.086749] io scheduler noop registered
[ 2.086886] io scheduler deadline registered
[ 2.087011] io scheduler cfq registered (default)
[ 2.087218] io scheduler bfq registered
[ 2.088113] mpe mpe: initialized
[ 2.089317] gr3d gr3d: initialized
[ 2.089529] dsi dsi: initialized
[ 2.090344] gr2d gr2d: initialized
[ 2.090554] isp isp: initialized
[ 2.090758] vi vi: initialized
[ 2.091360] Disp: diff_msec= 5548
[ 2.367835] tegradc tegradc.0: probed
[ 2.368142] tegradc tegradc.0: probed
[ 2.368487] Wake4 for irq=335
[ 2.368960] nvhdcp: using "always on" policy.
[ 2.369304] tegradc tegradc.1: probed
[ 2.369605] tegradc tegradc.1: probed
[ 2.370207] tegra_uart.1: ttyHS1 at MMIO 0x70006040 (irq = 69) is a TEGRA_UART
[ 2.527066] Registered UART port ttyHS1
[ 2.527275] tegra_uart.2: ttyHS2 at MMIO 0x70006200 (irq = 78) is a TEGRA_UART
[ 2.687064] Registered UART port ttyHS2
[ 2.687269] tegra_uart.3: ttyHS3 at MMIO 0x70006300 (irq = 122) is a TEGRA_UART
[ 2.847064] Registered UART port ttyHS3
[ 2.847271] tegra_uart.4: ttyHS4 at MMIO 0x70006400 (irq = 123) is a TEGRA_UART
[ 3.007064] Registered UART port ttyHS4
[ 3.007277] Initialized tegra uart driver
[ 3.009737] loop: module loaded
[ 3.009897] i2c-core: driver [apds9802als] using legacy suspend method
[ 3.010031] i2c-core: driver [apds9802als] using legacy resume method
[ 3.010173] nct1008_probe+
[ 3.010322] nct1008 4-004c: no regulator found for vdd. Assuming vdd is always powered
[ 3.012615] nct1008 register misc device for I2C stress test rc=0
[ 3.012934] nct1008 4-004c: nct1008_probe: initialized
[ 3.014011] nct1008_get_temp: ret temp=52C
[ 3.014422] nct1008_probe-
[ 3.014528] i2c-core: driver [nct1008] using legacy suspend method
[ 3.014661] i2c-core: driver [nct1008] using legacy resume method
[ 3.014807] bcm4330_rfkill_probe: can't find bcm4330_32k_clk. assuming 32k clock to chip
[ 3.014943] bcm4330_rfkill_probe : can't find reset gpio.
[ 3.015186] vibrator_init:Couldn't get regulator vdd_vbrtr
[ 3.015367] Loading pn544 driver
[ 3.015528] pn544_probe : requesting IRQ 408
[ 3.015856] PPP generic driver version 2.4.2
[ 3.016075] PPP Deflate Compression module registered
[ 3.016151] PPP BSD Compression module registered
[ 3.018198] PPP MPPE Compression module registered
[ 3.018280] NET: Registered protocol family 24
[ 3.018743] tun: Universal TUN/TAP device driver, 1.6
[ 3.018820] tun: (C) 1999-2004 Max Krasnyansky maxk@qualcomm.com
[ 3.019026] usbcore: registered new interface driver asix
[ 3.019132] usbcore: registered new interface driver cdc_ether
[ 3.019245] usbcore: registered new interface driver smsc95xx
[ 3.019408] usbcore: registered new interface driver rndis_host
[ 3.019570] usbcore: registered new interface driver cdc_subset
[ 3.019653] cdc_ncm: 04-Aug-2011
[ 3.019755] usbcore: registered new interface driver cdc_ncm
[ 3.019934] usbcore: registered new interface driver bb_raw_ip_net
[ 3.020053] usbcore: registered new interface driver rndis_wlan
[ 3.020195] smb347_charger: [smb347_init] project_id=0, pcba_ver=3, dock_in_gpio=164
[ 3.023542] [charger] Disable AICL, retval=93 setting=83
[ 3.023949] [charger] set cahrger limmit, limit=900 retval =73 setting=73
[ 3.024410] [charger] re-enable AICL, setting=93
[ 3.047969] GPIO pin irq 388 requested ok, smb347_DOCK_IN# = H
[ 3.048107] Wake1 for irq=393
[ 3.048204] GPIO pin irq 393 requested ok, smb347_INOK = L
[ 3.048316] i2c-core: driver [smb347] using legacy suspend method
[ 3.048450] i2c-core: driver [smb347] using legacy resume method
[ 3.048553] bq27541_probe + client->addr= 55
[ 3.049890] is_legal_pack device name: ME370
[ 3.050616] bq27541_get_psp status: Discharging ret= 0x0181
[ 3.051336] bq27541_get_psp voltage_now= 3742000 uV
[ 3.051987] bq27541_get_capacity = 33% ret= 37
[ 3.052639] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 3.053308] Wake25 for irq=372
[ 3.053418] setup_low_battery_irq irq=372, LL_BAT_T30=0
[ 3.053587] bq27541_get_psp status: Discharging ret= 0x0181
[ 3.053698] Wake25 for irq=372
[ 3.053772] Enabling wake25
[ 3.053904] gpio bank wake found: wake25 for irq=87
[ 3.053976] Enabling wake25
[ 3.054095] The USB cable status = 0
[ 3.054230] bq27541_probe - bq27541-battery driver registered
[ 3.054335] i2c-core: driver [bq27541-battery] using legacy suspend method
[ 3.054500] bq27541_get_psp voltage_now= 3742000 uV
[ 3.054601] i2c-core: driver [bq27541-battery] using legacy resume method
[ 3.054743] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver
[ 3.059001] Timed out waiting for lock bit on pll pll_u
[ 3.059186] bq27541_get_capacity = 33% ret= 37
[ 3.059894] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 3.063145] tegra-ehci tegra-ehci.1: Tegra EHCI Host Controller
[ 3.063315] tegra-ehci tegra-ehci.1: new USB bus registered, assigned bus number 1
[ 3.087087] tegra-ehci tegra-ehci.1: irq 53, io mem 0x7d004000
[ 3.107076] tegra-ehci tegra-ehci.1: USB 2.0 started, EHCI 1.00
[ 3.107269] usb usb1: New USB device found, idVendor=1d6b, idProduct=0002
[ 3.107347] usb usb1: New USB device strings: Mfr=3, Product=2, SerialNumber=1
[ 3.107481] usb usb1: Product: Tegra EHCI Host Controller
[ 3.107613] usb usb1: Manufacturer: Linux 3.1.10-g30c5396 ehci_hcd
[ 3.107687] usb usb1: SerialNumber: tegra-ehci.1
[ 3.108100] hub 1-0:1.0: USB hub found
[ 3.108187] hub 1-0:1.0: 1 port detected
[ 3.108469] Wake40 for irq=53
[ 3.108542] Enabling wake40
[ 3.108833] usbcore: registered new interface driver cdc_acm
[ 3.108907] cdc_acm: USB Abstract Control Model driver for USB modems and ISDN adapters
[ 3.109072] usbcore: registered new interface driver cdc_wdm
[ 3.109146] Initializing USB Mass Storage driver...
