-
07-19-2011, 07:11 PM #1
How can I get iP4 out of restore mode without updating the baseband?
Picked up a $50 iPhone 4 today that had a shattered back and had the "iPhone is disable" message on it due to too many failed passcode attempts. I put it in restore mode to see what color the iTunes logo would be before doing a restore and its the older silver CD logo. So I know its running iOS 4.1 or lower. I'm hoping I scored a 4.0.x firmware and can unlock it. Problem is, the phone doesn't have files saved (tried restoring to 4.3.3 using pwnage) and even if I guessed the firmware correctly using redsnow, its disabled because of the passcode issue.
Any ideas how I can do a custom restore to 4.3.4? Will snowbreeze do this yet? I have a MacBook so I'm not up on snowbreeze but if it can get me custom 4.3.4, I can get access to a PC to do it. Help me out ya'll, thanks!
-
07-20-2011, 07:52 AM #2Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
If you believe it is 4.1 or lower then you can always try bypassing the passcode screen. However if the device is not yours (which is why the passcode screen would be on is my guess) then more than likely its going to get blacklisted eventually.
The bypass will only work if you're on 4.1 or lower from what I have tested. I tried this on 4.2.1 and 4.3.3 and it didn't work.
Turn the device on and get to the passcode screen
Go the emergency call screen and dial any random number
Hit the call button and immediately hit the power button.
You should now be in the phone dialer keypad screen
-
07-20-2011, 08:01 AM #3
-
07-20-2011, 08:04 AM #4Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
As far as I know thats the only bypass for the passcode screen. It was a major flaw and Apple had it patched up in the next update after 4.1
-
07-20-2011, 08:15 AM #5My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
Download Ifaith
Extract blobs.( this is shud tell u firmware )
Make signed ipsw
Restore.
-
07-20-2011, 09:56 AM #6Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
-
07-20-2011, 10:31 AM #7My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
-
07-20-2011, 10:40 AM #8Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
It only dumps if there is something to be dumped. As I stated before if the device has no shsh saved either with TU or on Cydia then ifaith is not gonna grab anything.
I'm not denying your post about using ifaith. I am simply stating that ifaith will only pick up what it sees.Last edited by ihappy; 07-20-2011 at 10:53 AM.
-
07-20-2011, 11:19 AM #9My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
Ifaith dumps shsh even if they are not on Cydia and tu.
All devices which run x firmware has x blobs. Ifaith is the only software which can dump/extract the blob of the firmware the device is running on even when U are terribly misinformed.
Official statement
iFaith is the first public SHSH Dumper that dumps the SHSH blobs for the current iOS revision running on your iDevice.
I have estracted numerous blobs using it. Adviced many ppl to use it. I know am not wrong :-)
Read this
when your device comes from Apple, it comes with a firmware pre-installed. If Apple is no longer signing that firmware, you wouldn't be able to save the SHSH blobs in the past. With ih8sn0ws new tool, you can dump the SHSH blob directly from your currently installed firmware. The way this works is that Apple has signed image files that show up during the boot sequence with the SHSH blob. iFaith allows you to dump your SHSH key directly from those files.
After you have dumped the files, you then patch the firmware file you are trying to downgrade to with your SHSH key, this firmware file is considered a signed firmware file. Once you have created it, you simply restore it in Pwned-DFU mode just like you would if you were restoring any other custom firmware. iFaith is compatible with mostly all iDevices except for the iPad2 and a few others.Last edited by xtacy; 07-20-2011 at 11:29 AM.
-
07-20-2011, 12:44 PM #10Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
You are correct. I understand what you are saying now.
But now am I to believe that after you extract the shsh blobs and create a signed ipsw with the shsh blobs intact using ifaith that it will preserve the baseband as he clearly is trying to do??Last edited by ihappy; 07-20-2011 at 12:47 PM.
-
07-20-2011, 02:12 PM #11My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
If he is on 4.1 the baseband won't b unlockable . If he is 4.0 it will be. Baseband won't change
-
07-20-2011, 02:15 PM #12Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
Interesting. So basically ifaith not only extracts the shsh blobs of the current fw on the device but it also preserves the current baseband as well. Thanks for that insight.
-
07-20-2011, 02:28 PM #13My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
Nopes. Doesn't preserve. But the fact that we don know the current firmware doesn't help. I misquoted my statement.
-
07-20-2011, 02:44 PM #14Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
This is true. But he can still try and extract the shsh blobs and save them correct?
Create a custom fw using pwnage tool or sn0wbreeze to preserve said baseband and still use the extracted shsh blobs to restore??
I'm just brainstorming here. I haven't done this procedure before
-
07-20-2011, 02:58 PM #15My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
Yeah
Technically yeah :-)
-
07-20-2011, 04:05 PM #16
Is iFaith osx compatible? The phone could potentially be running 4.1 and thus all of this be in vain since 4.1 has a baseband I can't unlock. I just figured it was worth a shot and maybe I'll get lucky running 4.0.x
Last edited by jdm.accord; 07-20-2011 at 04:09 PM.

-
07-20-2011, 04:10 PM #17Livin the iPhone Life
- Join Date
- Nov 2007
- Location
- Arkham Asylum
- Posts
- 1,026
- Thanks
- 10
- Thanked 103 Times in 102 Posts
-
07-20-2011, 05:34 PM #18
-
07-20-2011, 08:31 PM #19
so I fired up my old PC (07 model running vista) and tried to get iFaith. Every time I download it from any source, the zip file is empty. I have the .NET 2.0 framework or whatever already installed as part of Vista. Any help would be appreciated

-
07-20-2011, 11:32 PM #20My iPhone is a Part of Me
- Join Date
- May 2011
- Location
- Mumbai
- Posts
- 980
- Thanks
- 1
- Thanked 92 Times in 91 Posts
Try another mirror :-)
Ih8sn0w sux that guy is a rude ***



LinkBack URL
About LinkBacks
Reply With Quote

