Alcatel:
Alcatel HD1, HE1: 25228353
Alcatel BE1, BE3: 25228352
Alcatel BE4, BE5: 83227423
*#06# Show IMEI & SW version
000000* Entering in Engineering Menu1 (with SIM)
###874# Reset to Factory Defaults (with SIM)
###765*02# Add Barring Groups
###765*05# Locking to Network
###765*07# Unlocking from Network
###765*08# Erase Network
###765*78# Deactivate Barring Groups
0123456789 Menu2 Code - BE4 Menu2 - turn long CALL in Maenu1
*#0048# Fast change language (h)
*#0049# Fast change language (Deutsch)
Bosch:
*#06# IMEI (INTERNATIONAL MOBILE EQUIPMENT IDENTITY)
*#0000# Language automaticaly (reset to english)
*#3370# Enhaced Full Rate
*#3370# Reset the phone
*#9000# enter sim lock code
*#9001# enter the corporate code (Bosch 908)
*#9002# enter the provider code (Bosch 908)
*#9003# enter the network code
*#9004# enter the subset code
*#9100# remove the sim lock permanently
*#9101# remove the corporate lock permanently
*#9102# remove the provider lock permanently
*#9103# remove the network lock permanently
*#9104# remove the subset lock permanently
*#3262255*8378# (*#DANCALL*TEST#) hidden 10th menu
Dancall:
*#06# IMEI
*#9999# firmware
*#9998# configuration
*#9997# selftest
*#9994# serial number (DANCALL HP 2731)
*#9993# adding "Engineering functions"
*#9990# battery monitor
M1599955 time to discharge
*#9000# SIM Lock
*#9001# Group SIM Lock
*#9002# Operator SIM Lock
*#9003# Network SIM Lock
Ericsson:
*#06# IMEI
<**< lock menu
>*<<*<* service menu
*#0000# fast english menu
**04*0000*0000*0000# menu without SIM
GA628
*#103# YES date and time
Hagenuk:
*#06# IMEI
##9140*83#75*2# soft version
LG:
*6861# factory reset
*8375#
#668#
*#3646633#
*0#
*3241#
*3240#
*0008# language
*0009# language
*0000# language
*7674#
*76863#
*77463#
*72337#
*79763#
*7245786# check read FFS
*762442# GVCMMI Magic
###765*02#
###765*05#
###765*08#
###765*07#
###765*78#
1945#*5101# sim lock menu
2945#*5100#
Maxon:
*#9900# - Software Version
*#9901# - Software Version (PBatch)
*#9911# - L1 Debug on/off
*#9915# - Back to defauld
*#9916# - Text (scroll up/down)
*#9917# - Lock status
*#9922# - Enter Menu
*#9934# - Bd config
*#9935# - FC init
*#9936# - TOC init
*#9937# - Discharging battery
*#9940# - Pins
*#9941# - Testsignal
*#9953# - Phone off
*#9957# - Select 2-3 Menu lines
*#9958# - Watch stop
*#9959# - Watch start
*#9960# - Contrast set
*#9962# - SMS Menu
*#9988# - Tetris Play
*#9999# - Oem Id
Motorola:
*#06# IMEI
in permament test mode
(* hold 2 sec)
***113*1*[OK] net monitor
T205/T19x (ACER)
*#300# OK List the Software and Hardware version
*#301# OK Full Keypads functional Test
*#303# OK Set Default Language to English
*#304# OK Set OFF engineering mode
#304*19980722# OK Set ON engineering mode
*#305# OK Location: 1 OK
*#307# OK Engineering Test Mode
*#311# OK Phone code changed to default code
*#400# OK ADC, Cal val*
*#402# OK Adjust Display Intensity / Contrast
*#403# OK List the Manufacturing Informations
19980722 OK Master Unlock code for Phone and Sim Lock
*#302# OK Acoustic test*
7.1 Greeting
7.2 Main VlmGain
7.3 Input Cal
7.4 Output Cal
7.5 Side In Gain
7.6 Vox Gain
7.7 Min Mic Engy
7.8 More
(a) In Vlm Gain
(cool.gif Aux Vlm Gain
© Silence Prd
(d) Supp Prd
(e) In Volume
(f) Out Volume
(g) Icon
(h) Image
(i) Animation
*3370# EFR ON (enhanced full rate)
#3370# ERF OFF
*#72837726# OK Confirm ?, Data saver
1234 OK Phone code default
*#0000# OK Setting saved, restore set phone do default language
*#0048# OK Fast change h langpack
*#0007# OK Fast change russian langpack
MOTOROLA 3xx
*#06# and quick 'menu-key' and 048263* (Push the key quickly!)
and entering at field "OPTCODE" you must try several times.
If not working try with MOTO TEST CARD inserted.
Security code - 32*118*1*0*0
Model - 32*279*1*0*8
Flex ver - 32*383*1*0*0
Master Reset - 18*0
Master Clear - 18*1
Set band GSM 900 - 10*0*3
Set band DCS 1800 - 10*0*4
Set band PCS 1900 - 10*0*5
Set dual band GSM 900/1800 - 10*0*6
Read band - 10*1*0 => 3-GSM, 4-DCS, 5-PCS, 6-GSM/DCS
User code - 32*116*1*0*0 /coded:00310032003300340000 - 1234/
Read imei - 32*4*1*0*0 "OK" /coded:083a05092700247709 - 350907200427799/
47*4*1*0*9*081A32547698103254 => IMEI=123456789012345
it is possible to change IMEI
NEC:
*#06# IMEI
*73738# (send?) Reset to defaults
*#2820# Software version
SP Lock info
*#3210# (send?) for Sim lock info
*#8140# (send?) for Net lock info
[password is an 8 digits number]
Sim Lock
*#4960# (send?) - Inquiry * 4969 * password * password # (send?)
Net Lock
*#7320# (send?) - Inquiry * 7320 * password * password # (send?)
Net Lock 2
*#2220# (send?) - Inquiry * 2220 * password * password # (send?)
Subnet Lock
*#1110# (send?) - Inquiry * 1110 * password * password # (send?)
Nokia:
*#06# IMEI
*#0000# view Software Version
*#746025625# [*#sim0clock#]
*#92702689# [*#war0anty#] secret menu:
1. Displays Serial Number
2. Displays the Month and Year of Manufacture (0997)
3. Displays (if there) the date where the phone was purchased
4. Displays the date of last repairment - if found (0000)
5. Makes you capebel of transferring user data
6. Shows how many hours the phone has been on
*3370# Enhanced Full Rate Codec (EFR) activation
#3370# Enhanced Full Rate Codec (EFR) deactivation
*4370# Half Rate Codec activation
#4370# Half Rate Codec deactivation
xx# - xx position in Phone Book
NOKIA 9000
*#06# IMEI
*#682371158412125# soft version
*#3283# prod. date
NOKIA 7650
*#7979# phone reset
*#7470# hard reset
*#7370# master reset (like new phone)
Panasonic:
*#06# IMEI
*#9999# (first 10 sec after power on) soft date
746, MENU, MENU lock condition
Philips:
*#06# IMEI
*#2254*# Status register: C,BS,RR,MMI,CREAT
*#2255*# activate and deactivate the "DEBUG CALL" -Mode;
when activated,make a call to busy line an the phone will display
some hex codes on the display
*#2558*# the time in days, hours and minutes you are connected to the net
*#2562*# not clear; the phone reconnect to the net
*#2565*# not clear; warmstart ?
*#3333*# (NO) blocking -list (15 items)
*#2377*# "BEER" : not cler the phone waits a random time and reconnect to net,
sometimes make reset
*#3377*# Init , Flags , SIM LOCK
*#3353*# reset the (NO) BLOCKING list
*#7378*# Name, Lenght,SIM phase
*#7489*# Security Code
*#7693*# you can activate and deactivate the Sleep Menu
(when deactivated the battery will go down!)
*#7787*# not clear: Spurious Interrupt
*#7948*# Switch Off: not clear: it is a timer or something
*#8463*# Some information about the SLEEP MODE:
Wake, Sleep Req., Sleep
GENIE (TCD838)
*#2337*# and it will be activate the beep signal
when the phone reconnected to the net.
FIZZ
*#8377*# software version
*#1234# or *#7489# Security code
*#5644*# software version (enlarge)
*#8377*# simlock status
OZEO
*#5187*# L1TR
*#3877*# hanging mobile for a while
*#7826*# master reset
*#7626*# ?
*#7462*# to SIM PHASE 2
*#7676*# ?