[ 3.109339] usbcore: registered new interface driver usb-storage
[ 3.109415] USB Mass Storage support registered.
[ 3.109601] usbcore: registered new interface driver libusual
[ 3.109773] usbcore: registered new interface driver usbserial
[ 3.109907] usbserial: USB Serial Driver core
[ 3.112818] usbcore: registered new interface driver baseband_usb_58b_41_1
[ 3.112987] USB Serial support registered for GSM modem (1-port)
[ 3.113153] usbcore: registered new interface driver option
[ 3.113286] option: v0.7.2:USB Driver for GSM modems
[ 3.113386] USB Serial support registered for pl2303
[ 3.113565] usbcore: registered new interface driver pl2303
[ 3.113638] pl2303: Prolific PL2303 USB to serial adaptor driver
[ 3.113771] NVidia Tegra High-Speed USB SOC Device Controller driver (Apr 20, 2007)
[ 3.113848] read_hw_version project_id = 0X0, pcb_id = 0X3
[ 3.114135] phy->instance = 0, phy->xcvr_setup_value = 58
[ 3.114225] create_regulator: fixed_reg_en_avdd_hdmi_usb_a01: Failed to create debugfs directory
[ 3.114359] tegra_usb_phy_open instance 0 MAX77663_IRQ_ACOK_RISING
[ 3.117229] fsl-tegra-udc fsl-tegra-udc: usb_bat_chg regulator not registered: USB charging will not be enabled
[ 3.137091] tegra-otg tegra-otg: SUSPEND --> PERIPHERAL
[ 3.137170] fsl_vbus_session(): vbus_active = 0 and is_active = 1
[ 3.139309] android_usb gadget: Mass Storage Function, version: 2009/09/11
[ 3.139389] android_usb gadget: Number of LUNs=1
[ 3.139522] lun0: LUN: removable file: (no medium)
[ 3.139762] Gadget Android: controller 'fsl-tegra-udc' not recognized
[ 3.139904] android_usb gadget: android_usb ready
[ 3.139978] fsl-tegra-udc: bind to driver android_usb
[ 3.140184] usbcore: registered new interface driver xpad
[ 3.140362] usbcore: registered new interface driver usb_acecad
[ 3.140436] acecad: v3.2:USB Acecad Flair tablet driver
[ 3.140604] usbcore: registered new interface driver aiptek
[ 3.140677] aiptek: v2.3 (May 2, 2007):Aiptek HyperPen USB Tablet Driver (Linux 2.6.x)
[ 3.140808] aiptek: Bryan W. Headley/Chris Atenasio/Cedric Brun/Rene van Paassen
[ 3.140972] usbcore: registered new interface driver gtco
[ 3.141044] GTCO usb driver version: 2.00.0006
[ 3.141205] usbcore: registered new interface driver hanwang
[ 3.141373] usbcore: registered new interface driver kbtab
[ 3.141505] kbtab: v0.0.2:USB KB Gear JamStudio Tablet driver
[ 3.141616] usbcore: registered new interface driver wacom
[ 3.141748] wacom: v1.52:USB Wacom tablet driver
[ 3.141820] [ektf3k]:[elan] elan_ktf3k_ts_init
[ 3.141977] [ektf3k]:[ELAN] Start HW reset!
[ 3.397074] [ektf3k]:The boot code is new!
[ 3.547074] INOK=L
[ 3.547344] smb347_charger: [cable_type_detect] Reg39 : 0x10
[ 3.547664] smb347_charger: [cable_type_detect] Reg3F : 0xc0
[ 3.547739] smb347_charger: [cable_type_detect] USB_IN
[ 3.548055] smb347_charger: [cable_type_detect] Reg3E : 0x0b
[ 3.548130] ========================================================
[ 3.548261] battery_callback usb_cable_state = 3
[ 3.548331] ========================================================
[ 3.548462] battery_callback cable_wake_lock 5 sec...
[ 3.548466]
[ 3.548614] Cable: OTHER
[ 4.137068] cable_detection_work_handler(): vbus_active = 0 and is_active = 1
[ 4.137146] USB device controller was not ready
[ 4.207223] [ektf3k]:[elan] hello_packet_handler: hello packet 55:55:55:55
[ 4.207300] [ektf3k]:[elan] hello packet's rc = 0
[ 4.418910] [ektf3k]:[elan] fw_packet_handler: firmware version: 0xb018
[ 4.420813] [ektf3k]:[elan] fw_packet_handler: X resolution: 0x0078
[ 4.422776] [ektf3k]:[elan] fw_packet_handler: Y resolution: 0x00c6
[ 4.424680] [ektf3k]:[elan] fw_packet_handler: firmware id: 0x3021
[ 4.424818] [ektf3k]:[Elan] Max X=2111, Max Y=1279
[ 4.425019] input: elan-touchscreen as /devices/virtual/input/input0
[ 4.425257] [ektf3k]:The firmware was version 0xB018 and id:0x3021
[ 4.425414] [ektf3k]: /proc/ektf_dbg created
[ 4.425672] [ektf3k]:[elan] Start touchscreen elan-touchscreen in interrupt mode
[ 4.425859] [ektf3k]:[ELAN]misc_register finished!!
[ 4.425935] elan-ktf3k 1-0010: Update power source to 1
[ 4.442302] in function __rmi_bus_init**
[ 4.442465] rmi_bus_init: successfully registered RMI bus.
[ 4.442579] rmi_spi_init: registering synaptics spi driver (ref=124)
[ 4.442712] driver.owner = 0x0
[ 4.442784] driver.name = rmi_spi
[ 4.442916] id_table[0].name = rmi
[ 4.442987] id_table[1].name = rmi_spi
[ 4.443117] probe function ptr = 0xc068722c
[ 4.443211] in function rmi_register_driver
[ 4.443371] in function rmi_get_function_handler
[ 4.443446] in function rmi_get_function_handler
[ 4.443579] in function rmi_get_function_handler
[ 4.443652] in function rmi_get_function_handler
[ 4.443783] in function rmi_get_function_handler
[ 4.443856] in function rmi_get_function_handler
[ 4.444148] lid_init+ #####
[ 4.444221] hall_sensor: [lid_init] start LID init.....
[ 4.444518] input: lid_input as /devices/virtual/input/input1
[ 4.444786] Wake28 for irq=374
[ 4.444896] Wake28 for irq=374
[ 4.444969] Enabling wake28
[ 4.445042] CAP1106: [cap1106_init] Cap1106 driver doesn't support this project
[ 4.475058] using rtc device, max77663-rtc, for alarms
[ 4.475208] max77663-rtc max77663-rtc.0: rtc core: registered max77663-rtc as rtc0
[ 4.475753] i2c /dev entries driver
[ 4.476276] Linux video capture interface: v2.00
[ 4.476443] usbcore: registered new interface driver uvcvideo
[ 4.476517] USB Video Class driver (1.1.1)
[ 4.476711] trpc_sema_init: registered misc dev 10:45
[ 4.476841] trpc_node_register: Adding 'local' to node list
[ 4.478012] nvavp nvavp: allocated IOVM at ff00000 for AVP os
[ 4.478342] tegra_camera tegra_camera: tegra_camera_probe
[ 4.478714] sensor_init+ #####
[ 4.478816] mi1040 sensor_probe
[ 4.479030] sensor_init- #####
[ 4.479258] al3010_init+ #####
[ 4.479330] light sensor info : al3010 init
[ 4.480161] light sensor info : al3010 probe successed
[ 4.480297] al3010 2-001c: driver version 1.0 enabled
[ 4.480528] i2c-core: driver [al3010] using legacy suspend method
[ 4.480663] i2c-core: driver [al3010] using legacy resume method
[ 4.480744] al3010_init- #####
[ 4.481097] device-mapper: uevent: version 1.0.3
[ 4.481344] device-mapper: ioctl: 4.21.0-ioctl (2011-07-06) initialised: dm-devel@redhat.com
[ 4.481504] Bluetooth: HCI UART driver ver 2.2
[ 4.481578] Bluetooth: HCI H4 protocol initialized
[ 4.481651] Bluetooth: HCILL protocol initialized
[ 4.481781] Bluetooth: BlueSleep Mode Driver Ver 1.1
[ 4.481903] Wake7 for irq=390
[ 4.482629] cpuidle: using governor ladder
[ 4.483001] cpuidle: using governor menu
[ 4.483129] sdhci: Secure Digital Host Controller Interface driver
[ 4.483261] sdhci: Copyright(c) Pierre Ossman
[ 4.483333] sdhci-pltfm: SDHCI platform and OF driver helper
[ 4.483463] sdhci_tegra_init+ #####
[ 4.483636] sdhci-tegra sdhci-tegra.3: Error: tegra3 io dpd not supported for sdhci-tegra.3
[ 4.484790] mmc0: Invalid maximum block size, assuming 512 bytes
[ 4.485995] Registered led device: mmc0::
[ 4.489437] mmc0: SDHCI controller on sdhci-tegra.3 [sdhci-tegra.3] using ADMA
[ 4.489570] sdhci-tegra sdhci-tegra.2: Error: tegra3 io dpd not supported for sdhci-tegra.2
[ 4.490720] mmc1: Invalid maximum block size, assuming 512 bytes
[ 4.491912] Registered led device: mmc1::
[ 4.494187] mmc1: SDHCI controller on sdhci-tegra.2 [sdhci-tegra.2] using ADMA
[ 4.494300] sdhci_tegra_init- #####
[ 4.494679] Registered led device: statled
[ 4.495953] tegra-se tegra-se: tegra_se_probe: complete
[ 4.497544] usbcore: registered new interface driver usbhid
[ 4.497687] usbhid: USB HID core driver
[ 4.498004] logger: created 256K log 'log_main'
[ 4.498192] logger: created 256K log 'log_events'
[ 4.498320] logger: created 256K log 'log_radio'
[ 4.498512] logger: created 256K log 'log_system'
[ 4.568802] [mmc]:mmc_decode_cid:113 cid.prv 0x5
[ 4.579856] [mmc]:mmc_read_ext_csd:285 ext_csd.sectors 0x1d1f000 prod_name MAG2GA BOOT_MULTI 0x10
[ 4.580915] mmc0: new high speed DDR MMC card at address 0001
[ 4.581178] mmcblk mmc0:0001: Card claimed for testing.
[ 4.581491] mmcblk0: mmc0:0001 MAG2GA 14.5 GiB
[ 4.581782] mmcblk0boot0: mmc0:0001 MAG2GA partition 1 2.00 MiB
[ 4.582008] mmcblk0boot1: mmc0:0001 MAG2GA partition 2 2.00 MiB
[ 4.584141] Primary GPT is invalid, using alternate GPT.
[ 4.584258] mmcblk0: p1 p2 p3 p4 p5 p6 p7 p8 p9
[ 4.586489] mmcblk0boot1: unknown partition table
[ 4.587715] mmcblk0boot0: unknown partition table
[ 4.587966] [mmc]:mmc_rescan_try_freq:1907 mmc0: eMMC completed
[ 4.745005] inv-mpu-iio 2-0068: mpu6050 is ready to go!
