View unanswered posts | View active topics It is currently 10 Feb 2010, 03:49



Post new topic This topic is locked, you cannot edit posts or make further replies.  [ 15 posts ] 
 Cain sniffer (Text&Pics) 
Author Message
..........
..........

Joined: 13 Dec 2006, 13:36
Posts: 552
Post Cain sniffer (Text&Pics)
1.Go to the configuration dialog to choose the device you would like to use. If your device is capable of promiscuous mode you can enable this but if it doesn’t you have to make sure this is disabled(Enable the tick).

Image

2.First click the sniffer button and then the blue plus button. You can either scan a range or the whole subnet. Now click ok and cain will scan the network. A list of computers will be shown. You can right click on a host to resolve their host name. (I have removed the Mac address, on your scan it will show.) Now click on the APR sign at the bottom.

Image Image

3.Now click in area 1. The blue plus sign at the top will appear. If you now click this “New APR poison routing” will appear. Click on of the hosts on the left and the other hosts on the right will appear. You can then click the second host on the right and click ok. (On the right you can also click more then host by using the shift button or Ctrl). Make sure you choose the correct hosts that you wish to watch. Click ok.

Image

4.The new routing will appear in the table.

Image

5.Now click the ARP button at the top next to the sniffer button.

Image

6.The status of the entry will change to Poisoning.

7.In the bottom part you will start to get routings. What each one means please read in the help. The kind of routing you have will be indicated by coloured arrows.

Image

8.If a password is typed into the machine that is on your APR list now for example http it will appear in the passwords tab. In the example the oxid forum is shown

Image


05 Apr 2007, 09:44
Profile
........
........

Joined: 29 May 2007, 14:21
Posts: 88
Location: Italy
Post 
Thanks a lot for this post. I found it useful :)

Regards
occasus


30 May 2007, 10:11
Profile WWW
-
-

Joined: 17 Aug 2007, 22:35
Posts: 1
Post 
nice tutoria can but can you do me a favoure can you send me the soft cain-abel or to my mail innoppy@mail.com
thanks bro


17 Aug 2007, 23:07
Profile
..........
..........

Joined: 04 Nov 2006, 00:39
Posts: 160
Post 
Tery200006, you can download the software free from www.oxid.it
Cheers,
Lapstue


18 Aug 2007, 02:24
Profile
-
-

Joined: 19 Aug 2007, 11:57
Posts: 2
Location: KSA, Jeddah
Post New ARP position routing
when i got New ARP position routing window i try to press ok but i got no thing

what is the problem here

hany prince


19 Aug 2007, 13:09
Profile YIM
..........
..........

Joined: 07 Nov 2006, 01:32
Posts: 268
Location: Milan, Italy
Post 
Please use the support forum for support request. The off-topic posts will be moved to the right forums.
Cheers to everybody,
Xev


19 Aug 2007, 23:03
Profile
-
-

Joined: 27 Aug 2007, 22:22
Posts: 3
Post 
Thanks mate :) !


27 Aug 2007, 22:31
Profile
-
-

Joined: 28 Aug 2007, 23:20
Posts: 1
Post 
If it doesnt work, what could be wrong. Could a firewall on the other computer block it? or a firewall on the router? How do i acctually intercept the signal that goes to the router? The other computer doesnt send it to me normally. I'm sorry I am just starting with cain and I am just testing it.


28 Aug 2007, 23:50
Profile
..........
..........

Joined: 13 Dec 2006, 13:36
Posts: 552
Post 
A firewall can be a problem and cause this not to work. Both on the router or on the machine.

Intercepting the siganl is done by cain. Once cain says poisoning the process of intercepting is carried out.


29 Aug 2007, 14:45
Profile
-
-

Joined: 03 Nov 2007, 11:10
Posts: 1
Post 
thank but i wonder how can i know what is the wireless master password of my net provider


03 Nov 2007, 11:37
Profile
..........
..........

Joined: 13 Dec 2006, 13:36
Posts: 552
Post 
please start a discussing in the support area and explain what you mean by wireless master password of your net provider.

Thanks


03 Nov 2007, 18:19
Profile
.
.

Joined: 01 Jul 2007, 03:28
Posts: 10
Post 
it would be helpful to some users if you didnt blot out the ip addresses..... people arent going to be able to attack you if you leave your network's ips displayed lol


12 Nov 2007, 21:43
Profile
-
-

Joined: 06 Dec 2007, 18:11
Posts: 1
Post 
I recently purchased a Draytek router. Before I had my Server connected directly to the internet and used ICS for the rest of the network via a hub.

After buying the Draytek, I found it impossible to record my SIP packets from the phone again - and I blamed the router!

This tutorial got it working again, and I now have automatic call recording! Thank you!

In fact, it's even better now! Before, Cain was recognising the REGISTER pings from the phone as a SIP call, and was saving 1kb wav files. I had to write a perl script to remove them.

Now the sniffer is working perfectly and grabbing REAL calls only! Cheers!


06 Dec 2007, 18:21
Profile
..........
..........

Joined: 13 Dec 2006, 13:36
Posts: 552
Post 
Please start a thread in the support forum. The mac address you are getting is that yours?

@Mods

I think it would be best if some of the tutorial posts like this one get locked because there will always be people that post here instead of the support forum


17 Jan 2008, 09:36
Profile
..........
..........

Joined: 04 Nov 2006, 00:39
Posts: 160
Post 
It's locked


18 Jan 2008, 01:09
Profile
Display posts from previous:  Sort by  
Post new topic This topic is locked, you cannot edit posts or make further replies.  [ 15 posts ] 


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group.
Designed by Vjacheslav Trushkin for Free Forums/DivisionCore.