Follow on Twitter

4.0 Jailbreak iPhone 3GS with sn0wbreeze 1.7 Download on Windows [How To]

by EngineerHead on July 11, 2010

Advertisement

Earlier we have informed you about sn0wbreeze 1.7 and guide to jailbreak iPod Touch [MC Models]on 4.0 firmware. Sn0wbreeze 1.7 along with some tools and tweaks can provide a tether 4.0 jailbreak for iPhone 3GS new bootrom and iPod Touch MC Models on 3.1.2 firmware or 3.1.2 SHSH Blobs. The procedure is somewhat complex for normal users as it involves lot of tools besides sn0wbreeze 1.7.

Recently ih8sn0w, the developer of sn0wbreeze, had made some changes in the tutorial which lessens the burden on user to jailbreak iPhone 3GS or iPod Touch MC models. Here it is

If people read the tutorial they will succeed. If not they will fail.

I figured making a tool would take a bit too long. So, i’m going to write up this tutorial. It isn’t recommended for regular users.

**BEFORE PROCEEDING, ENSURE THAT YOU HAVE YOUR iPod/PHONE BACKED UP!**

THIS TUTORIAL ASSUMES YOU ARE ALREADY ON 3.1.2!

Q: Why not 3.1.3???
A: The exploit used is closed in 3.1.3 and beyond.
——-
WHAT YOU WILL NEED:

* An iPhone 3G[S] or iPod Touch 2G MC or iPod Touch 3– new bootrom
* 3.1.2 already installed or 3.1.2 installed via SHSH blobs. <– Broken blackra1n’d devices will work. (Especially if Spirit messed you up!).
* Payload Pwner-r6
* sn0wbreeze V1.7
* iBooty V1.5
* 3.1.2/4.0 firmware downloaded.
* iTunes 9.2 Installed
——-
STEP A : Pwning iBoot

I : Download this easy tool here — Payload Pwner-r6 // It will help you create the payload.

II : Extract it to a directory and run Pwner.exe

**SAVE THE PAYLOAD WHERE iBooty is.**

——-
STEP B : Making a Custom IPSW

I : Download sn0wbreeze V1.7 from here — sn0wbreeze V1.7

II : USE EXPERT MODE!

III : In General, Checkmark “Disable NOR Flash” <– THIS IS ESSENTIAL!!!!

IV : Build it. It will be on your Desktop.

**CUSTOM BOOT LOGOS THAT ARE MADE IN sn0wbreeze WILL NOT WORK ON NEW BOOTROMS!**

*Mac Users : PwnageTool does not have this option. I don’t think it will ever be in there. Use a Windows Virtual Machine or friends PC to create your firmware.*
——-
STEP C: iBooty Prep.

Most of you know of the utility “iBooty” that I made for Aki_nG.

It will work as long as you place all of the correct files there.

I : Download iBooty GUI here — iBooty V1.5 and Extract it.

II : Extract your Custom IPSW created by sn0wbreeze with 7-Zip or another un-archiver.

III : Grab the kernelcache and bring it into the same folder as ibooty.
Also grab iBEC from the folder “Firmware\dfu”.
Aswell as DeviceTree from the folder “Firmware\all_flash\all_flash.n88ap.production\DeviceTree.n88ap”.

IV :
* Rename your Kernel 4.0-Custom to “kernel.40″
* Rename your iBEC 4.0-Custom to “ibec.40″
* Rename your DeviceTree 4.0-Custom to “devtree.40″
***MAKE SURE YOU REMOVE THE .img3/.dfu/etc extensions!***
======
Your folder should look like this :

- iboot.payload <– Created with Payload Pwner.
- devtree.40 <– Grabbed from Custom IPSW made by sn0wbreeze.
- ibec.40 <– Created with Payload Pwner.
- bspatch.exe <– Comes with iBooty.
- iBooty.exe <– Comes with iBooty.
- kernel.40 <– Grab from Custom IPSW made by sn0wbreeze.
- sn0w.img3 <– Comes with iBooty.
- wait.img3 <– Comes with iBooty.
======
——-
STEP D: Restoring to 4.0 + Booting
——-
*MAKE SURE YOU ARE ON 3.1.2 WHEN DOING THIS*

I : Run iBooty and Select “Prepare Device for Custom Firmware”. Make sure that your device is in Recovery Mode (The one with the iTunes Connect Logo). Run the Process and if you see the image, you can proceed!

II : Now open iTunes and restore to the custom ipsw.

***WHEN DONE, YOUR DEVICE WILL GO INTO RECOVERY MODE. IT WONT BOOT.***
——-
STEP E : Booting

I : Just Re-Run iBooty and select “Boot It”. If all goes well it will boot!
——-
Enjoy!

Now, some user has made a precise video to demonstrate the nitty-gritty of the procedure so that you don’t remain stuck or confused about the tutorial.

It is a tether jailbreak which requires you to connect iDevice with computer on a restart. Spirit by comex will be the easiest one click solution to jailbreak all iDevices and it will be released after Apple rolls out iOS 4.0.1 firmware.

Advertisement

{ 5 comments… read them below or add one }

Gio July 23, 2010 at 09:09

i did the boot rom check thing and it said i have new boot rom on iphone 3gs and its MB model, i did everything and once i get to where i have to run iBooty and wait for the picture to appear on my screen it doesnt appear on the iphone screen, i didnt mess up i checked everything in the guide and in the video, is there some other type of feature on an iDevice that cant be jailbroken yet?

Reply

Aatish July 24, 2010 at 19:56

cool

Reply

sandman July 26, 2010 at 05:39

just wanna let YOU ALL KNOW IT WORKS…. MAKE SURE YOU FOLLOW EACH AND EVERY STEP INC CapS AND SPELLING AND YOU WILL GET IT WORK.

i have Apple unlocked iPhone 3GS on new bootrom, installed 4.0 gm and was stuck, the steps up there helped. also i used downgrade iphone 3.1.2 unjailbroken and worked no probs….

Reply

yoyo August 14, 2010 at 19:29

i can't download ibooty V1.5..why my snowbreeze can't approve my ios 4??what is ios 4??i just have iPhone2,1_4.0_8A293_Restore…but when i choose it for ios 4,my snowbreeze reject that..can someone help me?

Reply

engineerhead August 15, 2010 at 06:16

Use JailbreakMe to Jailbreak

Reply

Leave a Comment