WEP cracking with Intel Centrino - OmniPeek, winAircrack

Hacking Code Czech version of OmniPeek ipw3945 Network Monitoring, WEP Crack with ipw3945 adapter :: Platform: Windows :: Application: OmniPeek 4.1, winAircrack Driver: 10.5.1.72 Hardware: ipw3945 (older intel centrino adapters works too) :: Base: Crack WEP, Windows ipw3945, Monitor mode. (all the software, app and driver you can download in the DIR /software/wep-crack)

Driver The description of possibilities of the application OmniPeek and the card ipw3945 when using the conventional driver intel 10.5.1.72 the wireless can be opetrated. adapter ipw3945 in monitor mode. Comparing it with application AiroPeek everything without install the special driver. Assistance of ipw3945ABG is in the application OmniPeek nativ. Only upgrade/downgrade according to the actual driver version in the system is neccesary. The driver version can be found out in the net. adapter description.


OmniPeek Driver


Driver Up or Downgrade

The tested version of drivers is backed up by scan of the set canale range where it is neccesary to apply at least two different canals or scan all accessible canals on the frequence 2,4 - 5GHz. Solo scan canal can be configurated in the last item in the offer list. After the instalation of the right driver version (10.5.1.72 - pack 11.1.0.5 ) the card works on the windows platform in the monitor mode.



Driver Instalation Dialog



The package 11.1.0.5 includes other applications (zero config, driver panel, profile manager) which don't have to be instaleted. Network and config detection.

OmniPeek

After running the application OmniPeek it detects all to hand nets and digestedly displays it.



OmniPeek Main Panel


OmniPeek - Filter Config

The filter for capturing WEP is not present in the configuration. It can be easily created from the pre-defined list of protocol and standards counting more than 300 items.



OmniPeek Filter Configuration




The possibilities of configuration are limited only by the idea. The filter - the packet record for concrete MAC address. You can filter ESSID, BSSID, protocol, canal, IP address, string, the packet size and it is allso possible to combine all these possibilities.



MAC Filter Config Dialog


WEP Key Cracking

After catching enough of data and stopping the application you can just save the buffer content in the formate .dmp which the application Aircrack-ng supports.



Dump Export OmniPeek



The pakage Aircrack-ng for the windows platform was described in the previous texts and can be found and downloaded for free on internet or directly on AirDump.Net in the Download part.

Command:

aircrack-ng -m 00:0A... *.dmp

sets off the vulnerability pentest of your WEP  key. The choice *.dmp will read the data defined by the MAC address from your file in the folder. (in the case if the is more files) Aircrack-ng set off without defined MAC address ends with "memory allocation error" :) Ivs content in case that AP is not fully charged up to 10%. T.z 80 000 catched packets = 8000 ivs.

The number of ivs can be easily found out by command:

airdecap-ng -b 00:0A... file.dmp

winAircrack - GUI

The service of the final faze is also possible through GUI interface. This Tuto "superstructure" includes WinAircrack Pack 2.x. The applications can be downloaded in the part of AirDump:Net.



Win-Aircrack GUI



Note: The WildPackets application OmniPeek supports lots of others adapters.

Average: 4.3 (18 votes)
breed's picture

HELP and so on..

This is discussion NO HelpDesk. Do not ask for help here. For consulting come to the IRC channel or forums. Thx.

airdump:net's picture

driver

to breed: Hola BREEd, I can send you the driver of course, but question is how it will works. In any part of the world Intel distributes firmware and drivers for local use (for example we have 13 channels in the 2,4GHz). You can try windows feature "restore point" - it rolls your system back to the date you did the last backup (create the point of restoration). If everything works fine you will mustn't to change the driver.

airdump:net's picture

intel download

to breed: try this link link to get last driver back

bebop's picture

Has anyone actually got the

Has anyone actually got the above to work? This how-to is pretty thin...

airdump:net's picture

What are you missing? :)

What are you missing? :) It's just about clicking..

Farag A.G's picture

thanks, Very Nice

thanks, Very Nice

Lex's picture

Does it work on Vista?

Does it work on Vista?

airdump:net's picture

Windows Vista

To Lex: Yeaah, but you need other driver.

Horst's picture

To airdump:net: Which driver

To airdump:net: Which driver I need to run under Vista???

