Page 10 of 11

PostPosted: Mon Jul 17, 2006 10:48 am
by Starpoint
ismailjh wrote:I am using the latest version of Auditor to hack into my wireless network (I use a Linksys WRT54GS with a 128bit WEP key) and want derive my own WEP key with sniffing IVs and using aircrack. I chose to use a Prism card, Linksys WPC 11 v. 3. The CD runs well and the card is detected as either eth0 or eth1.

As I have been trying to put the card into monitor mode, an iwconfig always shows "managed mode". However, Kismet runs smoothly and so do airodump and aireplay. I usually switch-to-hostap before starting anything else.

Here is my usual konsole routine:
# switch-to-hostap
# iwpriv eth1 monitor 2 11
I also open kismet, and use the "Shift + L" key to lock my card on my own BSSID, then close kismet.
# airodump eth1 cap1 <MAC ADDRESS OF MY BSSID>

Airodump collects packets including IVs corretly. When I launch aircrack 2.1 (aircrack -m <MAC ADDRESS OF MY BSSID> -n 64 -q 3 cap*.cap), the number of "unique IVs" is always less than what Airodump collects (only about one third of Airodump IVs are considered "unique IVs" by aircrack. How come? Is it a matter of drivers? Should I start over with the wlanng driver instead?

I once colleted about 800,000 IVs on Airodump (about 3 million packets) and Airodump started giving me a "cannot write" error. I believe it is because it was running out of space to write the file, since it is not using the hard drive. Auditor was then becoming to be buggy and very slow and I had to restart it and lost the data collected.

Please offer advice.

Thank you for your help,


Now WHY would you need to crack your own WEP key?

My BS meter is twitching over towards the "railcard load" and the S.E. meter is reading a positive here.

PostPosted: Mon Jul 17, 2006 10:54 am
by wrzwaldo
ismailjh wrote:I am using the latest version of Auditor to hack into my wireless network (I use a Linksys WRT54GS with a 128bit WEP key) and want derive my own WEP key with sniffing IVs and using aircrack. I chose to use a Prism card, Linksys WPC 11 v. 3. The CD runs well and the card is detected as either eth0 or eth1.

As I have been trying to put the card into monitor mode, an iwconfig always shows "managed mode". However, Kismet runs smoothly and so do airodump and aireplay. I usually switch-to-hostap before starting anything else.

Here is my usual konsole routine:
# switch-to-hostap
# iwpriv eth1 monitor 2 11
I also open kismet, and use the "Shift + L" key to lock my card on my own BSSID, then close kismet.
# airodump eth1 cap1 <MAC ADDRESS OF MY BSSID>

Airodump collects packets including IVs corretly. When I launch aircrack 2.1 (aircrack -m <MAC ADDRESS OF MY BSSID> -n 64 -q 3 cap*.cap), the number of "unique IVs" is always less than what Airodump collects (only about one third of Airodump IVs are considered "unique IVs" by aircrack. How come? Is it a matter of drivers? Should I start over with the wlanng driver instead?

I once colleted about 800,000 IVs on Airodump (about 3 million packets) and Airodump started giving me a "cannot write" error. I believe it is because it was running out of space to write the file, since it is not using the hard drive. Auditor was then becoming to be buggy and very slow and I had to restart it and lost the data collected.

Please offer advice.

Thank you for your help,



Wasn't the WPC11 V3 the Prism Mercury chipset (Prism 3)? I have never tried to put one of those into monitor mode (because I don't own one of them).

Help picking out a wifi pcmcia card that works with void11

PostPosted: Wed Jul 26, 2006 6:42 am
by xz0dius
Hey guys,

I have a cisco aironet 350 card and a orinoco gold card. I use them with kismet on back track and it works perfect for cracking wep via wep crack. The problem is, that i want to use void11 to practice deauth. My cards do not work with void11 on any of the linux live cd's auditor, backtrack,fire exc. Does any one know of a good card that works on the prisim chipset that works great with void11 so i can do de authenication.

Thanks alot guys in advance !

--xz0dius

Used Orinoco with auditor, now it won't work with windows, any help?

PostPosted: Sat Sep 30, 2006 10:39 am
by bullet_hole
OK, I'm definetly pretty new to this, but when I tried using auditor and using my orinoco card, I switched back and forth between hostap, etc, and putting it in monitor mode, and stuff like that, but now when I try to use it with windows, it doesn't recognize the card. Is there a command that I can use to switch it back to default so it works in windows?

Kismac problem, deauth doesnt work, cant get uniq Ivs either (prism2)

PostPosted: Sat Sep 30, 2006 1:10 pm
by GoodleDoodle
Well, I have a usb prism 2 dongle
I run kismac, it scans allright and doesnt give errors on prompts for auth floods deauths or reinjection but it doesnt work much either.

Just for trying I went around looking for hidden ssid broadcasts and it can deauth them

I tried auth flooding a network and got 0 uniq IVs, anyone have any ideaS?

PostPosted: Sat Sep 30, 2006 1:32 pm
by Beard
GoodleDoodle wrote:Well, I have a usb prism 2 dongle
I run kismac, it scans allright and doesnt give errors on prompts for auth floods deauths or reinjection but it doesnt work much either.

Just for trying I went around looking for hidden ssid broadcasts and it can deauth them

I tried auth flooding a network and got 0 uniq IVs, anyone have any ideaS?


You need to give more information, including what you're trying to do.

problem with monitor mode

PostPosted: Sun Oct 08, 2006 12:49 pm
by xtwyw
Hi

i use <auditor-200605-02-no-ipw2100> to run Airodump ,it says "did u change ur card into monitor mode?" But i already use "iwconfig eth0 mode monitor" to change it and when i type in "iwconfig" it shows that the mode is monitor

puzzle....

thx for helping...............

PostPosted: Sun Oct 08, 2006 12:51 pm
by xtwyw
by the way,one more thing,really important, my card is intel 2200bg..


w
a
i
t
i
n
g

Kismac and .ivs file

PostPosted: Sat Oct 14, 2006 8:44 am
by prograham
Seeing how there is just about zero documentation on kismac, does anyone know if kismac 0.21a can import a ".ivs" file or does it only accept "pcap" files? And if it does import and crack ivs files, how do you do it?

PostPosted: Sat Oct 14, 2006 9:01 am
by Dutch
The people at the site that supports Kismac knows everything about Kismac's capabilities.
Go there and ask.

http://kismac.de/

Dutch

Airsnort running problem that no one solved

PostPosted: Fri Nov 24, 2006 7:38 am
by joganondo
Everywhere i look for i got all the solutions upto running the airsnort including all the dll & lib files, but I still get these errors :

[color="Red"]** ERROR **: file shape.c line 78(pango_shape): assertion failed: (glyphs->num_glyphs > 0) aborting ...

runtime error!
program ...airsnort-0.2.6\bin\airsnort
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information. [/color]

And no one have given the solution on this error anywhere i guess.I know there is a solution and like to get it .Any suggestions?

By the way i am running winxp sp2 on a toshiba laptop with built in wifi.

PostPosted: Fri Nov 24, 2006 7:46 am
by Thorn
These are the NetStumbler Forums.

You want the Airsnort Forums:http://sourceforge.net/forum/forum.php?forum_id=104550

AirSnort and encrypted packets

PostPosted: Wed Nov 29, 2006 3:40 am
by tranzzas
Hi,

I installed airpeek drivers and it seems working ok. I installed airsnort and i can see activity.. traffic is running. The problem is that i dont see any encrypted or interested packets. Just packets are growing. I am trying with notebook and router to generate packets encrypted with 128bit WEP. And another computer without any information about wep should see this packets as encrypted, or should i send a couple of gigs to get some encrypted and interesting packets?

My network card is Netgear WG311T using windows XP with airpeek drivers.

Thanks for any help :)

PostPosted: Wed Nov 29, 2006 4:31 am
by Starpoint
tranzzas wrote:Hi,

I installed airpeek drivers and it seems working ok. I installed airsnort and i can see activity.. traffic is running. The problem is that i dont see any encrypted or interested packets. Just packets are growing. I am trying with notebook and router to generate packets encrypted with 128bit WEP. And another computer without any information about wep should see this packets as encrypted, or should i send a couple of gigs to get some encrypted and interesting packets?

My network card is Netgear WG311T using windows XP with airpeek drivers.

Thanks for any help :)


What you should do is go read the README's, FAQ's in the WELCOME Desk, but wait, you are asking us to help you commit a felony so why again should we welcome you here and help you?

its 6:31 am CST, cookies to donuts say you are banned by 10 am CST.

Winstall.exe - helpp!!

PostPosted: Sat Dec 16, 2006 2:44 am
by alisaselez
Hi everebody
My computer was infected with a trojan virus today, from a link from someone on msn messenger. I ran AVG Free and the virus went to the vault, which i have deleted and all seems to be running fine now. however, i've had to vault it three times. when I restart, the virus seems to reappear. but my computer is running fine.

but...

there is an icon on my desktop titled winstall.exe which when scanned doesn't contain a virus, but I have just had a quick scan thru some stuff on the internet and get the idea that its a nasty little program that lets other nasty stuff infect my computer I can't delete it, and in fact, am not sure if this is accurate and am a little worried its an important windows file i shouldnt be deleting at all.

I've now installed Avira Antivir as well, as a double up safety precaution, but no spyware detection programs as yet (I'm not even sure if I'm wording that correctly..)

help??
Lots of thanks