Notices


Reply
Thread Tools
Posts: 170 | Thanked: 75 times | Joined on Jun 2008 @ NYC
#31
So I've noticed a power drain on captured packets while injecting and dumping from the same interface (afaik the most common practice). I anxiously awaiting my r73 dongle, but wanted to pose this question.

Is there any reason to not to use wlan0 for airodump and wlan1 for aireplay? Wouldn't this provide a much better packet capture then using wlan1 for everything?

Knowing that wifi chips are full duplex, this may be a non-issue. Any thoughts?
 
Posts: 170 | Thanked: 75 times | Joined on Jun 2008 @ NYC
#32
Originally Posted by qole View Post
Strange, I couldn't use the "-b XX:XX:XX:XX:XX:XX" parameter with aireplay-ng to focus on a specific AP... It just tried every AP in the neighbourhood...

However, I'm still getting "0/30 0%" on all the APs.
Isn't it -a BSSID?
 
Posts: 38 | Thanked: 8 times | Joined on Jan 2008
#33
I cant seem to get my Belkin F5D7050 working yet. After I follow the steps and load the RT73.ko, my n800 would get segmentation faults if I try to us iwconfig, ifconfig or even sudo gainroot in another terminal. Sometimes it would just restart as well. Here is a dmesg before it decided to restart.

