Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

error when using reaver #274

Closed
bostonsam opened this issue Mar 14, 2019 · 8 comments
Closed

error when using reaver #274

bostonsam opened this issue Mar 14, 2019 · 8 comments

Comments

@bostonsam
Copy link

bostonsam commented Mar 14, 2019

Reaver:
Installed: 1.6.5-1
Candidate: 1.6.5-1
Version table:
*** 1.6.5-1 500
500 http://http.kali.org/kali kali-rolling/main amd64 Packages
100 /var/lib/dpkg/status

OS
4.19.0-kali1-amd64

AWUS1900 ALPHA NETWORK ADAPTER In monitor mode

HI everybody, I'm new to this type of stuff I got an error using this tool and was wondering if someone could help.
I am following this Udemy course: Learn Ethical Hacking From Scratch I was trying to access my router via wps "attack". But when I run the command I receive the error below:

WPS:  * Registrar Nonce
WPS:  * Configuration Error (0)
[+] Sending WSC NACK
send_packet called from send_msg() send.c:116
[!] WPS transaction failed (code: 0x04), re-trying last pin
WPS: Invalidating used wildcard PIN
WPS: Invalidated PIN for UUID - hexdump(len=16): 94 a3 28 8f 20 5d 51 5e 96 92 eb 78 d1 b6 1e 8b
WPS: A new PIN configured (timeout=0)
WPS: UUID - hexdump(len=16): [NULL]
WPS: PIN - hexdump_ascii(len=8):
     31 32 33 34 35 36 37 30                           12345670        
WPS: Selected registrar information changed
WPS: Internal Registrar selected (pbc=0)
WPS: sel_reg_union
WPS: set_ie
WPS: cb_set_sel_reg
WPS: Enter wps_cg_set_sel_reg
WPS: Leave wps_cg_set_sel_reg early
WPS: return from wps_selected_registrar_changed
[+] Trying pin "12345670"
[+] Associated with 00:8C:54:83:E7:0B (ESSID: Telecom-75753221)
[+] Sending EAPOL START request
send_packet called from send_eapol_start() send.c:48
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
[+] Received identity request
[+] Sending identity response
send_packet called from send_identity_response() send.c:81
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
WPS: Building Message WSC_NACK
WPS:  * Version
WPS:  * Message Type (14)
WPS:  * Enrollee Nonce
WPS:  * Registrar Nonce
WPS:  * Configuration Error (0)
[+] Sending WSC NACK
send_packet called from send_msg() send.c:116
send_packet called from send_termination() send.c:142
[!] WPS transaction failed (code: 0x03), re-trying last pin
WPS: A new PIN configured (timeout=0)
WPS: UUID - hexdump(len=16): [NULL]
WPS: PIN - hexdump_ascii(len=8):
     31 32 33 34 35 36 37 30                           12345670        
WPS: Selected registrar information changed
WPS: Internal Registrar selected (pbc=0)
WPS: sel_reg_union
WPS: set_ie
WPS: cb_set_sel_reg
WPS: Enter wps_cg_set_sel_reg
WPS: Leave wps_cg_set_sel_reg early
WPS: return from wps_selected_registrar_changed
[+] Trying pin "12345670"
[+] Associated with 00:8C:54:83:E7:0B (ESSID: Telecom-75753221)
[+] Sending EAPOL START request
send_packet called from send_eapol_start() send.c:48
[+] Received identity request
[+] Sending identity response
send_packet called from send_identity_response() send.c:81
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
WPS: Processing received message (len=400 op_code=4)
WPS: Received WSC_MSG
WPS: Unsupported attribute type 0x1049 len=6
WPS: Parsed WSC_MSG
WPS: Received M1
WPS: UUID-E - hexdump(len=16): 94 a3 28 8f 20 5d 51 5e 96 92 eb 78 d1 b6 1e 8b
WPS: Enrollee MAC Address 00:8c:54:83:e7:0b
WPS: Enrollee Nonce - hexdump(len=16): a0 12 36 ab f7 8f 59 ad b1 0c ad c5 df 31 83 96
WPS: Enrollee Authentication Type flags 0x3b
WPS: No match in supported authentication types (own 0x0 Enrollee 0x3b)
WPS: Workaround - assume Enrollee does not advertise supported authentication types correctly
WPS: Enrollee Encryption Type flags 0xd
WPS: No match in supported encryption types (own 0x0 Enrollee 0xd)
WPS: Workaround - assume Enrollee does not advertise supported encryption types correctly
WPS: Enrollee Connection Type flags 0x1
WPS: Enrollee Config Methods 0x780 [PBC] [Keypad]
WPS: Prefer PSK format key due to Enrollee not supporting display
WPS: Enrollee Wi-Fi Protected Setup State 2
WPS: Manufacturer - hexdump_ascii(len=3):
     41 44 42                                          ADB             
WPS: Model Name - hexdump_ascii(len=7):
     41 47 57 49 46 49 4e                              AGWIFIN         
WPS: Model Number - hexdump_ascii(len=13):
     34 36 35 30 31 49 30 30 35 38 32 35 38            46501I0058258   
WPS: Serial Number - hexdump_ascii(len=13):
     34 36 35 30 31 49 30 30 35 38 32 35 38            46501I0058258   
WPS: Primary Device Type: 6-0013C804-1
WPS: Device Name - hexdump_ascii(len=7):
     41 47 57 49 46 49 4e                              AGWIFIN         
WPS: Enrollee RF Bands 0x1
WPS: Enrollee Association State 0
WPS: Device Password ID 0
WPS: Enrollee Configuration Error 0
WPS: OS Version 80000000
WPS: M1 Processed
WPS: dev_pw_id checked
WPS: PBC Checked
WPS: Entering State SEND_M2
WPS: WPS_CONTINUE, Freeing Last Message
WPS: WPS_CONTINUE, Saving Last Message
WPS: returning
[+] Received M1 message
WPS: Found a wildcard PIN. Assigned it for this UUID-E
WPS: Registrar Nonce - hexdump(len=16): 0e c6 e9 e2 20 44 2f 8d d8 9b 82 0e 18 59 92 da
WPS: UUID-R - hexdump(len=16): 6e c6 85 0a 65 e8 7a ba 8b 47 e1 3c 41 5f 0d 3f
WPS: Building Message M2
WPS:  * Version
WPS:  * Message Type (5)
WPS:  * Enrollee Nonce
WPS:  * Registrar Nonce
WPS:  * UUID-R
WPS:  * Public Key
WPS: Generate new DH keys
DH: private value - hexdump(len=192): 20 67 3d 0b 9e 32 8b 89 f9 99 c5 79 1b 87 30 ef ab a4 e3 ad c9 f5 89 c4 49 d0 8a d7 96 87 96 af bd ca a2 db 8c 06 43 25 17 a7 29 49 68 93 af 66 0f d0 ea 3d 16 ff 04 e5 45 da 34 c8 b8 9f 96 be 07 ff 55 4f 04 fb 89 93 07 70 8c 9f d8 0c bb 53 5e 67 a9 a4 8a 3e 1b bf 73 9e de 97 00 a7 d4 30 4c 3f 72 61 5d 4c f2 40 5a 13 e0 49 79 2a 73 7a a1 20 d6 59 9a 10 d3 3c c2 12 a4 67 47 0b af aa d2 af 3d de 4f a7 9b d3 96 04 05 99 ce 7b 1b 71 24 6e 30 30 98 47 7e 81 de ca ee a0 ce 4a 18 dc cb cf 62 67 33 a0 6b 1c 7b 30 8f f2 eb 86 ca 2a 51 50 06 38 72 f3 40 1e b5 a5 ad 3b ed 11 e9 0d
DH: public value - hexdump(len=192): 1e 2a 7a 8a c5 95 9c a4 fb 07 34 53 a7 7f 6c 8e a7 c1 c3 d5 bc 84 07 4d 29 f8 f5 24 24 ec 49 ec 5a 5d e5 e2 e0 4d 92 04 c0 de 9e 62 8a 9a b9 2c 2b 78 45 53 a6 47 03 48 36 5e d2 d9 3c 30 73 66 10 93 6a d3 15 6a a2 6c 39 f9 3b 77 14 6b 2d 93 1c cf b2 3f 69 bf cd 94 c1 10 04 f5 cb 4c 6a 48 de 22 e9 b9 24 be ed 64 76 b4 65 3d 55 65 ea 95 66 b6 44 86 52 91 f1 2f 60 e8 00 02 cb 25 a2 f4 87 27 c5 8e 4d c2 4d 03 49 5a 6a 2d 0a 08 68 ce 39 6c 3c 1c b1 53 cc 2f f1 9b cd 8b 3d 2b db 07 cd 00 de 6e 0c df 77 25 d1 51 b4 99 46 e6 5f 9c dc 1c 9a b8 ad 1b a6 9a 43 f8 2b 7c 0d aa ca f0
