27.1.10

Cain & Abel

Cain & Abel is a very popular tool and penggunaannyapun very simple way, to suck out Cain & Abel can be taken at TOOLS topic.

The steps that must be done:

1. Install the program Cain & Abel
2. Run Cain
3. To perform sniffing action, click the Sniffer tab
4. Click the tab APR
5. Click the menu Configure - configure dialog will appear containing about some configuration tab - click the Sniffer tab - will appear to some information about the adapter, IP Address, etc. - click on a line below the last menu that contains a description of our computer IP address, MAC, etc. -- then OK.
6. Cain's active by clicking the Start button
7. So that our computers have the routing capabilities, click the Start button APR
8. Run Command Prompt
9. Communicate with the target computer by pinging the IP address the target computer, for example c: \ ping 192.168.0.2, in some cases we have to do pinging (in my experience, pinging is the fastest way to communicate with the target computer) is more than one computer , it aims to make another computer as a gateway.
10. In Cain tables there are two parts of the same bermenu Status, IP Address, MAC Address, etc.. To get started, click on the table top, then click the plus sign (Add to list)
11. New dialog will appear ARP Poison Routing. Click on the target computer IP Address in the left column and click on the gateway computer IP Address on the right hand column. Click OK

After the IP Address into the list, we are just waiting for the packet traffic is caught by Cain. To find out the results of a captured, click the tab passwords.

- How to work from Cain:

Cain & Abel poison the ARP table of the target computer so that the communication between the gateway and the target computer must go through our computers.

- Problems that are often found:

Cain & Abel is often identified as a virus by the antivirus, this is because the antivirus heuristic feature of second-guessing a file as a virus, this function aims to identify new viruses that have not been detected by the antivirus databases. However, this facility can sometimes be the "false warning" and assume certain programs, especially hacking tools as viruses, even other antivirus virus was also considered.

- How to prevent this snifing action:

To prevent this action, make changes to the MAC Address, in this type of MAC that we will change from dynamic to static. Way: c: \ arp-s [IP Address] [MAC Address] and to restore to its original state, change the attribute-s to-d

No comments:

Post a Comment