Proxmark3 community

Research, development and trades concerning the powerful Proxmark3 device.

Remember; sharing is caring. Bring something back to the community.


"Learn the tools of the trade the hard way." +Fravia

You are not logged in.

Announcement

Time changes and with it the technology
Proxmark3 @ discord

Users of this forum, please be aware that information stored on this site is not private.

#1 2022-11-25 12:20:23

david.torres
Contributor
Registered: 2022-11-21
Posts: 3

Algo Data DUMP Mifare Classic

Hello,

[+]  UID: 1C F7 D2 DA
[+] ATQA: 00 04
[+]  SAK: 08 [2]
[+] Possible types:
[+]    MIFARE Classic 1K
[=] proprietary non iso14443-4 card found, RATS not supported
[+] Prng detection: weak

Dump new tag 0€

1CF7D2DAE308040003AF4985575EA41D
00000000000000000000000000000000
00000000000000000000000000000000
FFFFFFFFFFFFFF078069FFFFFFFFFFFF

0698AA3B1D2EFA00B6E8DD71C1F43378
39F2EBCA0C7771E0C2F334B33B790432
5906A231EE67BE060745F689D1FA3BF6
3515AE068CADFF0780003515AE068CAD

0698AA3B1D2EFA00B6E8DD71C1F43378
39F2EBCA0C7771E0C2F334B33B790432
5906A231EE67BE060745F689D1FA3BF6
3515AE068CADFF0780003515AE068CAD

.................

Dump used tag

1CF7D2DAE308040003AF4985575EA41D
00000000000000000000000000000000
00000000000000000000000000000000
FFFFFFFFFFFFFF078069FFFFFFFFFFFF

0698AA3B1D2EFA00B6E8DD71C1F43378
DAE4A298220EA99C19606241ABF989FF
5906A231EE67BE060745F689D1FA3BF6
3515AE068CADFF0780003515AE068CAD

0698AA3B1D2EFA00B6E8DD71C1F43378
DAE4A298220EA99C19606241ABF989FF
5906A231EE67BE060745F689D1FA3BF6
3515AE068CADFF0780003515AE068CAD

Sniff process:

