Log in

View Full Version : AACS Keys - A program revealing all AACS Keys needed to decrypt (HD DVD and Blu-ray)


Pages : 1 2 3 4 [5] 6 7 8 9 10 11 12

laserfan
18th June 2007, 00:59
Thanks arnezami for your complete reply!

...you can always sniff the usb as a "fallback method".Sounds kinda perverse... ;)

I dunno what this means but if I need to, I will do a "Search"! Many thanks...

mlansell
18th June 2007, 23:43
Hmmm. I tried the new version but all I get is this:


aacskeys v0.2.7


Could not find a Processing Key or Device Key resulting in the Media Key.

Aborting...


If I rename the ProcessingDeviceKeysSimple.txt file it reports that it cannot find it, so it must be trying to load it from the correct place.

I'm using an Xbox360 drive, and the disk is the UK edition of Corpse Bride.

If I use my ancient version of aacskeys, it reports an incorrect VUK, so I presume this disk requires the newer processing key.

Any ideas?

Mal

arnezami
18th June 2007, 23:49
Hmmm. I tried the new version but all I get is this:



If I rename the ProcessingDeviceKeysSimple.txt file it reports that it cannot find it, so it must be trying to load it from the correct place.

I'm using an Xbox360 drive, and the disk is the UK edition of Corpse Bride.

If I use my ancient version of aacskeys, it reports an incorrect VUK, so I presume this disk requires the newer processing key.

Any ideas?

Mal

Whats in your ProcessingDeviceKeysSimple.txt file? Two keys? Which ones?

Can you also check the MKBROM.AACS file with WinHex and post the first 16 bytes of that file (in hex)?

Does it play with PowerDVD/WinDVD? Does AnyDVD work on it?

What are the dates of the files in the AACS directory of the disc?

arnezami

mlansell
19th June 2007, 21:43
Whats in your ProcessingDeviceKeysSimple.txt file? Two keys? Which ones?
Two keys:
09F911029D74E35BD84156C5635688C0 ; Processing Key MKB v1
455FE10422CA29C4933F95052B792AB2 ; Processing Key MKB v3

Can you also check the MKBROM.AACS file with WinHex and post the first 16 bytes of that file (in hex)?
10 00 00 0C 00 04 10 03 00 00 00 03 21 00 00 64

Does it play with PowerDVD/WinDVD? Does AnyDVD work on it?
I can't play it with PowerDVD because despite having paid good money for HDCP compliant hardware, the graphics card is not on the "list", so it refuses to play. That's why I'm interested in removing this DRM horsesh*t.

My trial for AnyDVD ran out a while back. I don't really want to buy it, but if the other information I've listed here doesn't help, I guess I may have to.

What are the dates of the files in the AACS directory of the disc?
14/04/2007 09:27

Thanks

M.

Zotty
19th June 2007, 22:22
Since this is an in-between version the source is not released. So currently there isn't a way to compile it under linux. However maybe using some VMware might work.

arnezami
A little offtopic, but I just got the authentication skip method working in decrypthd, including FW checking. So I'm happy afterall ;)

Bottomline is this works in Linux aswell and seems indeed to be faster compared to actually doing authentication. Unfortunately I've got the same firmware as mentioned above, so no news there.

edit:
To be more exact;
- no authentication: 0,098 seconds
- with authentication: 1,640 seconds


10 00 00 0C 00 04 10 03 00 00 00 03 21 00 00 64

That's a v3 MKB alright.

dirio49
19th June 2007, 23:45
@Zotty.
when are you going to release it? :D

Zotty
20th June 2007, 07:56
Errr.. haven't thought about that yet. Been experimenting a bit with this and optimization. But I've also been quite busy at work lately, so development is going a bit slow.

Anyways, let's not hijack this thread. This one is about aacskeys ;)

arnezami
20th June 2007, 20:03
@mlansell: check you pm box. ;)

arnezami
23rd June 2007, 18:19
Hmmm. I tried the new version but all I get is this:



If I rename the ProcessingDeviceKeysSimple.txt file it reports that it cannot find it, so it must be trying to load it from the correct place.