WPS: DH Private Key - hexdump(len=192): 20 67 3d 0b 9e 32 8b 89 f9 99 c5 79 1b 87 30 ef ab a4 e3 ad c9 f5 89 c4 49 d0 8a d7 96 87 96 af bd ca a2 db 8c 06 43 25 17 a7 29 49 68 93 af 66 0f d0 ea 3d 16 ff 04 e5 45 da 34 c8 b8 9f 96 be 07 ff 55 4f 04 fb 89 93 07 70 8c 9f d8 0c bb 53 5e 67 a9 a4 8a 3e 1b bf 73 9e de 97 00 a7 d4 30 4c 3f 72 61 5d 4c f2 40 5a 13 e0 49 79 2a 73 7a a1 20 d6 59 9a 10 d3 3c c2 12 a4 67 47 0b af aa d2 af 3d de 4f a7 9b d3 96 04 05 99 ce 7b 1b 71 24 6e 30 30 98 47 7e 81 de ca ee a0 ce 4a 18 dc cb cf 62 67 33 a0 6b 1c 7b 30 8f f2 eb 86 ca 2a 51 50 06 38 72 f3 40 1e b5 a5 ad 3b ed 11 e9 0d
WPS: DH own Public Key - hexdump(len=192): 1e 2a 7a 8a c5 95 9c a4 fb 07 34 53 a7 7f 6c 8e a7 c1 c3 d5 bc 84 07 4d 29 f8 f5 24 24 ec 49 ec 5a 5d e5 e2 e0 4d 92 04 c0 de 9e 62 8a 9a b9 2c 2b 78 45 53 a6 47 03 48 36 5e d2 d9 3c 30 73 66 10 93 6a d3 15 6a a2 6c 39 f9 3b 77 14 6b 2d 93 1c cf b2 3f 69 bf cd 94 c1 10 04 f5 cb 4c 6a 48 de 22 e9 b9 24 be ed 64 76 b4 65 3d 55 65 ea 95 66 b6 44 86 52 91 f1 2f 60 e8 00 02 cb 25 a2 f4 87 27 c5 8e 4d c2 4d 03 49 5a 6a 2d 0a 08 68 ce 39 6c 3c 1c b1 53 cc 2f f1 9b cd 8b 3d 2b db 07 cd 00 de 6e 0c df 77 25 d1 51 b4 99 46 e6 5f 9c dc 1c 9a b8 ad 1b a6 9a 43 f8 2b 7c 0d aa ca f0
WPS: DH Private Key - hexdump(len=192): 20 67 3d 0b 9e 32 8b 89 f9 99 c5 79 1b 87 30 ef ab a4 e3 ad c9 f5 89 c4 49 d0 8a d7 96 87 96 af bd ca a2 db 8c 06 43 25 17 a7 29 49 68 93 af 66 0f d0 ea 3d 16 ff 04 e5 45 da 34 c8 b8 9f 96 be 07 ff 55 4f 04 fb 89 93 07 70 8c 9f d8 0c bb 53 5e 67 a9 a4 8a 3e 1b bf 73 9e de 97 00 a7 d4 30 4c 3f 72 61 5d 4c f2 40 5a 13 e0 49 79 2a 73 7a a1 20 d6 59 9a 10 d3 3c c2 12 a4 67 47 0b af aa d2 af 3d de 4f a7 9b d3 96 04 05 99 ce 7b 1b 71 24 6e 30 30 98 47 7e 81 de ca ee a0 ce 4a 18 dc cb cf 62 67 33 a0 6b 1c 7b 30 8f f2 eb 86 ca 2a 51 50 06 38 72 f3 40 1e b5 a5 ad 3b ed 11 e9 0d
WPS: DH peer Public Key - hexdump(len=192): f8 fe 2a f0 b8 90 f2 26 5a ac e3 7d fc 87 70 de 6f 32 93 5b 05 3f 27 5c 5a 32 7d 71 f0 1a 09 89 72 24 82 f1 d7 d1 22 03 d2 7e 23 4f 21 7c 9a e1 e7 68 4f f9 d7 36 58 01 35 aa 6e 39 d2 15 01 ad f6 18 ac b0 04 56 ae 2b 72 d5 60 cc 37 58 46 cf d7 ee 75 d9 97 a0 64 b0 bc 3f ba a6 13 43 1d 8d 0f 34 41 90 e2 f2 f3 8d c4 05 c9 35 eb 71 83 5e c2 10 f9 ce 81 10 d0 48 51 5c ab 82 13 da 8e 7b c1 3e 1f c9 30 bf 9a 09 e4 91 02 f4 c6 ec 65 7f da 4e 53 fd 0e 30 25 88 45 60 2e 70 5a 69 75 cd b2 3d 2b 2c 17 0c 95 03 6a 3d e5 40 37 54 24 b3 27 04 86 a7 fd 46 3e 68 9c c6 4e a6 a5 dc c3 24
DH: shared key - hexdump(len=192): b5 43 bd 65 03 5c 98 34 8e b1 ef 01 1f 6d dd 01 ba 0b 58 73 e7 5a ab 9e d3 f3 93 8f 69 c1 b8 3f 20 c6 40 3e b3 bb 91 c6 f1 94 52 af 3e 3c ea b4 29 19 b3 47 e6 bd de df 1e 7d a6 4f 5a b6 c5 bf 7c 91 32 bf bc d0 69 ac fd 52 6c b8 80 ab 0f f4 d5 e8 fe 06 65 2c ef 4c 36 9d 24 09 8a af 09 ac ea 4e d4 37 d1 d9 61 cc a5 d6 ef e2 d0 8f 19 2d 80 85 29 68 5e c0 f6 4a fe cd 3f 63 fe d7 87 6a 4d a0 aa 26 e8 a5 da 1b 08 ee 73 4f 44 ea 8e 2e 88 09 c2 4f dd 4c a4 6a 74 d5 29 98 76 af ad a6 86 77 52 30 61 62 62 6b ae 94 c4 d7 73 f1 f9 1f 33 82 8b b3 d1 51 fc 41 d1 12 83 4a 6f da 64 bc
WPS: DH shared key - hexdump(len=192): b5 43 bd 65 03 5c 98 34 8e b1 ef 01 1f 6d dd 01 ba 0b 58 73 e7 5a ab 9e d3 f3 93 8f 69 c1 b8 3f 20 c6 40 3e b3 bb 91 c6 f1 94 52 af 3e 3c ea b4 29 19 b3 47 e6 bd de df 1e 7d a6 4f 5a b6 c5 bf 7c 91 32 bf bc d0 69 ac fd 52 6c b8 80 ab 0f f4 d5 e8 fe 06 65 2c ef 4c 36 9d 24 09 8a af 09 ac ea 4e d4 37 d1 d9 61 cc a5 d6 ef e2 d0 8f 19 2d 80 85 29 68 5e c0 f6 4a fe cd 3f 63 fe d7 87 6a 4d a0 aa 26 e8 a5 da 1b 08 ee 73 4f 44 ea 8e 2e 88 09 c2 4f dd 4c a4 6a 74 d5 29 98 76 af ad a6 86 77 52 30 61 62 62 6b ae 94 c4 d7 73 f1 f9 1f 33 82 8b b3 d1 51 fc 41 d1 12 83 4a 6f da 64 bc
WPS: DHKey - hexdump(len=32): 2e 68 cb cc 02 35 e1 63 4e 7d 0e 93 56 06 3c 14 1e 92 99 14 ef 5f 1d a2 35 6c 22 db dd 34 fc 6b
WPS: KDK - hexdump(len=32): 43 7a 77 5d cc 42 91 87 bc a6 29 71 76 d6 53 f0 31 e9 3d e1 00 70 fc c0 50 41 7d 3a 5c fa f2 d5
WPS: AuthKey - hexdump(len=32): 2e f1 8f c9 61 57 00 69 1e 13 72 a5 7b 77 9a 2e 86 19 84 53 df 5f 38 91 46 d4 34 47 d3 b2 d0 b3
WPS: KeyWrapKey - hexdump(len=16): fc 68 e5 3f 20 8e e0 17 c9 e3 9c 3f fa 01 32 a7
WPS: EMSK - hexdump(len=32): 49 8e 51 df eb 66 69 f4 8e 6f 33 9c d1 a1 cf c0 f6 2c 76 90 18 41 32 9c 89 dd c2 3d 11 e6 db 9c
WPS:  * Authentication Type Flags
WPS:  * Encryption Type Flags
WPS:  * Connection Type Flags
WPS:  * Config Methods (8c)
WPS:  * Manufacturer
WPS:  * Model Name
WPS:  * Model Number
WPS:  * Serial Number
WPS:  * Primary Device Type
WPS:  * Device Name
WPS:  * RF Bands (0)
WPS:  * Association State
WPS:  * Configuration Error (0)
WPS:  * Device Password ID (0)
WPS:  * OS Version
WPS:  * Authenticator
[+] Sending M2 message
send_packet called from send_msg() send.c:116
WPS: Processing received message (len=66 op_code=3)
WPS: Received WSC_NACK
WPS: Unsupported attribute type 0x1049 len=6
WPS: Enrollee terminated negotiation with Configuration Error 15
[+] Received WSC NACK
WPS: Building Message WSC_NACK
WPS:  * Version
WPS:  * Message Type (14)
WPS:  * Enrollee Nonce
WPS:  * Registrar Nonce
WPS:  * Configuration Error (0)
[+] Sending WSC NACK
send_packet called from send_msg() send.c:116
[!] WPS transaction failed (code: 0x04), re-trying last pin
[!] WARNING: 10 failed connections in a row
WPS: Invalidating used wildcard PIN
WPS: Invalidated PIN for UUID - hexdump(len=16): 94 a3 28 8f 20 5d 51 5e 96 92 eb 78 d1 b6 1e 8b
WPS: A new PIN configured (timeout=0)
WPS: UUID - hexdump(len=16): [NULL]
WPS: PIN - hexdump_ascii(len=8):
     31 32 33 34 35 36 37 30                           12345670        
WPS: Selected registrar information changed
WPS: Internal Registrar selected (pbc=0)
WPS: sel_reg_union
WPS: set_ie
WPS: cb_set_sel_reg
WPS: Enter wps_cg_set_sel_reg
WPS: Leave wps_cg_set_sel_reg early
WPS: return from wps_selected_registrar_changed
[+] Trying pin "12345670"
[+] Associated with 00:8C:54:83:E7:0B (ESSID: Telecom-75753221)
[+] Sending EAPOL START request
send_packet called from send_eapol_start() send.c:48
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
[+] Received identity request
[+] Sending identity response
send_packet called from send_identity_response() send.c:81
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
WPS: Processing received message (len=400 op_code=4)
WPS: Received WSC_MSG