Sagem:
*#06# IMEI
in main menu press * for HOT MENU:
lcd, led, vibra, tests, imei, software versions, battery voltage
Type MENU - 5 - 1 - 1 - # to enter Engineering Menu
Samsumg:
*#06# Show IMEI
*#9999# Show Software Version
*#0837# Show Software Version (instructions)
*#0001# Show Serial Parameters
*#9125# Activates the smiley when charging
*#0523# LCD Contrast
*#9998*228# Battery status (capacity, voltage, temperature)
*#9998*246# Program status
*#9998*289# Change Alarm Buzzer Frequency
*#9998*324# Debug Screens
*#9998*364# Watchdog
*#9998*377# EEPROM Error Stack - Use side keys to select values
*#9998*427# Trace Watchdog
*#9998*523# Change LCD contrast
*#9998*544# Jig detect
*#9998*636# Memory status
*#9998*746# SIM File Size
*#9998*778# SIM Service Table
*#9998*785# RTK (Run Time Kernel) errors - if ok then phn is reset,
info is put in memory error
*#9998*786# Run, Last UP, Last DOWN
*#9998*837# Software Version
*#9998*842# Test Vibrator - Flash the screenlight during 10 sec
and vibration activated
*#9998*862# Vocoder Reg - Normal, Earphone or Carkit
*#9998*872# Diag
*#9998*947# Reset On Fatal Error
*#9998*999# Last/Chk
*#9998*9266# Yann debug screen (Debug Screens?)
*#9998*9999# Software version
*0001*s*f*t# Changes serial parameters (s=?, f=0.1, t=0.1)
*0002*?# unknown
*0003*?# unknown
FOR NEW SGH (R210, T100, A300...)
if code is in format *#9998*xxx#
try write in this *#0xxx#
SGH-600
SGH-2100
*2767*3855# Full EEPROM Reset (THIS CODE REMMOVES SP-LOCK!
but also changes IMEI to 447967-89-400044-0
*2767*2878# Custom EEPROM Reset
SGH E700
*2767*688# remove USER CODE and SIMLOCK
SGH V200
Unlocking:
Power on the phone without SIM card and type these codes:
*2767*63342# and press green button
*2767*3855# and press green button
*2767*2878# and press green button
*2767*927# and press green button
*2767*7822573738# press button
Phone will be unlocked, but all trims are reseted !!!
Mobile phone must be fully charged
SGH S500
Unlocking
*2767*MVT# (*2767*688#) E2P MVT Reset
*#SIMLOCK# (*#7465625#)
Sharp:
*01763*8371# check software version type
Siemens:
*#06# IMEI
*#0606# sim lock status
*#0003*(secret code 8 digits)# - SP unlock
*#0000# then Green button - Reset language to automatic selection
S40
*#337# - reset (without simcard)
*#06# - Soft version (with simcard) long right switch
Sony:
*#7465625*12*12345678#, 7465625 means SIMLOCK and 12345678 is number
that you get from the unlock program
For SIM code: *#7465625*XX*(8-digit received SIMcode)#
XX can be:
12 for NCK lock
22 for Provider lock
32 for Network lock
42 for SIM code lock
52 for Subset lock
62 for Corporate lock
72 for IMSI personal
99 for IMSI range
For WAP code: *#9275625*11*(8-digit received WAP code)#
*#06# IMEI number
*#00xx# Changes language (xx is your country code)
*#0000000# Resets language to auto selection
*#8378 *#TEST Reset your phone
*#7465625# *#simlock# -> Displays SIM lock status
*#7353273# *#release# -> Display firmware version
*#39482633# *#EXITCODE# -> Shows phone latest failure causes
*#78737322867973738# *#superfactoryreset#
-> Reset personal data (remove SIM card first)
*#73287489263373738# *#securitycodereset#
-> Reset security code to 0000 (remove SIM card first)
*#8654# Test phones keystroke
*#77343# *#PREGE# -> Activates MONITOR MODE on J5/J6
*#7669666# *#SONYMON# -> Activates MONITOR MODE on J7/70/27
*#275781# *#ASKRT1# -> Still unknown
*09*(PIN code)# -> Turns PIN code on
#09*(PIN code)# -> Turns PIN code off
Sony Ericsson:
NOTE: "<" dan ">" ialah joystick yg digerakkan ke "kiri" dan ke "kanan"
IMEI number: * # 0 6 #
Software version: > * < < * < *
Default Language: <>
Lock to network < * * <
Trium:
hold * 4329 Net Monitor1
hold * 621342 Net Monitor2
hold * 5472 M4 Testmode
hold * 5806 SW version
hold * 5807 HW version
hold * 936505 SW and HW version
hold * 476989 NS Lock Menu
hold * 482896 CP Lock Menu
hold * 574243 NS Lock Menu
hold * 967678 SP Lock Menu
hold * 362628 IMSI Lock Menu
hold * 787090 Lock net.level
hold * 787292 Lock net.level
hold * 3926 Shut Down...
*#0048# fast change h langpack
*0000# automatic language
*850696 Warmstart
Eclipse:
hold * 65512890 eeprom reset - cure for hangs ect.
Smartphoneware Best Torch v1.01 S60
Smartphoneware Best Torch v1.01 S60
Have you forgot a torch? Or you haven't thought about it at all and suddenly found yourself in some dark place? BestTorch will easily cope with this problem!

Compatible devices:
Nokia 6630, Nokia 6260, Nokia 6600,
Nokia 6620, Nokia 6670, Nokia 6680/6681/6682,
Nokia 3230, Nokia 3650/3600, Nokia 3660/3620,
Nokia 7610, Nokia 7650, Nokia N-Gage [QD],
Panasonic X700, Panasonic X800, Samsung SGH-D730,
Sendo X, Siemens SX1, Nokia N70
Download Link
Mirror Link
Have you forgot a torch? Or you haven't thought about it at all and suddenly found yourself in some dark place? BestTorch will easily cope with this problem!

Compatible devices:
Nokia 6630, Nokia 6260, Nokia 6600,
Nokia 6620, Nokia 6670, Nokia 6680/6681/6682,
Nokia 3230, Nokia 3650/3600, Nokia 3660/3620,
Nokia 7610, Nokia 7650, Nokia N-Gage [QD],
Panasonic X700, Panasonic X800, Samsung SGH-D730,
Sendo X, Siemens SX1, Nokia N70
Download Link
Mirror Link
Sunday, October 17, 2010
Smartphoneware Best Torch v1.01 S60
Smartphoneware Best Torch v1.01 S60
Have you forgot a torch? Or you haven't thought about it at all and suddenly found yourself in some dark place? BestTorch will easily cope with this problem!
Compatible devices:
Nokia 6630, Nokia 6260, Nokia 6600,
Nokia 6620, Nokia 6670, Nokia 6680/6681/6682,
Nokia 3230, Nokia 3650/3600, Nokia 3660/3620,
Nokia 7610, Nokia 7650, Nokia N-Gage [QD],
Panasonic X700, Panasonic X800, Samsung SGH-D730,
Sendo X, Siemens SX1, Nokia N70
Download Link
Mirror Link
Have you forgot a torch? Or you haven't thought about it at all and suddenly found yourself in some dark place? BestTorch will easily cope with this problem!
Compatible devices:
Nokia 6630, Nokia 6260, Nokia 6600,
Nokia 6620, Nokia 6670, Nokia 6680/6681/6682,
Nokia 3230, Nokia 3650/3600, Nokia 3660/3620,
Nokia 7610, Nokia 7650, Nokia N-Gage [QD],
Panasonic X700, Panasonic X800, Samsung SGH-D730,
Sendo X, Siemens SX1, Nokia N70
Download Link
Mirror Link
Championship Manager 2006 Mobile
Championship Manager 2006 Mobile
Playing as manager of your chosen team, can you get to the top and stay there?
Featuring the latest facts & stats from the English game, with a highly-developed match engine playing out the fixtures each week, only you can decide the tactics to defeat the big teams.
There's an extensive information database. You'll have to decide tactics for formation, style of play, aggression and gamesmanship — and what about those late substitutions?
Be sure to keep the Board, supporters, squad and media ratings at acceptable levels to avoid the sack. Let's see if you've got what it takes to come out on top!
Download Link
Mirror Link
Playing as manager of your chosen team, can you get to the top and stay there?
Featuring the latest facts & stats from the English game, with a highly-developed match engine playing out the fixtures each week, only you can decide the tactics to defeat the big teams.
There's an extensive information database. You'll have to decide tactics for formation, style of play, aggression and gamesmanship — and what about those late substitutions?
Be sure to keep the Board, supporters, squad and media ratings at acceptable levels to avoid the sack. Let's see if you've got what it takes to come out on top!
