GSM Shop GSM Shop
GSM-Forum  

Welcome to the GSM-Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features.
Only registered members may post questions, contact other members or search our database of over 8 million posts.

Registration is fast, simple and absolutely free so please - Click to REGISTER!

If you have any problems with the registration process or your account login, please contact contact us .

Go Back   GSM-Forum > Product Support Sections > Hard/Software Products (official support) > RIFF Box Team > RIFFBOX


View Poll Results: Do you need solution for iphone 3gs baseband ?
Yes will be great !! 354 64.95%
No ,we dont need that on riff 10 1.83%
Yes and also need solution for all iphone recent models 181 33.21%
Voters: 545. You may not vote on this poll

Closed Thread
 
LinkBack Thread Tools Display Modes
Old 11-23-2011, 22:48   #16 (permalink)
Freak Poster
 
Join Date: May 2003
Posts: 178
Member: 28760
Status: Offline
Thanks Meter: 4

btw if any one interest he takes 120$ for the job... if u don`t have shsh there is no problem also
 
Old 11-24-2011, 01:58   #17 (permalink)
No Life Poster
 
rogerboogie's Avatar
 
Join Date: Jan 2005
Location: the earth
Age: 41
Posts: 1,037
Member: 103024
Status: Offline
Thanks Meter: 616
Quote:
Originally Posted by CTPACT View Post
btw if any one interest he takes 120$ for the job... if u don`t have shsh there is no problem also
which iphone version is currently working ?

iphone 4
3gs

and whith this solution is downgrading baseband and firmware also and can repair imei too please specify the posibilities to work on this solution ?

thanks for share
 
Old 11-25-2011, 20:01   #18 (permalink)
Freak Poster
 
toky06's Avatar
 
Join Date: Nov 2005
Location: italy vicenza
Posts: 158
Member: 196627
Status: Offline
Sonork: 1608298
Thanks Meter: 6
Donate money to this user
wow nice .........very good idea
 
Old 11-26-2011, 04:39   #19 (permalink)
No Life Poster
 
rogerboogie's Avatar
 
Join Date: Jan 2005
Location: the earth
Age: 41
Posts: 1,037
Member: 103024
Status: Offline
Thanks Meter: 616
another tip for research , here is the possible jtag interface on the iphone 4 on the board, this is placed un der the simcard conector , too risky way and hard place to solder the jtag but possible for sure
Attached Images
File Type: jpg iphone 4 jtag.jpg (584.0 KB, 1760 views)
 
Old 11-26-2011, 19:36   #20 (permalink)
No Life Poster
 
OMBOSSMAN's Avatar
 
Join Date: Dec 2001
Location: [☾✫ ]
Age: 58
Posts: 2,141
Member: 8159
Status: Offline
Thanks Meter: 98
Yes and also need solution for all iphone recent models vote now
 
Old 11-26-2011, 21:31   #21 (permalink)
Freak Poster
 
azerty_soft's Avatar
 
Join Date: Aug 2005
Location: Morocco
Age: 44
Posts: 121
Member: 168313
Status: Offline
Sonork: 100.1609490
Thanks Meter: 50
baseband ic

with jtag i dont know (i thank imposible )
change baseband ic if you wont bath be careful it's easy
 
Old 11-26-2011, 21:45   #22 (permalink)
Freak Poster
 
Join Date: May 2007
Location: MRU
Age: 34
Posts: 247
Member: 499093
Status: Offline
Thanks Meter: 26
Quote:
Originally Posted by azerty_soft View Post
with jtag i dont know (i thank imposible )
change baseband ic if you wont bath be careful it's easy
have you tried for iphone 4 , where do we get already programmed baseband chip for iphone 4??
 
Old 11-26-2011, 23:42   #23 (permalink)
No Life Poster
 
rogerboogie's Avatar
 
Join Date: Jan 2005
Location: the earth
Age: 41
Posts: 1,037
Member: 103024
Status: Offline
Thanks Meter: 616
Quote:
Originally Posted by yedish View Post
have you tried for iphone 4 , where do we get already programmed baseband chip for iphone 4??
i think no one have progamed baseband ic with 01.59 baseband for iphone 4 i never know something regarding this

the goal is downgrade the baseband on the iphone 4 to 01.50 by reflashing baseband chip using the jtag , i prety sure riff box can support thie chipset inside, the problem is if pda disable the jtag , or if jtag is totaly disabled

also maybe can be possible to change or modify the ECID to rewrite and the we can program some ECID with blobs on cydia to downgrade via itunes to 4.3.3 and got unlock & jailbroken device

thats why i ask to legija if is possible cause he is the expert
 
Old 11-28-2011, 02:13   #24 (permalink)
No Life Poster
 
tostefo's Avatar
 
Join Date: Aug 2004
Location: Sofia
Age: 43
Posts: 1,541
Member: 77941
Status: Offline
Thanks Meter: 120
please boys start use your brains, here is enought info to make your own research .... yes it will be great to have "one button" baseband downgrader but it is not so easy

3G/3GS/Ipad 3G uses X-Gold 608 baseband processor is also known as the PMB8878 and is also used on the LG KM900 ARENA, architecture is ARM926

http://img218.imageshack.us/img218/149/baseband.jpg


memory map
FLASH 0x20000000 0x1000000
CODE 0x20000000 0x40000 0b0010(bootstrapper)
CODE 0x20040000 0xDC0000 0b0100(main firmware)
FFS 0x20A00000 0x100000 0b1100(empty)
DYNFFS 0x20A00000 0x100000 0b1100(empty)
FFS 0x20B00000 0x40000 0b1011(empty)
DYN_EEP 0x20E40000 0x80000 0b0110
SECPACK 0x20EC0000 0x40000
SECZONE 0x20F80000 0x40000
STATIC_EEP 0x20FC0000 0x40000 0b0111
RAM 0x40000000 0x800000

BR
Attached Images
File Type: jpg 3gs JTAG.JPG (51.9 KB, 516 views)
 
The Following 6 Users Say Thank You to tostefo For This Useful Post:
Show/Hide list of the thanked
Old 11-28-2011, 16:01   #25 (permalink)
Freak Poster
 
Join Date: Aug 2007
Posts: 320
Member: 562359
Status: Offline
Thanks Meter: 39
modifying baseband = unlock can be done !!!!!!
it's so hard to do and must have a big hard tolls to do it !!
 
Old 11-29-2011, 08:19   #26 (permalink)
No Life Poster
 
wasim_mobile200's Avatar
 
Join Date: Aug 2006
Location: Wales
Posts: 581
Member: 332001
Status: Offline
Thanks Meter: 58
yes we need it will be great...............
 
Old 11-30-2011, 01:02   #27 (permalink)
No Life Poster
 
ferhel's Avatar
 
Join Date: May 2007
Location: QC FAIRVIEW
Posts: 1,111
Member: 504865
Status: Offline
Thanks Meter: 213
Yes if possible we want security repair to
 
Old 11-30-2011, 19:05   #28 (permalink)
Freak Poster
 
Join Date: Apr 2004
Location: romania
Posts: 211
Member: 63457
Status: Offline
Thanks Meter: 26
would be very good to fix my iPhone
 
Old 11-30-2011, 22:17   #29 (permalink)
No Life Poster
 
rogerboogie's Avatar
 
Join Date: Jan 2005
Location: the earth
Age: 41
Posts: 1,037
Member: 103024
Status: Offline
Thanks Meter: 616
Where are the supporters ? Whats the possible answer to this request please let us know
 
Old 12-01-2011, 08:03   #30 (permalink)
No Life Poster
 
rogerboogie's Avatar
 
Join Date: Jan 2005
Location: the earth
Age: 41
Posts: 1,037
Member: 103024
Status: Offline
Thanks Meter: 616
Quote:
Originally Posted by tostefo View Post
please boys start use your brains, here is enought info to make your own research .... yes it will be great to have "one button" baseband downgrader but it is not so easy

3G/3GS/Ipad 3G uses X-Gold 608 baseband processor is also known as the PMB8878 and is also used on the LG KM900 ARENA, architecture is ARM926

http://img218.imageshack.us/img218/149/baseband.jpg


memory map
FLASH 0x20000000 0x1000000
CODE 0x20000000 0x40000 0b0010(bootstrapper)
CODE 0x20040000 0xDC0000 0b0100(main firmware)
FFS 0x20A00000 0x100000 0b1100(empty)
DYNFFS 0x20A00000 0x100000 0b1100(empty)
FFS 0x20B00000 0x40000 0b1011(empty)
DYN_EEP 0x20E40000 0x80000 0b0110
SECPACK 0x20EC0000 0x40000
SECZONE 0x20F80000 0x40000
STATIC_EEP 0x20FC0000 0x40000 0b0111
RAM 0x40000000 0x800000

BR
do you try by yourself ? please let me know i try to conect with the jtag by selecting ARM926 with the lg P500 profile , but i faced one problem , i cant find nrst pin on the jtag , as fas as i know riff box requires nrst signal to conect

second idea is , the jtag can be blocked by the firmware and maybe have especial way to conect

or we cant and the only way to get sucess is desoldering flash ic from board and program using external programer

thats why i want to know if any one have sucess experience by trying to conect by jtag

the goal is ,

1.-read full dump from memory ( just in case )
2.-get dump from full memory from a good baseband phone 05.13 for example
to have secpack to send to this region "SECPACK 0x20EC0000 0x40000"
maybe this can solve just the firmware of baseband and leave intact the SECZONE 0x20F80000 0x40000


i think imei is located on this region( seczone ) , but if we rewrite from the other phone full dump , all will be writen including imei and this will cause imei 004999xxxx and phone will work but will have imei problems

i have changed baseband flash on 1 iphone 4, the phone works on 2 of 3 carriers , but need to unlock it using gevey , this imei 00499xxx avoid factory activation via itunes , hacktivation is needed to activate phone after imei mismatch

so the goal is flash only the baseband section without the imei

if anybody have sucess to conect via jtag port please share here

Last edited by rogerboogie; 12-01-2011 at 08:10.
 
Closed Thread

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
need ericsson 88 cable migdamas Old Ericsson Phones & Sony Phones 2 03-24-2017 16:24
Need software upgrade for Nokia 5110 ptkrf Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 30 02-24-2016 10:21
How can I do a Welcome note for my 6110 a dosn't have any one ? Viper Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 8 06-27-2015 11:57
needed pinout for carkit(N61xx) mobileinfo Nokia Hardware & Hardware Repair 2 07-23-2013 02:41
need eeprom photo???? mobileinfo Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 0 05-26-1999 11:35

 



All times are GMT +1. The time now is 20:51.



Powered by Searchlight © 2024 Axivo Inc.
vBulletin Optimisation provided by vB Optimise (Pro) - vBulletin Mods & Addons Copyright © 2024 DragonByte Technologies Ltd.
- GSM Hosting Ltd. - 1999-2023 -
Page generated in 0.34772 seconds with 11 queries

SEO by vBSEO