WPS: Unsupported attribute type 0x1049 len=6
WPS: Parsed WSC_MSG
WPS: Received M1
WPS: UUID-E - hexdump(len=16): 94 a3 28 8f 20 5d 51 5e 96 92 eb 78 d1 b6 1e 8b
WPS: Enrollee MAC Address 00:8c:54:83:e7:0b
WPS: Enrollee Nonce - hexdump(len=16): 0c 5f 54 9c 63 5d fd 88 be 8b 7c bb 0a cf 2e e9
WPS: Enrollee Authentication Type flags 0x3b
WPS: No match in supported authentication types (own 0x0 Enrollee 0x3b)
WPS: Workaround - assume Enrollee does not advertise supported authentication types correctly
WPS: Enrollee Encryption Type flags 0xd
WPS: No match in supported encryption types (own 0x0 Enrollee 0xd)
WPS: Workaround - assume Enrollee does not advertise supported encryption types correctly
WPS: Enrollee Connection Type flags 0x1
WPS: Enrollee Config Methods 0x780 [PBC] [Keypad]
WPS: Prefer PSK format key due to Enrollee not supporting display
WPS: Enrollee Wi-Fi Protected Setup State 2
WPS: Manufacturer - hexdump_ascii(len=3):
     41 44 42                                          ADB             
WPS: Model Name - hexdump_ascii(len=7):
     41 47 57 49 46 49 4e                              AGWIFIN         
WPS: Model Number - hexdump_ascii(len=13):
     34 36 35 30 31 49 30 30 35 38 32 35 38            46501I0058258   
WPS: Serial Number - hexdump_ascii(len=13):
     34 36 35 30 31 49 30 30 35 38 32 35 38            46501I0058258   
WPS: Primary Device Type: 6-0013C804-1
WPS: Device Name - hexdump_ascii(len=7):
     41 47 57 49 46 49 4e                              AGWIFIN         
WPS: Enrollee RF Bands 0x1
WPS: Enrollee Association State 0
WPS: Device Password ID 0
WPS: Enrollee Configuration Error 0
WPS: OS Version 80000000
WPS: M1 Processed
WPS: dev_pw_id checked
WPS: PBC Checked
WPS: Entering State SEND_M2
WPS: WPS_CONTINUE, Freeing Last Message
WPS: WPS_CONTINUE, Saving Last Message
WPS: returning
[+] Received M1 message
WPS: Found a wildcard PIN. Assigned it for this UUID-E
WPS: Registrar Nonce - hexdump(len=16): b5 d3 87 0d b1 cb 0c e7 b9 d1 3c 8a 60 e8 9c d9
WPS: UUID-R - hexdump(len=16): 92 71 e4 e1 68 a6 04 73 ac 8d 84 58 5e db 55 d0
WPS: Building Message M2
WPS:  * Version
WPS:  * Message Type (5)
WPS:  * Enrollee Nonce
WPS:  * Registrar Nonce
WPS:  * UUID-R
WPS:  * Public Key
WPS: Generate new DH keys
DH: private value - hexdump(len=192): 5f 34 83 9e 0d 86 dd 8c b1 a9 ad 61 57 05 08 46 d5 45 26 65 1d 33 a8 47 f0 cd 46 da ac a6 f6 34 9e 90 4f 29 56 8f 26 91 1e b7 38 a3 d9 58 a1 73 1f 58 91 90 79 c1 8e f1 62 7f 08 25 dc fd 87 82 e4 57 0b 7a 81 a5 72 c5 40 e4 1a 66 7c 16 ea 08 45 42 02 0a 2e 7d 29 ed f5 dc e3 84 fd 39 f9 45 ca aa e3 f0 d2 ba f7 20 43 39 ee c7 f2 fb 14 7f 16 89 73 bb a3 c9 34 89 40 c4 ca 99 fe 62 ae b1 4c 22 04 37 08 e0 35 e6 9b b4 dc e6 af c1 44 78 44 15 8c 04 42 1b 8d 76 4b 29 61 70 22 25 de 66 36 61 dc 62 61 94 39 6c c0 dc e5 ee da 14 3c 0a 1c b5 8e 1d 3e a0 6d d3 b6 1c 14 b0 05 05 79 cc
DH: public value - hexdump(len=192): c3 d0 24 e6 70 3b 59 b0 dd 92 34 dc 48 03 ad 23 78 4e 97 ba 13 f0 e7 c4 64 30 c1 b4 58 81 d8 d5 b4 86 cf 0c 1b 12 02 15 10 da 81 d3 cd 3e 22 c0 01 6d d2 72 bb af e0 51 bf 65 7a 96 1a 3b 89 0b b4 d9 66 7a f6 74 c6 01 43 89 eb 89 28 2e b3 11 a1 eb 71 f6 4e 07 95 ea 4d cf f6 ed 10 94 b6 a0 0e 32 35 33 b4 ec 22 ca f8 c3 6b 22 3a d4 31 a0 37 ea b6 81 b7 ba 8f 0e 08 25 c3 d7 9d df 45 71 78 7e cc 18 a7 33 ed f1 22 f7 39 c1 07 5d 63 13 13 83 9e 8d 47 2e c4 bf 6f 58 43 63 de 4e 9e 5c c2 32 22 53 f3 4f 33 be 88 dd bd 5e 7e d0 67 98 79 7d 9a 52 e5 d2 d9 6a 56 00 d2 6b 0b 94 02 9d
