Netgear Unbrick Utility

Joseph C. Lehner 9565154e4f Add .editorconfig and .gitattributes 3 years ago
fuzzin 55452bb753 More fuzzing related changes 3 years ago
.editorconfig 9565154e4f Add .editorconfig and .gitattributes 3 years ago
.gitattributes 9565154e4f Add .editorconfig and .gitattributes 3 years ago
.gitignore 025f89493a Update .gitignore 8 years ago
LICENSE aaaa05d658 Add LICENSE 5 years ago
Makefile 55452bb753 More fuzzing related changes 3 years ago
README-R7000.md 8a26cdf4b1 Updated documentation. 3 years ago
README.md 5acfbed385 Update readme 3 years ago
ethsock.c 9e563293db Fix windows device naming issues 3 years ago
fuzz.c 55452bb753 More fuzzing related changes 3 years ago
main.c ec3f738fb6 Add -S <offset> option 3 years ago
mkfuzz.c 55452bb753 More fuzzing related changes 3 years ago
nmrp.c 35fd6f41df Detect unplugged Ethernet cable on Windows 3 years ago
nmrpd.h ec3f738fb6 Add -S <offset> option 3 years ago
nmrpflash.dev 657a3f5c98 Bump version 3 years ago
nmrpflash.manifest 3df6829e4a Add (unused) manifest for Windows 7 years ago
nmrpflash.rc 3df6829e4a Add (unused) manifest for Windows 7 years ago
tftp.c ec3f738fb6 Add -S <offset> option 3 years ago
util.c ec29ee610d Fuzzing related changes 3 years ago
wireshark-nmrp.lua 79daac1e22 Always show opt length in Wireshark dissector 4 years ago

README-R7000.md

Some helpful hints for putting firmware on the Netgear R7000

  • As of the writing of this, July 2020, the R7000's web interface does not let you downgrade its firmware, or run 3rd party firmware on it.
  • Older versions of the R7000's firmware do allow you to flash 3rd party firmware.
  • You can use nrmpflash to downgrade router's firmware, for example R7000-V1.0.3.56_1.1.25.

Here is an example set of steps

  1. Plug in your router, go through the regular stock web interface setup. Note if the router's IP address is now 192.168.1.1 or 10.0.0.1
  2. Connect computer your computer to LAN1 with an ethernet cable
  3. At the command prompt on your computer, run: sudo nmrpflash -v -i YOUR_ADAPTER_NAME -f R7000-V1.0.3.56_1.1.25.chk -t 10000 -T 10000 -A 10.0.0.2 -a 10.0.0.1
  4. Note 1: The instructions from README.md that tell you how to find YOUR_ADAPTER_NAME.
  5. Note 2: if your router's IP address was 192.168.1.1 then swap out 10.0.0.x with 192.168.1.x for the two IP addresses above
  6. Right after running the command, power on your router. Your router checks for the nmrpflash server on boot. If all goes well you should see this:

    sudo nmrpflash -v -i enp0s25 -f R7000-V1.0.3.56_1.1.25.chk -t 10000 -T 10000 -A 10.0.0.2 -a 10.0.0.1
    Adding 10.0.0.2 to interface enp0s25.
    Advertising NMRP server on enp0s25 ... /
    Received configuration request from ab:cd:ef:12:34:56.
    Sending configuration: 10.0.0.1/24.
    Received upload request without filename.
    Using remote filename 'R7000-V1.0.3.56_1.1.25.chk'.
    Uploading R7000-V1.0.3.56_1.1.25.chk ... OK
    Waiting for remote to respond.
    Received keep-alive request (19).  
    Remote finished. Closing connection.
    Reboot your device now.
    
    
  7. Reboot the device. You now have old firwmare, congratulations.