Showing posts with label iphone unlock. Show all posts
Showing posts with label iphone unlock. Show all posts
how do you Unlock Apple IPhone
Unlock apple iphone
How to unlock apple iphone.
Here is another way for iphone unlocking with hardware. This method is slightly different for the other iphone unlocking steps. Thanks to iphonjtag.
Step 1
First bypass activation
Step 2
You need following software to unlock iphone.
1)Jailbreaked
2) SSH Enabled for windows or mac which ever system you are using, 3(binkit installed
4) rar package for iphone unlock: (NORDumper, ieraser, iunlocker, lockdownd etc) search the internet for “iphone.unlock.toolkit.rar”
Step 3 take the iphone back panels apart. Don’t know how to open a iphone here is the steps for how to open iphone.
You need to open the logic board metal shield (found right on top of the battery.
• Start up your iphone and connect it to computer.
• get the ip address of your iphone (go to WiFi / on the right side of your selected network you will find a blue arrow, click it and this shows you your iphones ip address.
• connect to your iphone via SCP
• username: root
• password: dottie (if you have changed your password then try that password)
• ignore the errors
• Goto: /usr and create a folder "local" and then goto "local" and create a folder called "etc"
• then go back to the root directory of your iphone ( "/") and then you will see a folder called "etc", double-click on this folder
• upload termcap from the .rar into etc directory.
• copy bbupdater from the .rar into the /bin directory.
• Goto the folder /system/library/launchdeamons and move the file commcenter.plist to your desktop.
Now reboot your iphone.
• After rebooting, login to your iphone
• type: minicom -s and an ASCII menu will appear...
• now select "Serial port setup" and type A and change that information to /dev/tty.baseband and hit Enter then Esc.
• Select "save setup as dfl"
• Now goto exit and you should see "Initializing modem"
• Again come back to minicom
• type: AT and it should respond OK
remainingsteps for how to unlock an iphone
How to Unlock an IPhone
how to unlock an iphone.
continue from how do you unlock apple iphone
Now as in the photo read line indicate a track of wire and blue line cover that wire. Now scrape that track with pointed screwdriver or thumb nail. But be careful scrape gently, keep scraping until copper wire seen on the board. Please do it gently otherwise you make break the iphone instead of unlocking. Now with your make shift conductor wire touch the wire and touch where the +1.8v wire is pointing to in the image above for about a second or so.
your minicom SSH window should freeze and when you type something into it it will not appear..
• Open a new SSH window and login to your iphone
• now type: bbupdater -v
• you will see AT OK AT OK AT OK in the minicom SSH window..
• close the minicom SSH window.. don't wait for the AT OK AT OK AT OK to stop..
If the following happens, that means the needle touching was successful. And you are on the way to unlock iphone.
• Copy the files from folder NORDumper from the rar to /usr/bin on your iphone using SCP
• in ssh type: cd /usr/bin
• in ssh type: ls
• you should see NORDumper
• now type: NORDumper dump.bin (case sensitive)
• wait for about 15-20 mins
Once that's done..
• Copy the contents of the folder ieraser from the rar also to /usr/bin on your iphone using SCP.
• Start Cygnus Hex Editor. and open the file ICE03.14.08_G.fls. (included in the rar) (only for firmware 1.0.1 and 1.0.2 !!!!)
• Select the range from 000001A4-000009a4. In the taskbar the selection should show 1A4-9A4.
• then goto menu edit–> select copy to file. name the file : secpack
• Upload this file to /usr/bin on the iphone.
• in SSH type ieraser.
• copy the dump.bin from /usr/bin to your PC using SCP.
• Open this file with Cygnus Hex Editor.
• Select the range 00020000-00304000
• In the taskbar it should show 20000-304000 (if not do the selection again)
• goto menu edit–> select copy to file. name the file : nor
• open this file with the hexeditor.
• Find the row 215148 and change 04 00 A0 E1 to 00 00 A0 E3
• save the file, and upload it to /usr/bin using SCP.
• copy the files in the folder iunlocker from the rar to /usr/bin
• Touch your needles together here and keep them touching (Touching where they should)
• with SSH goto /usr/bin and type iunlocker
• when the program halts. Remove your needles and press a character on your keyboard followed by Enter.
• you will see a lot of numbers running on your screen. This takes time
• after it’s done type : bbupdater -v
• it should show : +xgendata and some more text
• in SSH type: minicom
• then type: AT+CLCK=”PN”,0,”00000000″
• then type: AT+CLCK=”PN”,2 this should respond in a 0 .
hay you have unlock your iphone. Now its SIM free you can use with any gsm network who offers better plans.
• now copy back the commcenter.plist file. This is important steps
•
• now copy the file lockdownd located in the .rar to /usr/libexec
• now assemble your iphone back together and insert your sim.
• Reboot your iphone. And start calling with unlocked iphone.
Unlock iphone steps
Unlock iphone steps
Step5
Power-up the iPhone
Congratulation if you have completed step 4.now power up your phone by connecting it with USB. Do not connect case with power button to power up iPhone. As you connect with USB, iPhone will be powered up. Secondly don't waste time compiling minicom. Download the binary minicom and termcap from internet. Search for unlock iPhone + minicom and unlock iphone + termcap on google. You will get link fro downloading.

