carrier-explode
Explode and decode carrier data
GitHub
About
Carriers
Countries
Features
Builds
Compare
Wiki
iOS
▾
iOS
Pixel
Samsung
iPadOS
watchOS
Close
Carriers
EPlus_de
OTA iOS 27.0+ · build 72.1
current release
▾
iOS 27.2 beta 1–2 image · build 72.7.2
beta
OTA iOS 27.0+ · build 72.1
current release
iOS 27.0 – 27.0.1 image · build 72.0
iOS 26.5 – 26.6.2 image · build 70.0
iOS 26.4 – 26.4.2 image · build 69.0
iOS 26.3.1 image · build 68.0
iOS 26.3 image · build 68.0
iOS 26.2 – 26.2.1 image · build 67.0
iOS 26.1 image · build 66.0
iOS 26.0 – 26.0.1 image · build 65.0
OTA iOS 18.5+ · build 64.1
OTA iOS 14.3+ · build 45.1
OTA iOS 13.4+ · build 41.1
OTA iOS 12.1.1+ · build 35.3
OTA iOS 10.3+ · build 28.3
OTA iOS 9.3+ · build 24.1
OTA iOS 8.0+ · build 18.1
Overview
Settings
Modem
Files (46)
Changes
overrides_V64.der.pri
iPhone 18 Pro Max (U.S.)
Header
Written for
Qualcomm modem
PRI Revision
6.0.165
Settings (31)
efs:/data/3gpp
(1)
·
3GPP data dynamic config
likely
=
show XML, 763 bytes
Per-PLMN data rules, domestic/international roaming PLMN lists
efs:/data/3gpp/data_3gpp_dynamic_config.xml
efs:/nv/item_files/ims
(1)
·
IMS enable
=
2
Enables the IMS task (VoLTE, VoWiFi, SMS over IMS)
efs:/nv/item_files/ims/IMS_enable
efs:/nv/item_files/modem/data/3gpp/ps
(1)
·
ran_bit_rate_support
unverified
=
257
Data services setting: Data services (PDN, throttling, AT commands)
efs:/nv/item_files/modem/data/3gpp/ps/ran_bit_rate_support
efs:/nv/item_files/modem/lte/rrc/efs
(1)
·
LTE feature enable
likely
=
hex, 32 bytes
LTE RRC capability feature-enable bitmap; bit list unpublished
efs:/nv/item_files/modem/lte/rrc/efs/lte_feature_enable
efs:/nv/item_files/modem/mav
(11)
·
drs_bw_threshold
likely
=
50
Dynamic RAT selection: Apple Dynamic RAT Selection (DRS): picks LTE, NSA or SA from measured throughput
efs:/nv/item_files/modem/mav/drs_bw_threshold
·
drs_dl_enabled_no_locdb
likely
=
0
Dynamic RAT selection: Apple Dynamic RAT Selection (DRS): picks LTE, NSA or SA from measured throughput
efs:/nv/item_files/modem/mav/drs_dl_enabled_no_locdb
·
drs_ul_check_enabled
likely
=
1
Dynamic RAT selection: Apple Dynamic RAT Selection (DRS): picks LTE, NSA or SA from measured throughput
efs:/nv/item_files/modem/mav/drs_ul_check_enabled
·
dl_bin_config
unverified
=
hex, 16 bytes
Apple modem option: Apple-only (Maverick) modem option; undocumented
efs:/nv/item_files/modem/mav/dl_bin_config
·
drs_enable
likely
=
1
Dynamic RAT selection: Apple Dynamic RAT Selection (DRS): picks LTE, NSA or SA from measured throughput
efs:/nv/item_files/modem/mav/drs_enable
·
drs_nsa_icon_via_motion
likely
=
1
Dynamic RAT selection: Apple Dynamic RAT Selection (DRS): picks LTE, NSA or SA from measured throughput
efs:/nv/item_files/modem/mav/drs_nsa_icon_via_motion
·
drs_starting_rat
likely
=
2
Dynamic RAT selection: Apple Dynamic RAT Selection (DRS): picks LTE, NSA or SA from measured throughput
efs:/nv/item_files/modem/mav/drs_starting_rat
·
Drop EN-DC in VoLTE hysteresis
likely
=
30
Hysteresis timer before dropping EN-DC during a VoLTE call
efs:/nv/item_files/modem/mav/drop_endc_call_hysteresis_tmr_volte_val
·
sa_depri_td_bwp_thresh_val
likely
=
30
Smart data mode: Apple SDM: turns NR / SA off or deprioritises SA when it does not pay off
efs:/nv/item_files/modem/mav/sa_depri_td_bwp_thresh_val
·
5G UW bands
likely
=
hex, 18 bytes
NR bands that may show the 5G UW / 5G+ icon: uint16 count, 4 uint16 bands, 4 uint16 minimum bandwidths (MHz)
efs:/nv/item_files/modem/mav/uwb_nr_band_bw
·
mav_monitor_mm_mb_replace_nr5g_with_nr5guwb
likely
=
1
5G icon rule: Status-bar 5G / 5G UW / 5G UC / 5G+ icon override logic
efs:/nv/item_files/modem/mav/mav_monitor_mm_mb_replace_nr5g_with_nr5guwb
efs:/nv/item_files/modem/mmode
(3)
·
SMS domain preference list
unverified
=
hex, 15 bytes
Per-RAT/PLMN SMS domain list; layout not public
efs:/nv/item_files/modem/mmode/sms_domain_pref_list
·
NR5G emergency support
unverified
=
0
= Off
NR5G emergency-call support
efs:/nv/item_files/modem/mmode/nr5g_emc_support
·
NR5G disable mode
unverified
=
0
= NR5G enabled
Disables NR5G SA and/or NSA
efs:/nv/item_files/modem/mmode/nr5g_disable_mode
efs:/nv/item_files/modem/nas
(2)
·
Ignore MT CSFB during VoLTE
=
1
= On
Ignore a mobile-terminated CSFB page while a VoLTE call is active
efs:/nv/item_files/modem/nas/lte_nas_ignore_mt_csfb_during_volte_call
·
SRVCC support
=
1
= On
SRVCC capability indication from E-UTRAN to UTRAN (TS 23.216)
efs:/nv/item_files/modem/nas/nas_srvcc_support
efs:/nv/item_files/modem/nr5g/RRC
(3)
·
NR band capability
likely
=
hex, 29 bytes
NR band feature-capability list; proprietary layout
efs:/nv/item_files/modem/nr5g/RRC/cap_feature_band_nr
·
cap_feature_general_params
likely
=
hex, 12 bytes
NR UE capability: NR RRC UE-capability toggle
efs:/nv/item_files/modem/nr5g/RRC/cap_feature_general_params
·
NR TDD+FDD combo control
likely
=
15
Enables NR-CA/NR-DC TDD+FDD band-combo classes
efs:/nv/item_files/modem/nr5g/RRC/cap_control_t_plus_f_band_combos
efs:/nv/item_files/modem/qmi/cat
(1)
·
Block SMS-PP envelope
likely
=
0
= Off
Block SIM Toolkit SMS-PP (data download) envelopes, per subscription
efs:/nv/item_files/modem/qmi/cat/qmi_cat_block_sms_pp_env_per_sub
nv
(4)
·
PRI revision
=
10813446
= 6.0.165
0xa50006
Packed PRI Revision header
nv:62005
·
Band preference bits 16-31
=
48895
= GSM 450, GSM 480, GSM 750, GSM 850, GSM railways 900, GSM PCS 1900, WCDMA B1 2100, WCDMA B2 1900, WCDMA B4 1700, WCDMA B5 850, WCDMA B6 800, bit 12, bit 13, bit 15
Expand Band Preference 16 To 32 Bits
nv:946
·
Delay RAU during CSFB (probable)
unverified
=
0
= Off
nv:62025
·
UMTS AMR Codec Preference Config
likely
=
15
nv:6850
pri
(3)
·
Legacy NV item list
=
show list, 35 entries
Legacy NV items the modem may take from this file; with a value here: 6850, 946, 62025, 62005.
pri:nv-list
·
NV path schema index
=
show list, 371 entries
371 NV paths the PRI format knows (MAVZ); not overrides.
pri:schema
·
pri:9fa710
=
178
Unidentified field, 1 time, 2 bytes: small binary blob that precedes the NV item list.