WPS: DH Private Key - hexdump(len=192): 5f 34 83 9e 0d 86 dd 8c b1 a9 ad 61 57 05 08 46 d5 45 26 65 1d 33 a8 47 f0 cd 46 da ac a6 f6 34 9e 90 4f 29 56 8f 26 91 1e b7 38 a3 d9 58 a1 73 1f 58 91 90 79 c1 8e f1 62 7f 08 25 dc fd 87 82 e4 57 0b 7a 81 a5 72 c5 40 e4 1a 66 7c 16 ea 08 45 42 02 0a 2e 7d 29 ed f5 dc e3 84 fd 39 f9 45 ca aa e3 f0 d2 ba f7 20 43 39 ee c7 f2 fb 14 7f 16 89 73 bb a3 c9 34 89 40 c4 ca 99 fe 62 ae b1 4c 22 04 37 08 e0 35 e6 9b b4 dc e6 af c1 44 78 44 15 8c 04 42 1b 8d 76 4b 29 61 70 22 25 de 66 36 61 dc 62 61 94 39 6c c0 dc e5 ee da 14 3c 0a 1c b5 8e 1d 3e a0 6d d3 b6 1c 14 b0 05 05 79 cc
WPS: DH own Public Key - hexdump(len=192): c3 d0 24 e6 70 3b 59 b0 dd 92 34 dc 48 03 ad 23 78 4e 97 ba 13 f0 e7 c4 64 30 c1 b4 58 81 d8 d5 b4 86 cf 0c 1b 12 02 15 10 da 81 d3 cd 3e 22 c0 01 6d d2 72 bb af e0 51 bf 65 7a 96 1a 3b 89 0b b4 d9 66 7a f6 74 c6 01 43 89 eb 89 28 2e b3 11 a1 eb 71 f6 4e 07 95 ea 4d cf f6 ed 10 94 b6 a0 0e 32 35 33 b4 ec 22 ca f8 c3 6b 22 3a d4 31 a0 37 ea b6 81 b7 ba 8f 0e 08 25 c3 d7 9d df 45 71 78 7e cc 18 a7 33 ed f1 22 f7 39 c1 07 5d 63 13 13 83 9e 8d 47 2e c4 bf 6f 58 43 63 de 4e 9e 5c c2 32 22 53 f3 4f 33 be 88 dd bd 5e 7e d0 67 98 79 7d 9a 52 e5 d2 d9 6a 56 00 d2 6b 0b 94 02 9d
WPS: DH Private Key - hexdump(len=192): 5f 34 83 9e 0d 86 dd 8c b1 a9 ad 61 57 05 08 46 d5 45 26 65 1d 33 a8 47 f0 cd 46 da ac a6 f6 34 9e 90 4f 29 56 8f 26 91 1e b7 38 a3 d9 58 a1 73 1f 58 91 90 79 c1 8e f1 62 7f 08 25 dc fd 87 82 e4 57 0b 7a 81 a5 72 c5 40 e4 1a 66 7c 16 ea 08 45 42 02 0a 2e 7d 29 ed f5 dc e3 84 fd 39 f9 45 ca aa e3 f0 d2 ba f7 20 43 39 ee c7 f2 fb 14 7f 16 89 73 bb a3 c9 34 89 40 c4 ca 99 fe 62 ae b1 4c 22 04 37 08 e0 35 e6 9b b4 dc e6 af c1 44 78 44 15 8c 04 42 1b 8d 76 4b 29 61 70 22 25 de 66 36 61 dc 62 61 94 39 6c c0 dc e5 ee da 14 3c 0a 1c b5 8e 1d 3e a0 6d d3 b6 1c 14 b0 05 05 79 cc
WPS: DH peer Public Key - hexdump(len=192): 4e 9c 0b 93 b7 f1 c8 1c 0c b9 e6 d4 18 84 1d 72 43 34 57 67 64 bb d9 26 5f c8 56 ee 72 bd 66 25 43 e0 4b c5 6d 12 a7 89 8d f7 56 c6 49 24 16 20 a4 6d e6 c6 84 99 9c cd 7d ef f3 61 70 26 3a fc 7c cd 6d 76 75 2f 8d b9 eb 96 80 01 7e 0a d5 0b f8 d6 37 18 7b 30 1f a3 67 fa 87 06 b0 18 bd 13 92 0f 8e c5 77 58 39 51 0d a8 82 de 09 33 d8 7f 49 df 36 ab 26 f6 4c d3 0c 9e 32 88 ce 16 8d 0d 13 69 14 c7 8e 8b 5f a0 ac 44 cf 85 d3 39 6f 55 4f 28 0e a7 aa d9 28 df d8 3d 0b 66 fe 9a e8 bd 5d 92 48 92 50 d1 ec 9e 22 71 f0 16 63 cc 0a e7 66 f8 01 a0 9d 95 26 89 bd 6e ce ef b0 51 0a 5a
DH: shared key - hexdump(len=192): c7 36 32 4a 87 88 09 b5 3d a0 28 d3 04 d9 1f fa f4 ba 6d 60 bd 20 3f 3d a5 c1 f3 52 86 7d 97 b5 24 fa 83 82 06 49 4f 01 93 a0 6e 1c e4 a9 b3 25 4a 1b 0c be ca e7 fe 3b cf 4f be 4d 97 bc 8b 3a 97 c7 73 18 cc 62 79 c2 36 8d f3 7d 68 98 59 8c 6d 13 f7 bc f7 a5 23 1e fe dc 51 cb 36 1c 2a 91 24 ad e8 16 89 08 72 85 23 29 99 a7 73 80 a6 1f ae 24 eb 02 09 ae f4 34 b0 fe a8 8d d2 3d 03 eb 43 b1 7e 3e 44 ae 25 1c 72 ba 72 e8 bc e1 02 f0 85 5f 81 99 e8 5a 1c df fa d7 95 a1 47 10 cb 5e 42 49 c2 2e 01 9d 0c 2f c9 7d b3 ae 1f a7 0a d7 34 0a 0d 65 df c7 63 64 6d f2 4f 2b 9f a3 83 15
