ARP injection in Windows using AirPcap Tx

Finally, I’ve had time to write down my notes on using aircrack-ng with the Airpcap Tx adapter in Windows. Before you read on, please be aware that this isn’t meant to be a guide or tutorial, it’s just my notes. Thanky 🙂


Start capturing:

Fake auth:

Start attack:

Deauth (if we need ARPs):

aireplay-ng –deauth 3 -a BSSIDMAC -c CLIENTMAC \\.\airpcap00

Start cracking:

Worked example:


I’ve prepared a special release of the aircrack-ng tools originally prepared by CACE Technologies on the AirPcap CDROM. It replaces the new aireplay-ng.exe with an older one which, in my tests, appears to perform better.

Download the release of aircrack-ng for AirPcap Tx

how do I find the Mac-address of the Airpcap TX usb adapter? It doesn’t show in ipconfig…

Phil Wiffen

Vic: it’s written on the adapter itself. Usually where the sticky label is 🙂 It doesn’t show up in ipconfig because, technically, it’s not a “real” Windows network adapter.

