AW: Vip sat eksperiment
mali brainstorming od mene:
u oscam.logu se moze preko debug 4 moda vidjeti dosta interesantnih stvari:
primjer ecm upita na htv1 (koji kako znamo i radi bez rsa kljuca)
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] write to cardreader
2014/01/13 09:29:15 8EC92E0 DD A2 00 00 72 14 70 00 80 70 6C 70 6A 64 31 55
2014/01/13 09:29:15 8EC92E0 68 64 EC 4A F0 DA 34 A3 84 79 A0 5E 3E 24 CF 29
2014/01/13 09:29:15 8EC92E0 00 BB 3D 97 CA 38 02 06 22 4D 69 23 A7 C7 83 18
2014/01/13 09:29:15 8EC92E0 42 A4 71 34 05 EA B3 C6 50 41 BF D7 A4 4F 90 D3
2014/01/13 09:29:15 8EC92E0 3E 9B 52 4B DD 79 89 F6 61 C8 F0 07 B4 B5 B7 72
2014/01/13 09:29:15 8EC92E0 AD B3 F9 4D 6C 7E 34 01 1E A9 47 D4 AD 9F 23 05
2014/01/13 09:29:15 8EC92E0 2E 35 3A 00 0A 7A 43 94 6F 37 CB F9 8F EF 94 75
2014/01/13 09:29:15 8EC92E0 35 9D 5D C9 F8 6E 57
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] Answer from cardreader:
2014/01/13 09:29:15 8EC92E0 98 22
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] write to cardreader
2014/01/13 09:29:15 8EC92E0 DD CA 00 00 22
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] Answer from cardreader:
2014/01/13 09:29:15 8EC92E0 25 0D 00 00 01 00 00 4E 9A 4D 35 39 CA 33 36 25
2014/01/13 09:29:15 8EC92E0 0D 00 00 00 00 00 EB AC 41 D8 FA 1A 3E 52 31 02
2014/01/13 09:29:15 8EC92E0 40 00 90 00
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] cardreader_do_ecm: after csystem.do_ecm rc=1
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] cardreader_do_ecm: ret rc=1
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] cardreader_process_ecm: cardreader_do_ecm returned rc=1 (ERROR=0)
2014/01/13 09:29:15 8EC92E0 r vipnet [conax] ecm hash: 7BCDA238C83EBCBDB8289BA4B35A92A3 real time: 166 ms
2014/01/13 09:29:15 8EF3970 c
dm800 (0B00&000000/0000/0709/6F:7BCDA238C83EBCBDB8289BA4B35A92A3): found (166 ms) by vipnet
a sada primjer loga kod kanala gdje je pairing ukljucen
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] write to cardreader
2014/01/13 10:21:42 8EC92E0 DD A2 00 00 72 14 70 00 81 70 6C 70 6A 64 31 AC
2014/01/13 10:21:42 8EC92E0 AF 3D BE CD CB 9E C9 79 7F 7C 86 4D 8F 3F A2 B1
2014/01/13 10:21:42 8EC92E0 FB 94 1F 7C 08 87 61 C4 B8 7A BC 20 CB 4B 82 FF
2014/01/13 10:21:42 8EC92E0 E4 E9 38 29 F8 47 22 7A 8B 8F CC 5D 0E 3D 56 1D
2014/01/13 10:21:42 8EC92E0 F7 0E 13 6B B5 56 1E CC 68 C0 56 08 9E 01 6E B1
2014/01/13 10:21:42 8EC92E0 7F CA E1 E9 68 12 3A 87 02 49 4F AC 90 95 21 57
2014/01/13 10:21:42 8EC92E0 FE C6 0F 60 35 B4 EC CB 76 8A 00 E1 25 D9 92 5A
2014/01/13 10:21:42 8EC92E0 E4 11 BE AB B6 0A 63
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] Answer from cardreader:
2014/01/13 10:21:42 8EC92E0 98 04
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] write to cardreader
2014/01/13 10:21:42 8EC92E0 DD CA 00 00 04
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] Answer from cardreader:
2014/01/13 10:21:42 8EC92E0 31 02 00 00 90 12
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] cardreader_do_ecm: after csystem.do_ecm rc=0
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] cardreader_do_ecm: ret rc=0
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] cardreader_process_ecm: cardreader_do_ecm returned rc=0 (ERROR=0)
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] Error processing ecm for caid 0B00, srvid 070A, servicename: 0B00:070A unknown
2014/01/13 10:21:42 8EC92E0 r vipnet [conax] ecm hash: 4EE7D82DCDD5D19EFCE65170C9E3B7DB real time: 161 ms
2014/01/13 10:21:42 8EF58C8 c ncd_send_dcw: er->msgid=0, cl_msgid=0, 81
2014/01/13 10:21:42 8EF58C8 c send 15 bytes to client
2014/01/13 10:21:42 8EF58C8 00 0D 00 00 00 00 00 00 00 00 00 00 81 00 00
2014/01/13 10:21:42 8EF58C8 c
dm800 (0B00&000000/0000/070A/6F:4EE7D82DCDD5D19EFCE65170C9E3B7DB): not found (163 ms) by vipnet
moja ideja je slijedeca
postoji mogucnost preko software-a fix rsa 2.5 i mathematica 9 preko fajla s slozenim rx, tx podacima pokusati kalkulirati rsa kljuc
problem je slijedeci nazalost i tu je zasad stalo
odgovor readera na pairovani kanal je nedovoljan za kalkulaciju jer je uvijek isti
2014/01/13 10:22:28 8EC92E0 r vipnet [conax] Answer from cardreader:
2014/01/13 10:22:28 8EC92E0 31 02 00 00 90 12
dok kod poljskih TNK conax kartica i odgovor readera na pairovani kanal puno duzi i razlicit pa je kalkulacija rsa kljuca vjerovatno moguca
dali neko ima mozda ideju?
Ovo je sve sami pocetak naravno i mozda cak i kalkulirani rsa kljuc uopce ne radi ali od nekuda se mora krenuti...
druga ideja je pokusati ovaj vipov kaon nauciti enigmu2
da zvuci malo naucno fanstasticno ali procesor je broadcomov mips 7358 i postoji vise resivera koji su hardverski dosta slicni kaonu(x trend, mk digital, optibox)
samo strpljenja i sto vise ljudi pokusa nesto mozda nesto i bude.
mi balkanci nismo gluplji od poljaka a oni su u ovoj temi stvarno svjetlosnu godinu ispred
nas...:emoticon-0103-cool: