Official Jailbreak for iPhone 3GS iOS 4 with new Bootrom
Here at Crenk we have previously posted about jailbreaking your iPhone 3GS for Windows and Mac. We have noticed that some people have had issues with these jailbreaking options. Instead of just posting another alternative, we thought we would wait to provide the option that worked 100% of the time.
Here it is!
WHAT YOU WILL NEED:
* An iPhone 3G[S] — new bootrom
* 3.1.2 SHSH blobs.
* difrnt’s iBSS grabber
* Payload Pwner-r2 for the 3GS.
* sn0wbreeze V1.6.2
* iBooty
* LibUSB (64-Bit users read carefully!!!)
* 3.1.2/4.0 3GS firmware downloaded.
——-
STEP A : Grabbing your 3.1.2 iBSS file.
Pointing your hosts :
I : If you have your shsh blobs saved on Cydia/Saurik’s server then follow this tutorial. — http://saurik.com/id/12
II : If you have it saved with TinyUmbrella, then download the GUI here. — http://thefirmwareumbrella.blogspot.com/
——-
Restoring to grab the iBSS file.
I : Place your device in DFU.
II : Start up the iBSS/iBEC grabber.
III : Put the save folder on a new folder on your desktop.
IV : Hit “Start Monitoring”.
V : Now go back to iTunes and do SHIFT + Restore. Then browse for your 3.1.2 IPSW. You will need to restore
to 3.1.2 in order to pwn 4.0.
——-
Saving your iBSS
I : After Restoring, Go to the folder that you have specified to save your iBSS file.
II : You will see folders like (Per**.tmp). Go into one of them, and you’ll see a folder called “Firmware”. Go there. Then go to the folder “dfu”.
III : Copy the iBSS file to a safe place, then you can remove the folder created by the iBSS Grabber.
——
STEP B : Creating custom 4.0 firmware.
I : Download sn0wbreeze from http://ih8sn0w.com and create your custom 4.0 ipsw.
*Ignore the warnings after browsing for the ipsw.*
——
STEP C : Installing LibUSB for iRecovery
Run this mini tool to detect your O/S + Arch. — Windows + Arch. Detector
*********
WARNING : IF LIBUSB IS NOT INSTALLED PROPERLY, YOUR USB MIGHT NO LONGER WORK!
*********
Windows XP Users download this installer — LibUSB Installer
*********
Windows Vista/7 users RUNNING 32-Bit:
* Download the installer and run it in compatibility mode for Windows XP.
*********
If you are a 64-Bit user, follow this tutorial — LibUSB 64-Bit Tut
*********
Once LibUSB is installed iRecovery should be able to function now.
——-
STEP D : Pwning iBSS + iBoot
I : Download this easy tool here — Payload Pwner-r2 for 3GS // It will help you create the payloads.
**SAVE THE PAYLOADS WHERE iBooty is.**
——-
STEP E: iBooty Prep.
Most of you know of the utility “iBooty” that I made for Aki_nG.
It will work as long as you place all of the correct files there.
I : Download iBooty GUI here — iBooty for 3GS and Extract it.
II : Extract your Custom IPSW created by sn0wbreeze with 7-Zip or another un-archiver.
III : Grab the kernelcache and bring it into the same folder as ibooty.
Also grab the iBEC from the folder “Firmware\dfu\iBEC.n88ap.RELEASE.dfu”
IV :
* Rename your iBSS 3.1.2 signed to “ibss312.dfu”
* Rename your Kernel 4.0-Custom to “kernel.40″
* Rename your iBEC 4.0-Custom to “ibec40.dfu”
======
Your folder should look like this :
- iboot.payload <– Created with Payload Pwner.
- exploitibss312 <– Created with Payload Pwner.
- ibec40.dfu <– Grabbed from Custom IPSW made by sn0wbreeze.
- irecovery.exe <– Comes with iBooty.
- readline5.dll <– Comes with iBooty.
- iBooty.exe <– Comes with iBooty.
- ibss312.dfu <– THIS NEEDS TO BE YOUR iBSS from the restore!
- kernel.40 <– Grab from Custom IPSW made by sn0wbreeze.
- sn0w.img3 <– Comes with iBooty.
======
——-
STEP F: Restoring to 4.0 + Booting
——-
*MAKE SURE YOU ARE ON 3.1.2 WHEN DOING THIS*
I : Run iBooty and Select “Prepare Device for Custom Firmware”. Run the Process and if you see a snow flake, you can proceed!
II : Now open iTunes and restore to the custom ipsw.
***WHEN DONE, YOUR DEVICE WILL HAVE A BLACK SCREEN AND NOT BOOT! ITS IN A DFU LOOP [THIS IS NORMAL!]***
——-
STEP G : Booting
I : Just Re-Run iBooty and select “Boot It”. If all goes well it will boot!
——-
Enjoy!
——-
Hopefully I can get a tool out there that will make all of this much easier. Of course, that only happens when I get bored from ppl msging me on Twitter =p
============
CREDITS:
============
* iPhone Dev-Team (Borrowed the iBoot payload from them =])
* msft.Guy (Helping out here and there.)
* AKi_nG (For being the first to test this)
* difrnt (For iBSS Grabber)
* posixninja (For his continuous help!!!)






19 Comments
I had a 3GS running 3.1.2 and updated to OS4 by error. I dont have shsh with cydia or Tiny Umbrella saved before the updated OS4. Now I have 3GS running OS4 (8A293). Can I dowgrade back to 3.1.2 or ??? or jaibreak OS4?
thanks
me too having the same issue as described above, can anyone please help me..
my iphone is now saying emergency call only.
get a friend having ATT sim, and borrow it for 1 minute and put it in and open itune to activate and at least you will have an expensive ipod iphone while waiting… hehe. Or go to ebay buy a ATT sim for 1.99 that will fo too…
hey minh
my guide can unlock & jailbreak ur iphone 3gs 4.0 with downgrade to 3.1.2 email me on nirvyas@yahoo.com if u want it paying paypal
regards
nirav
I am also suffering from same thing. If u got any workaround for this kindly do tell me on my email javed.akhtar@hotmail.com
hey jay
my guide can unlock & jailbreak ur iphone 3gs 4.0 with downgrade to 3.1.2 email me on nirvyas@yahoo.com if u want it paying paypal
regards
nirav
hey jitendra
my guide can unlock & jailbreak ur iphone 3gs 4.0 with downgrade to 3.1.2 if required email me on nirvyas@yahoo.com if u want it paying paypal
regards
nirav
douchebag
Hi
I want to know how to unlock & Jailbreak iPhone 4?
hey arkar
my guide can unlock & jailbreak ur iphone 3gs 4.0 with downgrade to 3.1.2 email me on nirvyas@yahoo.com if u want it paying paypal
regards
nirav
i have the same issue:
I had a 3GS running 3.1.2 and updated to OS4 by error. I dont have shsh with cydia or Tiny Umbrella saved before the updated OS4. Now I have 3GS running OS4 (8A293). Can I dowgrade back to 3.1.2 or ??? or jaibreak OS4?
thanks
hey anuj
my guide can unlock & jailbreak ur iphone 3gs 4.0 with downgrade to 3.1.2 email me on nirvyas@yahoo.com if u want it paying paypal
regards
nirav
ARe you sure, I ont have shsh with cydia. and my ipgone is 3GS
Get Skype 2.01. now is multitasking, means it’s iddle and push So you can receive and call Voip for free. at least your expensive Iphone OS4 now becomes an expensive IPOD with CALLING features. Dont need ATT or Tmobile no more. an if you get a number for (60/year) then you can call anyphone.
Extra bonus solution:
Go to your tmobile website or borrow a tmobile phone and plug your mobile sim in, and set forward your tmobile number to your new SKYPE number then the magic is done. Yu won miss any call of your tmobile phone number and give your friend yur new Skype number. So if you can get wifi then you can call and receive call. Magic hat.
Nirav, why are you trying to charge for a fake jailbreak that won’t work when we can wait for the Dev Team to release an official “free” jailbreak and have our phones work 100%!!! And not have our iphones bricked with your fake jailbreak!!!
just go to http://www.jailbreakme.com using ur iphone or ipad Safari then slide to jailbreak. is easy as abc. it work on both my iphone ios4.0.1 n ipad 3.2.1 You will have to try getting into the server as most time it be busy.