I'm using an Xbox360 drive, and the disk is the UK edition of Corpse Bride.

If I use my ancient version of aacskeys, it reports an incorrect VUK, so I presume this disk requires the newer processing key.

Any ideas?

Mal
I removed a pretty major bug in aacskeys which caused this sometimes. In fact KenD00 already pointed this out to me earlier. Anyway should work now :).

aacskeys v0.2.8 (http://www.sendspace.com/file/sull3p)

Please test it.

arnezami

mlansell
24th June 2007, 00:00
I removed a pretty major bug in aacskeys which caused this sometimes. In fact KenD00 already pointed this out to me earlier. Anyway should work now :).

aacskeys v0.2.8 (http://www.sendspace.com/file/sull3p)

Please test it.

arnezami

The new aacskeys works like a dream - great work, Arnezami :-)

BTW, using AnyDVD worked as well. However, if I then try to play the decrypted pevob_1.evo in PowerDVD, it glitches for the first minute or so. Playback in Windows Media Player / Media Center is fine.

Using the key from Aacskeys to decrypt via BackupHDDVD has no such troubles.

The files produced by both methods are exactly the same size.

Weird eh?

M.

Pelican9
26th June 2007, 12:28
The files produced by both methods are exactly the same size.


Why don't compare the contents of the two file?

mlansell
26th June 2007, 14:53
Why don't compare the contents of the two file?

I would, but I don't have the corrupt one anymore. I suppose I could try it again and see if it comes out corrupt the second time...

mrazzido
27th June 2007, 14:57
Hey! my friends!

got new bluray disc today aacskeys 0.2.8 doesnt work ?? did i anything wrong?

its a new movie 4days here out in our shops.

dumpvid j

DumpVID 0.3 by KenD00 (adapted for bluray testing)

Drive type is recognised as CDROM/DVD.

Sending SPC1 Test Unit CDB6 command..done.
Returned good status.

Press ENTER to start hammering

Hammering drive...
vid: 86C48635F69A116990A78741EDDE574D
Hammering finished.



aacskeys j 86c48635f69a116990a78741edde574d

aacskeys v0.2.8


Could not find a Processing Key or Device Key resulting in the Media Key.

Aborting...




Edit 1:

okay i think i found the "Error" i used the other proccessing key yet " 455FE10422CA29C4933F95052B792AB2 "

edit 2:

hmm the key

Volume Unique Key: D0648FF3A68CF94A8E6FC900DEEB56BE
Unit Key File Hash (DiscID): 509A0A831370A1B4865802D29E05B26C69211B
Encrypted Unit Key 1: 2AA6415E92A27E2EFBAB4779F8522D52

Decrypted Unit Key 1: 6034C6A8459D212E1C00C9C4E98FF868


doenst work :-/ cant decrypt the movie :-(.

arnezami
27th June 2007, 17:52
Hey! my friends!

got new bluray disc today aacskeys 0.2.8 doesnt work ?? did i anything wrong?

its a new movie 4days here out in our shops.




Edit 1:

okay i think i found the "Error" i used the other proccessing key yet " 455FE10422CA29C4933F95052B792AB2 "

edit 2:

hmm the key

Volume Unique Key: D0648FF3A68CF94A8E6FC900DEEB56BE
Unit Key File Hash (DiscID): 509A0A831370A1B4865802D29E05B26C69211B
Encrypted Unit Key 1: 2AA6415E92A27E2EFBAB4779F8522D52

Decrypted Unit Key 1: 6034C6A8459D212E1C00C9C4E98FF868


doenst work :-/ cant decrypt the movie :-(.

Does the "Decrypted verification data" start with 0123456789ABCDEF ? If so the Processing Key is working.

Can you copy-paste the verbose output here so I can better see what is going on. And when trying to decrypt always copy-paste (better not re-type). One bit wrong and it won't work. Try the Volume ID again too...