 |        End | Src | Data (! denotes parity error)                                           | CRC | Annotation
------------+------------+-----+-------------------------------------------------------------------------+-----+--------------------
          0 |       2368 | Tag |04  00                                                                   |     |
     409600 |     411968 | Tag |04  00                                                                   |     |
    4619276 |    4620268 | Rdr |52(7)                                                                    |     | WUPA
    4621520 |    4623888 | Tag |04  00                                                                   |     |
    4881916 |    4884380 | Rdr |93  20                                                                   |     | ANTICOLL
    4885568 |    4891456 | Tag |1c  f7  d2  da  e3                                                       |     |
    5162476 |    5172940 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
    5174192 |    5177712 | Tag |08  b6  dd                                                               |     |
    5691068 |    5692060 | Rdr |52(7)                                                                    |     | WUPA
    5960892 |    5961884 | Rdr |52(7)                                                                    |     | WUPA
    5963136 |    5965504 | Tag |04  00                                                                   |     |
    6100268 |    6102732 | Rdr |93  20                                                                   |     | ANTICOLL
    6103920 |    6109808 | Tag |1c  f7  d2  da  e3                                                       |     |
    6378764 |    6389228 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
    6390480 |    6394000 | Tag |08  b6  dd                                                               |     |
    6930412 |    6931404 | Rdr |52(7)                                                                    |     | WUPA
    7197404 |    7198396 | Rdr |52(7)                                                                    |     | WUPA
    7199648 |    7202016 | Tag |04  00                                                                   |     |
    7464268 |    7466732 | Rdr |93  20                                                                   |     | ANTICOLL
    7467920 |    7473808 | Tag |1c  f7  d2  da  e3                                                       |     |
    7746348 |    7756812 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
    7758080 |    7761600 | Tag |08  b6  dd                                                               |     |
    8404508 |    8405500 | Rdr |52(7)                                                                    |     | WUPA
    8406768 |    8409136 | Tag |04  00                                                                   |     |
    8540556 |    8543020 | Rdr |93  20                                                                   |     | ANTICOLL
    8544224 |    8550112 | Tag |1c  f7  d2  da  e3                                                       |     |
    8819452 |    8829916 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
    8831168 |    8834688 | Tag |08  b6  dd                                                               |     |
    8955244 |    8959948 | Rdr |60  07  4a  0f                                                           |  ok | AUTH-A(7)
    8961840 |    8966576 | Tag |5a  bc  25  49                                                           |     | AUTH: nt
    8967916 |    8977292 | Rdr |66  0a  48  1d  35  7e! 06! d3                                           |     | AUTH: nr ar (enc)
    8978496 |    8983232 | Tag |4b  5a  51  10                                                           |     | AUTH: at (enc)
    9052140 |    9056908 | Rdr |20! fa! 5e  2e!                                                          |     |
            |            |  *  |                                              key 3515AE068CAD prng WEAK |     |
            |            |  *  |30  04  26  EE                                                           |  ok | READBLOCK(4)
    9058096 |    9078960 | Tag |91  a5  9d  44  6e! cd  a0! a3  a8! c0! 0d! a7! c2  1e  40! f6  9f  9b   |     |
            |            |  *  |00  2A  BA  B0  F5  4B  2F  A9  96  8C  E9  58  85  7A  5D  91  C6  A7   |  ok |
    9216092 |    9220796 | Rdr |7a  86! 63! e4                                                           |     |
            |            |  *  |30  05  AF  FF                                                           |  ok | READBLOCK(5)
    9222048 |    9242912 | Tag |44! b8! d5  2a  7c  f7  0d  c9! d2  1f! ac  e0! 6f  22! aa  34  b8  c7   |     |
            |            |  *  |DA  E4  A2  98  22  0E  A9  9C  19  60  62  41  AB  F9  89  FF  73  D0   |  ok |
    9914588 |    9915580 | Rdr |52(7)                                                                    |     | WUPA
    9916848 |    9919216 | Tag |04  00                                                                   |     |
   10178892 |   10181356 | Rdr |93  20                                                                   |     | ANTICOLL
   10182560 |   10188448 | Tag |1c  f7  d2  da  e3                                                       |     |
   10459196 |   10469660 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
   10470912 |   10474432 | Tag |08  b6  dd                                                               |     |
   10631596 |   10636300 | Rdr |60  0b  26  c5                                                           |  ok | AUTH-A(11)
   10638192 |   10642864 | Tag |18  14  3d  1b                                                           |     | AUTH: nt
   10644268 |   10653580 | Rdr |fd  a8! b3! 4a! 3c! 13  61! aa                                           |     | AUTH: nr ar (enc)
   10654848 |   10659520 | Tag |49! f3  fe! e2                                                           |     | AUTH: at (enc)
   10746652 |   10751356 | Rdr |23! d8! d6  34!                                                          |     |
            |            |  *  |                                              key 3515AE068CAD prng WEAK |     |
            |            |  *  |30  08  4A  24                                                           |  ok | READBLOCK(8)
   10752624 |   10773488 | Tag |d8  8c! 89! ed! 51! 27! 66  e2! 5d  5d  e9! 77  c0  c7! c2! b2! 10  1c   |     |
            |            |  *  |00  2A  BA  B0  F5  4B  2F  A9  96  8C  E9  58  85  7A  5D  91  C6  A7   |  ok |
   10940044 |   10944748 | Rdr |54  aa! e8! 72                                                           |     |
            |            |  *  |30  09  C3  35                                                           |  ok | READBLOCK(9)
   10946016 |   10966880 | Tag |c0! be! 05! 42  e7  32! b0  0b! 65! 02! 54! b8  87  6c  41  e8! c2  fa!  |     |
            |            |  *  |DA  E4  A2  98  22  0E  A9  9C  19  60  62  41  AB  F9  89  FF  73  D0   |  ok |
   11658908 |   11659900 | Rdr |52(7)                                                                    |     | WUPA
   11661168 |   11663536 | Tag |04  00                 

Blocks 4 and 5 of sector 1 and blocks 8 and 9 of sector 2 are read and compared internally.

When the credit changes, only block 5 and block 9 change.

What algorithm can you use to encrypt these blocks?

Any ideas?

Offline

#2 2022-11-25 17:31:48

iceman
Administrator
Registered: 2013-04-25
Posts: 9,538
Website

Re: Algo Data DUMP Mifare Classic

You will need to look at the system which reads and uses this data in order to understand what encryption method is used.

Offline

#3 2022-11-28 11:52:20

david.torres
Contributor
Registered: 2022-11-21
Posts: 3

Re: Algo Data DUMP Mifare Classic

Thanks iceman,

I have made 2 captures.