WPS: DH shared key - hexdump(len=192): c7 36 32 4a 87 88 09 b5 3d a0 28 d3 04 d9 1f fa f4 ba 6d 60 bd 20 3f 3d a5 c1 f3 52 86 7d 97 b5 24 fa 83 82 06 49 4f 01 93 a0 6e 1c e4 a9 b3 25 4a 1b 0c be ca e7 fe 3b cf 4f be 4d 97 bc 8b 3a 97 c7 73 18 cc 62 79 c2 36 8d f3 7d 68 98 59 8c 6d 13 f7 bc f7 a5 23 1e fe dc 51 cb 36 1c 2a 91 24 ad e8 16 89 08 72 85 23 29 99 a7 73 80 a6 1f ae 24 eb 02 09 ae f4 34 b0 fe a8 8d d2 3d 03 eb 43 b1 7e 3e 44 ae 25 1c 72 ba 72 e8 bc e1 02 f0 85 5f 81 99 e8 5a 1c df fa d7 95 a1 47 10 cb 5e 42 49 c2 2e 01 9d 0c 2f c9 7d b3 ae 1f a7 0a d7 34 0a 0d 65 df c7 63 64 6d f2 4f 2b 9f a3 83 15
WPS: DHKey - hexdump(len=32): 69 22 d7 b9 63 4a 20 4c 36 29 fe 7d 65 6d e1 81 c9 72 65 0b 00 03 34 07 66 c9 7a d7 ae f0 ea f0
WPS: KDK - hexdump(len=32): f3 69 6e f3 da 58 a4 a0 3d 97 a6 5a db 5c 70 f5 77 6a ad 6e d2 1c 5e c1 d6 20 29 13 fc f2 05 8a
WPS: AuthKey - hexdump(len=32): 3a 3c 5e 67 55 0e 2e ae 28 35 d8 39 cc c1 eb f8 00 5f 79 8d f6 36 f9 fe d8 95 f8 00 8d 7a 41 b9
WPS: KeyWrapKey - hexdump(len=16): 27 af 6a 87 8a 81 28 b9 51 df 95 d8 d8 61 e0 42
WPS: EMSK - hexdump(len=32): 5c f5 dd 8f 95 ac 9f 5c b8 e5 b3 2c 03 b7 e4 c6 d0 9d c0 17 8b 31 0b 95 65 46 9f c4 41 e7 01 e9
WPS:  * Authentication Type Flags
WPS:  * Encryption Type Flags
WPS:  * Connection Type Flags
WPS:  * Config Methods (8c)
WPS:  * Manufacturer
WPS:  * Model Name
WPS:  * Model Number
WPS:  * Serial Number
WPS:  * Primary Device Type
WPS:  * Device Name
WPS:  * RF Bands (0)
WPS:  * Association State
WPS:  * Configuration Error (0)
WPS:  * Device Password ID (0)
WPS:  * OS Version
WPS:  * Authenticator
[+] Sending M2 message
send_packet called from send_msg() send.c:116
WPS: Processing received message (len=66 op_code=3)
WPS: Received WSC_NACK
WPS: Unsupported attribute type 0x1049 len=6
WPS: Enrollee terminated negotiation with Configuration Error 15
[+] Received WSC NACK
WPS: Building Message WSC_NACK
WPS:  * Version
WPS:  * Message Type (14)
WPS:  * Enrollee Nonce
WPS:  * Registrar Nonce
WPS:  * Configuration Error (0)
[+] Sending WSC NACK
send_packet called from send_msg() send.c:116
[!] WPS transaction failed (code: 0x04), re-trying last pin
[+] Nothing done, nothing to save.
[+] 0.00% complete @ 2019-03-14 10:59:38 (0 seconds/pin)
WPS: Invalidating used wildcard PIN
WPS: Invalidated PIN for UUID - hexdump(len=16): 94 a3 28 8f 20 5d 51 5e 96 92 eb 78 d1 b6 1e 8b
WPS: A new PIN configured (timeout=0)
WPS: UUID - hexdump(len=16): [NULL]
WPS: PIN - hexdump_ascii(len=8):
     31 32 33 34 35 36 37 30                           12345670        
WPS: Selected registrar information changed
WPS: Internal Registrar selected (pbc=0)
WPS: sel_reg_union
WPS: set_ie
WPS: cb_set_sel_reg
WPS: Enter wps_cg_set_sel_reg
WPS: Leave wps_cg_set_sel_reg early
WPS: return from wps_selected_registrar_changed
[+] Trying pin "12345670"
[+] Associated with 00:8C:54:83:E7:0B (ESSID: Telecom-75753221)
[+] Sending EAPOL START request
send_packet called from send_eapol_start() send.c:48
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
send_packet called from resend_last_packet() send.c:161
^Csend_packet called from send_termination() send.c:142

