- Копирование Mifare
-
Копирование Mifare
Спасибо за быстрый ответ, добрый человек! Ключ подобран командой mfcuk.exe -C -R 0:A -s 250 -S 250 Он выдал мне 1 ключ A. Далее я остановил подбор Далее, начал делать дамп, остальные ключи подбираются в процессе дампа mfoc.exe -O key.dump -k a0db945e24c3 Сейчас я знаю все 16 ключей А и могу вводить команду mfoc.exe -O key.dump -k a0db945e24c3 -k 793d96582aba -k 2b0036e0e0d3 -k 29fd2ff82411 -k 0f3de918b7fa -k 13bc3eed3aac -k 795c0468e14f -k 13dca8bfb1eb -k 1d994021bb21 -k c89a583e0d04 -k bc98420bd69e -k 852b5361dcd2 -k 959430931573 -k b6348eca8961 -k 9b5b26ac711a -k 1bb582ef26fe Лог дампа (пардон, у проги есть проблема с кодировкой, но и так более-менее понятно что происходит) >mfoc.exe -O key.dump -k a0db945e24c3 -k 793d96582aba -k 2b0036e0e0d3 -k 29fd2ff82411 -k 0f3de918b7fa -k 13bc3eed3aac -k 795c0468e14f -k 13dca8bfb1eb -k 1d994021bb21 -k c89a583e0d04 -k bc98420bd69e -k 852b5361dcd2 -k 959430931573 -k b6348eca8961 -k 9b5b26ac711a -k 1bb582ef26fe *************************** ▒╛│╠╨Є╙╔┴╓▒р╥ыгм└·╩▒╥╗╨╟╞┌. ╘┤┤·┬ы└┤╫╘╙┌NFC╡─GIT┐к╘┤┐т. гб▒╛│╠╨Є╜√╓╣╙├╙┌╖╟╖и╙├═╛гб. ╖ё╘Є║є╣√╫╘╕║ . ╕╜▒╛╚╦╙╩╧фг║64101226@qq.com *************************** ╬╥▓╗╗с╜л┤╦╚э╝■╙├└┤╬е╖и╖╕╫я! 1.╩╟ 2.▓╗╩╟ ╟ы╩ф╚ы─у╡─╤б╘ё: 1 ╗Є╒▀ 2 1 ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы a0db945e24c3 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 793d96582aba ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 2b0036e0e0d3 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 29fd2ff82411 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 0f3de918b7fa ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 13bc3eed3aac ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 795c0468e14f ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 13dca8bfb1eb ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 1d994021bb21 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы c89a583e0d04 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы bc98420bd69e ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 852b5361dcd2 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 959430931573 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы b6348eca8961 ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 9b5b26ac711a ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╠э╝╙╥╗╕Ў╥╤╓к├▄┬ы 1bb582ef26fe ╡╜├▄┬ы┴╨▒э╓╨│╔╣ж ╒╥╡╜Mifare Classic 1k ┐и ISO/IEC 14443A (106 kbps) target: ATQA (SENS_RES): 00 04 * UID size: single * bit frame anticollision supported UID (NFCID1): 9c 26 c0 76 SAK (SEL_RES): 08 * Not compliant with ISO/IEC 14443-4 * Not compliant with ISO/IEC 18092 Fingerprinting based on MIFARE type Identification Procedure: * MIFARE Classic 1K * MIFARE Plus (4 Byte UID or 4 Byte RID) 2K, Security level 1 * SmartMX with MIFARE 1K emulation Other possible matches based on ATQA & SAK values: ╒¤╘┌│в╩╘┤╙╫╘┤°╡──м╚╧├╪╘┐╓╨╗╓╕┤│Ў╦∙╙╨╡─├▄┬ыг╗ ╖√║┼╧є╒ў╡─╥т╥х: '.' ├╗╙╨╖в╧╓├╪╘┐, '/' ╖в╧╓├╪╘┐ A, '\' ╖в╧╓├╪╘┐B, 'x' ┴╜╕Ў├╪╘┐╢╝├╗╙╨╖в╧╓ [├╪╘┐: a0db945e24c3] -> [x...............] [├╪╘┐: 793d96582aba] -> [xx..............] [├╪╘┐: 2b0036e0e0d3] -> [xxx.............] [├╪╘┐: 29fd2ff82411] -> [xxxx............] [├╪╘┐: 0f3de918b7fa] -> [xxxxx...........] [├╪╘┐: 13bc3eed3aac] -> [xxxxxx..........] [├╪╘┐: 795c0468e14f] -> [xxxxxxx.........] [├╪╘┐: 13dca8bfb1eb] -> [xxxxxxxx........] [├╪╘┐: 1d994021bb21] -> [xxxxxxxxx.......] [├╪╘┐: c89a583e0d04] -> [xxxxxxxxxx......] [├╪╘┐: bc98420bd69e] -> [xxxxxxxxxxx.....] [├╪╘┐: 852b5361dcd2] -> [xxxxxxxxxxxx....] [├╪╘┐: 959430931573] -> [xxxxxxxxxxxxx...] [├╪╘┐: b6348eca8961] -> [xxxxxxxxxxxxxx..] [├╪╘┐: 9b5b26ac711a] -> [xxxxxxxxxxxxxxx.] [├╪╘┐: 1bb582ef26fe] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: ffffffffffff] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: a0a1a2a3a4a5] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: d3f7d3f7d3f7] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 000000000000] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: b0b1b2b3b4b5] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 4d3a99c351dd] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 1a982c7e459a] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: aabbccddeeff] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 714c5c886e97] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 587ee5f9350f] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: a0478cc39091] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 533cb6c723f6] -> [xxxxxxxxxxxxxxxx] [├╪╘┐: 8fd0a4f256e9] -> [xxxxxxxxxxxxxxxx] ╔╚╟° 00 - ╖в╧╓ ├╪╘┐ A: a0db945e24c3 ╖в╧╓ ├╪╘┐ B: 251870d37d4f ╔╚╟° 01 - ╖в╧╓ ├╪╘┐ A: 793d96582aba ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 02 - ╖в╧╓ ├╪╘┐ A: 2b0036e0e0d3 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 03 - ╖в╧╓ ├╪╘┐ A: 29fd2ff82411 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 04 - ╖в╧╓ ├╪╘┐ A: 0f3de918b7fa ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 05 - ╖в╧╓ ├╪╘┐ A: 13bc3eed3aac ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 06 - ╖в╧╓ ├╪╘┐ A: 795c0468e14f ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 07 - ╖в╧╓ ├╪╘┐ A: 13dca8bfb1eb ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 08 - ╖в╧╓ ├╪╘┐ A: 1d994021bb21 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 09 - ╖в╧╓ ├╪╘┐ A: c89a583e0d04 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 10 - ╖в╧╓ ├╪╘┐ A: bc98420bd69e ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 11 - ╖в╧╓ ├╪╘┐ A: 852b5361dcd2 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 12 - ╖в╧╓ ├╪╘┐ A: 959430931573 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 13 - ╖в╧╓ ├╪╘┐ A: b6348eca8961 ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 14 - ╖в╧╓ ├╪╘┐ A: 9b5b26ac711a ╖в╧╓ ├╪╘┐ B: cb9057683001 ╔╚╟° 15 - ╖в╧╓ ├╪╘┐ A: 1bb582ef26fe ╖в╧╓ ├╪╘┐ B: cb9057683001 ╦∙╙╨╡─╔╚╟°╢╝╩╟╩╣╙├╡──м╚╧├╪╘┐бг Auth with all sectors succeeded, dumping keys to a file! Block 63, type A, key 1bb582ef26fe :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 62, type A, key 1bb582ef26fe :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 61, type A, key 1bb582ef26fe :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 60, type A, key 1bb582ef26fe :00 00 00 00 00 00 00 00 01 00 58 00 5b c3 00 00 Block 59, type A, key 9b5b26ac711a :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 58, type A, key 9b5b26ac711a :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 57, type A, key 9b5b26ac711a :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 56, type A, key 9b5b26ac711a :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 55, type A, key b6348eca8961 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 54, type A, key b6348eca8961 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 53, type A, key b6348eca8961 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 52, type A, key b6348eca8961 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 51, type A, key 959430931573 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 50, type A, key 959430931573 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 49, type A, key 959430931573 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 48, type A, key 959430931573 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 47, type A, key 852b5361dcd2 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 46, type A, key 852b5361dcd2 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 45, type A, key 852b5361dcd2 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 44, type A, key 852b5361dcd2 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 43, type A, key bc98420bd69e :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 42, type A, key bc98420bd69e :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 41, type A, key bc98420bd69e :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 40, type A, key bc98420bd69e :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 39, type A, key c89a583e0d04 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 38, type A, key c89a583e0d04 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 37, type A, key c89a583e0d04 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 36, type A, key c89a583e0d04 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 35, type A, key 1d994021bb21 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 34, type A, key 1d994021bb21 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 33, type A, key 1d994021bb21 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 32, type A, key 1d994021bb21 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 31, type A, key 13dca8bfb1eb :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 30, type A, key 13dca8bfb1eb :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 29, type A, key 13dca8bfb1eb :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 28, type A, key 13dca8bfb1eb :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 27, type A, key 795c0468e14f :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 26, type A, key 795c0468e14f :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 25, type A, key 795c0468e14f :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 24, type A, key 795c0468e14f :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 23, type A, key 13bc3eed3aac :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 22, type A, key 13bc3eed3aac :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 21, type A, key 13bc3eed3aac :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 20, type A, key 13bc3eed3aac :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 19, type A, key 0f3de918b7fa :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 18, type A, key 0f3de918b7fa :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 17, type A, key 0f3de918b7fa :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 16, type A, key 0f3de918b7fa :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 15, type A, key 29fd2ff82411 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 14, type A, key 29fd2ff82411 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 13, type A, key 29fd2ff82411 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 12, type A, key 29fd2ff82411 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 11, type A, key 2b0036e0e0d3 :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 10, type A, key 2b0036e0e0d3 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 09, type A, key 2b0036e0e0d3 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 08, type A, key 2b0036e0e0d3 :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 07, type A, key 793d96582aba :00 00 00 00 00 00 ff 07 80 69 cb 90 57 68 30 01 Block 06, type A, key 793d96582aba :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 05, type A, key 793d96582aba :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 04, type A, key 793d96582aba :00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 Block 03, type A, key a0db945e24c3 :00 00 00 00 00 00 ff 07 80 69 25 18 70 d3 7d 4f Block 02, type A, key a0db945e24c3 :81 b9 22 ed 52 a0 25 45 1c d0 14 c5 84 92 85 df Block 01, type A, key a0db945e24c3 :9c 26 c0 76 00 00 00 00 23 80 00 e8 cc 63 6d 2e Block 00, type A, key a0db945e24c3 :9c 26 c0 76 0c 08 04 00 02 a7 de 89 69 ce 0d 1d Лог записи >nfc-mfclassic.exe W a ./dump_duplicate.dump ./dump.dump NFC reader: ACS ACR122 0 / ACR122U214 opened Found MIFARE Classic card: ISO/IEC 14443A (106 kbps) target: ATQA (SENS_RES): 00 04 UID (NFCID1): 9c 26 c0 76 SAK (SEL_RES): 08 Guessing size: seems to be a 1024-byte card Sent bits: 50 00 57 cd Sent bits: 40 (7 bits) Received bits: a (4 bits) Sent bits: 43 Received bits: 0a Writing 64 blocks |................................................................| Done, 64 of 64 blocks written.
-
Копирование Mifare
Граждане, здравствуйте! Тоже новичок, но почитывая мануалы и форумы я сумел-таки создать дубликат шифрованного брелка от домофона (Метаком, Mifare) Сначала пытался на связке pn532 (от Elechouse) + FT232RL. Дамп снял, но вот записать не получилось. Сначала не получилось на mifare zero, потом не получилось на китайских брелках. Пришлось заказать ACR122U-A9 (куда деваться, жажда эксперимента!) С его помощью я записал полный дамп на несколько брелков, но вот беда: Ни один из клонов не открывает домофон. Снимаю mfoc-ом дампы с оригинала и копии, сравниваю дампы - точная копия. Все символы 1 в 1 (пользовался ПО Araxis Merge). Записывал 2-мя вариантами: 1. ПО от китайцев: Mifate Calssic Casrd Recovery Beta V0.1 2. windows-версия nfc-mfclassic (mfoc тоже виндовый) >nfc-mfclassic.exe W a ./dump_duplicate.dump ./dump.dump Я теперь просто даже не понимаю что мне читать Кто подскажет в чем дело? Хочется завершить начатое. кстати, при чтении блока 0 в Mifate Calssic Casrd Recovery Beta V0.1 оригинал и клон выдают разные результаты Оригинал: CARD UID:9C26C076 Successful connection to ACS ACR122 0 << FF CA 00 00 00 >> 9C 26 C0 76 90 00 CARD UID:9C26C076 << FF 00 00 00 08 D4 08 63 02 00 63 03 00 >> D5 09 90 00 << FF 00 00 00 06 D4 42 50 00 57 CD >> D5 43 01 90 00 << FF 00 00 00 05 D4 08 63 3D 07 >> D5 09 90 00 << FF 00 00 00 03 D4 42 40 >> D5 43 01 90 00 Select Card Failed. Клон Successful connection to ACS ACR122 0 << FF CA 00 00 00 >> 9C 26 C0 76 90 00 CARD UID:9C26C076 << FF 00 00 00 08 D4 08 63 02 00 63 03 00 >> D5 09 90 00 << FF 00 00 00 06 D4 42 50 00 57 CD >> D5 43 01 90 00 << FF 00 00 00 05 D4 08 63 3D 07 >> D5 09 90 00 << FF 00 00 00 03 D4 42 40 >> D5 43 00 0A 90 00 << FF 00 00 00 05 D4 08 63 3D 00 >> D5 09 90 00 << FF 00 00 00 03 D4 42 43 >> D5 43 00 0A 90 00 << FF 00 00 00 08 D4 08 63 02 80 63 03 80 >> D5 09 90 00 << FF 00 00 00 05 D4 40 01 30 00 >> D5 41 00 9C 26 C0 76 0C 08 04 00 02 A7 DE 89 69 CE 0D 1D 90 00 Read 0 Block Success. Если что не так, извиняйте... Сразу не закидывайте помидорами: подскажите, я исправлюсь --- Добавлено 10.07.2019, спасибо apple! В домофоне стоит защита от копирования. Китайские ключи и Mifare Zero не подходят. Заказал тут OTP2 и о чудо, работает! Еще раз спасибо, apple!
Бородатый
Пользователи
-
Зарегистрирован
-
Посещение