[ 4.745194] i2c-core: driver [LTR_558ALS] using legacy suspend method
[ 4.745329] i2c-core: driver [LTR_558ALS] using legacy resume method
[ 4.746240] inv_ami306_probe: Probe name ami306
[ 4.746349] RIL: [ril_init] RIL init
[ 4.746422] RIL: [ril_init] Ril driver doesn't support this project
[ 5.247070] HDMI status: Codec=3 Pin=5 Presence_Detect=0 ELD_Valid=0
[ 5.287443] usbcore: registered new interface driver snd-usb-audio
[ 5.287945] rt5640_modinit
[ 5.288047] rt5640_i2c_probe
[ 5.427434] DSP version code = 0x501a
[ 5.427730] *****_realtek_ce_inithwdep****
[ 5.427810] do_rt5640_dsp_set_mode mode=0
[ 5.427948] rt5640 4-001c: w->name=SDI1 TX Mux
[ 5.428021] rt5640 4-001c: path->name=IF2 path->connect=0
[ 5.428153] rt5640 4-001c: path->name=IF1 path->connect=1
[ 5.428272] rt5640 4-001c: w->name=Stereo DAC MIXL
[ 5.428407] rt5640 4-001c: path->name=DAC L1 Switch connect=1
[ 5.428508] rt5640 4-001c: w->name=Stereo DAC MIXL
[ 5.428644] rt5640 4-001c: path->name=DAC L2 Switch connect=0
[ 5.428905] rt5640 4-001c: w->name=Stereo DAC MIXR
[ 5.428982] rt5640 4-001c: path->name=DAC R1 Switch connect=1
[ 5.429145] rt5640 4-001c: w->name=Stereo DAC MIXR
[ 5.429221] rt5640 4-001c: path->name=DAC R2 Switch connect=0
[ 5.429540] rt5640 4-001c: w->name=Stereo ADC MIXL
[ 5.429618] rt5640 4-001c: path->name=ADC1 Switch connect=1
[ 5.429783] rt5640 4-001c: w->name=Stereo ADC MIXR
[ 5.429860] rt5640 4-001c: path->name=ADC1 Switch connect=1
[ 5.430019] rt5640 4-001c: w->name=Stereo ADC MIXL
[ 5.430094] rt5640 4-001c: path->name=ADC2 Switch connect=1
[ 5.430253] rt5640 4-001c: w->name=Stereo ADC MIXR
[ 5.430329] rt5640 4-001c: path->name=ADC2 Switch connect=1
[ 5.430488] rt5640 4-001c: w->name=Mono ADC MIXL
[ 5.430563] rt5640 4-001c: path->name=ADC2 Switch connect=0
[ 5.430662] rt5640 4-001c: w->name=Mono ADC MIXR
[ 5.430796] rt5640 4-001c: path->name=ADC2 Switch connect=0
[ 5.438257] asoc: rt5640-aif1 <-> tegra30-i2s.1 mapping ok
[ 5.441010] asoc: dit-hifi <-> tegra30-spdif mapping ok
[ 5.445032] asoc: dit-hifi <-> tegra30-i2s.3 mapping ok
[ 5.445792] headset_init+ #####
[ 5.445867] HEADSET: Headset detection init
[ 5.446181] HEADSET: Headset detection mode
[ 5.446317] HEADSET: Config LineOut detection gpio
[ 5.446392] gpio_request: gpio-179 (lineout_int) status -16
[ 5.446525] HEADSET: Config Headset Button detection gpio
[ 5.446598] gpio_request: gpio-186 (btn_INT) status -16
[ 5.446727] HEADSET: Config uart<->headphone gpio
[ 5.446799] HEADSET: Config Jack-in detection gpio
[ 5.446871] HEADSET: Turn on micbias power
[ 5.447009] Wake12 for irq=402
[ 5.447150] Wake12 for irq=402
[ 5.447225] Enabling wake12
[ 5.447356] gpio bank wake found: wake12 for irq=119
[ 5.447428] Enabling wake12
[ 5.467067] HEADSET: Turn off micbias power
[ 5.467215] headset_init- #####
[ 5.467287] ALSA device list:
[ 5.467359] #0: HDA NVIDIA Tegra at 0x70038000 irq 113
[ 5.467490] #1: tegra-rt5640
[ 5.467771] oprofile: using arm/armv7-ca9
[ 5.467958] GACT probability NOT on
[ 5.468097] Mirror/redirect action on
[ 5.468170] u32 classifier
[ 5.468240] Actions configured
[ 5.468314] Netfilter messages via NETLINK v0.30.
[ 5.468499] nf_conntrack version 0.5.0 (15580 buckets, 62320 max)
[ 5.468832] ctnetlink v0.93: registering with nfnetlink.
[ 5.469002] NF_TPROXY: Transparent proxy support initialized, version 4.1.0
[ 5.469076] NF_TPROXY: Copyright (c) 2006-2007 BalaBit IT Ltd.
[ 5.469475] xt_time: kernel timezone is -0000
[ 5.469697] ip_tables: (C) 2000-2006 Netfilter Core Team
[ 5.470034] arp_tables: (C) 2002 David S. Miller
[ 5.470159] TCP cubic registered
[ 5.470349] NET: Registered protocol family 10
[ 5.471185] Mobile IPv6
[ 5.471284] ip6_tables: (C) 2000-2006 Netfilter Core Team
[ 5.471565] IPv6 over IPv4 tunneling driver
[ 5.472392] NET: Registered protocol family 17
[ 5.472485] NET: Registered protocol family 15
[ 5.472739] Bluetooth: RFCOMM TTY layer initialized
[ 5.472829] Bluetooth: RFCOMM socket layer initialized
[ 5.472963] Bluetooth: RFCOMM ver 1.11
[ 5.473037] Bluetooth: BNEP (Ethernet Emulation) ver 1.3
[ 5.473112] Bluetooth: HIDP (Human Interface Emulation) ver 1.2
[ 5.473405] NET: Registered protocol family 37
[ 5.473480] VFP support v0.3: implementor 41 architecture 3 part 30 variant 9 rev 4
[ 5.473707] Registering SWP/SWPB emulation handler
[ 5.483254] Do not disable PWM clock when kernel inits
[ 5.483405] Disabling clocks left on by bootloader:
[ 5.483478] fuse_burn
[ 5.483617] cclk_lp
[ 5.483691] pll_x_out0
[ 5.483763] pll_d2_out0
[ 5.483834] pll_d_out0
[ 5.483906] pll_p_out2
[ 5.484039] pll_c_out1
[ 5.484114] pll_m_out1
[ 5.484287] CPU rate: 1000 MHz
[ 5.484409] tegra_fuse_program_init: no vdd_fuse. fuse write disabled
[ 5.484997] tegra3_dvfs: minimum cap.cbus rate 228000000 requires 1000 mV
[ 5.485197] tegra dvfs: tegra sysfs cap interface is initialized
[ 5.485554] tegra_actmon.emc: Completed initialization (0)
[ 5.485837] tegra_actmon.avp: Completed initialization (0)
[ 5.486862] regulator_init_complete: fixed_reg_cdc_en: incomplete constraints, leaving on
[ 5.487005] regulator_init_complete: max77663_ldo8: incomplete constraints, leaving on
[ 5.487114] regulator_init_complete: max77663_ldo4: incomplete constraints, leaving on
[ 5.487426] ## wifi_probe
[ 5.487505] wifi_set_power = 1
[ 5.487636] Powering on wifi
[ 5.547691] bq27541_get_psp status: Charging ret= 0x0181
[ 5.548334] bq27541_get_psp voltage_now= 3743000 uV
[ 5.549022] bq27541_get_capacity = 33% ret= 37
[ 5.549667] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 5.788108] wifi_set_carddetect = 1
[ 5.789424]
[ 5.789426] Dongle Host Driver, version 5.90.195.114
[ 5.789430] Compiled in drivers/net/wireless/bcmdhd on Oct 6 2013 at 05:18:02
[ 5.841239] mmc1: new high speed SDIO card at address 0001
[ 5.842094] F1 signature read @0x18000000=0x16044330
[ 5.845613] DHD: dongle ram size is set to 294912(orig 294912)
[ 5.846269] wl_create_event_handler thr:6c started
[ 5.846999] p2p0: P2P Interface Registered
[ 5.847165] dhd_attach thr:6d started
[ 5.847362] dhd_attach thr:6e started
[ 5.847507] dhd_attach thr:6f started
[ 5.847632] dhd_attach thr:70 started
[ 5.848315] Broadcom Dongle Host Driver: register interface [wlan0] MAC: 00:90:4c:11:22:33
[ 5.848472] [mmc]:mmc_rescan_try_freq:1903 mmc1: sdio completed
[ 5.848618] wifi_set_power = 0
[ 5.848690] Powering off wifi
[ 6.149074] =========== WLAN placed in RESET ========
[ 6.149307] Wake24 for irq=392
[ 6.149645] input: gpio-keys as /devices/platform/gpio-keys.0/input/input2
[ 6.164473] max77663-rtc max77663-rtc.0: setting system clock to 2014-10-06 17:56:21 UTC (1412618181)
[ 6.164731] Warning: unable to open an initial console.
[ 6.165048] Freeing init memory: 276K
[ 6.171081] SELinux: 512 avtab hash slots, 1673 rules.
[ 6.171871] SELinux: 512 avtab hash slots, 1673 rules.
[ 6.172120] SELinux: 1 users, 2 roles, 306 types, 13 bools, 1 sens, 1024 cats
[ 6.172391] SELinux: 84 classes, 1673 rules
[ 6.173483] SELinux: Completing initialization.
[ 6.173620] SELinux: Setting up existing superblocks.
[ 6.173711] SELinux: initialized (dev sysfs, type sysfs), uses genfs_contexts
[ 6.173857] SELinux: initialized (dev rootfs, type rootfs), uses genfs_contexts
[ 6.174199] SELinux: initialized (dev bdev, type bdev), not configured for labeling
[ 6.174343] SELinux: initialized (dev proc, type proc), uses genfs_contexts
[ 6.174493] SELinux: initialized (dev tmpfs, type tmpfs), uses transition SIDs
[ 6.174585] SELinux: initialized (dev debugfs, type debugfs), uses genfs_contexts
[ 6.179100] SELinux: initialized (dev sockfs, type sockfs), uses task SIDs
[ 6.179249] SELinux: initialized (dev pipefs, type pipefs), uses task SIDs
[ 6.179332] SELinux: initialized (dev anon_inodefs, type anon_inodefs), not configured for labeling
[ 6.179474] SELinux: initialized (dev devpts, type devpts), uses transition SIDs
[ 6.179621] SELinux: initialized (dev rpc_pipefs, type rpc_pipefs), not configured for labeling
[ 6.179718] SELinux: initialized (dev selinuxfs, type selinuxfs), uses genfs_contexts
[ 6.179914] SELinux: initialized (dev usbfs, type usbfs), not configured for labeling
[ 6.180056] SELinux: initialized (dev tmpfs, type tmpfs), uses transition SIDs
[ 6.180158] SELinux: initialized (dev sysfs, type sysfs), uses genfs_contexts
[ 6.652814] type=1403 audit(1412618181.980:2): policy loaded auid=4294967295 ses=4294967295
[ 6.653115] SELinux: Loaded policy from (null)
[ 6.659209] init: could not import file '/init.recovery.grouper.rc' from '/init.rc'
[ 6.672632] bq27541_get_psp status: Charging ret= 0x0181
[ 6.673293] bq27541_get_psp voltage_now= 3757000 uV
[ 6.673989] bq27541_get_capacity = 33% ret= 37
[ 6.674639] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 6.773722] SELinux: initialized (dev tmpfs, type tmpfs), uses transition SIDs
[ 6.774125] SELinux: initialized (dev tmpfs, type tmpfs), uses transition SIDs
[ 6.774625] SELinux: initialized (dev tmpfs, type tmpfs), uses transition SIDs
[ 6.774886] android_usb: already disabled
[ 6.775333] init: Unable to open persistent property directory /data/property errno: 2
[ 6.796145] EXT4-fs (mmcblk0p9): mounted filesystem with ordered data mode. Opts: nomblk_io_submit,errors=panic
[ 6.796179] SELinux: initialized (dev mmcblk0p9, type ext4), uses xattr
[ 6.857653] android_usb: already disabled
[ 6.859631] adb_open
[ 6.859640] adb_open(adbd)
[ 6.859646] adb_bind_config
[ 7.032912] Disp: diff_msec= 239
[ 7.716942] EXT4-fs (mmcblk0p4): mounted filesystem with ordered data mode. Opts: nomblk_io_submit,errors=panic
[ 7.717127] SELinux: initialized (dev mmcblk0p4, type ext4), uses xattr
[ 7.857111] cable_detection_work_handler(): vbus_active = 0 and is_active = 1
[ 7.857254] AC adapter connect
[ 7.857327] smb347_charger: [usb_det_cable_callback] usb_det_cable_type=3
[ 7.857407] elan-ktf3k 1-0010: Update power source to 1
[ 13.317070] USB compliant charger detected
[ 43.197079] shutdown_enable_set bq27541_device->shutdown_disable = 0
[ 63.677889] [charger] Disable AICL, retval=93 setting=83
[ 63.678274] [charger] set cahrger limmit, limit=1800 retval =73 setting=76
[ 63.678713] [charger] re-enable AICL, setting=93
[ 65.757711] bq27541_get_psp status: Charging ret= 0x0181
[ 65.758420] bq27541_get_psp voltage_now= 3765000 uV
[ 65.759062] bq27541_get_capacity = 33% ret= 37
[ 65.759761] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 125.917732] bq27541_get_psp status: Charging ret= 0x0181
[ 125.918384] bq27541_get_psp voltage_now= 3766000 uV
[ 125.919080] bq27541_get_capacity = 33% ret= 37
[ 125.919724] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 186.077800] bq27541_get_psp status: Charging ret= 0x0181
