Remote Exploit Forums

Go Back   Remote Exploit Forums > Archives > BackTrack v2.0 Final > Tutorials & Guides


Tutorials & Guides Contributions welcome! Please check the rules & guidelines for posting

Reply
 
LinkBack Thread Tools Display Modes
  #21 (permalink)  
Old 08-02-2007, 01:12 AM
-=Xploitz=-'s Avatar
Senior Member
 
Join Date: Apr 2007
Location: Mesquite, Texas (Dallas County) USA
Posts: 3,487
Default

BTW..can I get this "stickied" so that the no0bies can see this on the first page please?? I think a new up-to-date video tutorial is important enough to be "stickied" right?

Last edited by -=Xploitz=-; 08-02-2007 at 06:38 AM.
Reply With Quote
  #22 (permalink)  
Old 08-02-2007, 01:29 AM
Just burned his ISO
 
Join Date: Jul 2007
Posts: 1
Default

awsome guide. Works perfect. I am a hands on learner i didnt really understand what was happening jsut watching the video but it was great being able to watch it pause it and type in the stuff and make sure my responces match up to yours and if they didnt gave me the ability to figure out what each command was doing and hwo to fix it.
Reply With Quote
  #23 (permalink)  
Old 08-02-2007, 01:38 AM
-=Xploitz=-'s Avatar
Senior Member
 
Join Date: Apr 2007
Location: Mesquite, Texas (Dallas County) USA
Posts: 3,487
Default

Thanks Ardos for taking the time to respond. MUCH appreciated. I think that having a video should have the ability to be paused..rewound etc..just like a DVD movie. Also I typed in everything you should need to know about each command and tried to explain what was going on. I'm glad you liked it, and I hope it helped you out in some way. Again, thanks for taking the time to post your appreciation. And ........WELCOME TO THE FORUMS Ardos!!!
Reply With Quote
  #24 (permalink)  
Old 08-02-2007, 06:29 AM
freemymind's Avatar
Senior Member
 
Join Date: Oct 2006
Posts: 136
Default Another thank you!

Great guide, well done -=Xploitz=- ! this defiantly helped me get back into the game. I appreciate the time and effort you and so many others put into these forums and sharing information in general.

-free
__________________
EEEPC-1000HE 2 gigs ram, Patriot Warp 2.5" 32GB SATA II Internal (SSD) Windows Home/BT4 Pre-final
__________________________________________________ _______________________
Macbook pro 15" 4 gigs ram
Reply With Quote
  #25 (permalink)  
Old 08-02-2007, 06:41 AM
-=Xploitz=-'s Avatar
Senior Member
 
Join Date: Apr 2007
Location: Mesquite, Texas (Dallas County) USA
Posts: 3,487
Default

Thanks freemymind. I'm really glad it helped you get back into the game. Just like everyone who takes the time to thank me for my work, I will also do the same in return by taking the time to show my appreciation for their post.
Reply With Quote
  #26 (permalink)  
Old 08-02-2007, 01:46 PM
Member
 
Join Date: Jul 2007
Posts: 34
Default

Quote:
Originally Posted by wallsballs View Post
the only way i can if for me to log my other laptop on to the net work and then deauth it.

Any ideas why this could be. How long do you need to wait for an ARP packet?

Thanks wallsballs
Is there any other way to do this - auth the same BT computer 2 times? Connect with the fake mac, pull out the card, do a macchanger (another mac), auth it with the router, then change it back to the old MAC, reauth, and do a deauth on the expired MAC? Would that work? I hate waiting for ARPs.

I had no clients connected to my AP, so it wouldn't send out any data packets - I disconnected my computer downstairs (wired) from the router. So I was only on with my BT doing the -3 attack. Had it going for 15 min with out a single ARP.
Reply With Quote
  #27 (permalink)  
Old 08-02-2007, 06:08 PM
-=Xploitz=-'s Avatar
Senior Member
 
Join Date: Apr 2007
Location: Mesquite, Texas (Dallas County) USA
Posts: 3,487
Default

Quote:
Originally Posted by beamen View Post
Is there any other way to do this - auth the same BT computer 2 times? Connect with the fake mac, pull out the card, do a macchanger (another mac), auth it with the router, then change it back to the old MAC, reauth, and do a deauth on the expired MAC? Would that work? I hate waiting for ARPs.

I had no clients connected to my AP, so it wouldn't send out any data packets - I disconnected my computer downstairs (wired) from the router. So I was only on with my BT doing the -3 attack. Had it going for 15 min with out a single ARP.
Ok guys ..pay attention. The way I did the -3 attack in my video was like this....

boot up BT2 Final on my Dell c610 Laptop...and boot up Windows XP Pro Corp on my desktop. DO all the steps in the video till you get to the
aireplay-ng -3 -b APMAC -h CARDMAC ath0
now after you type in this command...go to your windows box and go to START>>RUN>>type in cmd>>>now in the command prompt type in..
ping 111.111.111.111 and hit enter. That ip address is erroneous and doesn't exist. What it does is it forces your router to generate an ARP request. EVERY ROUTER WILL WORK THIS WAY!!

Also please note that you can even do the -3 attack mentioned above...unplug every wire from your router BUT the power cord..and in anywhere from 1 second to 30 minutes..IT WILL GENERATE AND ARP REQUEST ALL ON IT'S OWN..PERIOD!!!

You guys need to learn how to successfully use the -4 or -5 attacks if your not patient enough to wait on the -3 attack. This was a video meant for a COMPLETE no0bie..not for people who have already had success cracking their own WEP..I tell ya'll what..sometimes this week Ill post another video of the -4 or -5 attack....just tell me which one you want to see and Ill post it up ok???
Reply With Quote
  #28 (permalink)  
Old 08-02-2007, 06:17 PM
balding_parrot's Avatar
Administrator
 
Join Date: May 2007
Posts: 3,245
Default

Just a suggestion how about -9 ?
It would help clear up so many problems with people not knowing if their card can inject, or thinking it can when it can't, and would be a good place to point people to as a starting point before attempting any of the other attacks.
__________________

Any questions you have will get a good answer as long as you have followed the forum rules and show you have tried to help yourself. Your questions are clear and contain as much relevant info as possible, especially error messages, commands you have tried and the output from those commands.

remember: garbage in = garbage out

BackTrack needs your donations, no matter how small.

Please contribute HERE

Reply With Quote
  #29 (permalink)  
Old 08-02-2007, 06:26 PM
Member
 
Join Date: Jul 2007
Posts: 34
Default

Quote:
Originally Posted by -=Xploitz=- View Post
Ok guys ..pay attention. The way I did the -3 attack in my video was like this....
But I can't do that when my wired PC is disconnected from the network. It works great (pinging a non-existent IP) to get an ARP - IF it is hooked up.

BTW, -4 and -5 tutorial would ROCK Am I too greedy ? lol
Reply With Quote
  #30 (permalink)  
Old 08-02-2007, 07:00 PM
-=Xploitz=-'s Avatar
Senior Member
 
Join Date: Apr 2007
Location: Mesquite, Texas (Dallas County) USA
Posts: 3,487
Default

Quote:
Originally Posted by balding_parrot View Post
Just a suggestion how about -9 ?
It would help clear up so many problems with people not knowing if their card can inject, or thinking it can when it can't, and would be a good place to point people to as a starting point before attempting any of the other attacks.
Good point!! I nearly forgot about that "test" injection command.
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:02 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2