Download Link
Mirror Link
Ringtone & SMS Alert (Bundle Pack)
TRIBUTE TO ELLA
1. Site of The World - Various Artists
2. Kasih - Phlowtron
3. Kitalah Bintang - KRU
4. Dua Insan Bercinta - Shazee
5. Gemilang - Ruffedge
6. Permata Biru - Ruffedge
7. Retak - Soul Id
8. Simbiosis - Shazee
9. Sepi Sekuntum Mawar Merah - VE
10. Layar Impian - VE
Download Link
SARAH - MIMPI PUN SAMA
1. Ke Sisiku
2. Dikaulah Ratu
3. Saat Hilang Cintamu
4. Jangan Kau Mimpi
5. Kenangi Daku
6. Selami Perasaanku
7. Lagi Lagu Cinta
8. Izin Darinya
9. Mimpi Pun Sama
10. Tinggalkan Diriku
Download Link
RATU - NO. SATU
1. Lelaki Buaya Darat
2. Semakin Hari Semakin Cinta
3. Dear Diary
4. Seribu Cinta
5. Teman Tapi Mesra
6. Lelaki yang Kumau (Jazz Up Your Life)
7. Ratu Sejagad
8. No. Satu
9. Di Dadaku Ada Kamu
10. Aku Pasti Kembali
11. Teman Tapi Mesra (Akustik)
Download Link
# posted by Mobile Store Keeper @ 1:48 AM
1. Site of The World - Various Artists
2. Kasih - Phlowtron
3. Kitalah Bintang - KRU
4. Dua Insan Bercinta - Shazee
5. Gemilang - Ruffedge
6. Permata Biru - Ruffedge
7. Retak - Soul Id
8. Simbiosis - Shazee
9. Sepi Sekuntum Mawar Merah - VE
10. Layar Impian - VE
Download Link
SARAH - MIMPI PUN SAMA
1. Ke Sisiku
2. Dikaulah Ratu
3. Saat Hilang Cintamu
4. Jangan Kau Mimpi
5. Kenangi Daku
6. Selami Perasaanku
7. Lagi Lagu Cinta
8. Izin Darinya
9. Mimpi Pun Sama
10. Tinggalkan Diriku
Download Link
RATU - NO. SATU
1. Lelaki Buaya Darat
2. Semakin Hari Semakin Cinta
3. Dear Diary
4. Seribu Cinta
5. Teman Tapi Mesra
6. Lelaki yang Kumau (Jazz Up Your Life)
7. Ratu Sejagad
8. No. Satu
9. Di Dadaku Ada Kamu
10. Aku Pasti Kembali
11. Teman Tapi Mesra (Akustik)
Download Link
# posted by Mobile Store Keeper @ 1:48 AM
All Major Hit Album! (Update 18 August 06)
TRIBUTE TO ELLA
1. Site of The World - Various Artists
2. Kasih - Phlowtron
3. Kitalah Bintang - KRU
4. Dua Insan Bercinta - Shazee
5. Gemilang - Ruffedge
6. Permata Biru - Ruffedge
7. Retak - Soul Id
8. Simbiosis - Shazee
9. Sepi Sekuntum Mawar Merah - VE
10. Layar Impian - VE
Download Link
1. Site of The World - Various Artists
2. Kasih - Phlowtron
3. Kitalah Bintang - KRU
4. Dua Insan Bercinta - Shazee
5. Gemilang - Ruffedge
6. Permata Biru - Ruffedge
7. Retak - Soul Id
8. Simbiosis - Shazee
9. Sepi Sekuntum Mawar Merah - VE
10. Layar Impian - VE
Download Link
Another unofficial Greenpois0n iPhone iOS 4.1 jailbreak
omokas is a greek iPhone developer. He is 14 years old and has developed a game called TicTacPod available in Cydia for free. He is also an PSP Exploit hunter.
Greenpois0n FAQ
Q.Does GreenPois0n Unlock an iPhone ?
A.No it doesn’t.
Q.which devices does it support ?
A.It supports iPad (all versions), iPod Touch 3G , iPod Touch 4G, iPhone 3GS (Old&New Bootrom) and iPhone 4.
Will support iPod Touch 2G MC soon.
Q.Can I jailbreak without a Computer/MAC ?
A.No you can’t. Because the bootrom exploit used cannot be applied from userland.
Q.In which Operating Systems can I run Greenpois0n ?
A.In windows and linux for the moment. MAC Version will be released soon.
Q. How many exploits does Greenpois0n use ?
A. It uses 2 exploits. A bootrom exploit to gain root privileges and then a userland exploit to patch the kernel.
Q.I am on 4.2 betas.. why can’t I use Greenpois0n ?
A.For the moment greenpois0n doesn’t support beta versions.
Q. Which iOS versions does Greenpois0n support ?
A. For now it only supports 4.1 (iPhone/iPod Touch) and 3.2.2 (iPad).
Q. I can’t activate my locked iPhone because I do not have the operator SIM or a PhoneBook SIM. How can I jailbreak ?
A. Greenpois0n hack-tivates your iPhone. Which means it will activate it without the original SIM or a PhoneBook SIM.
Q. I am having problems with greenpois0n, can I contact the devs to help me ?
A. Yes. You can download an IRC Client and login on server irc.chronic-dev.org in channel #Greenpois0n (Ask before your PM).
Q. Who developed and helped on greenpois0n ?
A. Posixninja, pod2g, comex, AriX, DHowett, chpwn, chronic, Jaywalker, OPK, semaphore, westbaer, etc.
Q. Is greenpois0n stable or should I trust Limera1n?
A. limera1n tool is unstable because it was made in 1 day. Greenpois0n is tested before release and its much more stable than limera1n.
Q. I jailbroke with RC3 or a lower version. If another version is released how can I install it ?
A. You must restore your device via iTunes (clean install .. “Set Up as New”) and then apply the jailbreak again.
This way you are 100% sure the new version will be installed to your device.
Q. Why do I have to do a clean restore in order to apply a new version ?
A. Because its safer. An unstable old version might not be fully replaced by the new one and you might experience problems.
Q. Do I need to plug in my iPhone to my computer in order for it to boot ?
A. No. At least in 4.1 the jailbreak is UNTETHERED which means you don’t need a PC to boot your device.
In next versions the exploit will be patched and it will be TETHERED, so you will need a PC to boot it.
Q. How do I donate to the devs ? Is it neccesary ?
A. It is not neccesary to donate. By donating you show your appreciation to the devs. You can donate by vising Greenpois0n site and clicking on the “Donate” button.
Q. I am on a locked 3GS and I want to unlock it. Can I update to 4.1 , jailbreak and then unlock ?
A. NO. You must wait for an unlock before updating to 4.1. You can’t preserve your baseband on a 3GS yet.
Q. I am on an iPhone 4 (4.0.1 or 4.0.2) and I want to jailbreak and unlock it. How can I do this ?
A. If you want to jailbreak with Greenpois0n you must update to 4.1. But you MUST useTinyUmbrella to preserve your Baseband before updating.
Q. Can I ask something more ?
A. NO please don’t.. Its 8:05 and I have to finish my Homework till 10:00PM.. (just kidding of course)
FAQ by omokas (@omokas)
Posted by mohsin ali at 10/14/2010 04:59:00 AM Email ThisBlogThis!Share to TwitterShare to FacebookShare to Google Buzz
0 comments:
Greenpois0n FAQ
Q.Does GreenPois0n Unlock an iPhone ?
A.No it doesn’t.
Q.which devices does it support ?
A.It supports iPad (all versions), iPod Touch 3G , iPod Touch 4G, iPhone 3GS (Old&New Bootrom) and iPhone 4.
Will support iPod Touch 2G MC soon.
Q.Can I jailbreak without a Computer/MAC ?
A.No you can’t. Because the bootrom exploit used cannot be applied from userland.
Q.In which Operating Systems can I run Greenpois0n ?
A.In windows and linux for the moment. MAC Version will be released soon.
Q. How many exploits does Greenpois0n use ?
A. It uses 2 exploits. A bootrom exploit to gain root privileges and then a userland exploit to patch the kernel.
Q.I am on 4.2 betas.. why can’t I use Greenpois0n ?
A.For the moment greenpois0n doesn’t support beta versions.
Q. Which iOS versions does Greenpois0n support ?
A. For now it only supports 4.1 (iPhone/iPod Touch) and 3.2.2 (iPad).
Q. I can’t activate my locked iPhone because I do not have the operator SIM or a PhoneBook SIM. How can I jailbreak ?
A. Greenpois0n hack-tivates your iPhone. Which means it will activate it without the original SIM or a PhoneBook SIM.
Q. I am having problems with greenpois0n, can I contact the devs to help me ?
A. Yes. You can download an IRC Client and login on server irc.chronic-dev.org in channel #Greenpois0n (Ask before your PM).
Q. Who developed and helped on greenpois0n ?
A. Posixninja, pod2g, comex, AriX, DHowett, chpwn, chronic, Jaywalker, OPK, semaphore, westbaer, etc.
Q. Is greenpois0n stable or should I trust Limera1n?
A. limera1n tool is unstable because it was made in 1 day. Greenpois0n is tested before release and its much more stable than limera1n.