Does the movie play in PowerDVD btw? What does AnyDVD do?

arnezami

mrazzido
27th June 2007, 18:05
i didnt try anydvd yet.

powerdvd starts the movie but some seconds later it stops because non HDCP / HDMI monitor only DVI .


hmm i see something wrong with volume ID.
its all Zero.


aacskeys v0.2.8

Current path: C:\Users\acid
Processing key: 455FE10422CA29C4933F95052B792AB2
Encrypted C-value: C3934F6EC5B1AE06E15C727D2CE9BD8F
Corresponding uv: 00000049

Decrypted C-value: 72FD3676B3F7FCC7D186813DA5C26D9B
Media key: 72FD3676B3F7FCC7D186813DA5C26DD2

Encrypted verification data: 6548954A05889EB63FA0DB52D4356B5B
Decr verif data should be: 0123456789ABCDEF
Decrypted verification data: 0123456789ABCDEF72F0033722AB4B0C

Drive FW info: AL06 R___

AGID: 01

Host certificate from: Power DVD 7.1
Host certificate (Hcert): 0200005CFFFF0000000C00006E3DEB679B9A16AD
FAA8E30878767BA6EB2A9B415385AD1181B4446C
31E9A5DD2AB808B364FF15885BAC490964318C9B
F8029FCF76F688A54FBDA03F6D9332EF04E5A613
12DA85880A4D9CBB79D8602E
Host Private Key (Hpriv): 4737676058D7029452514F0AB186DC4CCA8C578F
Host Nonce (Hn): 2923BE84E16CD6AE529049F1F1BBE9EBB3A6DB3C

Drive certificate (Dcert): ########################################
########################################
########################################
########################################
########################
Drive Nonce (Dn): ########################################

Drive key point (Dv): ########################################
########################################
Drive key signature (Dsig): ########################################
########################################

Host key (Hk): 5613E7F89B11D9CAA27B610A1096332BEED86BC4
Host key point (Hv): 8A60C80BD60C23605FBE90B27BF96B2DB38195C1
801F54EB29E0F6EC57AC2B9168E88B2D56977508
Host key signature (Hsig): ########################################
########################################

Drive signature wrong/error
Bus key (BK): ################################

Volume ID: 00000000000000000000000000000000
Volume ID MAC: ################################
Volume ID MAC should be: ################################

Volume Unique Key: D0648FF3A68CF94A8E6FC900DEEB56BE
Unit Key File Hash (DiscID): 509A0A831370A1B4865802D29E05B26C69211B3C
Encrypted Unit Key 1: 2AA6415E92A27E2EFBAB4779F8522D52

Decrypted Unit Key 1: 6034C6A8459D212E1C00C9C4E98FF868

arnezami
27th June 2007, 19:05
hmm i see something wrong with volume ID.
its all Zero.

Yep. You need to do this:

aacskeys j 86c48635f69a116990a78741edde574d

I fact you did that earlier see your post above (but then you didn't use the right processing key yet). So just do it again now. It should work :).

mrazzido
27th June 2007, 20:05
thx for help workxx *g

Immie
6th July 2007, 02:54
I think I found a problem, no matter what version of aacskeys I use, it keeps crashing after giving me just the basic keys and noticed something:

Error opening Title Key/Unit Key File: g:\AACS\VTKF000.AACS

Well, my disc doesn't have a VTKF000.AACS file. It's named something else. I've got VTKF090.AACS and VTKF100.AACS. Is there anyway we can get the program updated to work with alternate VTKF files?

In case anyone is curious, this disc is the Freedom anime HD-DVD/DVD episode 1 from Bandai Visual.

arnezami
6th July 2007, 06:19
I think I found a problem, no matter what version of aacskeys I use, it keeps crashing after giving me just the basic keys and noticed something:

Error opening Title Key/Unit Key File: g:\AACS\VTKF000.AACS

Well, my disc doesn't have a VTKF000.AACS file. It's named something else. I've got VTKF090.AACS and VTKF100.AACS. Is there anyway we can get the program updated to work with alternate VTKF files?

In case anyone is curious, this disc is the Freedom anime HD-DVD/DVD episode 1 from Bandai Visual.
Hmmm. Interesting. Could you give the directory listing of the AACS dir?

Thanks.

arnezami

PS. Read your pms.