[ 186.078448] bq27541_get_psp voltage_now= 3767000 uV
[ 186.079142] bq27541_get_capacity = 32% ret= 36
[ 186.079787] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 246.237792] bq27541_get_psp status: Charging ret= 0x0181
[ 246.238502] bq27541_get_psp voltage_now= 3768000 uV
[ 246.239143] bq27541_get_capacity = 32% ret= 36
[ 246.239844] bq27541_get_psp temperature= 310 (0.1¢XC)
[ 280.387111] gpio_keys: Pressed KEY_POWER
[ 280.453076] EXT4-fs (mmcblk0p3): mounted filesystem with ordered data mode. Opts:
[ 280.453178] SELinux: initialized (dev mmcblk0p3, type ext4), uses xattr
[ 280.627074] gpio_keys: Released KEY_POWER
[ 282.237089] gpio_keys: Pressed KEY_VOLUMEDOWN
[ 282.387084] gpio_keys: Released KEY_VOLUMEDOWN
[ 282.517075] gpio_keys: Pressed KEY_POWER
[ 282.712011] SysRq : Emergency Remount R/O
[ 282.716962] EXT4-fs (mmcblk0p4): re-mounted. Opts: (null)
[ 282.717259] Emergency Remount complete
[ 282.747065] gpio_keys: Released KEY_POWER
[ 282.817078] max77663-rtc max77663-rtc.0: rtc_shutdown: clean alarm
[ 282.846045] bq27541_shutdown +
[ 282.846179] bq27541_shutdown -
[ 282.847449] smb347_shutdown+
[ 282.849564] smb347_shutdown-
[ 282.849761] Restarting system.
[ 282.849894]
[ 282.849966] Restarting Linux version 3.1.10-g30c5396 (hudson@koushik-lion) (gcc version 4.7 (GCC) ) #1 SMP PREEMPT Sun Oct 6 05:18:12 PDT 2013
[ 282.849974]
No errors detected
The crash.log was generated after I rebooted from crash.
Please let me know if there is anything else I can do. For now I am going to try installing the latest Paranoid (grouper) rom and see if I can replicate.
Thank you.
Using Wugs Toolkit I flashed N7-2012 back to stock 4.2 Flashed Recovery with latest CWM Copied over to N7: Paranoid rom, microGAPPS 4.4.4, SuperSu 2.02, nethunter.zip Using CWM I installed Paranoid Rom (pa_grouper-4.6-BETA3-20141002.zip) rebooted back to CWM, installed microGAPPS rebooted back to CWM, installed Nethunter.zip, then installed SuperSU
Launched KaliMenu Chose option 6 (exploit tools) Chose option 1 (Metasploit) It took about 4 minutes then began creating the folders or whatever it does upon first launch. I turned my head away for a minute and then noticed that the device had rebooted. I tried to access KaliMenu again, but there was an error about not being able to mount (sorry should have written it down)
I rebooted device again, and was able to get into kali chroot.
For Paranoid Rom, here is output of: su cat /proc/last_kmsg >> /sdcard/crash.log
So far I have tested Nethunter with Dirty Unicorns 4.4.4, Spirit Rom, and now Paranoid. For the most part things seems to work with basic testing: (launch kalimenu, try wifite, recognize tplink adapter, but I am having issues with msfconsole)
Update: Still using Paranoid Rom, I rebooted device again and was able to successfully launch msfconsole. I then ran msfupdate from console and updated metasploit and frameworks with no issues. I then exited from msfconsole and launched msfconsole again: the device rebooted itself within 1 minute. Upon reboot, I launched KaliMenu and got this error/output:
Loaded Kali shell chroot: can't change root directory to '/data/local/kali-armhf': Operation not permitted 1|u0_a68@grouper:/ $ kalimenu /system/bin/sh: kalimenu: not found 127|u0_a68@grouper:/ $
After rebooting again, Kalimenu worked.
Here is output of crash.log https://pastie.se/e8e5c6cf
I'm wondering if it's running out of memory (postgresql). I'd like to try changing /system/bin/bootkali:
$busybox sysctl -w kernel.shmmax=468435456
Maybe increasing max closer to 500mb instead of 268mb...otherwise it seems to be a cpu/memory issue.
Another thing to try is running htop in a separate terminal to see how much of the memory is being used.
I have since installed Mahdi 2.8 Rom. http://forum.xda-developers.com/showthread.php?t=2581061
I am able to access msfconsole without crashing. I dont know if this is relevant but I upgraded metasploit (apt-get upgrade) first before doing the initial launch from the Kalimenu. I have kept msfconsole open for over 10 minutes and still no crash.
It may very well be that it is based off of Cyanogenmod. The kernel may not be completely compatible, maybe causing some of the issues you're having.
I have the same issue here when i try to get on GUI of metasploit pro web interface . I start postgresql in terminal , and when i go to browser to log into metasploit pro , i put username and password and after a few seconds my nexus 7 (2012) crash and restart . when it restarts , but SU permissions on programs are not allowed , to fix that i have to shutdown the tablet and start again .
update i can get into msfconsole using the terminal , i start everything manually , postgresql and metasploit services
http://s16.postimg.org/r6fm9qamd/msfconsole.png
however , if i try to use the GUI from pro version i can get into login and after that the tablet crash . Alternative to that i try armitage using the vnc connection http://s16.postimg.org/cszny2on9/armitage1.png
after a log wait (like always) to armitage popup , the tablet crash and restart . note , i started all metasploit services in kali session
my guess is that issue may be cause due the fact of lack of internal RAM on the device to handle the charge .
Yes, this is most likely a RAM issue as the N7 2012 is a bit older (1 gb ram).
