Hello, my router got hacked, and its in a MITM situation.
I managed to restore the base OpenWrt OS, but as soon as I connect LTE, to the network, I get infected again, and password, dns changed, etc.
So my Idea would be to reflash the OS to the stock version, and then, change the administratio credentials.
I don’t want to open it, since I could damage something.
My idea would be to find a way to access the web interface of the module, but with it in the router, and reflash from there.
I see that I have the tool qcm and quec_upload
This are the nodes I have:
root@router:~# ls -l /dev/cdc* /dev/sd* /dev/ttyUSB*
crw------- 1 root root 180, 176 Sep 3 20:00 /dev/cdc-wdm0
brw------- 1 root root 8, 0 Jan 1 1970 /dev/sda
crw-rw---- 1 root dialout 188, 0 Sep 3 20:00 /dev/ttyUSB0
crw-rw---- 1 root dialout 188, 1 Sep 3 20:00 /dev/ttyUSB1
crw-rw---- 1 root dialout 188, 2 Sep 3 21:01 /dev/ttyUSB2
crw-rw---- 1 root dialout 188, 3 Sep 3 20:00 /dev/ttyUSB3
This are some kernel messages:
[ 35.987790] qmi_wwan 1-1.2:1.4: cdc-wdm0: USB WDM device
[ 36.051572] qmi_wwan 1-1.2:1.4: QuectelEC25&EC21&EG91&EG95&EG06&EP06&EM06&BG96&AG35 work on RawIP mode
[ 36.165622] qmi_wwan 1-1.2:1.4 wwan0: register 'qmi_wwan' at usb-1b000000.usb-1.2, WWAN/QMI device
[ 36.293277] usbcore: registered new interface driver qmi_wwan
[ 36.371368] usbcore: registered new interface driver rndis_host
[ 36.446235] usbcore: registered new interface driver sierra
[ 36.513259] usbserial: USB Serial support registered for Sierra USB modem
[ 36.599851] usbcore: registered new interface driver sierra_net
[ 37.307552] usbcore: registered new interface driver option
[ 37.374513] usbserial: USB Serial support registered for GSM modem (1-port)
[ 37.458572] option 1-1.2:1.0: GSM modem (1-port) converter detected
[ 37.534065] usb 1-1.2: GSM modem (1-port) converter now attached to ttyUSB0
[ 37.617856] option 1-1.2:1.1: GSM modem (1-port) converter detected
[ 37.693391] usb 1-1.2: GSM modem (1-port) converter now attached to ttyUSB1
[ 37.777156] option 1-1.2:1.2: GSM modem (1-port) converter detected
[ 37.852679] usb 1-1.2: GSM modem (1-port) converter now attached to ttyUSB2
[ 37.936447] option 1-1.2:1.3: GSM modem (1-port) converter detected
[ 38.011990] usb 1-1.2: GSM modem (1-port) converter now attached to ttyUSB3
I don’t find a way to see what is the module I own, but I know its a 300Mbps CAT6 mPCIe, I live in South of Europe(EMEA).
CAT6 Mini PCIe
I don’t see version option for uqmi command.
My router has USB and SD-Card.
I will need to find a way to access the web interface, to see what version I have but I don’t know how to access it, can you guys help me?
thanks in advance