Nagra Hex block Decryption

Status
Not open for further replies.
Mas e agora ?
Depois dessa discussão, a cwpk pode ser extraída ou não ?

Porque na BCM o CAK chama o offset 00 da Ecwpk ?

EC 5B 00 42 B8 ED 5E 0A DF 72 E9 15 9A 30 C6 13
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 80 D0 20 67
70 05 95 01 80 50 D0 73 00 00 00 00 00 00 00 00
01 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00
01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
01 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 10 00 00 00 A4 0F FA DB
24 F4 8C 71 D2 F9 49 74 70 60 1A 42 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
01 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 01 00 00 00 02 00 00 00 02 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 size of Ecw = 08
4D AB 53 12 D0 EA 42 6E 00 00 00 00 00 00 00 00 = Ecw
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
01 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
EC 5B 00 42 B8 ED 5E 0A DF 72 E9 15 9A 30 C6 13 r2r
A4 0F FA DB 24 F4 8C 71 D2 F9 49 74 70 60 1A 42 Ecwpk 0 or L1 ???
01 48 9D 00 00 00 01 01 00 00 00 00 00 00 00 00

CAK debug = on

IN : CASS_GetPairingAddress()
memFd = 11
After mmap, pPKPageStart = 5d186000
pPKStartAddr = 5d186b00
OUT : CASS_GetPairingAddress()
INF! ca_sec.c > NUID: xx xx xx xx


IN : dscSetDecryptionEmi(), xDecryptionEmi = 0

IN : otv_descrambler_set_1level_protected_keys()
L1_protecting_key_length = 16
odd_protected_key_length = 8
even_protected_key_length = 8

Raghu IN : otv_descrambler_find_desc()
pipe_id = 0
desc_id = 0
found_b = 1

IN : dscSetDecryptionEmi(), xDecryptionEmi = 0

IN : otv_descrambler_set_1level_protected_keys()
L1_protecting_key_length = 16
odd_protected_key_length = 8
even_protected_key_length = 8

xxxxx IN : otv_descrambler_find_desc()
pipe_id = 0
desc_id = 1
found_b = 1
*** 00:03:09




Key sent on e-mail
 
Here is a oscam source to help to correct some bugs for the people who really have some C and Oscam knowledge , this versions does all for generique mod.

For unique some code need to be done on it .

source

For the people interested on working on it ask me archive password via PM and explain me what you can help to improve.

grettz to everyone
 
two doubts;
Who loves to hate who ??? and who loves to be hated by whom ???
 
Attention this source is not for P4yserver Admins (don't send me shitty pms i will not respond and i will block you)
and it not to be used for any commercial distribution or anything commercial related...

If i catch anyone re-selling this hard work i will alert authorities, the source code is watermarked btw.

To all users This is a hobby please don't destroy it.
 
Here is a oscam source to help to correct some bugs for the people who really have some C and Oscam knowledge , this versions does all for generique mod.

For unique some code need to be done on it .

source

For the people interested on working on it ask me archive password via PM and explain me what you can help to improve.

grettz to everyone
Yes! I know a lot of oscam devs who have everything functional, but they will never make the code available for the sole reason of getting into trouble...
 