Immie
6th July 2007, 07:05
Hmmm. Interesting. Could you give the directory listing of the AACS dir?

Thanks.

arnezami

PS. Read your pms.

Sent you a PM about this. Thanks.

sl1pkn07
13th July 2007, 02:23
hi

arnezami: aacskeys v0.2.8 runs on linux? (not include sources)

arnezami
26th July 2007, 17:29
Just a quicky:

I'm totally swamped atm. Will be back. Please have patience ;).

sxt173
28th July 2007, 16:03
@ arnezami

Thanks for this great tool, but having small problem that I can't get sorted out.

When I try to run it off of my C: drive, I get:
C:\>aacskeys k v
aacskeys v0.2.8

Current Path c:\
Could not open file: C:\\ProcessingDeviceKeysSimple.txt

I'm getting same message whichever location I try to run aacskeys from.. any ideas?

SvT
28th July 2007, 16:10
@ arnezami

Thanks for this great tool, but having small problem that I can't get sorted out.

When I try to run it off of my C: drive, I get:
C:\>aacskeys k v
aacskeys v0.2.8

Current Path c:\
Could not open file: C:\\ProcessingDeviceKeysSimple.txt

I'm getting same message whichever location I try to run aacskeys from.. any ideas?

Make sure the file "ProcessingDeviceKeysSimple.txt" is in the same dir. You can find a copy of the file in this link.

http://forum.doom9.org/showthread.php?p=1014933#post1014933

Goodluck !

sxt173
31st July 2007, 04:49
Make sure the file "ProcessingDeviceKeysSimple.txt" is in the same dir. You can find a copy of the file in this link.

http://forum.doom9.org/showthread.php?p=1014933#post1014933

Goodluck !

@ SvT
That was it, Thanks! Works great now.

MrWizard
3rd August 2007, 07:27
hi

arnezami: aacskeys v0.2.8 runs on linux? (not include sources)
I just tried it under Wine 0.9.42 and it worked fine. A native build would be nice, but this works for me for now :)

dk75
3rd August 2007, 20:41
I just tried it under Wine 0.9.42 and it worked fine. A native build would be nice, but this works for me for now :)

Did you used it with HDDVD drive or with mounted image? I can't obtain VUK from mounted image:

login@host:~/aacskey$ wine aacskeys.exe L: v
aacskeys v0.2.8

Current path: E:\aacskey
Processing key: 09F911029D74E35BD84156C5635688C0
Encrypted C-value: 47BEA12C44440DEDDAFCF95673C16D69
Corresponding uv: 00000001

Decrypted C-value: 9EA73F392FC815DABFF2FC8A20D0BA4F
Media key: 9EA73F392FC815DABFF2FC8A20D0BA4E

Encrypted verification data: F84AA53687CBA97A30353D959DB1984D
Decr verif data should be: 0123456789ABCDEF
Decrypted verification data: 0123456789ABCDEFBA41C7D9D209A3E2

Could not create handle for CD/DVD device.
Drive FW info:

All AGIDs in use, aborting.

KenD00
3rd August 2007, 22:31
You can't obtain a VUK from a mounted image because you need the VID for that which is not in a mounted image because it cannot be copied from the disc.

:rolleyes:

dk75
4th August 2007, 07:20
hm... right:

login@host:~/aacskey 0.32$ wine aacskeys.exe L: v v
aacskeys v0.2.8

Current path: E:\aacskey 0.32
Processing key: 09F911029D74E35BD84156C5635688C0
Encrypted C-value: 47BEA12C44440DEDDAFCF95673C16D69
Corresponding uv: 00000001

Decrypted C-value: 9EA73F392FC815DABFF2FC8A20D0BA4F
Media key: 9EA73F392FC815DABFF2FC8A20D0BA4E

Encrypted verification data: F84AA53687CBA97A30353D959DB1984D
Decr verif data should be: 0123456789ABCDEF
Decrypted verification data: 0123456789ABCDEFBA41C7D9D209A3E2

Volume ID: 00000000000000000000000000000000
Volume Unique Key: 9D1542E520DA01F22A053E29336DD4C9
Unit Key File Hash (DiscID): E139051278CF873697A370FC10527D4854E35681
Encrypted Unit Key 1: 306DFD64F7159FBAAAD56D28C879ECD0

Decrypted Unit Key 1: B69A4B6435C518B1262012A2065986AE


so what do I need now is... aacskeys for PS3, but the files posted a few pages away on sendspace aren't available now.

