Asking for posterity,
what are the P/Ns of each module?
I found that I had to hold mine in place while I was reading itThanks to @Ryan J. Geyer, @l88m22vette and others for sharing info. Thought I'd practice reading the immobilizer on a spare 2008 3.0 ECU so ordered this FT232H breakout and clip from Amazon. However after lining up the clip and releasing the spring handle it just slips upwards and right over the chip. IC405 is very close to the PCB with everything covered in some sort of presumably protective lacquer. My photo below doesn't look too much different to the photo in post #6. Is there any trick to attaching this clip ?
View attachment 509459
Based on my other reading, it seems it is a challenge and response. My understanding is that the crypto probably involves:The ECM initiates the handshake by sending an 8 byte packet beginning with 0x07, 0x00 in the first two bytes. The rest of the bytes are unique for each handshake.
If the BIU has not authenticated a key (which would have happened on keysense, before this dedicated handshake), it will return a 9 byte packet beginning with 0x08, and ending with 0x30, 0x38. The ECM will respond in kind, and the handshake terminates. The handshake will initiate each time the ignition is turned on until a valid key is authenticated.
If the BIU has authenticated a key, it will respond with a 9 byte packet beginning with 0x08, 0x00 in the first two bytes. The rest of the bytes are unique for each handshake.
If the two unique payloads sent by the BIU and the ECM "match" (no idea what determines this yet), the remaining sequence is always the same. The BIU and ECM exchange 3 messages, with matching bytes, presumably completing the handshake.
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D EE 0 33 1 DD 3E FE
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D 4 0 26 0 0 0 3D E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D E 0 33 0 1 80 DD 3E FE
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D 6E C0 3 0 0 79 F7 E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D 2A 0 48 5 40 DD 3E FE
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D EE 1 0 0 0 40 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D 66 0 22 1 40 DD 3E FE
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D AE 80 19 2 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D E 0 33 0 1 80 DD 3E FE
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D 6E C0 3 0 0 79 F7 E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 D 2A 0 48 5 40 DD 3E FE
ECU: 7 1 0 0 0 0 0 8
IMM: 8 1 0 0 0 0 0 0 9
ECU: 7 1 0 0 0 0 0 8
IMM: 8 1 0 0 0 0 0 0 9
ECU: 7 1 0 0 0 0 0 8
IMM: 8 1 0 0 0 0 0 0 9 9 0 0
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 0 26 2A 60 5E CF E4
IMM: 8 0 0 0 0 0 0 30 38
ECU: 7 1 0 0 0 0 0 8
IMM: 8 1 0 0 0 0 0 30 39
ECU: 7 1 0 0 0 0 0 8
IMM: 8 1 0 0 0 0 0 30 39
ECU: 7 1 0 0 0 0 0 8
IMM: 8 1 0 0 0 0 0 30 39 0 0 0