Charge €2:

 70914864 |   70917232 | Tag |04  00                                                                   |     |
   71175516 |   71177980 | Rdr |93  20                                                                   |     | ANTICOLL
   71177980 |   71179168 |     |fdt (Frame Delay Time): 1188
   71179168 |   71185056 | Tag |1c  f7  d2  da  e3                                                       |     |
   71459660 |   71470124 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
   71470124 |   71471360 |     |fdt (Frame Delay Time): 1236
   71471360 |   71474880 | Tag |08  b6  dd                                                               |     |
   71626412 |   71631116 | Rdr |60  07  4a  0f                                                           |  ok | AUTH-A(7)
   71631116 |   71633136 |     |fdt (Frame Delay Time): 2020
   71633136 |   71637872 | Tag |8c  d8  7a  e3                                                           |     | AUTH: nt
   71639228 |   71648604 | Rdr |6c! 44  5f  c6  6a  b2  ad  cf!                                          |     | AUTH: nr ar (enc)
   71648604 |   71649776 |     |fdt (Frame Delay Time): 1172
   71649776 |   71654512 | Tag |87! 83  83! 20                                                           |     | AUTH: at (enc)
   71734060 |   71738764 | Rdr |05  53! d9  d2                                                           |     |
            |            |  *  |                                              key 3515AE068CAD prng WEAK |     |
            |            |  *  |A0  05  F2  E6                                                           |  ok | WRITEBLOCK(5)
   71738764 |   71740000 |     |fdt (Frame Delay Time): 1236
   71740000 |   71740576 | Tag |0f(3)                                                                    |     |
            |            |  *  |0A                                                                       |     |
   71868556 |   71889452 | Rdr |8e! a3! 2b  62  4c  a0  8d  4e  b3  e7! 21! ba! 6b! 79  23  8e! 98  95!  |     |
            |            |  *  |EB  4A  0B  75  BC  22  DD  50  33  4A  DD  43  B4  7D  BE  85  E2  32   |  ok |
   71889452 |   71934160 |     |fdt (Frame Delay Time): 44708
   71934160 |   71934736 | Tag |0c(3)                                                                    |     |
            |            |  *  |0A                                                                       |     |
   72810604 |   72811596 | Rdr |52(7)                                                                    |     | WUPA
   72811596 |   72812832 |     |fdt (Frame Delay Time): 1236
   72812832 |   72815200 | Tag |04  00                                                                   |     |
   73077196 |   73079660 | Rdr |93  20                                                                   |     | ANTICOLL
   73079660 |   73080832 |     |fdt (Frame Delay Time): 1172
   73080832 |   73086720 | Tag |1c  f7  d2  da  e3                                                       |     |
   73352620 |   73363084 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
   73363084 |   73364336 |     |fdt (Frame Delay Time): 1252
   73364336 |   73367856 | Tag |08  b6  dd                                                               |     |
   73487260 |   73492028 | Rdr |60  09  34  e6                                                           |  ok | AUTH-A(9)
   73492028 |   73493968 |     |fdt (Frame Delay Time): 1940
   73493968 |   73498640 | Tag |58  bb  3f  5f                                                           |     | AUTH: nt
   73500060 |   73509436 | Rdr |c9  b1! ee! 37! 44! 01  b7  8b!                                          |     | AUTH: nr ar (enc)
   73509436 |   73510624 |     |fdt (Frame Delay Time): 1188
   73510624 |   73515360 | Tag |dd  85! bc  37                                                           |     | AUTH: at (enc)
   73579020 |   73583788 | Rdr |c0! 10! 8c  c0!                                                          |     |
            |            |  *  |                                              key 3515AE068CAD prng WEAK |     |
            |            |  *  |A0  09  9E  2C                                                           |  ok | WRITEBLOCK(9)
   73583788 |   73584976 |     |fdt (Frame Delay Time): 1188
   73584976 |   73585616 | Tag |02(4)                                                                    |     |
            |            |  *  |0A                                                                       |     |
   73690492 |   73711324 | Rdr |c9! 4f! 82  a6  01  62! 6d  97  c4! 10  21! c4  a8  5a! 0b! b1  df  cd!  |     |
            |            |  *  |EB  4A  0B  75  BC  22  DD  50  33  4A  DD  43  B4  7D  BE  85  E2  32   |  ok |
   73711324 |   73756080 |     |fdt (Frame Delay Time): 44756
   73756080 |   73756656 | Tag |0f(3)                                                                    |     |
            |            |  *  |0A                                                                       |     |
   74562476 |   74563468 | Rdr |52(7)                                                                    |     | WUPA
   74563468 |   74564720 |     |fdt (Frame Delay Time): 1252