Step 6
Take a NOR Dump
Now, with the switch off, your baseband should be working perfectly. Here you should take a NOR dump of your phone. I don’t know the perfect method for how to take nor dump. This is back up of your iphone if something goes wrong then you can restore it later. You can extract the firmware from this as well, which we'll get to later.
Step7
Erase the Modem Firmware with the help of ieraser tool. Search google for unlock iphone + ieraser.
So here is the first tool release, iEraser. This erases the current firmware on your modem.
Note: in every phone there is a modem (MOdulation DEModulation). You can put it again with bbupdater.
Now check the modem version in settting about. It will be like 3.13(1.0). According to your modem version you need secpack to use this tool. The erase of this section is protected. You also need ramdisk according to your modem version.
Then go into this directory "/usr/local/standalone/firmware" and get the ICE*.fls file. Extract 0x1a4-0x9a4 and save it in a file called secpack and place it in the same directory as the ieraser tool. Run ieraser. This should erase the modem firmware. I think this unlock iphone method is vary difficult only george feel it easy.
Step 8
Patch the Firmware
Now to unlock iphone you need to patch the firmware. First extract firmware from your nor dump. Now you need range from 0x20000-0x304000. Save this file as "nor". The patches you need to apply are as follows. These are offsets from the beginning of the file to saved as "nor". Choose your version, and patch.
3.12: (213740): 04 00 a0 e1 -> 00 00 a0 e3
3.14: (215148): 04 00 a0 e1 -> 00 00 a0 e3
you need this file in next step save it properly.
Step9
Now download iunlocker software from internet. This tool uploads a small program called "testcode.bb" to the baseband using the bootrom exploit. This program needs to be in dir with NOR, the file you have obtained in the last step. You need to have the switch on when running this program. This will download and run the code in "testcode.bb" Then the program will stop and ask to turn off the switch. Do so. You type any character then hit enter. The nor download starts right away. When the counter reaches 0x2E4000, it is done.
type : bbupdater -v
It should show : +xgendata and some more text. If it does, the nor upload was successful.
Step 10: The Last One
Now in SSH go to /dev/tty.baseband
Type : minicom
If you already used up your attempt counter, the iphone should already be unlocked.
• then type: AT+CLCK=”PN”,0,”00000000″
• then type: AT+CLCK=”PN”,2 this should respond in a 0 .
That will unlock the iphone for sure.
Your iphone is now unlocked.
Exit minicom
and copy the CommCenter.plist back to its place. Reboot. iASign. And enjoy your unlocked iPhone. Now you can use any gsm sim with your iphone.
Step5
Power-up the iPhone
Congratulation if you have completed step 4.now power up your phone by connecting it with USB. Do not connect case with power button to power up iPhone. As you connect with USB, iPhone will be powered up. Secondly don't waste time compiling minicom. Download the binary minicom and termcap from internet. Search for unlock iPhone + minicom and unlock iphone + termcap on google. You will get link fro downloading.
Step 6
Take a NOR Dump
Now, with the switch off, your baseband should be working perfectly. Here you should take a NOR dump of your phone. I don’t know the perfect method for how to take nor dump. This is back up of your iphone if something goes wrong then you can restore it later. You can extract the firmware from this as well, which we'll get to later.
Step7
Erase the Modem Firmware with the help of ieraser tool. Search google for unlock iphone + ieraser.
So here is the first tool release, iEraser. This erases the current firmware on your modem.
Note: in every phone there is a modem (MOdulation DEModulation). You can put it again with bbupdater.
Now check the modem version in settting about. It will be like 3.13(1.0). According to your modem version you need secpack to use this tool. The erase of this section is protected. You also need ramdisk according to your modem version.
Then go into this directory "/usr/local/standalone/firmware" and get the ICE*.fls file. Extract 0x1a4-0x9a4 and save it in a file called secpack and place it in the same directory as the ieraser tool. Run ieraser. This should erase the modem firmware. I think this unlock iphone method is vary difficult only george feel it easy.
Step 8
Patch the Firmware
Now to unlock iphone you need to patch the firmware. First extract firmware from your nor dump. Now you need range from 0x20000-0x304000. Save this file as "nor". The patches you need to apply are as follows. These are offsets from the beginning of the file to saved as "nor". Choose your version, and patch.
3.12: (213740): 04 00 a0 e1 -> 00 00 a0 e3
3.14: (215148): 04 00 a0 e1 -> 00 00 a0 e3
you need this file in next step save it properly.
Step9
Now download iunlocker software from internet. This tool uploads a small program called "testcode.bb" to the baseband using the bootrom exploit. This program needs to be in dir with NOR, the file you have obtained in the last step. You need to have the switch on when running this program. This will download and run the code in "testcode.bb" Then the program will stop and ask to turn off the switch. Do so. You type any character then hit enter. The nor download starts right away. When the counter reaches 0x2E4000, it is done.
type : bbupdater -v
It should show : +xgendata and some more text. If it does, the nor upload was successful.
Step 10: The Last One
Now in SSH go to /dev/tty.baseband
Type : minicom
If you already used up your attempt counter, the iphone should already be unlocked.
• then type: AT+CLCK=”PN”,0,”00000000″
• then type: AT+CLCK=”PN”,2 this should respond in a 0 .
That will unlock the iphone for sure.
Your iphone is now unlocked.
Exit minicom
and copy the CommCenter.plist back to its place. Reboot. iASign. And enjoy your unlocked iPhone. Now you can use any gsm sim with your iphone.
Subscribe to:
Posts (Atom)