I have same problem as Op, except for im useing nexus 10 32gb tablet kitkat4.4.4 fresh install nethunter via windows installer. it dos the same thing as Op
I dont know what going on but i see somthing said bout a better rom is there a better rom then what i have now i guess is kitkat. only thing really from differnt from Op an Me is i have been able to open armitage only for it to freeze on me ,while trying it out for 30 secs,will be looking anywhere i can for solution about this problem i bought this nexus10 just for nethunter, I may have to get a oneplus but if nethunter is not going to run on a nexus10 idk if oneplus going to do it. Iwill post a log if it will,and any thing else error wise or usefull thst i can much help always appreciated thanks.
cr1p70 - I'm not sure if changing ROMs would help, but if you have crash logs it might give some indication to the issue at hand. After a reboot/crash just go into terminal and type:
cat /proc/last_kmsg > /sdcard/crashlog.txt
The Nexus 10 has 2gb of RAM so should have a better chance of handling larger apps than the Nexus 7 (2012).
Thanks binkybear for quick reply here is the crash log.
[ 0.000000] Booting Linux on physical CPU 0
[ 0.000000] Initializing cgroup subsys cpu
[ 0.000000] Linux version 3.4.39-g05e922f (root@fringe) (gcc version 4.7 (GCC) ) #1 SMP PREEMPT Sat Jan 3 09:15:43 EST 2015
[ 0.000000] CPU: ARMv7 Processor [410fc0f4] revision 4 (ARMv7), cr=10c5387d
[ 0.000000] CPU: PIPT / VIPT nonaliasing data cache, PIPT instruction cache
[ 0.000000] Machine: Manta
[ 0.000000] Initialized persistent memory from a0000000-a01fffff
[ 0.000000] ion_reserve: ion_chunk_heap reserved base 90000000 size 268435456
[ 0.000000] Memory policy: ECC disabled, Data cache writealloc
[ 0.000000] CPU EXYNOS5250 (id 0x43520210)
[ 0.000000] S3C24XX Clocks, Copyright 2004 Simtec Electronics
[ 0.000000] clkout: bad source 0
[ 0.000000] EXYNOS5: PLL settings, A=1000000000, B=1333090909, C=333000000
[ 0.000000] M=1600000000, E=96000000, V=300000000, G=533000000
[ 0.000000] EXYNOS5: ARMCLK=1000000000, CDREX=800000000, ACLK400=533000000
[ 0.000000] ACLK333=333000000, ACLK266=266666666, ACLK200=200000000
[ 0.000000] ACLK166=166500000, ACLK66=66666666
[ 0.000000] sclk_fimd: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_g3d: source is mout_mpll_user (0), rate is 800000000
[ 0.000000] sclk_gscl_wrap0: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_gscl_wrap1: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_bayer: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_cam0: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_cam1: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_jpeg: source is ext_xtal (0), rate is 24000000
[ 0.000000] sclk_usbdrd30: source is mout_mpll (0), rate is 66666666
[ 0.000000] PERCPU: Embedded 7 pages/cpu @c1d02000 s7744 r8192 d12736 u32768
[ 0.000000] Built 1 zonelists in Zone order, mobility grouping on. Total pages: 519938
[ 0.000000] Kernel command line: vmalloc=512M debug_core.break_on_panic=0 debug_core.break_on_exception=0 no_console_suspend s3c2410-wdt.tmr_atboot=1 s3c2410-wdt.tmr_margin=30 wire.search_count=5 s3cfb.bootloaderfb=0x60000000 androidboot.bootloader=MANTAMF01 androidboot.serialno=R32D30227BM androidboot.wifimacaddr=A8:06:00:C3:75:B7 androidboot.btmacaddr=A8:06:00:C3:75:B6 androidboot.mode=charger
[ 0.000000] PID hash table entries: 2048 (order: 1, 8192 bytes)
[ 0.000000] Dentry cache hash table entries: 65536 (order: 6, 262144 bytes)
[ 0.000000] Inode-cache hash table entries: 32768 (order: 5, 131072 bytes)
[ 0.000000] allocated 4192256 bytes of page_cgroup
[ 0.000000] please try 'cgroup_disable=memory' option if you don't want memory cgroups
[ 0.000000] Memory: 2047MB = 2047MB total
[ 0.000000] Memory: 1121672k/1121672k available, 974456k reserved, 648576K highmem
[ 0.000000] Virtual kernel memory layout:
[ 0.000000] vector : 0xffff0000 - 0xffff1000 ( 4 kB)
[ 0.000000] fixmap : 0xfff00000 - 0xfffe0000 ( 896 kB)
[ 0.000000] vmalloc : 0xdf800000 - 0xff000000 ( 504 MB)
[ 0.000000] lowmem : 0xc0000000 - 0xdf000000 ( 496 MB)
[ 0.000000] pkmap : 0xbfe00000 - 0xc0000000 ( 2 MB)
[ 0.000000] modules : 0xbf000000 - 0xbfe00000 ( 14 MB)
[ 0.000000] .text : 0xc0008000 - 0xc0a83000 (10732 kB)
[ 0.000000] .init : 0xc0a83000 - 0xc0ac0e40 ( 248 kB)
[ 0.000000] .data : 0xc0ac2000 - 0xc0b594b8 ( 606 kB)
[ 0.000000] .bss : 0xc0b594dc - 0xc0cf4cd0 (1646 kB)
[ 0.000000] SLUB: Genslabs=11, HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1
[ 0.000000] Preemptible hierarchical RCU implementation.
[ 0.000000] NR_IRQS:597
[ 0.000000] sched_clock: 32 bits at 24MHz, resolution 41ns, wraps every 178956ms
[ 0.000047] Calibrating delay loop... 997.78 BogoMIPS (lpj=2494464)
[ 0.030031] pid_max: default: 32768 minimum: 301
[ 0.030155] Security Framework initialized
[ 0.030177] SELinux: Initializing.
[ 0.030327] Mount-cache hash table entries: 512
[ 0.031042] Initializing cgroup subsys debug
[ 0.031054] Initializing cgroup subsys cpuacct
[ 0.031062] Initializing cgroup subsys memory
[ 0.031092] Initializing cgroup subsys freezer
[ 0.031128] CPU: Testing write buffer coherency: ok
[ 0.031250] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000
[ 0.031280] hw perfevents: enabled with ARMv7 Cortex-A15 PMU driver, 7 counters available
[ 0.031321] Setting up static identity map for 0x408379b8 - 0x40837a10
[ 0.085612] CPU1: Booted secondary processor
[ 0.111267] CPU1: thread -1, cpu 1, socket 0, mpidr 80000001
[ 0.111305] CPU1: Unknown IPI message 0x1
[ 0.111417] Brought up 2 CPUs
[ 0.111426] SMP: Total of 2 processors activated (1995.57 BogoMIPS).
