rss

How to Unlock iPhone 3GS Baseband 05.16.01 & 05.16.02 on iOS 4.3.3?

WARNING: DO NOT install the iPad baseband on the 3GS. The newer 3GS (week 36 & above of the year 2011 (Serial No:xx136xxxxx)) will DEFINITELY brick your device during 06.15 baseband flash. It has been confirmed to permanently damage the built-in radio hardware, thus rendering it useless pretty much forever. It doesn't matter whether you integrate it into a custom IPSW or use Redsn0w. As of now the only solution is to return to Apple store & get it replaced. The iPad BB unlock solution had its share of happy times & now its over. So think twice. The older iP3GS's (week 35 & below) are safe. A more detailed discussion about this can be found at JailbreakQA.

Here is a complete step-by-step guide to jailbreak and unlock iPhone 3GS 05.16.01 or 05.16.02 baseband on iOS 4.3.3. For those who do not know, restoring stock iOS 4.3 IPSW on your iPhone upgrades its baseband to 05.16.01 and restoring stock iOS 4.3.1, iOS 4.3.2 or iOS 4.3.3 IPSW will upgrade your iPhone 3GS baseband to 05.16.02. As both of these bands are less in value than 06.15.00, so it is technically possible to upgrade them to iPad baseband which is unlockable using Ultrasn0w 1.2.3.

WARNING: After upgrading your iPhone 3GS to iPad baseband, you MIGHT lose your GPS functionality. MuscleNerd of iPhone Dev-Team has already promised to devise a downgrade method for iPhone 3GS/3G iPad baseband users which should restore GPS functionality. Before continuing, please read the conclusion at the end of this note.

Redsn0w 0.9.6RC16 (Main)

Jailbreak iOS 4.3.3 on iPhone 3GS on Windows or Mac Using Redsn0w:

These steps below will help you to jailbreak and upgrade your iPhone 3GS 05.16.01 or 05.16.02 baseband to iPad baseband. If you are already jailbroken on iOS 4.3.3 but do not have iPad baseband, you still need to follow the steps below to re-jailbreak and upgrade your baseband to 06.15.00. If you are already jailbroken on iOS 4.3.3 and have iPad baseband, skip to step 18.

  1. Download iTunes 10.2.2 for Windows or Mac OS X from here
  2. Download Redsn0w 0.9.6RC16 for Windows or Mac OS X from here
  3. Download stock iOS 4.3.3 IPSW for iPhone 3GS from here.
  4. Launch Redsn0w 0.9.6RC16 and click on the Browse button. Select iOS 4.3.3 IPSW which you downloaded in step 3 and let Redsn0w to process the provided IPSW.
  5. Browse for iOS 4.3.3 IPSW

  6. If your iPhone 3GS has new-bootrom, choose YES and if your iPhone 3GS has old-bootrom, choose NO. If you are unsure about the bootrom of your iPhone, use iDetector tool by iH8sn0w.
  7. iPhone 3GS Old+New Bootrom

  8. Once IPSW has been successfully processed and identified, click on the Next > button.
  9. Redsn0w 0.9.6RC16 (IPSW Successfully Identified)

  10. Now wait while Redsn0w patches the kernel of the provided IPSW.
  11. Redsn0w 0.9.6RC16 (Patching Kernel)

  12. ( Update: Please read the Updates section towards the end of this post first before proceeding. )
    Choose Install Cydia and Install iPad baseband from the available jailbreak options. If you have jailbroken your device already, then please do not tick the Install Cydia option again.
  13. Redsn0w 0.9.6RC16 (Install iPad Baseband)

  14. Now you will see iPad baseband upgrade warning. Read it and if you agree to the involved risks, click YES. Click on the Next > button to continue.
  15. iPad Baseband Warning

  16. Connect your iPhone to your PC or Mac via USB cable and make sure it is completely powered OFF.
  17. Redsn0w 0.9.6RC16 (Prepare for DFU)

  18. Now use the following instructions to put your iPhone in DFU mode:
    • Hold down the Power (corner) button for 3 seconds.
    • Without releasing the Power button, also hold down the Home (bottom center) button for 10 seconds.
    • Without releasing the Home button, release the Power button BUT KEEP holding the Home button for 15 seconds until Redsn0w detects your iDevice in DFU mode.

    Redsn0w 0.9.6RC16 (DFU Instructions)

  19. Now wait while Redsn0w fetches the iPad baseband files. This will take sometime depending on the speed of your internet connection, so be patient.
  20. Redsn0w 0.9.6RC16 (Fetching iPad Baseband Files)

  21. Once iPad baseband files has been downloaded, Redsn0w will patch the iBoot of your iPhone using Limera1n exploit.
  22. Redsn0w 0.9.6RC16 (Exploiting with Limera1n)

  23. Now wait while Redsn0w uploads the patched ramdisk to your iPhone. Once done, your iPhone will reboot automatically.
  24. Redsn0w 0.9.6RC16 (Uploading Ramdisk)

  25. Thats it. Click on the Finish button to close Redsn0w. Rest of the process will be done on your iPhone.
  26. Redsn0w 0.9.6RC16 (Done)

  27. Once your iPhone has been fully jailbroken and hacktivated on iOS 4.3.3, it should be running iPad baseband. To confirm this, go to Settings -> General -> About and see the value in-front of Modem Firmware. It should be 06.15.00 which represents iPad baseband.
  28. Go to Cydia and install Ultrasn0w 1.2.3 by following this guide.
  29. Install Ultrasnow 1.2.3

  30. Once done, reboot your iPhone and enjoy your fully jailbroken and unlocked iPhone 3GS on iOS 4.3.3.
  31. iPhone 3GS Unlocked on iOS 4.3.3

Update#1: Many users reported in comments that Redsn0w crashes while fetching iPad baseband files from Apple servers. As suggested by Kristina and Nicolas in comments, here are the two workarounds:

  • You are using wrong bootrom version in step 6. If your bootrom is NEW then choose YES and if your bootrom is OLD then choose NO.
  • First choose Cydia in step 9 and complete the procedure. Re-run Redsn0w (Skipping step 1, 2, 3 & 4) and choose Install iPad baseband in step 9. Do NOT choose Cydia and Install iPad baseband at the same time.

Update#2: Fix iPhone 3GS (iPad Baseband) Battery Life Issues on iOS 4.3.3 [Tips]



  • Rokuken

    I was happy to find this article on how to unlock it, but as i read on in the comments section, there's not even one that shows a succesful jailbreak and ipad BB flashed. I would like to try it, but the comments are pushing my expectations away. Sorry, but when i actually read of people succeding on this, i might try it. I just dont wanna end up briking my iphone.

  • Beatriz M

    Hi!! how are you!?
    I have a few questions...
    My sister gave me her Iphone 3gs and I want to unlock it...How do I know this is not gonna happen to me? ==WARNING: DO NOT install the iPad baseband on the 3GS. The newer 3GS (week 36 & above of the year 2011 (Serial No:xx136xxxxx)) will DEFINITELY brick your device during 06.15 baseband flash==

    And if I do this I can still use Facebook and safari and all the other apps? just the GPS in the one that could have problems??
    Thanks!!!

  • djwldo

    My Phone is Jailbroken & unlocked thanks to this thread. But now I want to sell it, but still keep the jailbrake and unlock. What is the best way to Reset everything and set it up again so it is jailbroken and unlocked for the next person. (Note: I have no SIM card anymore, will this hurt?)

  • AGC

    Why do we need to download iTunes?

    • AGC

      iTunes isn't necessary for the base band upgrade...I think that it should be taken off the instructions, because poor amateurs like myself get freaked out :)

      • AGC

        For all my friends in China - you will can use China Mobile sim cards once you've completed this jail break. Thank you so much guys!

  • svmetalhead

    So I'm following the plan but step 8 and 9 dont appear in the system it just to step 10 goes into DFU mode

  • soldierguy

    Hi; have followed all instructions several times (4.3.3 on 05.16.02) and although the screen and the phone do everything that they're meant to, my Cydia app on my screen is empty ... can't delete it and can't seem to get it to load completely ... any ideas please?

  • lbpwn

    hey ok so I'm doing this entire process all as planned and my redsnow shuts off ! -.- idk why it did that, it was fetching the iPad baseband , it said, and then out of nowhere it just went away. I tried it again 2 more times and same thing occurred. Any help??

    • http://jaxov.com/ Jacklord

      @lbpwn Hi,

      Try reading this: http://bit.ly/uWxGPT

      Hope it helps!

      • lbpwn

        @Jacklord o man ok, so now i did exactly what that article said, i updated to iPad baseband and then installed cydia, BUT now that the phone is rebooting, it WONT reboot!!! it goes to the apple logo and then back off! grrrrr,,,please some help!! :(

        • http://jaxov.com/ Jacklord

          @lbpwn You can try using Redsn0w's Recovery Fix function and see if that works.

  • richardhsu93

    I can't find the "install ipad baseband". Mine is iphone 3gs with 05.16.02 and already jailbrake. Can anyone help me?

  • nirmal

    Pramod, Please help... I had to unlock my 3Gs 4.3 running in 5.16.01 BB. As per your advise, I used JBME 3.0 to jailbreak the device and used redsn0w_win_0.9.9b8 to install the ipad BB alone. The phone has 6.15.00 BB now, but it still displays "No service' after installing ultrasn0w. I tried re-inserting the sim card, Erasing Network settings, reinstalling ultrasn0w without any luck. What are my options now ?. Could you please help me ?.

  • indurstetic

    hello,

    I just use this to try to unlock my iphone 3gs on 05.16.02.

    I follow all the steps and everything runs fine until the moment he say flashing baseband and afterwards is stuck on the black screen. doesn't switch on. what can I do?

  • humrazz

    The blog is excellent, but here is my problem. I have <b>not Saved any SSH</b> bcoz I was not aware about it before jailbreaking. I executed the Above mention (Jailbreaking) steps without any kind of backup as I wanted to unlock the Iphone. Now I am stuck since it never goes beyond the apple logo nor it is getting restored. I have tried many things & really upset with it :-(. Can you please tell me what can I do now to start my Iphone Pleaseeeeeeeeeee...

  • Nirmal

    Hi Pramod, Need your expertise again...

    I jailbroke the device using JBME 3.0 and followed the instructions. During Step 13, the phone rebooted, but Redsnow does not go to Step 14. The firmware is also not updated in the phone. I tried it twice, but stuck up in step 13 both times. Please help...........!!!!

  • Humrazz

    hey guys
    I am also having the same problem.
    i have just followed the steps, and my mobile just shows apple logo only. when i go to itunes software it can’t restore it back it gives error: 3194. I have also tried to select the tethered reboot option but it again stucks at apple logo. anyone can help me please, Since I am screwed up thanks in advance !

    • http://jaxov.com/ Patrick

      Hi,

      You can try the solution that's written here for the 3194 error: http://bit.ly/qVGQaq

      Hope that helps!

    • http://jaxov.com/ Patrick

      Hi,

      For error 3194, you can try the solution written here: http://bit.ly/qVGQaq

      Let me know if that helps!

  • Krazyloco

    I have an Iphone 3gs 4.3.2 which I followed the instructions exactly as shown. my serial number shows xx020xxxxxx so I installed as new-bootroom. Everything works fine except when I try opening Cydia afterwards. I've tried jail breaking it over and over again like so many different forums suggest. I also tried going into the root of the phone to delete some files but on my phone those files are already deleted. I'm trying to unlock my phone to use with another carrier but cannot accomplish it even by installing Ultrasn0w through my computer. I don't know what else I can do. Any help would be greatly appreciated.
    Thanks

  • edward

    Pramod,
    pls help.
    have iphone 3gs 4.3.5 05.16.02
    how i can unlock it?
    tried to use redsn0w_win_0.9.9b8 but it didnt change the BB and also have blank Cydia icon which is not working,

    • http://twitter.com/pram0dm Pramod

      Update the iPad BB by ticking it separately & running Redsn0w once again. Make sure that you do not check the Install Cydia option this time.

  • Justin G

    i was following this process and got up to step 14 the " error"

    message said, try rebooting device and using another USB port. but my phone won't come back on.

  • Justin

    I just followed the guide perfectly up to step 15 then my iphone rebooted and it stopped at the apple logo. I held the power button and it turned off then I turned it back on and now its a blank screen but the back light is on. It was already jailbroken and I only checked update ipad baseband. Got any fixes?

    • http://twitter.com/pram0dm Pramod

      Try using Redsn0w 0.9.9b8's recovery loop fixer to kick your device out of it. That should work.

  • Ham

    hey guys
    i have just followed the steps, and my mobile is in itunes mode i mean it dose not turn on to phone mode and when i go to itunes software it can't restore it back it gives error: 3194 anyone can help me please?!! thanks

    • http://twitter.com/pram0dm Pramod

      Did you by anychance tick mark the Install Cydia option even when you were already jailbroken prior to using Redsn0w?

  • Nirmal

    Thanks Pramod for the quick reply.
    Sorry, I'm little confused now. Should I just use JBMe 3.0 to jailbreak the device and use ultrasnow to unlock it or Should I be following the above instructions also as 5.16.02 is not a unlockable BB?. Could you please give some detailed instructions as I am completely new to JB world ?.

    • http://twitter.com/pram0dm Pramod

      Jailbreak your device first using JBMe. Next, point Redsn0w to the current iOS version that your running on your device, choose the Install iPad BB option ONLY & skip the Install Cydia option.