Q. I jailbroke with RC3 or a lower version. If another version is released how can I install it ?
A. You must restore your device via iTunes (clean install .. “Set Up as New”) and then apply the jailbreak again.
This way you are 100% sure the new version will be installed to your device.
Q. Why do I have to do a clean restore in order to apply a new version ?
A. Because its safer. An unstable old version might not be fully replaced by the new one and you might experience problems.
Q. Do I need to plug in my iPhone to my computer in order for it to boot ?
A. No. At least in 4.1 the jailbreak is UNTETHERED which means you don’t need a PC to boot your device.
In next versions the exploit will be patched and it will be TETHERED, so you will need a PC to boot it.
Q. How do I donate to the devs ? Is it neccesary ?
A. It is not neccesary to donate. By donating you show your appreciation to the devs. You can donate by vising Greenpois0n site and clicking on the “Donate” button.
Q. I am on a locked 3GS and I want to unlock it. Can I update to 4.1 , jailbreak and then unlock ?
A. NO. You must wait for an unlock before updating to 4.1. You can’t preserve your baseband on a 3GS yet.
Q. I am on an iPhone 4 (4.0.1 or 4.0.2) and I want to jailbreak and unlock it. How can I do this ?
A. If you want to jailbreak with Greenpois0n you must update to 4.1. But you MUST useTinyUmbrella to preserve your Baseband before updating.
Q. Can I ask something more ?
A. NO please don’t.. Its 8:05 and I have to finish my Homework till 10:00PM.. (just kidding of course)
FAQ by omokas (@omokas)
Posted by mohsin ali at 10/14/2010 04:59:00 AM Email ThisBlogThis!Share to TwitterShare to FacebookShare to Google Buzz
0 comments:
Another unofficial Greenpois0n iPhone iOS 4.1 jailbreak
omokas is a greek iPhone developer. He is 14 years old and has developed a game called TicTacPod available in Cydia for free. He is also an PSP Exploit hunter.
Greenpois0n FAQ
Q.Does GreenPois0n Unlock an iPhone ?
A.No it doesn’t.
Q.which devices does it support ?
A.It supports iPad (all versions), iPod Touch 3G , iPod Touch 4G, iPhone 3GS (Old&New Bootrom) and iPhone 4.
Will support iPod Touch 2G MC soon.
Q.Can I jailbreak without a Computer/MAC ?
A.No you can’t. Because the bootrom exploit used cannot be applied from userland.
Q.In which Operating Systems can I run Greenpois0n ?
A.In windows and linux for the moment. MAC Version will be released soon.
Q. How many exploits does Greenpois0n use ?
A. It uses 2 exploits. A bootrom exploit to gain root privileges and then a userland exploit to patch the kernel.
Q.I am on 4.2 betas.. why can’t I use Greenpois0n ?
A.For the moment greenpois0n doesn’t support beta versions.
Q. Which iOS versions does Greenpois0n support ?
A. For now it only supports 4.1 (iPhone/iPod Touch) and 3.2.2 (iPad).
Q. I can’t activate my locked iPhone because I do not have the operator SIM or a PhoneBook SIM. How can I jailbreak ?
A. Greenpois0n hack-tivates your iPhone. Which means it will activate it without the original SIM or a PhoneBook SIM.
Q. I am having problems with greenpois0n, can I contact the devs to help me ?
A. Yes. You can download an IRC Client and login on server irc.chronic-dev.org in channel #Greenpois0n (Ask before your PM).
Q. Who developed and helped on greenpois0n ?
A. Posixninja, pod2g, comex, AriX, DHowett, chpwn, chronic, Jaywalker, OPK, semaphore, westbaer, etc.
Q. Is greenpois0n stable or should I trust Limera1n?
A. limera1n tool is unstable because it was made in 1 day. Greenpois0n is tested before release and its much more stable than limera1n.
Q. I jailbroke with RC3 or a lower version. If another version is released how can I install it ?
A. You must restore your device via iTunes (clean install .. “Set Up as New”) and then apply the jailbreak again.
This way you are 100% sure the new version will be installed to your device.
Q. Why do I have to do a clean restore in order to apply a new version ?
A. Because its safer. An unstable old version might not be fully replaced by the new one and you might experience problems.
Q. Do I need to plug in my iPhone to my computer in order for it to boot ?
A. No. At least in 4.1 the jailbreak is UNTETHERED which means you don’t need a PC to boot your device.
In next versions the exploit will be patched and it will be TETHERED, so you will need a PC to boot it.
Q. How do I donate to the devs ? Is it neccesary ?
A. It is not neccesary to donate. By donating you show your appreciation to the devs. You can donate by vising Greenpois0n site and clicking on the “Donate” button.
Q. I am on a locked 3GS and I want to unlock it. Can I update to 4.1 , jailbreak and then unlock ?
A. NO. You must wait for an unlock before updating to 4.1. You can’t preserve your baseband on a 3GS yet.
Q. I am on an iPhone 4 (4.0.1 or 4.0.2) and I want to jailbreak and unlock it. How can I do this ?
A. If you want to jailbreak with Greenpois0n you must update to 4.1. But you MUST useTinyUmbrella to preserve your Baseband before updating.
Q. Can I ask something more ?
A. NO please don’t.. Its 8:05 and I have to finish my Homework till 10:00PM.. (just kidding of course)
FAQ by omokas (@omokas)
Posted by mohsin ali at 10/14/2010 04:59:00 AM Email ThisBlogThis!Share to TwitterShare to FacebookShare to Google Buzz
0 comments:
Greenpois0n FAQ
Q.Does GreenPois0n Unlock an iPhone ?
A.No it doesn’t.
Q.which devices does it support ?
A.It supports iPad (all versions), iPod Touch 3G , iPod Touch 4G, iPhone 3GS (Old&New Bootrom) and iPhone 4.
Will support iPod Touch 2G MC soon.
Q.Can I jailbreak without a Computer/MAC ?
A.No you can’t. Because the bootrom exploit used cannot be applied from userland.
Q.In which Operating Systems can I run Greenpois0n ?
A.In windows and linux for the moment. MAC Version will be released soon.
Q. How many exploits does Greenpois0n use ?
A. It uses 2 exploits. A bootrom exploit to gain root privileges and then a userland exploit to patch the kernel.
Q.I am on 4.2 betas.. why can’t I use Greenpois0n ?
A.For the moment greenpois0n doesn’t support beta versions.
Q. Which iOS versions does Greenpois0n support ?
A. For now it only supports 4.1 (iPhone/iPod Touch) and 3.2.2 (iPad).
Q. I can’t activate my locked iPhone because I do not have the operator SIM or a PhoneBook SIM. How can I jailbreak ?
A. Greenpois0n hack-tivates your iPhone. Which means it will activate it without the original SIM or a PhoneBook SIM.
Q. I am having problems with greenpois0n, can I contact the devs to help me ?
A. Yes. You can download an IRC Client and login on server irc.chronic-dev.org in channel #Greenpois0n (Ask before your PM).
Q. Who developed and helped on greenpois0n ?
A. Posixninja, pod2g, comex, AriX, DHowett, chpwn, chronic, Jaywalker, OPK, semaphore, westbaer, etc.
Q. Is greenpois0n stable or should I trust Limera1n?
A. limera1n tool is unstable because it was made in 1 day. Greenpois0n is tested before release and its much more stable than limera1n.
Q. I jailbroke with RC3 or a lower version. If another version is released how can I install it ?
A. You must restore your device via iTunes (clean install .. “Set Up as New”) and then apply the jailbreak again.
This way you are 100% sure the new version will be installed to your device.
Q. Why do I have to do a clean restore in order to apply a new version ?
A. Because its safer. An unstable old version might not be fully replaced by the new one and you might experience problems.
Q. Do I need to plug in my iPhone to my computer in order for it to boot ?
A. No. At least in 4.1 the jailbreak is UNTETHERED which means you don’t need a PC to boot your device.
In next versions the exploit will be patched and it will be TETHERED, so you will need a PC to boot it.
Q. How do I donate to the devs ? Is it neccesary ?
A. It is not neccesary to donate. By donating you show your appreciation to the devs. You can donate by vising Greenpois0n site and clicking on the “Donate” button.
Q. I am on a locked 3GS and I want to unlock it. Can I update to 4.1 , jailbreak and then unlock ?
A. NO. You must wait for an unlock before updating to 4.1. You can’t preserve your baseband on a 3GS yet.
Q. I am on an iPhone 4 (4.0.1 or 4.0.2) and I want to jailbreak and unlock it. How can I do this ?
A. If you want to jailbreak with Greenpois0n you must update to 4.1. But you MUST useTinyUmbrella to preserve your Baseband before updating.
