touchFree: iPod touch 1-click jailbreak for Windows (Guide)

Oct122007 9:45PM — John

A mere few hours ago a hacker named planetbeing released a 1-click jailbreak for the iPod touch under Windows, the Jailbreak is based on Niacin’s TIFF exploit and his own guide but without relying on SSH.

Below is a direct guide written by planetbeing, clarified in some instances by me.

touchFree: iPod touch 1-click jailbreak Guide

http://zoo.cs.yale.edu/~yw226/ipod/touchfree5.zip
Local Mirror: http://tragicallynull.com/backend/uploads/2007/10/touchfree5.zip

Note that this version does not depend on SSH, but rather on iPod reboots to trigger certain scripted actions. This should eliminate the “Connection timed out” problems people with bad wireless connections are having.

NOTE THAT .NET FRAMEWORK 2.0 IS REQUIRED FOR THIS APPLICATION

1. Download and extract all of the files in this zip archive.

2. Copy iTunesMobileDevice.dll from C:\Program Files\Common Files\Apple\Mobile Device Support\bin to the same folder as touchFree.exe (The folder you just extracted).

3. Restore your iPod to a fresh 1.1.1 state (recommended but optional)
3.1 To restore: Hold both the Hold/Reset and Home button on your iPod touch until it resets and displays the Apple logo, then release jthe hold button (still holding the home button) until you see a connect to iTunes graphic, this will put the iPod into restore mode.
3.2 Connect the iPod to your computer (if not already). iTunes will tell you that you must restore your iPod, click OK.
3.3 Once your iPod is restored iTunes will attempt to sync, slide to cancel on your iPod and proceed with the following steps.

4. Load http://jailbreak.toc2rta.com in Safari on the iPod. Safari should exit/crash.

5. Close iTunes and terminate the process iTunesHelper.exe and iPodService.exe from the Task Manager (ctrl+alt+delete)

6. Run touchFree.exe (make doubly sure iTunes is closed, iTunes MUST NOT start during the jailbreak)

7. When prompted to reboot, hold the Hold/Reset switch until slide to power off appears, then slide to power off. Once off, hold the Hold/Reset button until the iPod turns back on. After the springboard (the UI of the iPod) appears on the iPod, push enter in the command window to continue.
(The application cannot detect when the iPod has been successfully booted, so you need to cue it by
pushing enter when asked to)

8. You will be asked to reboot twice at some point. This means turning the iPod off, turning it on,
turning it off again, and then turning it back on before pushing enter to continue.

9. You will be asked to reboot a few more times, do so normally as above.

10. After your final iPod reboot, you should end up with an iPod with Installer.app and Trip1Pogostick installed, and SSH, SFTP enabled.

- Username to SSH/SFTP is root, password is alpine

Before panicking:
- Confirm that you have .NET Framework 2.0 installed
- Confirm that you have indeed visited http://jailbreak.toc2rta.com on your iPod and Safari crashed. A surprising number of people don’t follow the instructions.
Help can be found at the MacRumors forum as well as the #iTouch chat on irc.osx86.hu

When you’re done you should have a fully jailbroken iPod touch with an Installer.app (allows you install 3rd party apps right from your iPod), SSH and SFTP, the same state as if you had followed this guide. Again, thanks to planetbeing and Niacin for their excellent work on getting this cracked.

Added 10:48PM:
Here are some additional safety tips courtesy of the iTouch Dev Wiki.

Final Steps for Safety

It is a very good idea to change the default password from “alpine” to something else. This prevents people who happen to see your iPod touch on a wireless network from logging into it and doing nasty things. To do this:

1. Install “Community Sources”, “BSD Subsystem” and “Term-vt100″ packages from Installer.app.
2. Launch Term-vt100.
3. At the # prompt, type “passwd” (without the quotes) and press return.
4. Enter your new password and confirm it.
5. DON’T LOSE YOUR NEW PASSWORD! :) If you do, in order to log into your touch from SSH or SFTP you will have to do a restore and start this process all over again.

Advertising

23 Comments

great summary and useful
can you indicate a reasonably simple how-to on instaling mail.app , weather and the rest of the core iphone apps?

af
Oct132007

It worked on my iPod Touch. If not already, I will see that it gets on Digg.

Oct142007

awesome ..worked on mine.

Jeff
Oct152007

My ipod touch won’t crash or exit when I load it on safari. It just says “Safai can’t open the page because it can’t find the server.”

armscontrol
Oct152007

You don’t need to do a restore if you forget the password, you just change it again in Term-vt100! It doesn’t ask for the current password in order to change it!

twedds2000
Oct162007

You have to install bsd subsystem before term-vt100 (or maybe at the same time) or you get an error unpacking the bsd stuff.

Lloyd
Oct192007

i am trying to jailbreak my itouch. whenever i try to connect to http://jailbreak.toc2rta.com/ via safari, it simply routes to http://www.toc2rta.com/ and nothing happens…. any suggestion? thanks!^-^

joyce
Oct242007

Joyce: You are using Safari on the iPod touch, right?

Oct242007

i got the same thing with joyce
it’s nothing happens with my ipod touch too.

Kenneth
Oct242007

It should just crash to the main icon screen. I can’t verify that it still works because it would force me to restore my iPod, but it should. You should check back later today, might just be a site error.

Oct242007

which firmware is this for? will it work on 1.1.1?

Oct302007

It only works for 1.1.1.

But you should use this jailbreak instead.

Oct302007

YAY!!!!!!!!

it works perfectly! im so happy because I thought I’d have to do major coding or hex scripting or something which I cant do but this was so easy! all I had to do was move a file, open an application, and reboot my ipod 3 times. it was so easy and now I not only have an unlocked ipod touch it already has installer.app on it!

Oct302007

what?

jayne
Mar312008

This is so utterly confusing and impossible I just want to smash this ithing. I hate it.

yolanda
Mar312008

when i open the page in the safari, it doesn’t open the page, appears de question sign only

luciano
May232008

hey, my ipod doesn’t crash, what do i hve to do?

theaztec
May282008

would it work on version 1.1.2? reply PLs thnks

jean
Jun272008

okay its not that confusing but whenever i try to follow the other instructions to upgrade to 1.1.2 using oktoprep the ipod goes into the restore mode, and displays connect to intunes thing. I also tried to upgrade to 1.1.3 using ijailbreak.com/repo and it does the same thing. I t does jailbreak FINE but can you not upgrade with this method or something because everytime i mess with it . goes back rto connect to itunes screen.

joe d
Jul042008

Yolanda if you have problems with this you should not be messing with technology and trying to modify your electronics. its REALLY not for everyone.

retards lamers
Jul042008

i cant get it to work… when i type http://jailbreak.toc2rta.com on my i touch it shows a white screen with a small blue question mark on the top left corner… and when i open touchfree.exe it says “the procedure entry point CFCopyDescription could not be located in the dynamic link library QTMLClient” can anyone help me???

Chrismcl
Jul102008

I just bought my Ipod Touch V2.1.1, and was wondering if this would work for me … TY

Derf
Oct272008

doe sthis work for the 2G ipod touch . ?
or only first gen ?

jeremy
Dec302008

Leave a comment


Advertising