Speediakal
6th August 2007, 18:33
does anyone know the 300 Blu-Ray US AACS Key? I'm trying to rip it and decrypt it from my PS3 using BackupBluray.

peau
25th August 2007, 06:15
Ive been reading this and related threads for the last week or so and have backed up and decrypted blurays using a ps3 and windows comp assuming I have a released key combinations for that movie, but I have had no luck in obtaining a working combination of keys using either linux on the ps3, or the files in the AACS folder. I was wondering though if this quest to get keys using a bluray drive in a ps3 and/or using a backup to get it to play was still alive. Curious if anyone has done this successfully as of yet, and through what means. Thanks in advance

dk75
25th August 2007, 11:26
Wrong thread dude...
This thread is for Windows decrypting with BD-ROM/Writer connected directly to PC only (since aacskeys isn't for PS3 right now).

If you want to use PS3&Windows for decrypting then you are interested with this thread: http://forum.doom9.org/showthread.php?t=124841

d0ORk
28th August 2007, 08:47
Hello. I got a bluray which I seem cant decrypt properly.
AACSKEYS gives me the following:

Processing key: 09F911029D74E35BD84156C5635688C0
Encrypted C-value: 0B26C036A16F301B63B553B007A96F08
Corresponding uv: 00000001

Decrypted C-value: D3388BD9EB29DF366355717DA76BB915
Media key: D3388BD9EB29DF366355717DA76BB914

Encrypted verification data: 7E912AD0AE711FD9FED482CB7E765721
Decr verif data should be: 0123456789ABCDEF
Decrypted verification data: E8F80D4DC4ADFAE42A0C90997AA7A6EE

AGID: 00

Host certificate from: Power DVD 7.1
Host certificate (Hcert): 0200005CFFFF0000000C00006E3DEB679B9A16AD
FAA8E30878767BA6EB2A9B415385AD1181B4446C
31E9A5DD2AB808B364FF15885BAC490964318C9B
F8029FCF76F688A54FBDA03F6D9332EF04E5A613
12DA85880A4D9CBB79D8602E
Host Private Key (Hpriv): 4737676058D7029452514F0AB186DC4CCA8C578F
Host Nonce (Hn): 2923BE84E16CD6AE529049F1F1BBE9EBB3A6DB3C

Drive certificate (Dcert): ########################################
########################################
########################################
########################################
########################
Drive Nonce (Dn): ########################################

Drive key point (Dv): ########################################
########################################
Drive key signature (Dsig): ########################################
########################################

Host key (Hk): 0000000000000000000000000000000000000000
Host key point (Hv): 8E9B0E3CF41FA7DA3A829F604122EA4ED5261AA4
7570CE0BB9061A66FAF92C4A7D98ACC171CBF19B
Host key signature (Hsig): ########################################
########################################

Bus key (BK): ################################

Volume ID: 1BC7547FAF328373663731A98DC539D7
Voluem ID MAC: ################################

Volume Unique Key: B6664DC1AD4063C0AEB4553B2E0D460D
Encrypted Unit Key 1: 77D36C9D8113B3E88B50F3D339E1885B

Decrypted Unit Key 1: E8169FE9805700C64F29C4545D4D5412


and the newest aacskeys 0.2.8:

Processing key: 455FE10422CA29C4933F95052B792AB2
Encrypted C-value: 6062BAA9905525D7D6D0B2B023D63DE2
Corresponding uv: 00000049

Decrypted C-value: A29EEF856B39D75A7ABCD5ED78BDC1B4
Media key: A29EEF856B39D75A7ABCD5ED78BDC1FD

Encrypted verification data: 7E912AD0AE711FD9FED482CB7E765721
Decr verif data should be: 0123456789ABCDEF
Decrypted verification data: 0123456789ABCDEF72724A82FB5715C4