Q. Can I ask something more ?
A. NO please don’t.. Its 8:05 and I have to finish my Homework till 10:00PM.. (just kidding of course)
FAQ by omokas (@omokas)
Posted by mohsin ali at 10/14/2010 04:59:00 AM Email ThisBlogThis!Share to TwitterShare to FacebookShare to Google Buzz
0 comments:
Download: spirit2pwn iPhone hack /
OLD BOOTROM + Spirit => 4.0 JB
Updated for FW 4.0/4.0.1 + ‘Star’ jailbreak. You’ll need NOR files from a custom 4.0 ipsw made with PwnageTool 4.0.1.
You still obviously need to have an old bootrom 3GS, however you don’t currently need any SHSH while Apple still signs 4.0.1
The fact that Star jailbreak uses Safari, however, means it will be patched in weeks, so back up those hashes while you can..
Now that 4.0 is jailbroken, potential uses of this method include installing 4.1 betas, rolling back to 3.x and similar fun activities.
STOP if you have a new bootrom (week 40+, tethered only 3.1.2 JB etc). Here’s how to check bootrom ver
- your hardware is iPhone 3GS with OLD BOOTROM
- you HAVE 3.1.3 SHSH (**)
- you DON’T have 3.1.2 SHSH (otherwise, just use blackra1n/redsn0w).
- you WANT iOS4/JB
Update: thanks to movie for those awesome step by step instructions!
Update2: someone made a Cydia package. Looking at type of questions people ask in the comments, that might be the only option for 80% of them. Apple’s license terms, of course, don’t allow to redistribute their binaries, so I just link to it. Their description also says it works with 3.1.2/Spirit – I very much doubt that.
This tool can be used to flash pwned nor files (containing LLB exploit) on the phone running Spirit JB (script has hardcoded offsets for 3.1.3 3GS).
*Now flasher checks that all files exist before flashing them.
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
1. Unpack pwned(!) 3.1.3 firmware, copy all the files from iPhone2,1_3.1.3_7E18_Custom_Restore\Firmware\all_flash\all_flash.n88ap.production folder to /tmp directory your phone. You can use CyberDuck or WinSCP to do that. Copy those files directly to the /tmp, not to a subfolder: LLB should be at /tmp/LLB.n88ap.RELEASE.img3, etc.!
2. Extract the contents of the spirit2pwn_r2.zip archive to /tmp directory on the phone.
3. Run the following commands on the iPhone: (Use ssh or PuTTY).
cd /tmp
chmod 755 pwn_old_boot_r2.sh
./pwn_old_boot_r2.sh
* Now reboot and your iboot and llb should be pwned, and you can restore to a custom FW now.
Thanks Gojohnnyboi for code, ZeRoLiMiT for testing
(**) Technically, you can still do that if you don’t have 3.1.3 SHSH, but then if you don’t really have old bootrom or if you use wrong ipsw files, your only option will be to upgrade to 4.0 and stay without jailbreak or unlock until a new exploit is made public.
***INSTRUCTIONS FOR THE LAYMEN***
It worked for me on my 3Gs (Jailbroken with Spirit, 3.1.3, old bootrom) and I’m a total noob.
NOTE: When flashing using the iphone app: mobile terminal, you must first go into the root directory by typing: su root
So here are the STEP by STEP instructions for someone slow like myself.
1.) Download a custom firmware for 3.1.3 3Gs (you can get it here: http://www.iphoneheat.com/2010/02/download-iphone-custom-firmware-3-1-3-ipsw/
must download all the files and then join them using something like “Split and Concat” software.
2a.) Download a custom firmware for 4.0 3Gs (you can get it here:
http://www.iphoneheat.com/2010/06/download-custom-ios-40-firmware-ipsw/
must download all the files and then join them using something like “Split and Concat” software
OR
2b.) Download both Pwnage Tool 4.01 and the official apple version of 4.0 called iPhone2,1_4.0_8A293_Restore.ipsw
Then make your own custom 4.0 which will be named: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
3.) Download spirit2pwn_r2
from here:
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
4.) Download Cyberduck on your Mac OS X
5.) Download MobileTerminal on your iPhone
6.) Download OpenSSH on your iPhone
NOW YOU HAVE ALL THE FILES YOU NEED!
7.) Open up Cyberduck and connect your Mac to your
iPhone. To use this you need:
a.) IP address of iPhone
b.) username which is: root
c.) password which is alpine (unless you changed it)
d.) Connect Cyberduck to your iPhone
d.) Navigate to the /tmp folder
8.) Go to your files in STEP 1.) (custom firmware for 3.1.3 3Gs that you downloaded) and navigate to the subfolder called: all_flash.n88ap.production folder.
Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 14 files total.
9.) Go to your files in STEP 3.) (spirit2pwn_r2 you downloaded). Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 2 files total.
NOW YOUR SET TO FLASH!!!
10.) Now go to your iPhone and open up MobileTerminal.
a.) TYPE: su root
(may ask for password)
HIT RETURN
b.) TYPE: cd /tmp
HIT RETURN
c.) TYPE: chmod 755 pwn_old_boot_r2.sh
HIT RETURN
d.) TYPE: ./pwn_old_boot_r2.sh
HIT RETURN
It will start flashing the files on your iPhone. It will pause a few times. WAIT! don’t do anything. WAIT until it’s completely done and says [SUCCESS] as the bottom.
11.) REBOOT your iPhone.
12.) plug your iPhone into iTunes. press the OPTION key as you click on RESTORE in iTunes. Make sure you are connected to the internet.
13.) Navigate to the file: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
You created in STEP 2a.) or STEP 2b.)
14.) iTunes will RESTORE your iPhone using iPhone2,1_4.0_8A293_Custom_Restore.ipsw
(Does not take that long)
15.) iPhone will REBOOT and then iTunes will prompt you to RESTORE your files from a BACKUP or as a NEW Phone.
There you go! Whew!
Related posts:
Download: PwnageTool for iPhone OS 3.1.3 jailbreak / unlock (Mac/Hack)
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.2
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.3
Download: Pwnage tool 3.1.4 (Mac) for iPhone / iTouch firmware v3.1.2
Download: Sn0wbreeze 2.01 (Windows) jailbreak hack for iPhone 3G / 3GS and iTouch 2G / 3G
Posted by mohsin ali at 10/14/2010 05:00:00 AM Email ThisBlogThis!Share to TwitterShare to FacebookShare to Google Buzz
0 comments:
Updated for FW 4.0/4.0.1 + ‘Star’ jailbreak. You’ll need NOR files from a custom 4.0 ipsw made with PwnageTool 4.0.1.
You still obviously need to have an old bootrom 3GS, however you don’t currently need any SHSH while Apple still signs 4.0.1
The fact that Star jailbreak uses Safari, however, means it will be patched in weeks, so back up those hashes while you can..
Now that 4.0 is jailbroken, potential uses of this method include installing 4.1 betas, rolling back to 3.x and similar fun activities.
STOP if you have a new bootrom (week 40+, tethered only 3.1.2 JB etc). Here’s how to check bootrom ver
- your hardware is iPhone 3GS with OLD BOOTROM
- you HAVE 3.1.3 SHSH (**)
- you DON’T have 3.1.2 SHSH (otherwise, just use blackra1n/redsn0w).
- you WANT iOS4/JB
Update: thanks to movie for those awesome step by step instructions!
Update2: someone made a Cydia package. Looking at type of questions people ask in the comments, that might be the only option for 80% of them. Apple’s license terms, of course, don’t allow to redistribute their binaries, so I just link to it. Their description also says it works with 3.1.2/Spirit – I very much doubt that.
This tool can be used to flash pwned nor files (containing LLB exploit) on the phone running Spirit JB (script has hardcoded offsets for 3.1.3 3GS).
*Now flasher checks that all files exist before flashing them.
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
1. Unpack pwned(!) 3.1.3 firmware, copy all the files from iPhone2,1_3.1.3_7E18_Custom_Restore\Firmware\all_flash\all_flash.n88ap.production folder to /tmp directory your phone. You can use CyberDuck or WinSCP to do that. Copy those files directly to the /tmp, not to a subfolder: LLB should be at /tmp/LLB.n88ap.RELEASE.img3, etc.!
2. Extract the contents of the spirit2pwn_r2.zip archive to /tmp directory on the phone.
3. Run the following commands on the iPhone: (Use ssh or PuTTY).
cd /tmp
chmod 755 pwn_old_boot_r2.sh
./pwn_old_boot_r2.sh
* Now reboot and your iboot and llb should be pwned, and you can restore to a custom FW now.
Thanks Gojohnnyboi for code, ZeRoLiMiT for testing
(**) Technically, you can still do that if you don’t have 3.1.3 SHSH, but then if you don’t really have old bootrom or if you use wrong ipsw files, your only option will be to upgrade to 4.0 and stay without jailbreak or unlock until a new exploit is made public.
