Page 2 of 2 FirstFirst 12
Results 11 to 18 of 18

Thread: Airodump help…

  1. #11
    Member m1cha3l's Avatar
    Join Date
    May 2008
    Posts
    208

    Default

    before you do the injection test use the command

    Code:
    airodump-ng -c 6 --bssid 00:11:95:9D:E0:7E rausb0
    this will isolate your ap and stop channel hopping

  2. #12
    Member Dissident85's Avatar
    Join Date
    Jun 2008
    Posts
    127

    Default

    Quote Originally Posted by m1cha3l View Post
    before you do the injection test use the command

    Code:
    airodump-ng -c 6 --bssid 00:11:95:9D:E0:7E rausb0
    this will isolate your ap and stop channel hopping
    That works, but before i would want to start airodump i would still want to check if i am close enough to the ap to get the 4 way hand shake...

    i did find this, i found it quite umm interesting and i think i am going to give it a go... check it out
    aircrack-ng.org/doku.php?id=cantenna_directional_antenna_with_gain

    (sorry still cant post links)

  3. #13
    Member m1cha3l's Avatar
    Join Date
    May 2008
    Posts
    208

    Default

    glad I helped

    have a look at this dude for a slightly more professional cantenna

    http://www.cantenna.com/

  4. #14
    Senior Member
    Join Date
    Apr 2008
    Posts
    2,008

    Default

    Quote Originally Posted by m1cha3l View Post
    glad I helped

    have a look at this dude for a slightly more professional cantenna

    http://www.cantenna.com/
    Or this for an effective and easy to make homemade alternative:
    www.freeantennas.com
    -Monkeys are like nature's humans.

  5. #15
    Member Dissident85's Avatar
    Join Date
    Jun 2008
    Posts
    127

    Default

    Thanks every one... i think i am almost there... but i am still having a few problems..
    Code:
    bt ~ # airodump-ng -c 11 --bssid 00:11:50:FA:4A:20 -w psk rausb0
     CH 11 ][ BAT: 51 mins ][ Elapsed: 0 s ][ 2008-07-10 11:15
    
     BSSID              PWR RXQ  Beacons    #Data, #/s  CH  MB  ENC  CIPHER AUTH ESSID
    
     00:11:50:FA:4A:20  100   0       18        2    0  11  54  WPA  TKIP   PSK  TheHighSide
    
     BSSID              STATION            PWR   Rate  Lost  Packets  Probes
    
    
    bt ~ # aireplay-ng --test -a 00:11:50:FA:4A:20 rausb0
    11:15:30  Waiting for beacon frame (BSSID: 00:11:50:FA:4A:20) on channel 11
    11:15:30  Trying broadcast probe requests...
    11:15:32  No Answer...
    11:15:32  Found 1 AP
    
    11:15:32  Trying directed probe requests...
    11:15:32  00:11:50:FA:4A:20 - channel: 11 - 'TheHighSide'
    11:15:38   0/30:   0%
    That was me testing on other router (not my testing one) and i am still having no luck? and i cant work out whats wrong any ideas?

  6. #16
    Member Dissident85's Avatar
    Join Date
    Jun 2008
    Posts
    127

    Default

    Quote Originally Posted by m1cha3l View Post
    glad I helped

    have a look at this dude for a slightly more professional cantenna

    http://www.cantenna.com/
    That dose look cool... perhaps when i get a new wireless card ill look into getting one that will work with that... Don't think that cantenna will work with my little usb one...

    Quote Originally Posted by =Tron= View Post
    Or this for an effective and easy to make homemade alternative:
    www.freeantennas.com
    I think i might have a go at making them... could be fun

  7. #17
    Senior Member
    Join Date
    Apr 2008
    Posts
    2,008

    Default

    Quote Originally Posted by Dissident85 View Post
    That works, but before i would want to start airodump i would still want to check if i am close enough to the ap to get the 4 way hand shake...
    Being able to successfully inject to the AP will not actually tell you if you are close enough to capture a 4-way WPA handshake. The reason is that even though the test will confirm that you are able to hear the AP as well as inject to it, it will not tell you if a client, often using a weak internal wireless card, will be close enough for you to be able to capture his side of the handshake as well.

    Also, have you tried to inject to the AP, for example performing a fake-auth attack with aireplay-ng, instead of using the test command?
    Quote Originally Posted by Dissident85 View Post
    I think i might have a go at making them... could be fun
    It is, and they actually boost both the signal strength and reception quality quite nicely as well.
    -Monkeys are like nature's humans.

  8. #18
    Junior Member
    Join Date
    Dec 2008
    Posts
    47

    Default

    Same problem here, Linksys wusb54g ralink rt73 - put it on monitor mode, started airodump and no networks found, even having backtrack 3. Adapter is not faulty, works perfectly ok with kismac.

Page 2 of 2 FirstFirst 12

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •