Proxmark developers community

Research, development and trades concerning the powerful Proxmark3 device! Remember sharing is caring. Bring something back to the community.

You are not logged in.

#1 Re: General (USB driver, Framework, Protocol) » Sielox's Performa® Proximity Plus® » 2012-04-05 14:06:28

XEROEFFECT

Hey, 0xFFFF
I'm getting together some cards as you requested. I've got some sielox and checkpoint tags which both work on this unknown protocol. I can also send you 1 HF reader I was double sent by accident from EBay which came with some mifare tags if you like. I really don't know any way to contact you other than this forum. Give me a bell on my email when you read this. Send me some postal address so we can put this protocol to sleep smile

#2 Re: Questions and Requests » Identifying frequency of tag.. help :D » 2012-03-30 04:29:15

XEROEFFECT

hamdycam,

There is nothing on the net regarding the make and model of this tag. The closest I got was Myki which is to do with transport cards in Australia. From the photo, it sure is a HF tag. Im guessing the proxmark3 cant read the card because the tag needs authentication from the reader before it starts communicating. If this tag is used for building access im guessing it is a Mifare DESfire. Depending on the year the tag was made you could narrow this guess down further. What to do from here depends on more expeirienced users knowledge who are probably in hibernation right now. In the meantime its just you and me.

After some more searching I found this WebSite. Now we know it is Mifare and that it has 512 bytes memory capacity so if we do further searching maybe we can limit it down a Mifare Ultralight which fits into this category. (I'm guessing according to the Wiki.) What are your thoughts? I would brute force using "hf mf mifare" command on proxmark3 and see what happens.

#3 Re: Questions and Requests » Identifying frequency of tag.. help :D » 2012-03-29 14:34:00

XEROEFFECT

Does the tag have anything which could identify it? Any name on the tag? Maybe if you upload a picture someone will be able to recognize what it is.

#4 Re: Windows Client » Trouble Flashing » 2012-03-29 11:52:02

XEROEFFECT

Dear 0xFFFF,
If your still alive and not consumed by all your Hid dongles and such, would you be interested???

#5 Re: Windows Client » Trouble Flashing » 2012-03-29 07:44:16

XEROEFFECT

Hi tlou,

Finally i got my Prox3 updated and all seems well. Thanks for your help.

On another note, I have a Sielox proximity fob i believe works on HF but it will not respond to anything I throw at it. Frustrating as it is, I would like to call upon anyone here that would like a go at this fob. Happy to send it anywhere. would anybody be willing to help?

#6 Re: Windows Client » Trouble Flashing » 2012-03-26 23:53:17

XEROEFFECT

Ok. After doing some google searching I think I understand that the "Sudo" command should be executed in a Linux environment. I will keep trying to figure this one out. If anyone can help I would really appreciate it.

#7 Windows Client » Trouble Flashing » 2012-03-26 15:33:13

XEROEFFECT
Replies: 5

Hi,
Its been a while and yet im still having troubles. I cant seem to be able to flash my pm3 under windows vista 64. Compiling works great as I followed the latest guide to getting started. Im having difficulty understanding the "sudo ./flasher -b ../bootrom/obj/bootrom.elf" step. Where exactly do you type this cause so far its not happening for me.

Any help would be much appreciated.

#8 Re: Proxmark Board Innovations » New function: ST Micro SRIX4K tag reading » 2010-06-16 12:49:33

XEROEFFECT

Come on everybody... let's dance. There's plenty of room in here.

#9 Re: Questions and Requests » Help clone a Keri Fob » 2010-06-16 11:49:08

XEROEFFECT

Hey syrushcw,

The Keri fob you have is definately LF. I was able to read it using the proxmark however I never got a chance to play it back using the proxmark in order to confirm that it works. In order to clone this tag you need to find out what the UID is. I purchased a LF ACG USB reader from RFIDIOt and installed python and so on... I'm still having problems getting the scripts to run correctly but i did manage to extract the UID using one of the scripts. Once I get the scripts to run correctly I was hoping to program the UID on a Q5 tag using the scripts and reader I received from RFIDIOt. The guy that sells the readers is a member of this forum. His name is adam@algroup.co.uk - Hope that gives you some lead.