Expense €0.65:

 142507820 |  142518284 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
  142518284 |  142519520 |     |fdt (Frame Delay Time): 1236
  142519520 |  142523040 | Tag |08  b6  dd                                                               |     |
  142680348 |  142685052 | Rdr |60  07  4a  0f                                                           |  ok | AUTH-A(7)
  142685052 |  142687056 |     |fdt (Frame Delay Time): 2004
  142687056 |  142691728 | Tag |cf  bc  83  39                                                           |     | AUTH: nt
  142693148 |  142702460 | Rdr |7f  64  a6! 3e! 66  cb! 27! 5e!                                          |     | AUTH: nr ar (enc)
  142702460 |  142703696 |     |fdt (Frame Delay Time): 1236
  142703696 |  142708368 | Tag |c2  8f  55  d4                                                           |     | AUTH: at (enc)
  142799244 |  142803948 | Rdr |bd! dc! 84! 52!                                                          |     |
            |            |  *  |                                              key 3515AE068CAD prng WEAK |     |
            |            |  *  |A0  05  F2  E6                                                           |  ok | WRITEBLOCK(5)
  142803948 |  142805184 |     |fdt (Frame Delay Time): 1236
  142805184 |  142805760 | Tag |09(3)                                                                    |     |
            |            |  *  |0A                                                                       |     |
  142935804 |  142956700 | Rdr |2b! 94! f3! 8c  8a! 7c  36  95  9d! 66! 4e! 53  d7  7a! d4! 3c! 06  73   |     |
            |            |  *  |D8  9D  CA  D3  24  E2  4D  51  9E  83  16  13  00  60  38  50  D5  1A   |  ok |
  142956700 |  143001392 |     |fdt (Frame Delay Time): 44692
  143001392 |  143002032 | Tag |02(4)                                                                    |     |
            |            |  *  |0A                                                                       |     |
  143861996 |  143862988 | Rdr |52(7)                                                                    |     | WUPA
  143862988 |  143864240 |     |fdt (Frame Delay Time): 1252
  143864240 |  143866608 | Tag |04  00                                                                   |     |
  144126684 |  144129148 | Rdr |93  20                                                                   |     | ANTICOLL
  144129148 |  144130320 |     |fdt (Frame Delay Time): 1172
  144130320 |  144136208 | Tag |1c  f7  d2  da  e3                                                       |     |
  144408252 |  144418716 | Rdr |93  70  1c  f7  d2  da  e3  8f  77                                       |  ok | SELECT_UID
  144418716 |  144419952 |     |fdt (Frame Delay Time): 1236
  144419952 |  144423472 | Tag |08  b6  dd                                                               |     |
  144576556 |  144581324 | Rdr |60  09  34  e6                                                           |  ok | AUTH-A(9)
  144581324 |  144583264 |     |fdt (Frame Delay Time): 1940
  144583264 |  144588000 | Tag |99  3f  70  b6                                                           |     | AUTH: nt
  144589356 |  144598732 | Rdr |d8  b7! e6  be  7a! 82! 8b  2c                                           |     | AUTH: nr ar (enc)
  144598732 |  144599904 |     |fdt (Frame Delay Time): 1172
  144599904 |  144604640 | Tag |dc  d7  ed  fb                                                           |     | AUTH: at (enc)
  144682012 |  144686716 | Rdr |93! 04  a3  0f                                                           |     |
            |            |  *  |                                              key 3515AE068CAD prng WEAK |     |
            |            |  *  |A0  09  9E  2C                                                           |  ok | WRITEBLOCK(9)
  144686716 |  144687952 |     |fdt (Frame Delay Time): 1236
  144687952 |  144688592 | Tag |03(4)                                                                    |     |
            |            |  *  |0A                                                                       |     |
  144820620 |  144841516 | Rdr |f0  13! dd  dd  f3! 61  84! 98  40! 74! 5c  7c  84  6e  c5  51! cf! 4c   |     |
            |            |  *  |D8  9D  CA  D3  24  E2  4D  51  9E  83  16  13  00  60  38  50  D5  1A   |  ok |
  144841516 |  144886208 |     |fdt (Frame Delay Time): 44692
  144886208 |  144886848 | Tag |00(4)                                                                    |     |
            |            |  *  |0A                                                                       |     |

Thanks.

Last edited by david.torres (2022-11-28 11:55:21)

Offline

Board footer

Powered by FluxBB