|
Welcome to the GSM-Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. Only registered members may post questions, contact other members or search our database of over 8 million posts. Registration is fast, simple and absolutely free so please - Click to REGISTER! If you have any problems with the registration process or your account login, please contact contact us . |
|
Register | FAQ | Donate | Forum Rules | Root any Device | ★iPhone Unlock★ | ★ Direct Codes ★ | Direct Unlock Source |
View Poll Results: Do you need solution for iphone 3gs baseband ? | |||
Yes will be great !! | 354 | 64.95% | |
No ,we dont need that on riff | 10 | 1.83% | |
Yes and also need solution for all iphone recent models | 181 | 33.21% | |
Voters: 545. You may not vote on this poll |
| LinkBack | Thread Tools | Display Modes |
11-24-2011, 01:58 | #17 (permalink) | |
No Life Poster Join Date: Jan 2005 Location: the earth Age: 41
Posts: 1,037
Member: 103024 Status: Offline Thanks Meter: 616 | Quote:
iphone 4 3gs and whith this solution is downgrading baseband and firmware also and can repair imei too please specify the posibilities to work on this solution ? thanks for share | |
11-26-2011, 04:39 | #19 (permalink) |
No Life Poster Join Date: Jan 2005 Location: the earth Age: 41
Posts: 1,037
Member: 103024 Status: Offline Thanks Meter: 616 | another tip for research , here is the possible jtag interface on the iphone 4 on the board, this is placed un der the simcard conector , too risky way and hard place to solder the jtag but possible for sure |
11-26-2011, 23:42 | #23 (permalink) | |
No Life Poster Join Date: Jan 2005 Location: the earth Age: 41
Posts: 1,037
Member: 103024 Status: Offline Thanks Meter: 616 | Quote:
the goal is downgrade the baseband on the iphone 4 to 01.50 by reflashing baseband chip using the jtag , i prety sure riff box can support thie chipset inside, the problem is if pda disable the jtag , or if jtag is totaly disabled also maybe can be possible to change or modify the ECID to rewrite and the we can program some ECID with blobs on cydia to downgrade via itunes to 4.3.3 and got unlock & jailbroken device thats why i ask to legija if is possible cause he is the expert | |
11-28-2011, 02:13 | #24 (permalink) |
No Life Poster Join Date: Aug 2004 Location: Sofia Age: 43
Posts: 1,541
Member: 77941 Status: Offline Thanks Meter: 120 | please boys start use your brains, here is enought info to make your own research .... yes it will be great to have "one button" baseband downgrader but it is not so easy 3G/3GS/Ipad 3G uses X-Gold 608 baseband processor is also known as the PMB8878 and is also used on the LG KM900 ARENA, architecture is ARM926 http://img218.imageshack.us/img218/149/baseband.jpg memory map FLASH 0x20000000 0x1000000 CODE 0x20000000 0x40000 0b0010(bootstrapper) CODE 0x20040000 0xDC0000 0b0100(main firmware) FFS 0x20A00000 0x100000 0b1100(empty) DYNFFS 0x20A00000 0x100000 0b1100(empty) FFS 0x20B00000 0x40000 0b1011(empty) DYN_EEP 0x20E40000 0x80000 0b0110 SECPACK 0x20EC0000 0x40000 SECZONE 0x20F80000 0x40000 STATIC_EEP 0x20FC0000 0x40000 0b0111 RAM 0x40000000 0x800000 BR |
The Following 6 Users Say Thank You to tostefo For This Useful Post: |
12-01-2011, 08:03 | #30 (permalink) | |
No Life Poster Join Date: Jan 2005 Location: the earth Age: 41
Posts: 1,037
Member: 103024 Status: Offline Thanks Meter: 616 | Quote:
second idea is , the jtag can be blocked by the firmware and maybe have especial way to conect or we cant and the only way to get sucess is desoldering flash ic from board and program using external programer thats why i want to know if any one have sucess experience by trying to conect by jtag the goal is , 1.-read full dump from memory ( just in case ) 2.-get dump from full memory from a good baseband phone 05.13 for example to have secpack to send to this region "SECPACK 0x20EC0000 0x40000" maybe this can solve just the firmware of baseband and leave intact the SECZONE 0x20F80000 0x40000 i think imei is located on this region( seczone ) , but if we rewrite from the other phone full dump , all will be writen including imei and this will cause imei 004999xxxx and phone will work but will have imei problems i have changed baseband flash on 1 iphone 4, the phone works on 2 of 3 carriers , but need to unlock it using gevey , this imei 00499xxx avoid factory activation via itunes , hacktivation is needed to activate phone after imei mismatch so the goal is flash only the baseband section without the imei if anybody have sucess to conect via jtag port please share here Last edited by rogerboogie; 12-01-2011 at 08:10. | |
Bookmarks |
| |
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
need ericsson 88 cable | migdamas | Old Ericsson Phones & Sony Phones | 2 | 03-24-2017 16:24 |
Need software upgrade for Nokia 5110 | ptkrf | Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) | 30 | 02-24-2016 10:21 |
How can I do a Welcome note for my 6110 a dosn't have any one ? | Viper | Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) | 8 | 06-27-2015 11:57 |
needed pinout for carkit(N61xx) | mobileinfo | Nokia Hardware & Hardware Repair | 2 | 07-23-2013 02:41 |
need eeprom photo???? | mobileinfo | Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) | 0 | 05-26-1999 11:35 |
|