#10 Re: MIFARE Classic » MIFARE Classic Question ... ("hf 14a sim" not working?) » 2010-06-08 12:40:23

XEROEFFECT

albertoparis, I know this is not related to your question but how did you get RFIDIOt to work on your pc? Whenever I import a module, for eg. transit.py, I keep getting =====restart====== in the idle without anything happening. What could be wrong?

Thanks for reading.

#11 Various off-topic communication » RFIDIOt Help » 2010-05-30 12:52:41

XEROEFFECT
Replies: 1

Hello All,
       I finally found a reader that was able to spit out an ID of my key fob-KERI SYS. I purchased the ACG LF from RFIDIOt and I was so happy. If any one has RFIDIOt installed on their windows XP 32 machine I would appreciate some assistance. I would like to perform the same function adam did here in post 92. The problem im having is that when i try importing the module transit.py it runs and at the bottom of my IDLE I get  ====restart==== It doesn't give me time to give it input. I've tried running it from command line but after the import the whole prompt crashes. The same thing happens with unique.py. Adam, if your reading this, could you please help me.

Thanks.

#12 Re: Questions and Requests » Questions about required hardware » 2010-04-08 08:43:41

XEROEFFECT

I've actually got 2, so if anyone else is interested let me know.

#13 Re: Questions and Requests » Questions about required hardware » 2010-04-08 08:42:26

XEROEFFECT

Hey Duran97,
     I'll be more than happy to send to you. how do I get your address??

#14 Re: Questions and Requests » Questions about required hardware » 2010-04-05 08:51:25

XEROEFFECT

Hey Adam, uncleezno has the exact same fob I tried to emulate with no luck. Sice then, I have moved out but still have the fob. Would you like me to send it to you?? Maybe you can have a crack at it.

#15 Re: Various Tools and Utilities » New ProxSpace development environment available for download » 2010-02-23 07:02:05

XEROEFFECT

I bet my left testicle that soon there's going to be a huge demand for J-Tags. This is getting real interesing now.

#16 Re: Proxmark Board Innovations » PM3 LCD » 2010-02-13 11:40:20

XEROEFFECT

Hey d18c7db,  keep the KISS method in mind on this one. I'm calling mine PPM (Portable Proxmark) smile

#17 Re: Legic » Problem reading Legic MIM 256 » 2010-02-11 03:34:26

XEROEFFECT

Hey arcane1978, Just wondering, what OS are you using?

#18 Re: Proxmark Board Innovations » PM3 LCD » 2010-02-06 11:47:41

XEROEFFECT

d18c7db, Whats the latest with the LCD PM3? When will I be able to get one?

#19 Re: Website Feedback » Observations on the website from a new member » 2010-02-05 03:07:59

XEROEFFECT

Welcome wbahn, quick question, What os system are you working on?

#20 Re: Windows Client » MinGW vs MS cl » 2010-02-05 02:58:46

XEROEFFECT

I also need help understanding. I don't mean to brag like a bitch all night but it's annoying trying to keep up with you guys. To me an ELF is santas little helper. How does that simplify things for the benefit of the user? cbergonzi, You would be doing a great honour for dummies like me if you could please post the process you took- from compile to flash so I could follow your steps.

Thank you.

#21 Re: Windows Client » MinGW vs MS cl » 2010-01-29 10:09:34

XEROEFFECT

Hi Guys,

I need help understanding what bushing has done here. Are the compiling source code instructions on the Wiki still valid for windows users? Do I still need to use Subcommander to get updates for source code? Are the procedures setout in the Wiki still the same? I just don't get whats happening here.

Please help.