Drive FW info: 1.01 07/05/15 PIONEER

AGID: 00

Host certificate from: Power DVD 7.1
Host certificate (Hcert): 0200005CFFFF0000000C00006E3DEB679B9A16AD
FAA8E30878767BA6EB2A9B415385AD1181B4446C
31E9A5DD2AB808B364FF15885BAC490964318C9B
F8029FCF76F688A54FBDA03F6D9332EF04E5A613
12DA85880A4D9CBB79D8602E
Host Private Key (Hpriv): 4737676058D7029452514F0AB186DC4CCA8C578F
Host Nonce (Hn): 2923BE84E16CD6AE529049F1F1BBE9EBB3A6DB3C

Drive certificate (Dcert): ########################################
########################################
########################################
########################################
########################
Drive Nonce (Dn): ########################################

Drive key point (Dv): ########################################
########################################
Drive key signature (Dsig): ########################################
########################################

Host key (Hk): 5613E7F89B11D9CAA27B610A1096332BEED86BC4
Host key point (Hv): 8A60C80BD60C23605FBE90B27BF96B2DB38195C1
801F54EB29E0F6EC57AC2B9168E88B2D56977508
Host key signature (Hsig): ########################################
########################################

Bus key (BK): ################################

Volume ID: 1BC7547FAF328373663731A98DC539D7
Volume ID MAC: ################################
Volume ID MAC should be: ################################

Volume Unique Key: 6F4B8F19CF714805E553A17676233C25
Unit Key File Hash (DiscID): 4E008BADC49CCAB1BFB24115DC6049C2886FE0E5
Encrypted Unit Key 1: 77D36C9D8113B3E88B50F3D339E1885B

Decrypted Unit Key 1: F9713FF049FAAAB4C771A6E59CA22896


I think the first one is right but it doesn't show the Unit Key File Hash (DiscID) which I need for DumpHD or should I take the VUK from the first one and the DiscID from the second as DumpHD shows this DiscID anyway.

DumpVid didnt show anything.

Thanks in advance

jack_wuwei
7th September 2007, 07:16
I test aacskey 0.2.8, The disc is Basic Instinct 2. aacskey 0.2.8 output:
D:\aacskeys_v0.2.5>aacskeys2.8.exe h v
aacskeys v0.2.8

Current path: D:\aacskeys_v0.2.5
Device key: AA856A1BA814AB99FFDEBA6AEFBE1C04
Processing key: 09F911029D74E35BD84156C5635688C0
Encrypted C-value: 31A883FE8F48B6EB731F7D390A0900D0
Corresponding uv: 00000001

Decrypted C-value: CF8642753C67C52EC9A077D25259B530
Media key: CF8642753C67C52EC9A077D25259B531

Encrypted verification data: 0D233917C27E8084DFCE1CAAAF5F440B
Decr verif data should be: 0123456789ABCDEF
Decrypted verification data: 0123456789ABCDEF002705C060959863

Drive FW info: AL07 R___

AGID: 01

Host certificate from: Power DVD 7.1
Host certificate (Hcert): 0200005CFFFF0000000C00006E3DEB679B9A16AD
FAA8E30878767BA6EB2A9B415385AD1181B4446C
31E9A5DD2AB808B364FF15885BAC490964318C9B
F8029FCF76F688A54FBDA03F6D9332EF04E5A613
12DA85880A4D9CBB79D8602E
Host Private Key (Hpriv): 4737676058D7029452514F0AB186DC4CCA8C578F
Host Nonce (Hn): 2923BE84E16CD6AE529049F1F1BBE9EBB3A6DB3C

Drive certificate (Dcert): ########################################
########################################
########################################
########################################
########################
Drive Nonce (Dn): ########################################

Drive key point (Dv): ########################################
########################################
Drive key signature (Dsig): ########################################
########################################

Host key (Hk): 5613E7F89B11D9CAA27B610A1096332BEED86BC4
Host key point (Hv): 8A60C80BD60C23605FBE90B27BF96B2DB38195C1
801F54EB29E0F6EC57AC2B9168E88B2D56977508
Host key signature (Hsig): ########################################
########################################