***INSTRUCTIONS FOR THE LAYMEN***
It worked for me on my 3Gs (Jailbroken with Spirit, 3.1.3, old bootrom) and I’m a total noob.
NOTE: When flashing using the iphone app: mobile terminal, you must first go into the root directory by typing: su root
So here are the STEP by STEP instructions for someone slow like myself.
1.) Download a custom firmware for 3.1.3 3Gs (you can get it here: http://www.iphoneheat.com/2010/02/download-iphone-custom-firmware-3-1-3-ipsw/
must download all the files and then join them using something like “Split and Concat” software.
2a.) Download a custom firmware for 4.0 3Gs (you can get it here:
http://www.iphoneheat.com/2010/06/download-custom-ios-40-firmware-ipsw/
must download all the files and then join them using something like “Split and Concat” software
OR
2b.) Download both Pwnage Tool 4.01 and the official apple version of 4.0 called iPhone2,1_4.0_8A293_Restore.ipsw
Then make your own custom 4.0 which will be named: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
3.) Download spirit2pwn_r2
from here:
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
4.) Download Cyberduck on your Mac OS X
5.) Download MobileTerminal on your iPhone
6.) Download OpenSSH on your iPhone
NOW YOU HAVE ALL THE FILES YOU NEED!
7.) Open up Cyberduck and connect your Mac to your
iPhone. To use this you need:
a.) IP address of iPhone
b.) username which is: root
c.) password which is alpine (unless you changed it)
d.) Connect Cyberduck to your iPhone
d.) Navigate to the /tmp folder
8.) Go to your files in STEP 1.) (custom firmware for 3.1.3 3Gs that you downloaded) and navigate to the subfolder called: all_flash.n88ap.production folder.
Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 14 files total.
9.) Go to your files in STEP 3.) (spirit2pwn_r2 you downloaded). Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 2 files total.
NOW YOUR SET TO FLASH!!!
10.) Now go to your iPhone and open up MobileTerminal.
a.) TYPE: su root
(may ask for password)
HIT RETURN
b.) TYPE: cd /tmp
HIT RETURN
c.) TYPE: chmod 755 pwn_old_boot_r2.sh
HIT RETURN
d.) TYPE: ./pwn_old_boot_r2.sh
HIT RETURN
It will start flashing the files on your iPhone. It will pause a few times. WAIT! don’t do anything. WAIT until it’s completely done and says [SUCCESS] as the bottom.
11.) REBOOT your iPhone.
12.) plug your iPhone into iTunes. press the OPTION key as you click on RESTORE in iTunes. Make sure you are connected to the internet.
13.) Navigate to the file: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
You created in STEP 2a.) or STEP 2b.)
14.) iTunes will RESTORE your iPhone using iPhone2,1_4.0_8A293_Custom_Restore.ipsw
(Does not take that long)
15.) iPhone will REBOOT and then iTunes will prompt you to RESTORE your files from a BACKUP or as a NEW Phone.
There you go! Whew!
Related posts:
Download: PwnageTool for iPhone OS 3.1.3 jailbreak / unlock (Mac/Hack)
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.2
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.3
Download: Pwnage tool 3.1.4 (Mac) for iPhone / iTouch firmware v3.1.2
Download: Sn0wbreeze 2.01 (Windows) jailbreak hack for iPhone 3G / 3GS and iTouch 2G / 3G
Posted by mohsin ali at 10/14/2010 05:00:00 AM Email ThisBlogThis!Share to TwitterShare to FacebookShare to Google Buzz
0 comments:
Download: Sn0wbreeze 2.01 (Windows) jailbreak hack for
LD BOOTROM + Spirit => 4.0 JB
Updated for FW 4.0/4.0.1 + ‘Star’ jailbreak. You’ll need NOR files from a custom 4.0 ipsw made with PwnageTool 4.0.1.
You still obviously need to have an old bootrom 3GS, however you don’t currently need any SHSH while Apple still signs 4.0.1
The fact that Star jailbreak uses Safari, however, means it will be patched in weeks, so back up those hashes while you can..
Now that 4.0 is jailbroken, potential uses of this method include installing 4.1 betas, rolling back to 3.x and similar fun activities.
STOP if you have a new bootrom (week 40+, tethered only 3.1.2 JB etc). Here’s how to check bootrom ver
- your hardware is iPhone 3GS with OLD BOOTROM
- you HAVE 3.1.3 SHSH (**)
- you DON’T have 3.1.2 SHSH (otherwise, just use blackra1n/redsn0w).
- you WANT iOS4/JB
Update: thanks to movie for those awesome step by step instructions!
Update2: someone made a Cydia package. Looking at type of questions people ask in the comments, that might be the only option for 80% of them. Apple’s license terms, of course, don’t allow to redistribute their binaries, so I just link to it. Their description also says it works with 3.1.2/Spirit – I very much doubt that.
This tool can be used to flash pwned nor files (containing LLB exploit) on the phone running Spirit JB (script has hardcoded offsets for 3.1.3 3GS).
*Now flasher checks that all files exist before flashing them.
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
1. Unpack pwned(!) 3.1.3 firmware, copy all the files from iPhone2,1_3.1.3_7E18_Custom_Restore\Firmware\all_flash\all_flash.n88ap.production folder to /tmp directory your phone. You can use CyberDuck or WinSCP to do that. Copy those files directly to the /tmp, not to a subfolder: LLB should be at /tmp/LLB.n88ap.RELEASE.img3, etc.!
2. Extract the contents of the spirit2pwn_r2.zip archive to /tmp directory on the phone.
3. Run the following commands on the iPhone: (Use ssh or PuTTY).
cd /tmp
chmod 755 pwn_old_boot_r2.sh
./pwn_old_boot_r2.sh
* Now reboot and your iboot and llb should be pwned, and you can restore to a custom FW now.
Thanks Gojohnnyboi for code, ZeRoLiMiT for testing
(**) Technically, you can still do that if you don’t have 3.1.3 SHSH, but then if you don’t really have old bootrom or if you use wrong ipsw files, your only option will be to upgrade to 4.0 and stay without jailbreak or unlock until a new exploit is made public.
***INSTRUCTIONS FOR THE LAYMEN***
It worked for me on my 3Gs (Jailbroken with Spirit, 3.1.3, old bootrom) and I’m a total noob.
NOTE: When flashing using the iphone app: mobile terminal, you must first go into the root directory by typing: su root
So here are the STEP by STEP instructions for someone slow like myself.
1.) Download a custom firmware for 3.1.3 3Gs (you can get it here: http://www.iphoneheat.com/2010/02/download-iphone-custom-firmware-3-1-3-ipsw/
must download all the files and then join them using something like “Split and Concat” software.
2a.) Download a custom firmware for 4.0 3Gs (you can get it here:
http://www.iphoneheat.com/2010/06/download-custom-ios-40-firmware-ipsw/
must download all the files and then join them using something like “Split and Concat” software
OR
2b.) Download both Pwnage Tool 4.01 and the official apple version of 4.0 called iPhone2,1_4.0_8A293_Restore.ipsw
Then make your own custom 4.0 which will be named: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
3.) Download spirit2pwn_r2
from here:
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
4.) Download Cyberduck on your Mac OS X
5.) Download MobileTerminal on your iPhone
6.) Download OpenSSH on your iPhone
NOW YOU HAVE ALL THE FILES YOU NEED!
7.) Open up Cyberduck and connect your Mac to your
iPhone. To use this you need:
a.) IP address of iPhone
b.) username which is: root
c.) password which is alpine (unless you changed it)
d.) Connect Cyberduck to your iPhone
d.) Navigate to the /tmp folder
8.) Go to your files in STEP 1.) (custom firmware for 3.1.3 3Gs that you downloaded) and navigate to the subfolder called: all_flash.n88ap.production folder.
Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 14 files total.
9.) Go to your files in STEP 3.) (spirit2pwn_r2 you downloaded). Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 2 files total.
NOW YOUR SET TO FLASH!!!
10.) Now go to your iPhone and open up MobileTerminal.
a.) TYPE: su root
(may ask for password)
HIT RETURN
b.) TYPE: cd /tmp
HIT RETURN
c.) TYPE: chmod 755 pwn_old_boot_r2.sh
HIT RETURN
d.) TYPE: ./pwn_old_boot_r2.sh
HIT RETURN
It will start flashing the files on your iPhone. It will pause a few times. WAIT! don’t do anything. WAIT until it’s completely done and says [SUCCESS] as the bottom.
11.) REBOOT your iPhone.
12.) plug your iPhone into iTunes. press the OPTION key as you click on RESTORE in iTunes. Make sure you are connected to the internet.
13.) Navigate to the file: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
You created in STEP 2a.) or STEP 2b.)
14.) iTunes will RESTORE your iPhone using iPhone2,1_4.0_8A293_Custom_Restore.ipsw
(Does not take that long)
15.) iPhone will REBOOT and then iTunes will prompt you to RESTORE your files from a BACKUP or as a NEW Phone.