#22 Re: Hardware Remarks and Questions » Wiegand 26 bit » 2009-09-30 14:35:53

XEROEFFECT

Very very interesting video you pointed out Henryk. Thanks for your response. All this tme I thought Wiegand was a type of modulation which the prox-card used to communicate with the reader. It's a shame Zac hasn't released the Gecko device he built-I so want one. I'm trying to program a Q5 card with the bits I read off my Keri tag which uses FSK. What is my chance of sucess Henryk. Have you ever worked with Q5 cards?

Couple more questions Henryk... What is it your studying at UNI and where will it lead you in the future?
Thanks Henryk.

#23 Re: Questions and Requests » Help cloning my flat keys » 2009-09-30 14:23:52

XEROEFFECT

Making a new Q5 adventure thread sounds good. These cards are awsome in that they can be programmed to replicate almost all modulations. The challenge is how its done. Adam python script allows us to program using ASK which is a great start. I need to figure out how FSK should be done. Then theres PSK and so on. Even timing can be varied. Really amazing card and not much has been explored or mentioned about it in this forum. Where to start John??

Edit.
While your here take a look at www.rfdump.org This may be of help to us.

Edit Edit.
Maybe not. At the moment it only works with HF readers --+ Damn.

#24 Re: Hardware Remarks and Questions » Wiegand 26 bit » 2009-09-30 08:11:25

XEROEFFECT

Hi All,
Can somebody please clarify what Wiegand 26 really is. correct me if i'm wrong- It's not a type of communication modulation between card and reader its the communication modulation that occurs between reader and server which is mainly used in access control where cabling needs to be streched long distances. right? Whats your opinion?

Thanks guys.

#25 Re: Questions and Requests » Help cloning my flat keys » 2009-09-30 08:06:02

XEROEFFECT

Ok John. which reader did you buy from Adam? was it the L&HF ACG or just the LF like mine? I also got the Omnikey 5325 as well- just incase I get bored smile Im starting a collecton of readers. My initial goal is to be able to program the Q5 cards using FSK modulation. How thats done- I don't know. Maybe somebody here has a few pointers and would like to help. In the meantime I'll do some googling on Q5 cards and see if there is a program out there already which will help me write in different modulation schemes. Stay tuned.

#26 Re: Questions and Requests » Help cloning my flat keys » 2009-09-29 11:12:34

XEROEFFECT

Hey John,

Sorry it's taken so long to reply. I've been Procrastinating all this time. Thanks 4 your email- heart warming. I also bought a ACG LF reader from Adam not long ago and I think its time to start playing with it. Tell me.. did you get your reader working? I mean, was it straight forward for you cause I have no idea where to start. I thought it's just a matter of plugging the damn thing in but there's a lot more to it. Let me know how things are.

Your friend,
Xero.

#27 Re: Questions and Requests » Help cloning my flat keys » 2009-09-16 13:04:49

XEROEFFECT

Hey John,
       Did you eventually come to the conclusion that the faulty tags were actually faulty cause I have a sus feeling that the building manager is trying to make money on these tags. My gut feeling is that whenever he is bored he picks you guys like flies and deletes fob UID's off the system. Afterall, these fobs are meant to last something like 200 years!

#28 Re: Questions and Requests » Your antenna is unusable. » 2009-09-16 12:51:45

XEROEFFECT

Hi Jaeger2000,

Yes- you do need to install the antenna for PM3 to work. Try the tune command again with the low frequency antenna attached to your board. Good luck.

#29 Re: Hardware Remarks and Questions » Wiegand 26 bit » 2009-09-10 17:11:38

XEROEFFECT

@ adam@algroup.co.uk

Hey Adam,
Need to ask you. Do any of your python scripts support FSK modulation for the Q5? I mean, If I was to program the bits described in POST 5 of another thread I hijacked, would I be able to program the Q5 card to use FSK modulation using your scripts?


Thanks Adam. I'm off to bed now.
Lights Out!