[ 0.121290] gpiochip_add: registered GPIOs 0 to 7 on device: GPA0
[ 0.121302] gpiochip_add: registered GPIOs 9 to 14 on device: GPA1
[ 0.121312] gpiochip_add: registered GPIOs 16 to 23 on device: GPA2
[ 0.121322] gpiochip_add: registered GPIOs 25 to 29 on device: GPB0
[ 0.121332] gpiochip_add: registered GPIOs 31 to 35 on device: GPB1
[ 0.121342] gpiochip_add: registered GPIOs 37 to 40 on device: GPB2
[ 0.121351] gpiochip_add: registered GPIOs 42 to 45 on device: GPB3
[ 0.121360] gpiochip_add: registered GPIOs 47 to 53 on device: GPC0
[ 0.121370] gpiochip_add: registered GPIOs 55 to 58 on device: GPC1
[ 0.121379] gpiochip_add: registered GPIOs 60 to 66 on device: GPC2
[ 0.121388] gpiochip_add: registered GPIOs 68 to 74 on device: GPC3
[ 0.121398] gpiochip_add: registered GPIOs 76 to 79 on device: GPD0
[ 0.121407] gpiochip_add: registered GPIOs 81 to 88 on device: GPD1
[ 0.121416] gpiochip_add: registered GPIOs 90 to 95 on device: GPY0
[ 0.121426] gpiochip_add: registered GPIOs 97 to 100 on device: GPY1
[ 0.121435] gpiochip_add: registered GPIOs 102 to 107 on device: GPY2
[ 0.121444] gpiochip_add: registered GPIOs 109 to 116 on device: GPY3
[ 0.121454] gpiochip_add: registered GPIOs 118 to 125 on device: GPY4
[ 0.121463] gpiochip_add: registered GPIOs 127 to 134 on device: GPY5
[ 0.121472] gpiochip_add: registered GPIOs 136 to 143 on device: GPY6
[ 0.121481] gpiochip_add: registered GPIOs 145 to 151 on device: GPC4
[ 0.121490] gpiochip_add: registered GPIOs 153 to 160 on device: GPX0
[ 0.121499] gpiochip_add: registered GPIOs 162 to 169 on device: GPX1
[ 0.121509] gpiochip_add: registered GPIOs 171 to 178 on device: GPX2
[ 0.121518] gpiochip_add: registered GPIOs 180 to 187 on device: GPX3
[ 0.121533] gpiochip_add: registered GPIOs 189 to 196 on device: GPE0
[ 0.121542] gpiochip_add: registered GPIOs 198 to 199 on device: GPE1
[ 0.121551] gpiochip_add: registered GPIOs 201 to 204 on device: GPF0
[ 0.121560] gpiochip_add: registered GPIOs 206 to 209 on device: GPF1
[ 0.121569] gpiochip_add: registered GPIOs 211 to 218 on device: GPG0
[ 0.121579] gpiochip_add: registered GPIOs 220 to 227 on device: GPG1
[ 0.121588] gpiochip_add: registered GPIOs 229 to 230 on device: GPG2
[ 0.121597] gpiochip_add: registered GPIOs 232 to 235 on device: GPH0
[ 0.121606] gpiochip_add: registered GPIOs 237 to 244 on device: GPH1
[ 0.121620] gpiochip_add: registered GPIOs 246 to 253 on device: GPV0
[ 0.121629] gpiochip_add: registered GPIOs 255 to 262 on device: GPV1
[ 0.121638] gpiochip_add: registered GPIOs 264 to 271 on device: GPV2
[ 0.121647] gpiochip_add: registered GPIOs 273 to 280 on device: GPV3
[ 0.121656] gpiochip_add: registered GPIOs 282 to 283 on device: GPV4
[ 0.121668] gpio: GPZ has no PM function
[ 0.121675] gpiochip_add: registered GPIOs 285 to 291 on device: GPZ
[ 0.121881] dummy:
[ 0.122090] NET: Registered protocol family 16
[ 0.122168] Registered FIQ tty driver
[ 0.122200] Last reset was software reset (RST_STAT=0x20000000)
[ 0.124003] Manta HW revision: 8, CPU EXYNOS5250 Rev1.0
[ 0.127475] console [ttyFIQ2] enabled
[ 0.127560] Registered fiq debugger ttyFIQ2
[ 0.127859] persistent_ram: found existing buffer, size 152282, start 152282
[ 0.185989] console [ram-1] enabled
[ 0.187585] bootloader fb located at 60000000-60F9FFFF
[ 0.187704] Registered chained gpio int handler for interrupt 77.
[ 0.187790] Registered interrupt support for gpio group 19.
[ 0.189853] hw-breakpoint: found 5 (+1 reserved) breakpoint and 4 watchpoint registers.
[ 0.189923] hw-breakpoint: maximum watchpoint size is 8 bytes.
[ 0.190156] S3C Power Management, Copyright 2004 Simtec Electronics
[ 0.190429] EXYNOS5250 PMU Initialize
[ 0.191330] EXYNOS: Initializing architecture
[ 0.191721] s3c24xx-pwm s3c24xx-pwm.0: tin at 33333333, tdiv at 33333333, tin=divclk, base 0
[ 0.191901] s3c24xx-pwm s3c24xx-pwm.1: tin at 16666666, tdiv at 16666666, tin=divclk, base 8
[ 0.199653] bio: create slab
No errors detected Last reset was software reset (RST_STAT=0x20000000)
Also when inside msf: show exploits it will load them, then freeze up and screen goes black have to hold power down for reboot. every now and then i can get it to load up and play around with metasploit but so far only about 5mins uptime before it freeze (only sometimes) most times within 1 min or 2 ,and i get frustrated and set it down for awhile and try again search for solutions.
basically what happen to cr1p70 it happens to me , launching msfconsole and playing with it is not for much time . however , i did not yet try to look up for the crash report , i will try it when i get time here , and if i found any error in the crash then i will post it here .
i fixed my issue with my N10 as doing same thing, don't know if it will apply to N7 but here is how i did it, read the thread may give you some idea. hope it helps. https://github.com/offensive-security/kali-nethunter/issues/176
Notice when loading msfconsole that device will crash, screen goes blank and I need to long press power to restart device. Upon fresh restart I was able to finally load msfconsole, however device crashed within 5 mintues.
Using Spirit Rom 4.4.4
Is there a prefered/optimal rom to use with Nethunter?