Code:
[   19.000000] hub 1-0:1.0: power on to power good time: 10ms
[   19.000000] hub 1-0:1.0: 200mA bus power budget for each child
[   19.000000] hub 1-0:1.0: local power source is good
[   19.000000] hub 1-0:1.0: enabling power on all ports
[   19.000000] drivers/usb/musb/tusb6010.c musb_platform_enable: dma not reactivated
[   19.109375] drivers/usb/core/inode.c: creating file '001'
[   19.109375] hub 1-0:1.0: state 7 ports 1 chg 0000 evt 0000
[   20.804687] EAC mode: play disabled, rec disabled
[   21.109375] hub 1-0:1.0: hub_suspend
[   21.109375] usb usb1: usb auto-suspend
[   24.046875] EAC mode: play enabled, rec enabled
[   31.648437] EAC mode: play disabled, rec disabled
[   37.539062] Adding 131064k swap on /media/mmc2/.swap.  Priority:-1 extents:1 across:131064k
[   42.671875] cx3110x: loading 3826.arm firmware.
[   42.929687] (c)opyright 2004 Conexant
[   42.929687]
[   42.929687] build info: PRISM SoftMAC
[   42.929687]   creator: [kvalo]
[   42.929687]   date: [07/10/05-11:45]
[   42.929687]
[   42.937500] cx3110x: MAC address 00:19:4f:d5:5e:56.
[   42.945312] cx3110x: libumac version 2.12.0.0.a.9.15-5
[   42.945312] cx3110x: lmac version 2.13.0.0.a.22.8
[   42.945312] cx3110x: PSM disabled.
[   44.796875] cx3110x: scanned 11 channels.
[   45.078125] cx3110x: shut down softmac.
[   45.546875] cx3110x: loading 3826.arm firmware.
[   45.804687] (c)opyright 2004 Conexant
[   45.804687]
[   45.804687] build info: PRISM SoftMAC
[   45.804687]   creator: [kvalo]
[   45.804687]   date: [07/10/05-11:45]
[   45.804687]
[   45.812500] cx3110x: MAC address 00:19:4f:d5:5e:56.
[   45.820312] cx3110x: libumac version 2.12.0.0.a.9.15-5
[   45.820312] cx3110x: lmac version 2.13.0.0.a.22.8
[   47.671875] cx3110x: scanned 11 channels.
[   49.898437] cx3110x: associated to 00:13:46:a5:47:da (bcn 100 msec, DTIM 1).
[   52.546875] cx3110x: PSM dynamic with 200 ms CAM timeout.
[   65.914062] JFFS2 notice: (402) check_node_data: wrong data CRC in data node at 0x0982b4b8: read 0xe061b648, calculated 0xc82d4081.
[   75.601562] JFFS2 notice: (402) check_node_data: wrong data CRC in data node at 0x09346764: read 0x13b525eb, calculated 0xaaeff032.
[   77.242187] JFFS2 notice: (402) check_node_data: wrong data CRC in data node at 0x0cd84bac: read 0xc637ee2c, calculated 0xbdd5c5e4.
[   78.484375] JFFS2 notice: (402) check_node_data: wrong data CRC in data node at 0x0eda6c78: read 0xebd8cca3, calculated 0x539ba63f.
[   78.554687] JFFS2 notice: (402) check_node_data: wrong data CRC in data node at 0x0a0e16d8: read 0xdd9e52f3, calculated 0x131d3113.
[   92.320312] DSP Pausing failed, skipping OP change!
[  142.039062] tusb_source_power 629: VBUS a_wait_vrise, devctl 81 otg 184 conf c0010001 prcm 00a80500
[  146.250000] cx3110x: PSM dynamic with 100 ms CAM timeout.
[  421.703125] EAC mode: play enabled, rec enabled
[  422.046875] cx3110x: PSM dynamic with 200 ms CAM timeout.
[  424.203125] EAC mode: play disabled, rec disabled
[  502.773437] musb_stage0_irq 570: VBUS_ERROR in a_wait_bcon (91, <VBusValid), retry #1, port1 00000100
[  513.710937] EAC mode: play enabled, rec enabled
[  516.210937] EAC mode: play disabled, rec disabled
[  537.460937] musb_stage0_irq 570: VBUS_ERROR in a_wait_bcon (91, <VBusValid), retry #2, port1 00000100
[  558.281250] tusb_source_power 629: VBUS a_wait_vrise, devctl 91 otg 15c conf c0010000 prcm 00a80500
[  558.375000] tusb_otg_ints 833: vbus too slow, devctl 81
[  558.375000] tusb_source_power 629: VBUS b_idle, devctl 80 otg 188 conf c0000000 prcm 00a80500
[  560.976562] musb_stage2_irq 817: SUSPEND (b_idle) devctl 91 power e0
[  562.835937] tusb_source_power 629: VBUS a_wait_vrise, devctl 91 otg 151 conf c0010000 prcm 00a80500
[  562.929687] tusb_otg_ints 833: vbus too slow, devctl 91
[  562.929687] tusb_source_power 629: VBUS a_wait_vfall, devctl 90 otg 151 conf c0000000 prcm 00a80500
[  563.804687] tusb_source_power 629: VBUS a_idle, devctl 90 otg 154 conf c0000000 prcm 00a80300
[  563.812500] tusb_source_power 629: VBUS a_idle, devctl 90 otg 154 conf c0000000 prcm 00a80300
[  570.984375] tusb_source_power 629: VBUS a_wait_vrise, devctl 91 otg 154 conf c0010001 prcm 00a80300