There you go! Whew!
Related posts:
Download: PwnageTool for iPhone OS 3.1.3 jailbreak / unlock (Mac/Hack)
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.2
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.3
Download: Pwnage tool 3.1.4 (Mac) for iPhone / iTouch firmware v3.1.2
Download: Sn0wbreeze 2.01 (Windows) jailbreak hack for iPhone 3G / 3GS and iTouch 2G / 3G
Tags: download, hack, iPhone, iPhone 3G, iPhone 3GS, jailbreak, Mac, OS, sn0wbreeze, unlock
Updated for FW 4.0/4.0.1 + ‘Star’ jailbreak. You’ll need NOR files from a custom 4.0 ipsw made with PwnageTool 4.0.1.
You still obviously need to have an old bootrom 3GS, however you don’t currently need any SHSH while Apple still signs 4.0.1
The fact that Star jailbreak uses Safari, however, means it will be patched in weeks, so back up those hashes while you can..
Now that 4.0 is jailbroken, potential uses of this method include installing 4.1 betas, rolling back to 3.x and similar fun activities.
STOP if you have a new bootrom (week 40+, tethered only 3.1.2 JB etc). Here’s how to check bootrom ver
- your hardware is iPhone 3GS with OLD BOOTROM
- you HAVE 3.1.3 SHSH (**)
- you DON’T have 3.1.2 SHSH (otherwise, just use blackra1n/redsn0w).
- you WANT iOS4/JB
Update: thanks to movie for those awesome step by step instructions!
Update2: someone made a Cydia package. Looking at type of questions people ask in the comments, that might be the only option for 80% of them. Apple’s license terms, of course, don’t allow to redistribute their binaries, so I just link to it. Their description also says it works with 3.1.2/Spirit – I very much doubt that.
This tool can be used to flash pwned nor files (containing LLB exploit) on the phone running Spirit JB (script has hardcoded offsets for 3.1.3 3GS).
*Now flasher checks that all files exist before flashing them.
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
1. Unpack pwned(!) 3.1.3 firmware, copy all the files from iPhone2,1_3.1.3_7E18_Custom_Restore\Firmware\all_flash\all_flash.n88ap.production folder to /tmp directory your phone. You can use CyberDuck or WinSCP to do that. Copy those files directly to the /tmp, not to a subfolder: LLB should be at /tmp/LLB.n88ap.RELEASE.img3, etc.!
2. Extract the contents of the spirit2pwn_r2.zip archive to /tmp directory on the phone.
3. Run the following commands on the iPhone: (Use ssh or PuTTY).
cd /tmp
chmod 755 pwn_old_boot_r2.sh
./pwn_old_boot_r2.sh
* Now reboot and your iboot and llb should be pwned, and you can restore to a custom FW now.
Thanks Gojohnnyboi for code, ZeRoLiMiT for testing
(**) Technically, you can still do that if you don’t have 3.1.3 SHSH, but then if you don’t really have old bootrom or if you use wrong ipsw files, your only option will be to upgrade to 4.0 and stay without jailbreak or unlock until a new exploit is made public.
***INSTRUCTIONS FOR THE LAYMEN***
It worked for me on my 3Gs (Jailbroken with Spirit, 3.1.3, old bootrom) and I’m a total noob.
NOTE: When flashing using the iphone app: mobile terminal, you must first go into the root directory by typing: su root
So here are the STEP by STEP instructions for someone slow like myself.
1.) Download a custom firmware for 3.1.3 3Gs (you can get it here: http://www.iphoneheat.com/2010/02/download-iphone-custom-firmware-3-1-3-ipsw/
must download all the files and then join them using something like “Split and Concat” software.
2a.) Download a custom firmware for 4.0 3Gs (you can get it here:
http://www.iphoneheat.com/2010/06/download-custom-ios-40-firmware-ipsw/
must download all the files and then join them using something like “Split and Concat” software
OR
2b.) Download both Pwnage Tool 4.01 and the official apple version of 4.0 called iPhone2,1_4.0_8A293_Restore.ipsw
Then make your own custom 4.0 which will be named: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
3.) Download spirit2pwn_r2
from here:
http://code.google.com/p/iphone-img3-flasher/downloads/detail?name=spirit2pwn_r2.zip
4.) Download Cyberduck on your Mac OS X
5.) Download MobileTerminal on your iPhone
6.) Download OpenSSH on your iPhone
NOW YOU HAVE ALL THE FILES YOU NEED!
7.) Open up Cyberduck and connect your Mac to your
iPhone. To use this you need:
a.) IP address of iPhone
b.) username which is: root
c.) password which is alpine (unless you changed it)
d.) Connect Cyberduck to your iPhone
d.) Navigate to the /tmp folder
8.) Go to your files in STEP 1.) (custom firmware for 3.1.3 3Gs that you downloaded) and navigate to the subfolder called: all_flash.n88ap.production folder.
Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 14 files total.
9.) Go to your files in STEP 3.) (spirit2pwn_r2 you downloaded). Take all the files in that folder and copy into the /tmp folder using Cyberduck. Should be 2 files total.
NOW YOUR SET TO FLASH!!!
10.) Now go to your iPhone and open up MobileTerminal.
a.) TYPE: su root
(may ask for password)
HIT RETURN
b.) TYPE: cd /tmp
HIT RETURN
c.) TYPE: chmod 755 pwn_old_boot_r2.sh
HIT RETURN
d.) TYPE: ./pwn_old_boot_r2.sh
HIT RETURN
It will start flashing the files on your iPhone. It will pause a few times. WAIT! don’t do anything. WAIT until it’s completely done and says [SUCCESS] as the bottom.
11.) REBOOT your iPhone.
12.) plug your iPhone into iTunes. press the OPTION key as you click on RESTORE in iTunes. Make sure you are connected to the internet.
13.) Navigate to the file: iPhone2,1_4.0_8A293_Custom_Restore.ipsw
You created in STEP 2a.) or STEP 2b.)
14.) iTunes will RESTORE your iPhone using iPhone2,1_4.0_8A293_Custom_Restore.ipsw
(Does not take that long)
15.) iPhone will REBOOT and then iTunes will prompt you to RESTORE your files from a BACKUP or as a NEW Phone.
There you go! Whew!
Related posts:
Download: PwnageTool for iPhone OS 3.1.3 jailbreak / unlock (Mac/Hack)
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.2
Download: iPhone 2G / 3G / 3GS OS / firmware: from 1.0 to 3.1.3
Download: Pwnage tool 3.1.4 (Mac) for iPhone / iTouch firmware v3.1.2
Download: Sn0wbreeze 2.01 (Windows) jailbreak hack for iPhone 3G / 3GS and iTouch 2G / 3G
Tags: download, hack, iPhone, iPhone 3G, iPhone 3GS, jailbreak, Mac, OS, sn0wbreeze, unlock
eIslamExplorer
eIslamExplorer
eIslamExplorer features:
* Quran in Arabic
* Urdu translations of Quran by: Maulana Fateh Muhammad Jalandhry. Ahmed Ali Lahori.
* English translation of Quran by Yousuf Ali.
* Change color or fonts
eIslamExplorer features:
* Quran in Arabic
* Urdu translations of Quran by: Maulana Fateh Muhammad Jalandhry. Ahmed Ali Lahori.
* English translation of Quran by Yousuf Ali.
* Change color or fonts
Saturday, October 16, 2010
UPDATED MOBILE RELATED NEWS
UPDATED MOBILE RELATED NEWS
Dell to launch Android Powered Mobiles
Dell has officially confirmed that company is now entering into smartphone market with an Android Powered device first for china and Brazil. Dell first Android Smartphone will be somewhat similar to Apple’s iPhone, with full touch screen interface, Dell hasn’t released full specifications yet. However company confirmed that handset will be powered by Google’s Android [...]
SBP, PTA to launch unified regulatory framework for mobile banking
State Bank of Pakistan and Pakistan Telecommunication Authority have agreed to introduce a unified regulatory framework for enhancing mobile banking in the country. It has been decided to set up a Joint Regulatory Committee, during a meeting held at SBP here on Wednesday between SBP Governor Syed Salim Raza and Chairman PTA, Dr. Mohammed Yaseen, [...]
1.5 million SIMs removed from mobile phone users̢۪s name
As many as 1.5 million SIMs have been removed from the names of mobile subscribers while around 1,34,000 irregular SIMs have been regularized after the correction of relevant data.      PTA official informed APP on Friday that more than 85000 irregular SIMs have been blocked by the Pakistan Telecommunication Authority (PTA) since the launch of SIM [...]
Nokia has announced Illuvia Special Edition Phones
Nokia has unveils the new Nokia Illuvia special edition phone range. The new series comprises of three phones that build on previous models which include the Nokia 5530 xPressMusic Illuvia, Nokia 6700 Illuvia and the Nokia 6303 Illuvia. All that the Illuvia name brings to [...]
Nokia Booklet 3G Unboxed
The Nokia Booklet 3G is soon to launch. Lets see Nokia Booklet 3G for unboxing to see what it’s all about. Installed on the Booklet was Windows 7 Home Premium which is a step in the right direction from Best Buy which were showing a Windows 7 Starter Edition. The video [...]
LG service centre now in Pakistan
The LG Electronics has launched its first ever state-of-the-art Service Centre in Pakistan. An announcement here on Monday said that this first ever Mobile Service Centre by LG has triggered a new wave in the industry. It said that the LG Service Centre is made using the dexterous skills of Korean experts who conceptualized the [...]
Nokia E72 Details Revealed
Nokia E72 is the latest technology in Nokia E-series family that maintains essential elements of its predecessor, whilst still improving its capabilities in a number of areas. This was stated by the Head of E-series Marketing, Middle East and Africa, Trude Gajland while sharing the details of the user-friendly, easy to use [...]
LG introduces handset
LG Electronics (LG), a technology innovator in mobile communications, here on Tuesday announced the worldwide retail release of the new Chocolate (LG-BL40). A statement here said that the fourth handset of the Black Label Series will be available from mid-October. It said that with the introduction of this, [...]
Flash moves on to smart phones
One of the most common technologies for watching video on a computer will soon be available for most Smartphones. Flash software is used to deliver around 75% of online video and is the key technology that underpins websites such as YouTube and Google Video, BBC Radio reported.Until now, many smartphones and netbooks have used a [...]
Taiwan unveils hydrogen-powered mobile phone chargers
Taiwanese researchers said Friday they have developed hydrogen-powered mobile phone chargers, in a development that could boost the island’s efforts to become a player in green technologies. The device can recharge a mobile phone battery in two hours without being plugged, according to scientists at the Industrial Technology Research Institute in north Taiwan’s Hsinchu city. “Hydrogen is [...]
Mobilink network jammed due to upgradation
The Mobilink Pakistan network Thursday remained jammed for three continuous hours – from 9 am to 12 noon. When contacted, the cellular company spokesman told the network was being upgraded which was a normal activity. Â Â Â ”This is a routine activity and the consumers were priorly informed about the network upgradation,” he added.
Cholistan Desert gets a Base Transceiver Station (BTS)
Telenor and USF have jointly inaugurated a BTS (Base Transceiver Station) cell site in district Bahawalpur’s Cholistan desert.     The BTS was launched to mark the timely completion of a USF project within timeline as Telenor Pakistan became first Tleco to finish a Universal Service Fund (USF) project within timeline.Chief Technical Officer Telenor Pakistan Khalid Shehzad [...]
Ufone launches Incoming Call Bonus for its customers
Ufone, one of the leading telecom operators in Pakistan, has now launched what is termed as Incoming Call Bonus Promotion for its customers. An announcement here on Saturday said that this provides a great opportunity for its customers to get Re. 0.25/- instantly for every off net incoming call of more than two minutes duration.This [...]
Nokia 3G Booklet Teaser
Nokia have recently launched their notebook named as “ Nokia 3G Booklet” Nokia claims that its battery life is 12 hours, with features like 3G, Wi-fi, Bluetooth, Builtin Camera, Slim size and a lot more.
Sharp Unveils Miniature Netbook
Sharp unveils a miniature Netbook PC-Z1 with only 5 inch display with superb 1024×600 resolution picture, Powered by an ARM Cortex-A8 Processor and having 512MB of RAM along with 4GB of integrated solid state flash memory for storing data.This Ultra Compact device measures only 161×109x20 mm and weighs 410 grams. Sharp PC-Z1 has superb battery [...]
Dell to launch Android Powered Mobiles
Dell has officially confirmed that company is now entering into smartphone market with an Android Powered device first for china and Brazil. Dell first Android Smartphone will be somewhat similar to Apple’s iPhone, with full touch screen interface, Dell hasn’t released full specifications yet. However company confirmed that handset will be powered by Google’s Android [...]
SBP, PTA to launch unified regulatory framework for mobile banking
State Bank of Pakistan and Pakistan Telecommunication Authority have agreed to introduce a unified regulatory framework for enhancing mobile banking in the country. It has been decided to set up a Joint Regulatory Committee, during a meeting held at SBP here on Wednesday between SBP Governor Syed Salim Raza and Chairman PTA, Dr. Mohammed Yaseen, [...]
1.5 million SIMs removed from mobile phone users̢۪s name
As many as 1.5 million SIMs have been removed from the names of mobile subscribers while around 1,34,000 irregular SIMs have been regularized after the correction of relevant data.      PTA official informed APP on Friday that more than 85000 irregular SIMs have been blocked by the Pakistan Telecommunication Authority (PTA) since the launch of SIM [...]
Nokia has announced Illuvia Special Edition Phones
Nokia has unveils the new Nokia Illuvia special edition phone range. The new series comprises of three phones that build on previous models which include the Nokia 5530 xPressMusic Illuvia, Nokia 6700 Illuvia and the Nokia 6303 Illuvia. All that the Illuvia name brings to [...]
Nokia Booklet 3G Unboxed
The Nokia Booklet 3G is soon to launch. Lets see Nokia Booklet 3G for unboxing to see what it’s all about. Installed on the Booklet was Windows 7 Home Premium which is a step in the right direction from Best Buy which were showing a Windows 7 Starter Edition. The video [...]
LG service centre now in Pakistan
The LG Electronics has launched its first ever state-of-the-art Service Centre in Pakistan. An announcement here on Monday said that this first ever Mobile Service Centre by LG has triggered a new wave in the industry. It said that the LG Service Centre is made using the dexterous skills of Korean experts who conceptualized the [...]
Nokia E72 Details Revealed
Nokia E72 is the latest technology in Nokia E-series family that maintains essential elements of its predecessor, whilst still improving its capabilities in a number of areas. This was stated by the Head of E-series Marketing, Middle East and Africa, Trude Gajland while sharing the details of the user-friendly, easy to use [...]
LG introduces handset
LG Electronics (LG), a technology innovator in mobile communications, here on Tuesday announced the worldwide retail release of the new Chocolate (LG-BL40). A statement here said that the fourth handset of the Black Label Series will be available from mid-October. It said that with the introduction of this, [...]
Flash moves on to smart phones
One of the most common technologies for watching video on a computer will soon be available for most Smartphones. Flash software is used to deliver around 75% of online video and is the key technology that underpins websites such as YouTube and Google Video, BBC Radio reported.Until now, many smartphones and netbooks have used a [...]
Taiwan unveils hydrogen-powered mobile phone chargers
Taiwanese researchers said Friday they have developed hydrogen-powered mobile phone chargers, in a development that could boost the island’s efforts to become a player in green technologies. The device can recharge a mobile phone battery in two hours without being plugged, according to scientists at the Industrial Technology Research Institute in north Taiwan’s Hsinchu city. “Hydrogen is [...]
Mobilink network jammed due to upgradation
The Mobilink Pakistan network Thursday remained jammed for three continuous hours – from 9 am to 12 noon. When contacted, the cellular company spokesman told the network was being upgraded which was a normal activity. Â Â Â ”This is a routine activity and the consumers were priorly informed about the network upgradation,” he added.
Cholistan Desert gets a Base Transceiver Station (BTS)
Telenor and USF have jointly inaugurated a BTS (Base Transceiver Station) cell site in district Bahawalpur’s Cholistan desert.     The BTS was launched to mark the timely completion of a USF project within timeline as Telenor Pakistan became first Tleco to finish a Universal Service Fund (USF) project within timeline.Chief Technical Officer Telenor Pakistan Khalid Shehzad [...]
Ufone launches Incoming Call Bonus for its customers
Ufone, one of the leading telecom operators in Pakistan, has now launched what is termed as Incoming Call Bonus Promotion for its customers. An announcement here on Saturday said that this provides a great opportunity for its customers to get Re. 0.25/- instantly for every off net incoming call of more than two minutes duration.This [...]
Nokia 3G Booklet Teaser
Nokia have recently launched their notebook named as “ Nokia 3G Booklet” Nokia claims that its battery life is 12 hours, with features like 3G, Wi-fi, Bluetooth, Builtin Camera, Slim size and a lot more.
Sharp Unveils Miniature Netbook
Sharp unveils a miniature Netbook PC-Z1 with only 5 inch display with superb 1024×600 resolution picture, Powered by an ARM Cortex-A8 Processor and having 512MB of RAM along with 4GB of integrated solid state flash memory for storing data.This Ultra Compact device measures only 161×109x20 mm and weighs 410 grams. Sharp PC-Z1 has superb battery [...]
Subscribe to:
Posts (Atom)