  • 2018/04/29 09:45:38 5AF4CCB7 r (reader) Reader-1 [mouse] ATR: 3F FF 14 25 03 10 80 41 B0 01 69 FF 4A 50 70 00 00 5A 4A 01 00 00
  • 2018/04/29 09:45:38 5AF4CCB7 r (reader) Reader-1 [mouse] Init card protocol T0, FI=1, F=372, D=8, N=3
  • 2018/04/29 09:45:38 5AF4CCB7 r (reader) Reader-1 [mouse] Setting baudrate to 76800 bps
  • 2018/04/29 09:45:38 5AF4CCB7 r (reader) Reader-1 [mouse] Calculated work ETU is 13.03 us reader mhz = 357
  • 2018/04/29 09:45:38 5AF4CCB7 r (reader) Reader-1 [mouse] Buffers readed 0 bytes total time_us 75117
  • 2018/04/29 09:45:38 5AF4CCB7 r (reader) Reader-1 [mouse] ATR Fsmax is 5 MHz, clocking card to wanted user cardclock of 3.57 MHz (specified in reader->mhz)
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] Card type: ZJTV
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] Rom version: 10A1
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] Credit available on card: 0 euro
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] classD0 ins36: returned unknown type=0x7F - parsing may fail
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] FuseByte: 25
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] Region Code: ROM00001
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] Country Code: ROM
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] classD1 ins742A: failed
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] Pincode read: 0000
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] PCB settings: FF 7F 0 0
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] type: VideoGuard Dolce Romania (092F), caid: 092F
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] serial: ########, BoxID: ########, baseyear: 2004
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] ready for requests
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [mouse] found card system videoguard2
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] THIS WAS A SUCCESSFUL START ATTEMPT No 1 out of max alloted of 1
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] card detected
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] type: VideoGuard Dolce Romania (092F)
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] ------------------------------------------------------------------
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] |- class -|-- tier --|----- valid to ------|--- package name ----|
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] +---------+----------+---------------------+---------------------+
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] |-- 00 ---|-- 0066 --| 2018/05/23-01:00:00 |
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] |-- 0f ---|-- 0ff3 --| 2018/05/23-01:00:30 |
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] |-- 0f ---|-- 0fff --| 2018/05/23-01:00:30 |
  • 2018/04/29 09:45:40 5AF4CCB7 r (reader) Reader-1 [videoguard2] ------------------------------------------------------from-ins70--



LOL WTF.......

contact Plamen :cool:
easy peace of cake for him

nice trip to Haifa
 
Can someone send me a password to this file.

Cau Adas
 
Can someone send me a password to this file.

Cau Adas

heh.. polland commercial in action .. who will be next ? sega24 or ikarus :D

BTW: for why you not work on own oscan, only every some wanted.. as freeloader.. (dump, decrypt cwpk, uart on pace etc etc)

Heled se, pro polskych krowkožrútov tady nic neni, darmo kontaktujes moje pratele pres PM.. vsichni vedi co si zac i s tou tvou pšpšpšonko bandou komercialu
 
@klivo, @Vlado fogo

Can you show us what you did in life, did you write one prog or can you just call out users?

Your method: ctrl + c and ctrl + v, and cheating users. .... NICE!!!

Chcíplé čobolske prase!

Cau Adas
 
Yes! I know a lot of oscam devs who have everything functional, but they will never make the code available for the sole reason of getting into trouble...

The source code itself does nothing that can get you in trouble , but the keys you use to make it work can get you in trouble it's a big difference ;)

All source in the code came from open source libs.

The code itself is only mathematics calculations :)
 
heh.. polland commercial in action .. who will be next ? sega24 or ikarus :D

BTW: for why you not work on own oscan, only every some wanted.. as freeloader.. (dump, decrypt cwpk, uart on pace etc etc)

Heled se, pro polskych krowkožrútov tady nic neni, darmo kontaktujes moje pratele pres PM.. vsichni vedi co si zac i s tou tvou pšpšpšonko bandou komercialu


and you are a good law-abiding citizens you are a hell of a shit

and my english in like you good to put in the trash
 
@klivo, @Vlado fogo

Can you show us what you did in life, did you write one prog or can you just call out users?

Your method: ctrl + c and ctrl + v, and cheating users. .... NICE!!!

Chcíplé čobolske prase!

Cau Adas



show me a thief who writes to the public what the bank robbed :D you is strange..

Ty neco řikej komediantsko židovske prase.. česko polský žid emigrovany v NDR :D
 
no dont need

pachecoso im know him long time

and dont need your trash

JACKALS

money1.png
 
Last edited:
heh, why you edited.. the nickname who posted you this picture is user milosina and the having big pay server in bulgaria... i known him, very good.. first time he wanted max tv solution, now nds total tv NDS ..
 
Status
Not open for further replies.
Back
Top