[+] Nothing done, nothing to save.

This is from running it for a minute but i have tryed more without any result
Please keep in mind that I'm a newbie so maybe I'm doing something wrong

@rofl0r
Copy link
Collaborator

rofl0r commented Mar 14, 2019

[+] Sending M2 message
...
[+] Received WSC NACK

seems the AP cancels the WPS transaction after M2. some or most ISPs that had vulnerable routers in the past opted to "fix" them by simply not completing any more WPS transactions.

@bostonsam
Copy link
Author

bostonsam commented Mar 14, 2019 via email

@rofl0r
Copy link
Collaborator

rofl0r commented Mar 14, 2019

yea, it means the router doesn't do WPS anymore, so there's nothing you can do.

@bostonsam
Copy link
Author

bostonsam commented Mar 14, 2019 via email

@kcdtv
Copy link
Collaborator

kcdtv commented Mar 14, 2019

First of all: Is the PIN mode enabled with a PIN properly configured?
As you do not use your PIN with the -p option I imagine that you did not check your settings
If you do not enable PIN mode and configure a PIN then it is normal that it doesn't work.
For the next time: When you paste a shell output it is very important that you also paste the command that you used to generate the stdout.

@bostonsam
Copy link
Author

bostonsam commented Mar 14, 2019 via email

@Dema323
Copy link

Dema323 commented May 30, 2019

Hey @bostonsam What drivers did you install for your awus1900 ?

@kcdtv
Copy link
Collaborator

kcdtv commented Dec 28, 2019

The only drivers that are compatible with injection and monitor mode (check aircrack-ng github repository for that)... It is quite clear that WPS is not properly enabled or was remotely disabled by the ISP and it is also quite clear after 9 months that bostonsam will not show up to present a proper test result (with WPS enabled and a PIN defined): Issue is closed

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants