Research, development and trades concerning the powerful Proxmark3 device.
Remember; sharing is caring. Bring something back to the community.
"Learn the tools of the trade the hard way." +Fravia
You are not logged in.
Time changes and with it the technology
Proxmark3 @ discord
Users of this forum, please be aware that information stored on this site is not private.
Hello,
i have problem to create a dump file after receiving falid keys.
here my procedure by mac OS , xcode installed
step 1----------------
proxmark3> hw version
Prox/RFID mark3 RFID instrument
bootrom: /-suspect 2015-11-04 22:15:34
os: /-suspect 2015-11-04 22:15:41
LF FPGA image built for 2s30vq100 on 2015/03/06 at 07:38:04
HF FPGA image built for 2s30vq100 on 2015/11/ 2 at 9: 8: 8
uC: AT91SAM7S512 Rev B
Embedded Processor: ARM7TDMI
Nonvolatile Program Memory Size: 512K bytes. Used: 171796 bytes (33). Free: 352492 bytes (67).
Second Nonvolatile Program Memory Size: None
Internal SRAM Size: 64K bytes
Architecture Identifier: AT91SAM7Sxx Series
Nonvolatile Program Memory Type: Embedded Flash Memory
step 2----------------------------
proxmark3> hw tune
Measuring antenna characteristics, please wait...#db# DownloadFPGA(len: 42096)
......#db# DownloadFPGA(len: 42096)
.
# LF antenna: 0.00 V @ 125.00 kHz
# LF antenna: 0.00 V @ 134.00 kHz
# LF optimal: 0.00 V @ 12000.00 kHz
# HF antenna: 23.01 V @ 13.56 MHz
# Your LF antenna is unusable.
step 3----------------------------
proxmark3> hf search
UID : 45 bf d5 2a
ATQA : 00 04
SAK : 08 [2]
TYPE : NXP MIFARE CLASSIC 1k | Plus 2k SL1
proprietary non iso14443-4 card found, RATS not supported
No chinese magic backdoor command detected
Prng detection: HARDENED (hardnested)
Valid ISO14443A Tag Found - Quiting Search
step 4------------------------------------
proxmark3> hf mf chk *1 ? t
--chk keys. sectors:16, block no: 0, key type:?, eml:y, dmp=n checktimeout=471 us
No key specified, trying default keys
chk default key[ 0] ffffffffffff
chk default key[ 1] 000000000000
chk default key[ 2] a0a1a2a3a4a5
chk default key[ 3] b0b1b2b3b4b5
chk default key[ 4] aabbccddeeff
chk default key[ 5] 1a2b3c4d5e6f
chk default key[ 6] 123456789abc
chk default key[ 7] 010203040506
chk default key[ 8] 123456abcdef
chk default key[ 9] abcdef123456
chk default key[10] 4d3a99c351dd
chk default key[11] 1a982c7e459a
chk default key[12] d3f7d3f7d3f7
chk default key[13] 714c5c886e97
chk default key[14] 587ee5f9350f
chk default key[15] a0478cc39091
chk default key[16] 533cb6c723f6
chk default key[17] 8fd0a4f256e9
To cancel this operation press the button on the proxmark...
--o
|---|----------------|----------------|
|sec|key A |key B |
|---|----------------|----------------|
|000| 000000000000 | ? |
|001| 000000000000 | ? |
|002| 000000000000 | ? |
|003| 000000000000 | ? |
|004| 000000000000 | ? |
|005| 000000000000 | ? |
|006| ? | ? |
|007| ? | ? |
|008| ? | ? |
|009| ? | ? |
|010| ? | ? |
|011| ? | ? |
|012| ? | ? |
|013| ? | ? |
|014| ? | ? |
|015| ? | ? |
|---|----------------|----------------|
6 keys(s) found have been transferred to the emulator memory
step 5--------------------------------
proxmark3> hf mf nested 1 0 A 000000000000 d
Can't authenticate to block: 0 key type:A key:00 00 00 00 00 00
proxmark3>
what i know, i have to figure out in which 'block' are the valid keys but i dont know with which command i can figure it out and after i have to create a 'dump' file by 'nested' command.Hello,
i have problem to create a dump file after receiving falid keys.
here my procedure by mac OS , xcode installed
step 1----------------
proxmark3> hw version
Prox/RFID mark3 RFID instrument
bootrom: /-suspect 2015-11-04 22:15:34
os: /-suspect 2015-11-04 22:15:41
LF FPGA image built for 2s30vq100 on 2015/03/06 at 07:38:04
HF FPGA image built for 2s30vq100 on 2015/11/ 2 at 9: 8: 8
uC: AT91SAM7S512 Rev B
Embedded Processor: ARM7TDMI
Nonvolatile Program Memory Size: 512K bytes. Used: 171796 bytes (33). Free: 352492 bytes (67).
Second Nonvolatile Program Memory Size: None
Internal SRAM Size: 64K bytes
Architecture Identifier: AT91SAM7Sxx Series
Nonvolatile Program Memory Type: Embedded Flash Memory
step 2----------------------------
proxmark3> hw tune
Measuring antenna characteristics, please wait...#db# DownloadFPGA(len: 42096)
......#db# DownloadFPGA(len: 42096)
.
# LF antenna: 0.00 V @ 125.00 kHz
# LF antenna: 0.00 V @ 134.00 kHz
# LF optimal: 0.00 V @ 12000.00 kHz
# HF antenna: 23.01 V @ 13.56 MHz
# Your LF antenna is unusable.
step 3----------------------------
proxmark3> hf search
UID : 45 bf d5 2a
ATQA : 00 04
SAK : 08 [2]
TYPE : NXP MIFARE CLASSIC 1k | Plus 2k SL1
proprietary non iso14443-4 card found, RATS not supported
No chinese magic backdoor command detected
Prng detection: HARDENED (hardnested)
Valid ISO14443A Tag Found - Quiting Search
step 4------------------------------------
proxmark3> hf mf chk *1 ? t
--chk keys. sectors:16, block no: 0, key type:?, eml:y, dmp=n checktimeout=471 us
No key specified, trying default keys
chk default key[ 0] ffffffffffff
chk default key[ 1] 000000000000
chk default key[ 2] a0a1a2a3a4a5
chk default key[ 3] b0b1b2b3b4b5
chk default key[ 4] aabbccddeeff
chk default key[ 5] 1a2b3c4d5e6f
chk default key[ 6] 123456789abc
chk default key[ 7] 010203040506
chk default key[ 8] 123456abcdef
chk default key[ 9] abcdef123456
chk default key[10] 4d3a99c351dd
chk default key[11] 1a982c7e459a
chk default key[12] d3f7d3f7d3f7
chk default key[13] 714c5c886e97
chk default key[14] 587ee5f9350f
chk default key[15] a0478cc39091
chk default key[16] 533cb6c723f6
chk default key[17] 8fd0a4f256e9
To cancel this operation press the button on the proxmark...
--o
|---|----------------|----------------|
|sec|key A |key B |
|---|----------------|----------------|
|000| 000000000000 | ? |
|001| 000000000000 | ? |
|002| 000000000000 | ? |
|003| 000000000000 | ? |
|004| 000000000000 | ? |
|005| 000000000000 | ? |
|006| ? | ? |
|007| ? | ? |
|008| ? | ? |
|009| ? | ? |
|010| ? | ? |
|011| ? | ? |
|012| ? | ? |
|013| ? | ? |
|014| ? | ? |
|015| ? | ? |
|---|----------------|----------------|
6 keys(s) found have been transferred to the emulator memory
step 5--------------------------------
proxmark3> hf mf nested 1 0 A 000000000000 d
Can't authenticate to block: 0 key type:A key:00 00 00 00 00 00
proxmark3>
i dont know which command i can figure it out and after i have to create a 'dump' file by 'nested' command.
And id read and follow the instruction of http://www.proxmark.org/forum/viewtopic.php?id=1125 no solution still same problem.
Can you explain me what i did wrong or forward me to any topic where its detailed explained, step by step.
Thank you, please !
Offline
Interesting that key spread of all 00's.
Could you try the hardnested check as well
I note in the card detection : "Prng detection: HARDENED (hardnested)"
So might be worth a go.
hf mf hardnested 1 0 A 000000000000 d
Last edited by mwalker (2019-08-20 06:49:41)
Offline
Your firmware is too old (from 2015) and requires an update to work with the current client software.
Offline
Your firmware is too old (from 2015) and requires an update to work with the current client software.
thx for reply, i will update it and try then again!
Offline
have problem at flashing, image not found !
macs-MacBook-Air:~ mac$ cd downloads
macs-MacBook-Air:downloads mac$ cd pm3-bin-v3_0_1/
macs-MacBook-Air:pm3-bin-v3_0_1 mac$ sudo ./flasher /dev/cu.usbmodem14201 -b ../bootrom/obj/bootrom.elf
Password:
sudo: ./flasher: command not found
macs-MacBook-Air:pm3-bin-v3_0_1 mac$ cd macOS/
macs-MacBook-Air:macOS mac$ sudo ./flasher /dev/cu.usbmodem14201 -b ../bootrom/obj/bootrom.elf
sudo: ./flasher: command not found
macs-MacBook-Air:macOS mac$ cd client/
macs-MacBook-Air:client mac$ ls
flasher fpga_compress proxmark3
macs-MacBook-Air:client mac$ sudo ./flasher /dev/cu.usbmodem14201 -b ../bootrom/obj/bootrom.elf
dyld: Library not loaded: /usr/local/opt/readline/lib/libreadline.7.dylib
Referenced from: /Users/mac/Downloads/pm3-bin-v3_0_1/macOS/client/./flasher
Reason: image not found
Abort trap: 6
macs-MacBook-Air:client mac$
Last edited by enis (2019-08-25 15:34:43)
Offline
and that would be a question to ask under the OSX category... We tend to want our threads clean and to one subject here at the forum, please follow that.
Offline