thanks bro, however you shouldnt do the same tho, u could get caught . ;)
Printable View
Hi everyone im new to kali and new to this script, i tried this script yesterday i got a pin number of a network but right after that reaver kept showing "Failed to associate with ..." ; one hour later i closed it and run reaver with that pin number but reaver kept showing the same message. Today is the same thing, i wrote down the bssid because wash does not detect it. The wifi on my smarthphone detects the network 2 of 3 bars of signal. What did i do wrong? If somebody could tell me ill apreciate it
Well I don't really know much but, If u got a wps pin m quite sure you should also have gotten the wpa key. Asides that, are u sure wps is still enabled for that ap? A quick way to check Asides wash is using wifite, just type wifite in terminal and wait a bit to see results.
Try again and let's know what you found. :)
after i shift mdk3 in root folder and try to run this error
bash: root/mdk3-v6/mdk3: No such file or directory
what am i doing wrong
just following steps from help file!
also getiing thisQuote:
cd mdk3-v6
root@kali:~/mdk3-v6# make
make -C osdep
make[1]: Entering directory '/root/mdk3-v6/osdep'
Building for Linux
make[2]: Entering directory '/root/mdk3-v6/osdep'
make[2]: '.os.Linux' is up to date.
make[2]: Leaving directory '/root/mdk3-v6/osdep'
make[1]: Leaving directory '/root/mdk3-v6/osdep'
root@kali:~/mdk3-v6# make install
make -C osdep install
make[1]: Entering directory '/root/mdk3-v6/osdep'
Building for Linux
make[2]: Entering directory '/root/mdk3-v6/osdep'
make[2]: '.os.Linux' is up to date.
make[2]: Leaving directory '/root/mdk3-v6/osdep'
make[1]: Leaving directory '/root/mdk3-v6/osdep'
install -D -m 0755 mdk3 //usr/local/sbin/mdk3
root@kali:~/mdk3-v6# chmod 755 /root/mdk3-v6/*
root@kali:~/mdk3-v6# /root/mdk3-v6/mdk3
bash: /root/mdk3-v6/mdk3: No such file or directory
To moslondon:
From our experience there are several possibilities here.
1. The router was not WPA encrypted. We have routers in our areas that respond to wash but are not WPA encrypted.
2. We have seen routers which initially show WPS is enabled then giveup one pin and the WPS dissappears. We have gotten past the encrytption thru brute force or ESSIDPROBES. We have gone into the firmware remotely and looked at the setup. The WPS is enabled but no response from wash or reaver. Even resetting the router did not restore the wps even though the firmware showed WPS is enabled.
3. Your first attack was done thru the command line(CL) and you spoofed your mac BUT did not add the --mac= command to the reaver CL. This will cause a failure to get the WPA key with reaver.
4. From aircrack-forums we just received a report that some routers lock up after a 12345670 pin request. We afd exploring ryreaver-reverse and loading into varmacscan for some tests.
5. There is yet another security feature that we are at present unaware of reference the WPS system?
You could try Bully. MTeams though has had zero success with this program although others like the program. Hence if you ask, someone may help you.
MTeams
From the networks available i picked 3 to use with these script, one dissapered without giving a pin and the others two gave me the same pin number and dissapered right after thay. Wash does not detect them, wifite does detect them with no wps (those aps had wps at the beginning). When i got the pins I tried using the reaver command like this "reaver -i wlan0mon -vv -S -b (bssid) -c (channel) -p (pin)" but it showed the same message "failed to associate..." did i put the command right?. And thanks for the replay to be honest im new to linux and using commands...
I tried bully "bully wlan1mon -b (bssid) -e (essid) -c (channel)" on the 3 networks and it says "the ap doesn't to be wps enabled". I guess there is no way to get those networks key (good security?).
I tried a different network with the script and now im on
"Pin count: 11 ...
Wps transaction failed (code: 0x02), re-trying last pin"
Sometimes it keeps counting the pin some times it shows the same message, should i stop it or does this mean its working?
Hackers have replaced your uploads with malware, this is now a virus:
http://www.datafilehost.com/d/3c81deb0
and same with:
http://www.datafilehost.com/d/fd192b6d
Thank you John Doe. We found an .exe file in place of the .zip package. We have deleted all three VMR releases and reloaded on 8 March as follows:
Download VMR-MDK011x8 package at:
http://www.datafilehost.com/d/4f95b97f
You can download VMR-MDK-K2-2016R-011x9.zip package at
http://www.datafilehost.com/d/c2a2b474
MTeams
@mmusket33
I still don't understand why you haven't made a github of your projects yet.
It's significantly more professional looking, and people can collaborate issues and suggestions.
And likely-hood of your files being compromised(assuming you choose a good password) is pretty
much null, so you won't have to keep changing the links or using apparently risky output channels.
Send me a msg if you need help setting something up :-)
To aanarchyy.
MTeams completely agree and we tried this but it appeared to post a download package required a pay account so we dropped the idea. We have an account we will have to find the password.
And furthermore we welcome any help here and correct us if we are wrong.
MTeams
Pay account? I have a few projects on my github, and plan a few more, and have not paid one red cent...
Either way, easiest ways you can contact me is my skype or maybe a PM on HF, or email (username@gmail.com).
Or meet up in the kali IRC channel( I'm usually there idling XD)
Hopefully we can set up some type of conversation sometime soon. Been interested in talking to you for a bit anyway :-)
I have the exact same problem. I was able to run MDK3 just fine right before I followed the installation instructions of this too. But now even normal MDK3 won't work. It just says No such file or directory.
Things I have tried so far to fix this :
- Removed this took
- Re-installed default mdk3
-apt-get update and upgrade.
Still no luck. I am just not able to get the mdk3 tool to run. Every other tool works just fine.
Any help will be appreciated, thanks!
To Mayank017
You should have a mdk3 folder in root.
cd to the folder in root and run mdk3
./mdk3 [ENTER]
You should get the help file
Please tell us the Operating System you are using. We only support kali 1.10a 2.0 and 2016.1R
We will test the help instructions again BUT you should now have two mdk3 programs. One must be run from the folder in root. VMR-MDK looks for that root install. Using just the mdk3 command in the Terminal Window should give you the original mdk3 program that came with the program.
MTeams
Today I came across a router dats wps enabled and not locked. Funny thing is reaver doesn't work against it. That is there would be a successful association but. No pin counts it just keeps entering recurring delays... P1 still at zero. I wonder if it's my kali or sumfin am not doing right. I first ran vmr-mdk. Before trying reaver separately. Still same ish. No response for pin collections.
Please mmusket33 lemme know what you fink.
To Chnkingz
The tool of choice in most WPS pin collection cases is the command line. VMR-MDK and other programs using DDOS processes are really big guns that usually do not need to be employed. Many networks just lock up if the DDOS process is too intense.
If the Network in question is open MTeams would only use DDOS as a last resort and then for very limited time 10 to 20 seconds
In the case you mentioned above we suggest you use varmacscan. The latest version is available for download. Just turn it on and walk away. The program scans for WPS enabled Networks and then attacks each in turn with reaver. The scan and then reaver phase continues for as many cycles as you require.
Alternatively you could try Bully. See the threads in this section. We cannot help you with Bully.
MTeams
thank you and your awesome team for making life easier. I just want to say that on "Fritz Box Fon" model routers Manufactured by Http://www.avm.de doesn't work.
To wmxuser:
Thank you for your input.
MTeams has found that even the same make of router by mac code can react differently to the VMR-MDK series. This is why we have never ask for nor published a list of routers which are susceptible to the VMR-MDK approach. The only way to know if WPS pins can be obtained is to test that specific WPS Locked router for a few days.
Furthermore we have cracked WPS locked routers which when locked did not give up pins BUT during the VMR-MDK process, the router opened and the pin reset to 12345670 resulting in an extraction of the WPA Key.
So our rule is to test each specific router for the vulnerability and ignore the make and model.
MTeams
I admire the work done and time consuming for a personal satisfaction or therapy, but as a constructive criticism I believe that recently +/-
a lot of new process are just the pretty much the same dog with different collar. Just my 2cent, but let's keep testing and enjoy the time and keep watching when process runs and the uploads at our side network. Happy testing,
Thanks mmusket33,
If you could remove all the confirmations ('y') in the next release I would appreciate :)
If you could remove all the confirmations ('y') in the next release I would appreciate :)[/QUOTE]
all those "y"es makes me feel like a baby with his mother at the toy store "so.. do you want this? are you sure? what about that?" :D why don't you pm Aanarchyy. he's the boss of writing/changing scripts. or you can do it yourself :p
Hi,
How do I disable FCS check? If there is that option?
Thanks.
Attachment 1377
which version of reaver are you using?
You may need to update.
I'm ditching Reaver. Code is way too buggy. Bully works SO much better and also runs on more *nix distributions... @mmusket I think you should switch to Bully for future scripts.
and the FCS checks are automatic :-p
But then why only one? It's a funny thing that on some APs, reaver 1.3 works better than 1.4-1.5 for example. I would like to see all of them as starting options including Bully.
- Would you like to choose from the wash list? Press (y/Y) to continue....
- y
- Enter (y/Y) to confirm or (n/N) to try again.
- y
- You have chosen BongoWiFi, are you sure about this? Press (y/Y) to continue....
- Y
- Seems to be a slow AP, but whatever. Enter (y/Y) to confirm the previous confirmation or (n/N) to try again.
- Y
- Would you like chicken? Enter (y/Y) to confirm or (n/N).
- N
- Lol ok just checking if you 'n' key is working. To confirm (n/N).
- N
- Would you like to put your wireless device into monitor mode? Press (y/Y) to continue....
- y
- You have chosen (y/Y). Enter (y/Y) to confirm or (n/N) to try again.
- y
- Enter (y/Y) to confirm the previous confirmation or (n/N) to try again.
- YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYY YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYY YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYY Y
- You seem just about to blow a gasket? Are you ok? Press (y/Y) to continue....
- Y !@#$%?&*()_
- Press (y/Y) to continue or confirm that you have actually blown a gasket and about to throw your lappy out the window (f/F)....
- F
- Oh well that will cause some delay in operations then. Press (y/Y) to continue....
- F
- You entered 'F' and that was not an option. Too bad eh? Press (y/Y) to continue....
- Crtl+C
two things I do not do. One of them is coding. :)
Up to date version of reaver is 1.5.2, in which the -C flag(the one to ignore bad FCS) has been reversed. Perhaps mmusket33 could add some version checking? I would love to help you, but no guthub to pull request...
I have MULTIPLE suggestions to clean up code(and i can also see there has been some "shoehorned" code and multiple different coding styles to suggest multiple contributors.... really needs to be some consistency to increase readability, reliability, and reusability of the code), but it is not my project, and i'm not gonna step on another coders toes, so yeah...
and check if aircrack-ng --wps says it sees WPS as enabled. I've found wash to kinda... well... suck at actually being accurate at times...
What is your problem? :confused:
You can change all confirms in this code for your self so easy :rolleyes:
change toQuote:
echo -e "$inp Press $yel(y/Y)$inp to continue...."
echo -e " Press $yel(n/N)$inp to abort!!..Press any other key to try again:$txtrst"
read CONFIRM
Quote:
#echo -e "$inp Press $yel(y/Y)$inp to continue...."
#echo -e " Press $yel(n/N)$inp to abort!!..Press any other key to try again:$txtrst"
CONFIRM=Y
Reaver is all code ripped from Hostapd, it was meant to be a quick and crappy solution. Bully, was developed correctly and wasn't just a quick solution. In my testing, Bully completed the WHOLE process of obtaining a key at a distance farther than it should've worked in 1/30 the time Reaver would've taken. Reaver is just really *@&$%* code.
t6_x just implemented the pixie dust attack into it, never really fixed the rest of the code.
I'm actually surprised AAnarchYY's Bully hasn't made it into the Kali repos yet. @g0tmilk, make this happen!
Also mmusket, I strongly urge you to put your code on GitHub so you can get better community input and involvement. Also beats having to post new download links each time, and it's a safe place to store all your projects.
Loaded 10 March 2016
https://github.com/musket33/VMR-MDK-Kali2-Kali2016. try reading also the first page soxrok :)
to Quest: wich is the other thing you won't do? having chicken i presume, as in the script? :cool:
To soxrok2212
MTeams tried to substitute Bully for reaver in varmacscan a less code intensive program but Bully did not function well in xterm windows. We ran several tests for almost a month with Bully and Reaver and Reaver functioned fine while Bully failed every time. Your previous comments did not go unnoticed
However MTeams will start another test series using Bully and see if we can figure out why? In our areas of operation Bully does not work well even from the command line in a terminal window.
Musket Teams
A repository that only hosts a zip file...
Uhm... that's kinda.. pointless...
@mmusket33, are you using some kinda specialized version of mdk3 that you have to include a PRE-COMPILED binary with your script?