Karl's picture

Windows Vista Intel 3945 ABG

Sadly there is no driver avail for Vista. The 10.5.1.72 has this the below in the .inf file and lots of other necessary data missing to prevent and install into Vista. The only way is to purchase a supported card at present and for Vista the Proxim Orinoco Gold 8480 FD would be a fair choice

;******************************************************************************
; Device
;------------------------------------------------------------------------------

;******************************************************************************
; Device Vista - an empty section to prevent installation on Vista with this inf
;------------------------------------------------------------------------------

[Device.NT.6.0]

;******************************************************************************
; Device W2K
;------------------------------------------------------------------------------

joe's picture

vista is not supported by

vista is not supported by airopeek, aircrack or other proggys using the intel cards only xp

airdump:net's picture

hello joe.., vista have

hello joe.., vista have possibility to run applications in the "compatibility mode" (xp do the same). In this mode you can run older appz. See also requirements.. I think Vista works.. Question is driver..

pwz's picture

Laptop D630 with ipw3945

Sure. My laptop D630 with the ipw3945 uses the 10.5.1.72 driver, it works. But the question is: the captured WEP data increases so slow, especially in low data exchange mode. How can I accelerate it? Under Windows some tools like void11 exits?

Jose's picture

Was anyone able to find

Was anyone able to find OmniPeek 4.1, I was unable to find it. All the download links I found refer to OmniPeek website which no longer host the file. If someone could post a link I would be more than greatful.

Also I can't seem to find WinAircrack for download.

Thanks, Jose

airdump:net's picture

OmniPeek Download Link

Download is possible at subdomain download (DIR software/sniffer file WildPackets-OmniPeek-Personal-4.1.zip).

Julandron's picture

Omnipeek 4.1 channel problem

Hi, I have Omnipeek 4.1 and these not detect the chanel 13. Why? Netstumbler detects the channel 13 without problems. Regards! Julandron

airdump:net's picture

The same driver

Hi. Netstumbler works with ch 13 with the driver used with OmniPeek?

guest's picture

Hi, I'm using my laptop

Hi, I'm using my laptop using the Intel CHIPSET 3945ABG. Never I have installed drivers for use Netstumbler or Omnipeek

Julandron's picture

Number of filtered packets

How many filtered paquets I need capture before using aircrack?
50.000 paquets is little?

airdump:net's picture

Number of packet

Hi. Number of packet depends.. It exist more than one factor but don't start crack before you capture less then 100 000 IVS. The gain is cca 10%. It means for 100 000 IVS you need capture approximately 1 000 000 packets.

vivey's picture

Can anyone confirm this to

Can anyone confirm this to work? There doesn't seem to be a lot of instruction here...

Student (China)'s picture

yes!! It works!

yes,I've cracked many codes of the APs around my dormitory.And I'm using the code to surf the net~~When using aircrack,one crucial step (which is ignored by the authour) is that you should add the AP MAC Adress(the BSSID for example, 00:19:E0:CE:A7:B2)you want to crack to the text dialog~~

ps:If you get enough packages please save the packages by their BSSID~~That's important~~

Another : http://www.pc-pda.com/article.asp?id=16

guest's picture

Driver issues

When I run the install it says that it updates my driver, but according to my device manager my driver is still 10.1 something

Mirosch's picture

the same problem

I've downgraded the driver from version 11.5.0.32 but "according to my device manager" the driver version is still the same(11.5.0.32) but one thing changed after the "downgrade" that Omnipeek can scan single channel too-I think.I have hp compaq 6820s nb with p/w3945abg & winxp+sp2.
So, how can i find out:was the the downgrade succesful?

please help, my email is werwer66@zoznam.sk

Sorry for my bad english,hope u understand it!:)

guest's picture

I'm confused with how to use

I'm confused with how to use omnifilter... i load it up and it displays a whole bunch of unknown type BSSIDs and only one of the nodes has WEP (and at least 10 in the area have WEP, I don't know why it's not picking those up, or if it it...which ones those are)

And with the filter...what are we supposed to do? I click make filter and that little dialogue comes up and I click okay but i don't know what is going on

treyer's picture

Omnipeek 4.1 Sniffer Problem

halo breed,

i'm having trouble now.my omnipeek 4.1 sniffer only detect beacon alarms only.i'm using ipw3945 abg...how can i solve this problem and how can my sniffer detect the IVR?

thanks..

guest's picture

blue screen error using omnipeek

Hi, I'm having problem using omnipeek, it keeps crashing after some time capturing packets, a blue screen error jumps out and memory dump occur. I'm using windows xp sp2 home edition and intel pro wireless 3945 with driver 10.5.1.75. Can any one helps?

freezy's picture

OmniPeek & XP problem

Thats feature not problem. Windows have allways problem with drivers

guest's picture

hello

hello, is the comment "Thats feature not problem. Windows have allways problem with drivers" is meant for me? Know how to solve the problem?

Durran's picture

Can someone please email me

Can someone please email me and tell me how to do this i would be very thankful

my email is durran992@hotmail.com

guest's picture

Packet capture WildPackets driver

I've been able to capture packets using 11.1.0.100 found inside 11.1.0.5 pack

guest's picture

I have managed to work the

I have managed to work the OmniPeek Personal so that I can filter only WEP information, yet I only get about 1 IV per BSSID. How do you get more?

