Home
Search
FAQ
SupremeBytes

Board index » General » Tutorials

 


Post new topic Reply to topic
Author Message
 Post subject: Pwning 4.0 on 3GS (New Bootrom) | ipt2g MC | ipt3 w/3.1.2
PostPosted: Mon Jul 05, 2010 5:25 pm
User avatar
Developer

Joined: Sat Dec 13, 2008 4:47 pm
Posts: 30
If people read the tutorial they will succeed. If not they will fail.

I figured making a tool would take a bit too long. So, i'm going to write up this tutorial. It isn't recommended for regular users.

**BEFORE PROCEEDING, ENSURE THAT YOU HAVE YOUR iPod/PHONE BACKED UP!**

THIS TUTORIAL ASSUMES YOU ARE ALREADY ON 3.1.2!

Q: Why not 3.1.3???
A: The exploit used is closed in 3.1.3 and beyond.
-------
WHAT YOU WILL NEED:

* An iPhone 3G[S] or iPod Touch 2G MC or iPod Touch 3-- new bootrom
* 3.1.2 already installed or 3.1.2 installed via SHSH blobs. <-- Broken blackra1n'd devices will work. (Especially if Spirit messed you up!).
* Payload Pwner-r6
* sn0wbreeze V1.7
* iBooty V1.6
* 3.1.2/4.0 firmware downloaded.
* iTunes 9.2 Installed
-------
STEP A : Pwning iBoot

I : Download this easy tool here -- Payload Pwner-r6 // It will help you create the payload.

II : Extract it to a directory and run Pwner.exe

**SAVE THE PAYLOAD WHERE iBooty is.**

-------
STEP B : Making a Custom IPSW

I : Download sn0wbreeze V1.7 from here -- sn0wbreeze V1.7

II : USE EXPERT MODE!

III : In General, Checkmark "Disable NOR Flash" <-- THIS IS ESSENTIAL!!!!

IV : Build it. It will be on your Desktop.

**CUSTOM BOOT LOGOS THAT ARE MADE IN sn0wbreeze WILL NOT WORK ON NEW BOOTROMS!**


*Mac Users : PwnageTool does not have this option. I don't think it will ever be in there. Use a Windows Virtual Machine or friends PC to create your firmware.*
-------
STEP C: iBooty Prep.

Most of you know of the utility "iBooty" that I made for Aki_nG.

It will work as long as you place all of the correct files there.

I : Download iBooty GUI here -- iBooty V1.6 and Extract it.

II : Extract your Custom IPSW created by sn0wbreeze with 7-Zip or another un-archiver.

III : Grab the kernelcache and bring it into the same folder as ibooty.
Also grab iBEC from the folder "Firmware\dfu".
Aswell as DeviceTree from the folder "Firmware\all_flash\all_flash.n88ap.production\DeviceTree.n88ap".

IV :
* Rename your Kernel 4.0-Custom to "kernel.40"
* Rename your iBEC 4.0-Custom to "ibec.40"
* Rename your DeviceTree 4.0-Custom to "devtree.40"
***MAKE SURE YOU REMOVE THE .img3/.dfu/etc extensions!***
======
Your folder should look like this :

- iboot.payload <-- Created with Payload Pwner.
- devtree.40 <-- Grabbed from Custom IPSW made by sn0wbreeze.
- ibec.40 <-- Created with Payload Pwner.
- bspatch.exe <-- Comes with iBooty.
- iBooty.exe <-- Comes with iBooty.
- kernel.40 <-- Grab from Custom IPSW made by sn0wbreeze.
- sn0w.img3 <-- Comes with iBooty.
- wait.img3 <-- Comes with iBooty.
======
-------
STEP D: Restoring to 4.0 + Booting
-------
*MAKE SURE YOU ARE ON 3.1.2 WHEN DOING THIS*

I : Run iBooty and Select "Prepare Device for Custom Firmware". Make sure that your device is in Recovery Mode (The one with the iTunes Connect Logo). Run the Process and if you see the image, you can proceed!

II : Now open iTunes and restore to the custom ipsw.

***WHEN DONE, YOUR DEVICE WILL GO INTO RECOVERY MODE. IT WONT BOOT.***
-------
STEP E : Booting

I : Just Re-Run iBooty and select "Boot It". If all goes well it will boot!
-------
Enjoy!
-------
============
CREDITS:
============
* AKi_nG (For testing 3GS.)
* demize95 (For testing iPod Touch 3!)
* msft.Guy (Helping out here and there.)
* planetbeing (For xpwn.)
* posixninja (For his continuous help!!!)
* You (For making this community possible.)
============
Image

_________________
iH8sn0w
Developer of iREB/sn0wbreeze



          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Mon Jul 05, 2010 11:05 pm

Joined: Mon Jul 05, 2010 11:04 pm
Posts: 1
Good, but where is the Update? :) You said: Today!


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Mon Jul 05, 2010 11:15 pm

Joined: Mon Jul 05, 2010 11:13 pm
Posts: 2
i hope there will be a solution to the restart problem after locking the iphone...


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Tue Jul 06, 2010 12:40 am

Joined: Tue Jul 06, 2010 12:35 am
Posts: 2
Location: Philippines
Yah where is the update about the autorestart after the phone Lock:(....

hope it will be fix....

_________________
~Patrick Wendell Tan~


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Tue Jul 06, 2010 12:43 am
Global Moderator

Joined: Mon Jul 05, 2010 10:45 pm
Posts: 8
I think iH8sn0w said their will be a fix within the next few days, however things could easily change.


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Tue Jul 06, 2010 12:54 am

Joined: Tue Jul 06, 2010 12:35 am
Posts: 2
Location: Philippines
I hope...

iOS 4 is great, the only problems are the compatibility of some Cydia Appz

_________________
~Patrick Wendell Tan~


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Tue Jul 06, 2010 1:22 am

Joined: Mon Jul 05, 2010 11:25 pm
Posts: 2
The only real problem now is the sleep bug :)


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Tue Jul 06, 2010 5:12 am

Joined: Tue Jul 06, 2010 5:01 am
Posts: 1
got stuck . by mistake updated my JB 3GS 3.1.3 to 4.0 with new bootrom. kindly help


          Top  
 
 Post subject: Re: Pwning 4.0 on New Bootrom 3G[S] w/3.1.2 SHSH Blobs
PostPosted: Tue Jul 06, 2010 7:08 am

Joined: Fri Feb 19, 2010 8:11 am
Posts: 11
sn0wbreeze 1.7 is out already ... can someone try and give us a feedback if the sleep bug is fixed or not yet?

Am in the office and can't try it .. may be after 4 hours i'll give it a try... i can't wait to have the iOS 4


          Top  
 
Offline
 Post subject: Re: *sleepfix* Pwning 4.0 on New Bootrom 3G[S] w/3.1.2
PostPosted: Tue Jul 06, 2010 9:37 am

Joined: Mon Jul 05, 2010 7:11 am
Posts: 6
i dont have my shsh blobos saved and iam on anew bootrom and stuck on dfu loop can't restore can't do nothing dead iphone 3gs new boot rom only jailbroken on spirit any help plzzz................


          Top  
 
 
Post new topic Reply to topic




Who is online

Users browsing this forum: Venom and 4 guests

Options

Display posts from previous:  Sort by  
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum


Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group