[  571.156250] musb_stage0_irq 646: CONNECT (a_host) devctl 5d
[  571.156250] hub 1-0:1.0: state 8 ports 1 chg 0000 evt 0000
[  571.156250] usb usb1: usb auto-resume
[  571.156250] usb usb1: finish resume
[  571.156250] hub 1-0:1.0: hub_resume
[  571.179687] hub 1-0:1.0: port 1, status 0101, change 0001, 12 Mb/s
[  571.335937] hub 1-0:1.0: debounce: port 1: total 100ms stable 100ms status 0x101
[  571.460937] usb 1-1: new high speed USB device using musb_hdrc and address 2
[  571.593750] usb 1-1: default language 0x0409
[  571.593750] usb 1-1: new device strings: Mfr=1, Product=2, SerialNumber=0
[  571.593750] usb 1-1: Product: USB2.0 Hub Controller
[  571.593750] usb 1-1: Manufacturer: NEC Corporation
[  571.593750] usb 1-1: hub v0409 p0058 is not supported
[  571.593750] usb 1-1: uevent
[  571.593750] usb 1-1: usb_probe_device
[  571.593750] usb 1-1: configuration #1 chosen from 1 choice
[  571.593750] usb 1-1: adding 1-1:1.0 (config #1, interface 0)
[  571.593750] usb 1-1:1.0: uevent
[  571.593750] hub 1-1:1.0: usb_probe_interface
[  571.593750] hub 1-1:1.0: usb_probe_interface - got id
[  571.593750] hub 1-1:1.0: USB hub found
[  571.593750] hub 1-1:1.0: 4 ports detected
[  571.593750] hub 1-1:1.0: standalone hub
[  571.593750] hub 1-1:1.0: individual port power switching
[  571.593750] hub 1-1:1.0: individual port over-current protection
[  571.593750] hub 1-1:1.0: Single TT
[  571.593750] hub 1-1:1.0: TT requires at most 16 FS bit times (1332 ns)
[  571.593750] hub 1-1:1.0: Port indicators are supported
[  571.593750] hub 1-1:1.0: power on to power good time: 100ms
[  571.601562] hub 1-1:1.0: local power source is good
[  571.601562] hub 1-1:1.0: enabling power on all ports
[  571.710937] drivers/usb/core/inode.c: creating file '002'
[  571.710937] hub 1-0:1.0: 100mA power budget left
[  571.710937] hub 1-0:1.0: state 7 ports 1 chg 0000 evt 0002
[  571.710937] hub 1-0:1.0: port 1 enable change, status 00000503
[  571.710937] hub 1-1:1.0: state 7 ports 4 chg 0000 evt 0002
[  571.710937] hub 1-1:1.0: port 1, status 0101, change 0001, 12 Mb/s
[  571.867187] hub 1-1:1.0: debounce: port 1: total 100ms stable 100ms status 0x101
[  571.953125] usb 1-1.1: new high speed USB device using musb_hdrc and address 3
[  572.085937] usb 1-1.1: new device strings: Mfr=0, Product=0, SerialNumber=0
[  572.085937] usb 1-1.1: hub v050d p7050 is not supported
[  572.085937] usb 1-1.1: uevent
[  572.085937] usb 1-1.1: usb_probe_device
[  572.085937] usb 1-1.1: configuration #1 chosen from 1 choice
[  572.085937] usb 1-1.1: adding 1-1.1:1.0 (config #1, interface 0)
[  572.085937] usb 1-1.1:1.0: uevent
[  572.085937] usbtest 1-1.1:1.0: usb_probe_interface
[  572.085937] usbtest 1-1.1:1.0: usb_probe_interface - got id
[  572.085937] drivers/usb/core/inode.c: creating file '003'
[  574.085937] usb 1-1.1: usb auto-suspend
[  576.109375] hub 1-1:1.0: hub_suspend
[  576.109375] usb 1-1: usb auto-suspend
[  578.132812] hub 1-0:1.0: hub_suspend
[  578.132812] usb usb1: usb auto-suspend
[  586.843750] EAC mode: play enabled, rec enabled
[  591.054687] EAC mode: play disabled, rec disabled
[  703.140625] rtusb init ====>
[  703.140625] rt73 1-1.1:1.0: usb_probe_interface
[  703.140625] rt73 1-1.1:1.0: usb_probe_interface - got id
[  703.140625] usb usb1: usb auto-resume
[  703.140625] usb usb1: finish resume
[  703.140625] hub 1-0:1.0: hub_resume
[  703.164062] usb 1-1: usb auto-resume
[  703.164062] hub 1-0:1.0: state 7 ports 1 chg 0000 evt 0000
[  703.265625] hub 1-0:1.0: state 7 ports 1 chg 0000 evt 0002
[  703.304687] usb 1-1: finish resume
[  703.304687] hub 1-1:1.0: hub_resume
[  703.304687] hub 1-1:1.0: state 7 ports 4 chg 0000 evt 0000
[  703.304687] usb 1-1.1: usb auto-resume
[  703.367187] usb 1-1.1: finish resume
[  703.367187] idVendor = 0x50d, idProduct = 0x7050
[  703.445312] rt73: Firmware loading error
[  703.445312] rt73: probe of 1-1.1:1.0 failed with error -32
[  703.445312] usbcore: registered new interface driver rt73
[  705.445312] usb 1-1.1: usb auto-suspend
Nokia-N800-23-14:~#
Anyone else have this issue? I am using a powered usbhub.

