Factory Activate Your iPhone 1.1.2 (Lockdownd Patch)

This patch uses the same technique as introduced in 1.1.1 patch. With this patch, the 1.1.2 can be factory activated immediately. NOTE: this is NOT an unlock. I’ve posted it to Hackint0sh to get some feedbacks, check my post here.

It has been confirmed working, tested on OTB/non-OTB. Furthermore, if you happen to have a SilverCard, TurboSIM or O2 SIM, your 1.1.2 will not only be activated, but also be able to dial in/out, sms in/out, and use edge/grps.

My SilverCard also works very well (though it didn’t work at first, guess I messed something in the first attemp).

The patched lockdownd: 1.1.2 Lockdownd Patched
The original lockdownd: Original 1.1.2 Lockdownd

The patch details:

Search for differences

1. G:\iPhone Stuffs\lockdownd\lockdownd_112_original\lockdownd: 996,440 bytes
2. G:\iPhone Stuffs\lockdownd\lockdownd_112_patched\lockdownd: 996,440 bytes
Offsets: hexadec.

4B4C:    01    14
4B4E:    A0    00
4B4F:    E3    EA
C5C1:    00    40
C5C2:    54    A0
C5C8:    04    00
C5CA:    00    A0
C5CB:    1A    E1
C5CC:    01    00
C5D4:    88    EC

10 difference(s) found.

Note: the 1.1.2 has a firmware checking routine which will brick phone in case an unexpected version is found. The patch at 4B4C-4B4F fixes it. In case the firmware version causes any problem, the syslog will log the following info

lookup_baseband_info: Not the expected firmware version. Enabling brick mode

but the actual bricking operations will not be run because the patch will force a jump once the syslog is done.

Update: Elite Team has released a similar patch.


17 Comments

  1. Daniel
    Posted December 18, 2007 at 8:14 pm | Permalink

    George, will it work with the bootloader 4.6, modem firmware 04.02.13_G?

    Where can I get the patch procedure?

  2. Posted December 18, 2007 at 8:35 pm | Permalink

    Yeah, it works on OTB too. You need to jailbreak your phone, then overwrite the /usr/libexec/lockdownd with the patched one , and your phone will be activated.

  3. javier
    Posted December 21, 2007 at 12:13 am | Permalink

    Sorry George! i am just new in this matter, where can i get info about how to jailbreak the phone

    thank’s

  4. Posted December 21, 2007 at 10:31 am | Permalink

    There’re many ways to achieve this, please try Google.

  5. Gal
    Posted December 28, 2007 at 11:20 pm | Permalink

    I have bought my iphone and it came with the new bootloader 4.6, modem 04.02.13_G, version 1.1.2 .
    I downgraded it to ver. 1.1.1, and jailbreaked it.

    As far as I know, for today there is no unlock solution for 1.1.2 OTB, bootloader 4.6 (that the phone will be able to use ANY SIM CARD).

    Will it work on my iphone (described above) and will unlock it to ANY SIM CARD???

  6. Posted December 29, 2007 at 12:09 am | Permalink

    Gal,

    The lockdownd patch will activate your iPhone so you can use it as an iTouch. This is NOT an unlock.

  7. Alex
    Posted January 19, 2008 at 6:24 am | Permalink

    hi, i downloaded your patch, and used ibricker to delete the original one and upload this one.
    ive done all the process to update my iphone to 112 (i bought it with 112 and did all the jailbreaking, downgrade and update back to 112)
    when i put turbosim in with my sim it used to say waiting for activatio, then i used this method of replacing the lockdown patc. now nothing happens, and my phone is really really slow…kinda stuck….what do i do? please help

    thanks, alex

  8. Posted January 19, 2008 at 11:12 am | Permalink

    You missed one thing: the permission, you need to give it 0755 or 0555 permission, issue the following command through MobileTerminal (or SSH):

    chmod 755 /usr/libexec/lockdownd

    Then reboot.

  9. Alex
    Posted January 23, 2008 at 3:28 pm | Permalink

    ok…. first thanx for your reply, second, how do i do that?
    through ibrickr?
    or do i need somn else?
    if you could email me an explanation or post it here i wil be really greatfull!

    thakyou so much
    Alex

  10. Posted January 23, 2008 at 6:25 pm | Permalink

    You may upload the file by any means which you feel convenient, e.g. scp, sftp, ibrickr, etc, be sure to check give the uploaded file permission 755 or 555, otherwise, your phone will become very very very slow after reboot. To change permission, install ‘Term vt100′ and enter chmod command in my last reply.

  11. Ayman
    Posted January 26, 2008 at 7:29 pm | Permalink

    Hi,
    You probably have heard about the 1.1.3 jailbreak (aka 1.1.3 soft-update) that was released by the dev teams two days ago.. The jailbreak take the 1.1.3 restore file, decrypt it, patch it and then upload it to the iphone (as bin image) and from there it perform the update.. However, the patched 1.1.3 image seems to have a patched lockdownd file which ,according to some posters on hackint0sh, does not work well with 4.03.13_G modem firmware (the latest baseband).. They say, unless we have a new patched lockdownd, we cannot get *sim proxies (the *sim solutions that spoof AT&T sim to get it accepted by the phone, like turbosim) to work. I’m not sure what this lockdownd daemon does, but it seems like its responsible for activating/unactivating the phone, and I’m not sure exactly how this is related to get *sim to work, if you could clarify these points to me and - if possible - release a patched lockdownd that works with 4.03.13_G, it will be HIGHLY apperciated.
    Thanks

  12. Posted January 26, 2008 at 9:21 pm | Permalink

    Ayman, yeah I know how the leaked jailbreak 1.1.3 works, there’re load of problems, so I’ll not give it a go at the moment, I’ll wait for the official dev team jailbreak which is gonna be released very soon, and I’ll continue my investigation based on it.

  13. Ayman
    Posted January 26, 2008 at 11:25 pm | Permalink

    George, oh I understand, thanks very much anyway :) .. waiting patiently for for 1.1.3 official jailbreak

  14. Chris
    Posted January 28, 2008 at 2:13 am | Permalink

    I have an 112OTB (BL4.6) US iPhone. I jb-ed it and am using it as an iTouch since Dec. If I overwrite the lockdownd file while my UK o2 SIM is in the iPhone - can I use it as a phone (dial/sms) afterwards? THANKS A LOT!

  15. Chris
    Posted January 29, 2008 at 1:16 am | Permalink

    So, i used the lockdownd file from this website to overwrite the one on my iPhone (usr/libexec), changed the permission from 0555 to 0755, changed the SIMs and rebooted the iPhone - still the same error: “this iPhone must be used with an approaved SIM”.

    I am interpreting this the wrong way “It has been confirmed working, tested on OTB/non-OTB. Furthermore, if you happen to have a SilverCard, TurboSIM or O2 SIM, your 1.1.2 will not only be activated, but also be able to dial in/out, sms in/out, and use edge/grps.”? Did you start with an O2 locked iPhone? Thanks.

  16. Posted January 29, 2008 at 1:24 am | Permalink

    Chris, please follow this link to see other people’s followups, there’re people saying having successful stories on O2 SIM.

  17. Chris
    Posted January 29, 2008 at 4:43 am | Permalink

    Thanks a lot!

Post a Comment

Your email is never published nor shared. Required fields are marked *

*
*

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word