FYI, I am using aircrack-ng 0.9.1 and when I launch using a captured .dmp file it says I only have 1 IV per bssid and then goes on to say I need something like 250 or 400 IV's or whatever.

Dusan's picture

Omnipeek Enterprise 5.0

is it working with newer versions of omnopeek like omnipeek enterprise 5.0?

chetan's picture

where do i download omnipeek

where do i download omnipeek from

download's picture

re: OmniPeek download

You can download the software in the download section (download.airdump.net)

guest's picture

WEP crack

Can anyone teach me how to crack wep? Cause tis is my final year project, due date is coming soon. Bloody now. My email wul_wul85@yahoo.com Thx a lot.

guest's picture

Capturing IV's OmniPek

Hi. Does anyone know why I have in the captured data file only 1 IVS??

n3tQ's picture

reply Capturing iv's with OmniPeek

Hi. You have to setup MAC and type of packet filtering in the application.

peter's picture

Windows Vista Driver

How can we install the older drivers on vista? I tried several ways but all failed

n3tQ's picture

re: No Windows Vista

There is'nt way.. how to resolve.. Wait or change the operating system.

peter's picture

thanks for answer

ok thanks n3tQ

gotit, lostit, gotit, lostit's picture

winAircrack ipw3945

i wana thank the author for putting up this tutorial with pictures. it's probably the best for windows xp users with the 3945 chipset. now can someone please translate it into better but simpler english?

i got winaircrack and they want ivs files. i got aircrack-ng and found out airodump would not work with my card. so i got omnipeek, and after trying and trying, i'm lost. i got a shitload of data but each time i run aircrack gui i only see not more than 1 iv in any target network. what exactly do i need to fill up in omnipeek, please? what bssid, where? what mac, where? what filters to check? help anyone?

n3tQ's picture

omnipeek filtering

Hi. I think you have to filter the trafic (for example by MAC adress or SSID). All the thing are configurable in the omnipeek menu. Nothing dificult.

kraxx's picture

Omnipeek IV's

Hi. Omnipeek searched for packets for about 8 hours and found at least some 124.000 Packets with only 650 IV's in it.
I already set a MAC-Filter but even though i can't get more IV's.

Can anybody tell me what to do?

Ian's picture

Hi I think you need more

Hi

I think you need more traffic on the network. As long as the users on it are only browsing small websites, or just checking their mail, it can take a while before you've picked up enough good packets.

You might want to try sniffing at peak hours, in the mid-evening is usually a good time.

I'm not completely sure, but a way to generate traffic yourself is to take another wi-fi card and use it to connect to the network with the wrong password. It will not allow you in, but it will send out encrypted packets anyway. There should be some more information about this method out there.

Hope my limited knowledge helped you a bit :-)
Ian

Adil's picture

How do I download the

How do I download the programs from this site?????

pmedinua's picture

practicing, understanding, keep trying

I read all the posts here and in other sites.
After hours of practice, i succesfully filtered wep data packets and saved them to a *.xxx file.
Ok, after that i run winaircack and add the *.xxx file with the wep data packets i captured with omnipeek.
I didnt filled any other filed in winaircrack, only the *.xx file.
Winaircrack started ok, and succesfully read the *.xxx file. Then it asked me for "INDEX NUMBER OF TARGET NETWORK" in the command prompt. After trying some Indexes i understood that i have to check the winaircrack command prompt and search the # (index) on which more wep ivs are found.
Dont know if im doing it right because i only captured about 300 ivs after a couple of hours. I know i need to capture more, so ill keep trying.

ben's picture

Cracking WEP

I just got an HP Special Edition Notebook running Windows Vista Ultimate (64-bit) and it has an "Intel(R) Wireless WiFi Link 4965AG" as described by Device Manager. I have tried Airodump, Kismet, and I attempted this software, but none have worked. My brother has a Macbook with a standard AirPort card in it. I tried to use Kismac with the Viha driver on his Macbook but that didn't cooperate either. It won't load the card. I've tried many times and worked for hours but nothing is working. Can someone please help me!! If anyone can help me get a WEP key using either computer it would be greatly appreciated.

guest's picture

Get more traffic or IV´s

Hallo, is there a posibility to make more IV´s. You have to sniff more than a year to get 100.000 wep packets. After 2 hour i only get 2 IV´s.

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <em> <strong> <cite> <code> <ul> <ol> <li>
  • Lines and paragraphs break automatically.

More information about formatting options

Captcha
This question is used to make sure you are a human visitor and to prevent spam submissions.
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.