When I make ARP spoofing(ARP poisonig) application, I met some trouble.

Normal sniffer(such as wireshark) can not sniff ARP infection packets those Cain sends periodically to the victim host.


First case

1. Start sniffing in Wireshark.

2. Start APR in Cain.

3. Wireshark can not sniff ARP packets those Cain sends.



Second case

1. Start ARP in Cain.

2. Start sniffing in Wireshark.

3. Wireshark can sniff ARP packets those Cain sends.



Is there anyone who can explain what ths problem is?




OS : Microsoft Windows Vista ( turning off all vaccine applications including Windows firewall )

WinPcap version 4.1.1

Cain & Abel version 4.9.35

Network Adapter : Atheros AR5007EG Wireless Network Adapter (wireless LAN card driver)


ps : It works fine(sniffer can sniff ARP packets) in wire LAN card driver.