#30 Re: Questions and Requests » hisamples command cause proxmark3 to hangs » 2009-09-09 08:32:26

XEROEFFECT

Henryk,
It worked. It actually worked! I was having a lot of trouble at first cause it's not mentioned anywhere in the compile that I had to work out of the WINSRC folder in the command prompt after calling 0setpath.bat. I'm just wondering after all the errors I put this PM3 through while flashing how lucky I am. I'm so happy to actually get passed this. What a miracle this was. I know what your thinking Henryk- This guys a total moron -is he really that stupid!!- was this guy dropped at birth- can't he just leave me alone-  smile

#31 Re: Questions and Requests » hisamples command cause proxmark3 to hangs » 2009-09-09 05:24:19

XEROEFFECT

Thank you Henryk. Your my guardian God-like angel smile

#32 Re: Questions and Requests » hisamples command cause proxmark3 to hangs » 2009-09-09 04:28:21

XEROEFFECT

Henryk,
Just to make it clear- I want to flash my pm3 today, including the bootrom, with your summer '09 release. Is it safe to do it now?
Thanks Henryk.

#33 Re: Questions and Requests » hisamples command cause proxmark3 to hangs » 2009-09-09 03:05:44

XEROEFFECT

Hey Samy,
Where you been lately? Hope all is well.
I don't know much about Jtag and reading peoples posts- some work, some dont. I've been looking around and have found this one. Although I would prefer to buy one that has been tried and tested. Which did you buy Samy? From memory, I think you got 2?

#34 Re: Questions and Requests » hisamples command cause proxmark3 to hangs » 2009-09-09 00:55:01

XEROEFFECT
henryk wrote:

Users: Due to this, firmware and host tools before and after revision 137 are mutually incompatible. I will prepare a new firmware release shortly and you are encouraged to update the firmware and bootrom when that is available.

Henryk,
Does that mean both Windows and Linux users? This is making me nervous cause I know I'm capable of really screwing things up and I don't even have a Jtag. Even if I had a Jtag I wouldn't know what to do with it -Thats another chapter of my prox adventure that hasn't been written yet.

#35 Re: Questions and Requests » Help cloning my flat keys » 2009-09-08 14:59:52

XEROEFFECT

WoW! How amazing is that! I'm extatic about this. Great work Adam! Really happy you found what you were looking for John. It really will pay off in the end. Best of all -you got your sex life back! Go get'em boy! smile

#36 Re: Questions and Requests » Unable to flash » 2009-09-08 13:37:43

XEROEFFECT

Hi Sakrapee,
Just follow the advice I received from Duran when I first got my proxmark. Maybe your doing something wrong. Hope it works out.

helptm.png

#37 Re: Questions and Requests » Help cloning my flat keys » 2009-09-08 10:07:46

XEROEFFECT

Intro:

On todays show John will hear a knock on his door- will it be the package he has been so eagerly waiting for? Will Adams' attemps to clone the fob actually pay off? And what will happen to John when his girlfriend finds out where the money has gone? 

Stand-by guys. Season 1, episode 5 is about to begin smile

#38 Re: Questions and Requests » Help cloning my flat keys » 2009-09-08 00:56:44

XEROEFFECT

While you guys are about to sleep, I wake up. Then I feel lonely for the rest of the day sad 
Can't wait to hear results. I'm getting a good vibe on this one. Good luck and good night John & Adam.

#39 Re: Questions and Requests » Help cloning my flat keys » 2009-09-07 14:34:46

XEROEFFECT

Oi, Your confusing me now. How did you figure Adam configured Q5 to loop a few times. From my little understanding, Looking at post 92, Adam just programmed the crap in once. Your thoughts?

#40 Re: Questions and Requests » Help cloning my flat keys » 2009-09-07 13:22:10

XEROEFFECT

It makes sense. Since the 2 other transit 500 fobs had a low sync (please correct me if I got the wording wrong- low sync) it should work this time. I can't wait for the results. Getting really impatient. smile

#41 Re: Questions and Requests » Help cloning my flat keys » 2009-09-07 11:07:27

XEROEFFECT

Does that mean all hex values must be changed once inverted to reflect the bit pattern or just the 2 HEX 0x00 bytes and the single 0xF2? Maybe i'm wrong but when you said invert did you mean start with 0xF2 > Bit Pattern > end with 2(0x00)

#42 Re: Questions and Requests » Help cloning my flat keys » 2009-09-07 10:17:59

XEROEFFECT

Hmmm. Jonathan Westhues wrote about something similar but it only relates to the PM3. I'm curious to know where the start point was programmed in the Q5 card and if it took into account the sync pattern. I've provided a reference to this article below. I'm pretty sure the reason the Q5 dosn't work is cause there is no sync pattern which tells the reader "Get ready, here it comes"

Jonathan Westhues wrote:

verichipsyncseq.png
If all that I want is to clone the tag, then it is arbitrary which point in the signal I designate as t=0. The ID just loops, so the signal over the air is unaffected. That feature between the cursors looked sort of like a sync pattern, though, and it occurs in both tags’ traces. For want of a better idea, I will write my demod code to correlate for that, and use that as its reference. Then I can demodulate the received signal to a bit string.

#43 Re: Questions and Requests » Help cloning my flat keys » 2009-09-07 02:49:50

XEROEFFECT

John, post a screenshot of the wave without doing any functions to the data. like the first pic you posted below on the previous page on this thread. Just wanna compare both your waves.
Thanks dude.
PunBB bbcode test

#44 Re: Questions and Requests » Help cloning my flat keys » 2009-09-07 00:45:23

XEROEFFECT

@John
Haha.. you make me smile. Gotta say though, It has been so challenging for me from the first day and still is. I just looked at some old posts and now I'm thinking- what a Fuckwit. Hopefully new guys can just read my posts, laugh and learn from my mistakes. One day soon I'll be able to write scripts and then I'll sign up again as HenrykBrother or sometning. In the meantime I'll just keep asking. cool
Dude, I need a favour.... can you post a screen shot of the Q5 wave plot the same way you did b4. I havn't got my pm3 on me and I'm curious to see whats happening.

#45 Re: Questions and Requests » Help cloning my flat keys » 2009-09-06 02:28:43

XEROEFFECT

Dear John,
       
      Please accept my sincere condolences on the passing of your dear friend. I am so sorry about your loss.
      Although I never met your friend, I know what they mean to us. Sorry.

#46 Re: Questions and Requests » Help cloning my flat keys » 2009-09-05 16:46:20

XEROEFFECT

Adam,
When you programmed the bit pattern to the Q5 tag, did it include the LRC byte as well? If it did, why did you guys have to dwell with the bits so hard. Does the XOR byte value tells us anything useful?

#47 Re: General (USB driver, Framework, Protocol) » New flash procedures » 2009-09-05 16:16:37

XEROEFFECT

Henryk, I wish the world was full of people like yourself. Your too good! I really wish I was you. Let's swap chairs. smile

#48 Re: General (USB driver, Framework, Protocol) » New flash procedures » 2009-09-05 13:06:33

XEROEFFECT

Guys, is there still a temporary breakage for the bootloader as described in the compile page of the wiki? I noticed d18c7db responce above. Does that mean it's good to go for Windows users?

#49 Re: Questions and Requests » Help cloning my flat keys » 2009-09-05 09:59:22

XEROEFFECT

Thanks Adam. I just realised Henryk must have used a calculator. I thought It was all done manually and that the answer was meant to be obvious. Thats why I got thrown off. I was sitting here like an idiot trying to merge 1's and 0's. Cool, Windows calculator helped me solve that one. smile

#50 Re: Questions and Requests » Help cloning my flat keys » 2009-09-05 08:48:52

XEROEFFECT

Guys, really sorry to hold you up but could you explain what XOR is. I've googled around, found explanations for it but cant seem to work out how Henryk arrived to the following answers:

Henryk wrote:

   
                0x04 xor 0x00 xor 0x80 xor 0x64 xor 0x5A = 0xBA
                0x05 xor 0x01 xor 0x57 xor 0x49 xor 0x5A = 0x40
                0x99 xor 0x53 xor 0x16 xor 0x70 xor 0x5A = 0xF6

Board footer

Powered by FluxBB