Drive signature wrong/error
Bus key (BK): ################################

Volume ID: 00000000000000000000000000000000
Volume ID MAC: ################################
Volume ID MAC should be: ################################

Volume Unique Key: 100A216C1F714C0CB1970D73C33A0741
Unit Key File Hash (DiscID): 32E4DE0056128E0A88147D46BA8A98E95648CBBB
Encrypted Unit Key 1: DB55EDC19B31E13742E0EED21DA4A8DA

Decrypted Unit Key 1: 6133B7AD32B6518716B1DBF9552854C7

The key is wrong, right key is EB7DF18EF85EBB9CA12CAC4A4448EB27

jack_wuwei
7th September 2007, 07:17
BTW: I can play the disc with PowerDVD 7.3

SvT
7th September 2007, 10:55
Volume ID: 00000000000000000000000000000000
Volume ID MAC: ################################
Volume ID MAC should be: ################################


There's something wrong with the volume ID I think.
its all Zero.

I think you can get the VUK with dumpvid and use that for aacskeys:

See this post: http://forum.doom9.org/showthread.php?p=1019403#post1019403

Goodluck

gioowe
7th September 2007, 12:16
The volume id is all zero if the drive does not accept the host (certificate) and authentication fails. "Drive signature wrong/error" is another indicator. The drive deliberately returns an incorrect signature if it rejects the host.

Someone could update aacskeys to read the MKBROM from the drive to check for revoked host certificates. Would be another nice feature :)

jack_wuwei
10th September 2007, 07:05
I really appreciate Svt and Gioowe’s help. I tried the method from http://forum.doom9.org/showthread.php?p=1019403#post1019403, At last, I got the right key by using DumpVID and aacskeys software. But it is not so convenient, because DumpVID needs to run player software.

I used to get the right key only by running aacskeys. However, aacskeys can not get the right key after playing the movie Speed on the other day. This happens on both the DVD driver and pc. I doubt that the disc has recorded a kind of blacklist which contains the revealed Device Key. When the disc is played, the blacklist is written into the flash in the dvd driver. Therefore, aacskeys can not get the right key. I tried to change the device key several times, but got the same wrong key.

BTW: PowerDVD 7.3 can play normally, and AnyDVD HD 6.1.7.0 also can do that.

KenD00
10th September 2007, 13:55
I doubt that the disc has recorded a kind of blacklist which contains the revealed Device Key

And exactly that it has. Well, almost, not the found Procesing Key is blacklisted but the Host Certificate aacskeys uses. Unless the community finds a new Host Certificate the only way for BluRay users to get the VID is the DumpVID method. Enjoy the power of AACS which gives you the good feeling that you don't need to worry about using the disc in a way the content owner has not licensed it to you (hmm, i think this sentence is copyrighted by some AACS spokeperson, hopefully they won't sue me for using it without permission *g*).

:rolleyes:

gioowe
10th September 2007, 19:48
Someone able to "send" the new host revocation list? First 1024 bytes of MKBROM. I'm just curious...

jack_wuwei
11th September 2007, 03:38
Someone able to "send" the new host revocation list? First 1024 bytes of MKBROM. I'm just curious...

How to get the first 1024 bytes of MKBROM?

gioowe
11th September 2007, 21:15
By using any hex-viewer / hex-editor on X:\AACS\MKBROM.AACS

The first 256 bytes should be enought.

KenD00
11th September 2007, 22:39
This is Host Revocation List record from a MKBv3 (excluding preceeding Record Type and Record Length fields).

00000006000000060009FFFF0000000B0002FFFF000000210003FFFF000000260003FFFF000000350002FFFF0000004E0003FFFF00000054336ED852525410754F0D1221EC3BC425C621E3B580EF60673FACECFBAD3BD70DEC706B70C4E8AF87

:rolleyes:

gioowe
12th September 2007, 17:53
===============================================
RECORD >>> Type, Version (3.2.5.1)
===============================================
000000 10 Record Type = 16 --
------ -----------------------------------------------
000001 00 00 0C Record Size = 12 OK
------ -----------------------------------------------
000004 00 04 10 03 MKB Type = 266243 OK
------ -----------------------------------------------
000008 00 00 00 03 Version Number = 3 --
------ -----------------------------------------------

===============================================
RECORD >>> Host Revocation (3.2.5.3)
===============================================
00000C 21 Record Type = 33 --
------ -----------------------------------------------
00000D 00 00 64 Record Size = 100 OK
------ -----------------------------------------------
000010 00 00 00 06 Total Number of Entries = 6 --
------ -----------------------------------------------
000014 00 00 00 06 Number of Entries in Block #1 = 6 OK
------ -----------------------------------------------
000018 00 09 FF FF 00 00 00 0B Revocation #1 = FFFF0000000B..0014 --
------ -----------------------------------------------
000020 00 02 FF FF 00 00 00 21 Revocation #2 = FFFF00000021..0023 --
------ -----------------------------------------------
000028 00 03 FF FF 00 00 00 26 Revocation #3 = FFFF00000026..0029 --
------ -----------------------------------------------
000030 00 03 FF FF 00 00 00 35 Revocation #4 = FFFF00000035..0038 --
------ -----------------------------------------------
000038 00 02 FF FF 00 00 00 4E Revocation #5 = FFFF0000004E..0050 --
------ -----------------------------------------------
000040 00 03 FF FF 00 00 00 54 Revocation #6 = FFFF00000054..0057 --
------ -----------------------------------------------
000048 33 6E D8 52 52 54 10 75
000050 4F 0D 12 21 EC 3B C4 25 C6 21 E3 B5 80 EF 60 67
000060 3F AC EC FB AD 3B D7 0D EC 70 6B 70 C4 E8 AF 87 Signature of Block VERIFIED
------ -----------------------------------------------


:thanks:

MKBROM v3 in human readable form.

mrazzido
16th September 2007, 21:11
today i got Dirty Dancing 20th anniversity BD Disc

when i try to use AACSKEYS

i got the followring error :

Drive signature wrong/error
Volume Unique Key: 15AD8D1B9251FD2E46E328B2D1D1B4DB
Unit Key File Hash (DiscID): 88D4FEB81412EF57515928025B6427048DB3ECC9

when i try DUMPVID

Drive type is recognised as CDROM/DVD.

Sending SPC1 Test Unit CDB6 command..done.
Returned good status.

Press ENTER to start hammering

Hammering drive...
vid: 89037DEBD3673F9B6BE3B48AD5B4B346
Hammering finished.



i have LITE-ON LH-2B1S with latest firmware .

KenD00
17th September 2007, 19:40
This is not the first time someone asks this, so to get this finally cleared:

Current aacskeys cannot retrieve the Volume ID from any drive that has been used with a MKBv3 disc (EXCEPT the Xbox 360 HD-DVD AddOn) because its used Host Certificate has been revoked.

:rolleyes:

sillyfaith
9th October 2007, 18:01
Hi All,

I am pretty new here... so I appologize in advance in case I am asking an obvious question.
I was checking the program provided by arnezami (who seems to be a genious :)) and I noticed that when calculating the bus_key he skipped (4 + 1) bytes. I could understand that the 1 byte is due to the uncompressed code (which he commented). But I do not understand why he needed to skip 4 more bytes?!!! Any idea guys?

Thanks
Faith

gioowe
9th October 2007, 19:56
The bus key is 128 bits, the calculated ECDSA point is 160 bits wide. Therefore the msb 32 bits are skipped.

1 additional byte is skipped for signed/unsigned reasons. One additional byte is added with 00h/FFh resp.

sillyfaith
10th October 2007, 18:06
The bus key is 128 bits, the calculated ECDSA point is 160 bits wide. Therefore the msb 32 bits are skipped.

1 additional byte is skipped for signed/unsigned reasons. One additional byte is added with 00h/FFh resp.

I see,so what you are saying is that the data is represented as MSB first, right?

:thanks:

Faith

PSD83
21st October 2007, 05:42
Everyone here is amazing!