Last edited by mike2k4; 2008-08-24 at 07:10.
 
jaeezzy's Avatar
Posts: 664 | Thanked: 160 times | Joined on Jul 2008 @ Australia
#34
here's a quick question frm a nerd!! what is it for? i read in the net its to crack wep keys. is it correct? do i need external hardware for it to work coz i tried but got confused in your step 8 when you refered to plug in wifi adapter to powered hub. thanks..
 
Posts: 132 | Thanked: 40 times | Joined on Jun 2008
#35
Yes aireplay can be used to crack wep keys, and for that matter wpa keys. Packet injection is not something we can do using wireless from the tablet, so we need to use an external usb wireless card. To ensure we have enough power to power the external usb card we need a powered hub.
 
jaeezzy's Avatar
Posts: 664 | Thanked: 160 times | Joined on Jul 2008 @ Australia
#36
Ok, so I'll need MicroUSB male to USB femal adapter, don't I? As I'm just a new kid in the town, can anyone please suggest me of one such good adaper. Thanks
 
Posts: 132 | Thanked: 40 times | Joined on Jun 2008
#37
I think it might be easier for you to just use a USB Gender Changer, like this one, to attach to your microUSB cord then attach a standard male to female usb cord to the hub.
 
jaeezzy's Avatar
Posts: 664 | Thanked: 160 times | Joined on Jul 2008 @ Australia
#38
hey by the way,any wireless network adapter will do or does it have to be of a particular brand? thnx
 
joshv06's Avatar
Posts: 346 | Thanked: 139 times | Joined on Jan 2008 @ Houston Texas
#39
Originally Posted by jaeezzy View Post
hey by the way,any wireless network adapter will do or does it have to be of a particular brand? thnx
you'll need one with an rt73 chipset or one that supports injection. I suggest getting a Hawking hwug1a from bestbuy, they're like 40 bucks and it has an external antanna that can be upgradeable.
__________________
Nokia N900
joshuavidana@gmail.com

Last edited by joshv06; 2008-09-06 at 14:19.
 
Posts: 1 | Thanked: 0 times | Joined on Sep 2008
#40
Hi I have the Alpha Network AWSUS036H but can't get aireplay to work on Ubuntu 8.04. I had this working with Fedora Core 6 a while back with the patch from aircrack-ng. I installed Ubuntu yesterday and followed the same steps but couldn't get it to work.

When I run:
sudo aireplay-ng -1 0 -e bigjoejack -a 00:1C:10:1B:0E:C1 -h 00:c0:ca:19:cd:48 wlan1

it tells me that the attack was unsuccessful.

Linux pcuser-laptop 2.6.24-19-generic #1 SMP Wed Aug 20 22:56:21 UTC 2008 i686 GNU/Linux

Patched it following the link below:
http://www.aircrack-ng.org/doku.php?id=r8187

Patch was applied successfully....

I followed these steps for the cracking:
http://s32.photobucket.com/player.sw...fs=1&os=1&ap=1

Why can I get this going in FC but not Ubuntu?

I'm in the process of download the BT3 ISO but would prefer using Ubuntu.

Thanks for reading and hope I hear back from someone soon.

Later,

BigJoeJack
 
Reply


 
Forum Jump


All times are GMT. The time now is 09:36.