Promiscuous sniffing with Handy Sniffer on VOX - Networking

I have downloaded Handy Sniffer 1.6 Demo version to my HTC Vox/S710.
The WiFi hardware is: TNETW1251.
The handysniffer website quotes: Promiscuous mode for some TNETW1251 WiFi adapters.
So when i select extended mode it gives me the anomalies error, which seems to mean that the unofficial promiscuous mode is not supported.
When i enable the official promiscuous mode, it only sniffs local packets, not from other pc's. Why is that?

Hi Rubberducky,
I am developer of HS.
// Handy Sniffer
>> So when i select extended mode it gives me the anomalies error,
>> which seems to mean that the unofficial promiscuous mode is not supported
Is not YET supported,
Send your "Windows\tnetw1251.dll" file to me.
Maybe we will have a luck.
// ARP Spoof
Try to send "arp-req.bin"/"arp-reply.bin" (possibly edit some fields) example packets from "Handy Sniffer\raw" folder. Some built-in WiFi adapters permit sending of packets with foreign source MAC address (-> you can configure valid arp packet). On target host run e.g. WireShark sniffer or see current ARP table...

The file tnetw1251.dll doesn't exist in \Windows on my HTC Vox\s710.

It is possible driver has name "tnetwln.dll" but it is a system file (hidden) and I think it has ROM attribute. If you can extract it I'll ready to analyse it...

I would gladly try to extract it, only i have no idea how i would go about doing this...

Try the program from GreateVK:
http://forum.xda-developers.com/showthread.php?p=1571715
If you have success send me file to "[email protected]".

I'm having problems extracting the file. Rom Extractor seems to be developed for Pocket PC, i have a Smartphone.
But i'll keep trying.
If the extended mode would work in my VOX, would that mean that i can intercept all the packets on the network (Like ARP spoofing), or only packets that are sent to my device?

You can capture ALL USER packets an Access Point (re)transmits in network: broadcast, multicast, directed and with foreign DestMacAddr.

I sent you the file, and i'll also attach it here. Maybe other people need it too.

Here is the file

So? Is that all?

Related

How can one scan and modify every IP packet that goes thru PPP (dial-up)?

Hello. I want to scan and modify every IP packet that goes thru PPP (dial-up) (or thru all interfaces if easier). I've done a lot of research and found that maybe the only way to achieve this on lousy wince is to patch the OS itself...I am an x86 programmer and I've done this relatively easily on winxp...
P.S. How can one debug wince os code in ROM with software debuggers?
P.P.S. So far I don't have any solution to my problem so it would be a success to do this even with one device (I have htc universal for tests...)
Today I've finally downloaded the platform builder and so called "Shared" code of wince 6.0...To my surprise I found ARM4 .lib files instead of source code for everything that I needed to look in (ip*.*) . However there is a binmod utility and other stuff for editing rom that you might need. I don't need to modify rom since i can neither debug ROM nor have it's source even from a different version of wince (I need for 5.0). M$ is sh*t as usual.
It is the har work to modify ppp packets on pocket pc (wince).
Yo can try the passthru sample in PB:
\PUBLIC\COMMON\OAK\DRIVERS\NETSAMP\PASSTHRU
and
\WINCE500\PUBLIC\COMMON\OAK\DRIVERS\NETSAMP\ASYNCMAC
i think you have to modify the drivers.
good luck !

TIACXWLN.dll Source code / disassembled / Promiscuous

Does anyone have any experience with the TIACXWLN.dll? Has anyone disassembled, rewritten or obtained the source code for this?
Bascially what I am after is bain able to use my packet sniffer in promiscuous mode, which I believe this driver doesn't support.
Hi,
Did you ever figure out how to put tiacxwln.dll into promisuous mode?
I came across this site: http://winm-soft.atspace.com/ in my efforts to find a hacked driver that supports promiscuous mode. Once the cab is installed I try to enable promiscuous mode and scan with Airscanner Mobile Sniffer v2.5, however there are a few problems that seem to be occurring. The sniffer would not even start up without first installing the custom mode controller cab, however once I did and tried enabling promiscuous packet capture through BOTH the custom TIACXWLN driver and the Scanner software, errors occurred.
The hacked driver was originally intended to work on a Dell X50v in WM5, however it should be capable of enabling promiscuous packet sniffing on the Tytn. I may decide to downgrade to WM5 to see if this issue can be solved by simply downgrading the wlan drivers.
I'll get back to this later.. if anyone has any luck with this, let me know.
Cheers
Any news?
I was just wondering if any one was still working on this? I saw the other night a link that Ipaq released a new TIACXLN driver, It may ave been older then I thought I can not fiend it now.

Is it possible to change the MAC ADDR of Hermes?

Hello to all,
Currently McDonalds provided a free wifi for 20mins for each device
Is it possible to change my MAC ADDRRESS of my PPC to enjoy other 20mins?
and I'd search for some old post...
is that the MAC stored in the wifi chip's and there's nothing to do with the registry,
The only possible way is to change the original drivers ?
thankyou
PS. My Hermes is running WM5
There is some discussion regarding changing the MAC address of the Hermes using a custom mode controller for the TIACXWLN driver. Check out this thread here.
Since I haven't found the time to try downgrading to WM5 to test the older driver out, would you be so kind as to help test a theory of mine by installing the custom mode controller to you device to see if you can set a custom MAC address and/or set promiscuous mode? The file can be downloaded for free and is located at the bottom of AlexB's website found here.
Once you download and install the .cab, the program can be found in
"/program files/custom controller/tiacxwln_ctrl.exe"
Enable WIFI in your com manager and execute this program. Let us know if you can successfully set your MAC address or enable promiscuous mode.
Cheers and good luck
Lancealot said:
Since I haven't found the time to try downgrading to WM5 to test the older driver out, would you be so kind as to help test a theory of mine by installing the custom mode controller to you device to see if you can set a custom MAC address and/or set promiscuous mode?
Click to expand...
Click to collapse
Does not for work me on my WM5 Hermes. I get the same error messages as you.

Wifi Problems

Hey guys,
I have a problem with the wifi connection on my phone. For some reason, it cannot connect to the school network.
https://sara.morehead-st.edu/ <--- this is the link for some requirements and where I have to download the root certificate they provide.
I try to connect, and I get a dialog asking for my username and password and I put it in but then I get "Unable to connect, connection requires a certificate to connect."
Here are what it says I must have:
Requirements
* Wireless LAN adapter with current drivers capable of:
o either 802.11a, 802.11b and/or 802.11g
o WPA/WPA2 (Wireless Protected Access)
o TKIP (Temporal Key Intergrity Protocol)
o PEAP (Protected Extensible Authentication Protocol)
MSChapV2 (Microsoft version 2 of Chap)
-OR-
EAP-TTLS
o IEEE 802.1x protocol
* Operating Systems:
o Windows XP
o Windows Vista
o Apple Mac OS X (10.3 or later)
o Windows Mobile 2003SE or later
o Linux or *BSD with suitable supplicant
* User Information:
o valid MSU Id
o valid Web PIN
o trusted root certificate
(see step-by-step guides)
Click to expand...
Click to collapse
Edit: Also, do you guys know how I can get the program to trim music files? I used to be able to do it in either Windows Media Player or Audio Manager, but I can't find the feature anymore.
Ask your IT guy to export the root certificate as a .cer file for you and copy it to your PDA, it should install if you just click on it. Then go to system>certificates and the personal tab, the new certificate should be in there.
If you tap on the name it should give details of the cert. Click ok and go to root tab and the cert should be in there.
Hey,
The root.cer file actually does fine. It says "Certificate accepted" and what-not and then I can also click on connect and get the dialog asking for my username and password. For some reason after that it just won't work. Like it just says connecting and then eventually tries another connection.
The phone does support this system and has all the right things right?
Is there any programs that help with connections or increases options of your connection?
Please guys
I am unable to browse anything when in class

URL Excepitions

Hi all,
I have several WM5 and WM6 devices wich connect to my companies network using GPRS for Outlook sync and a custom application. I want to use our proxy-server to add internet acces for our users in a controlled way. The OWA server and the custom application server need to be directly, not by the the proxy-server. So I have to add those the URL Exceptionlist ( there are dots in the names).
Manually this is easy to configure but I use scripts to configure the devices (XML-provisioning and some other tools). Can't find out how to add entries to the URL Exceptions list. Found they are stored in \ConnMgr\CMMapP and ~CMMapG. Copied these files from one device to another (by ActiveSync) but that doesn't work. These files have the system attribute set and I guess their permanently in use by ConnectionManager.
Doe anyone have a suggestion how to distribute URL exceptions?
Thank in advance.
//Serge

Categories

Resources