Channel: hashcat Forum - All Forums
Viewing all 7847 articles
Browse latest View live

Debugging multi-rules


I'm almost sure there's already a post about this, but I couldn't find it using Google and the forum search. I'd like to use the multi-rules feature in oclHashcat, but want to make sure my rules are working as intended (-> the correct candidates are generated). However, oclHashcat doesn't support the --stdout parameter, while hashcat doesn't support multi-rules. Is there anyway to debug multi-rules as I'm trying to or do I have to debug the rules one by one and then hope that the combination is done as I'm assuming?

Kind regards and thanks in advance,

3 Questions:kHs, No Fan RPM, Speed

Hey folks,

I have two GTX 970 on SLI.

[Image: h0NJt3C.png?1]

After I've started oclHashcat with a WPA hash I was wondering the following:

1.- How many hashes per second represents 296.4 kH/s, or how many hashes are 1kH/s? 
I'm pretty sure this has been already answered but I could not find the answer around.
2.- Why the GPU#2 is showing 0rpm?
3.- I'm having a decent cracking speed?. 
I've installed everything but I'm not sure if that's a decent speed or not. Since I every time I do a benchmark, my screen goes black and just stops until I do a hard reset, so I'm not sure if everything is working as expected or not.


Multi-CPU utilization for combinator attack on a modern GPU


I've read several posts detailing the CPU bottleneck that occurs during combinator attacks (CPU can't generate combinations fast enough for the GPU). Although I am aware of mask/rule workarounds for this issue, I'm wondering whether anyone has successfully employed multiple CPUs, seated on the same motherboard, (or a CPU cluster) to widen this choke point substantially at a reasonable price?

Ocl + Cuda in parallel

Hi everyone.  I currently have a Reference HD 7970.  And I'm trying to Crack a handshake.  The mask is 10 digits  ?d  at this time it's takin 23hrs to Crack it.   I can borrow a asus 970.  My question is how much faster the process will be? And if it's possible to run both gpus t the same time.  Thanks

First Time User - MD5 Help ("Updating" password w/ digits)

As title says, I'm a first time user. I've read through the documentation and I understand how to run the program with its parameters and such. I can't seem to find in the documentation what I am trying to do and I was wondering if someone might be able to point me in the right direction.

I have a "password" of sorts with known length (145 combinations of 2 digit integers from -1 to 36 with spaces in between). Example:
17 -1 00 33 18 12 -1 20 12 -1 31 04 33 30 01 34 11 00 01 13 19 27 11 19 16 23 09 00 16 21 06 09 14 09 07 03 11 28 02 22 25 13 15 34 10 23 14 22 35 00 26 23 09 13 29 34 08 31 21 27 23 13 33 36 30 27 02 10 08 03 13 31 05 08 13 22 18 35 17 01 36 30 33 05 05 27 05 29 04 11 05 25 11 23 -1 34 08 16 04 24 14 10 34 03 10 15 33 20 25 04 12 18 13 00 34 30 26 33 36 24 22 20 29 28 13 18 01 35 00 30 21 32 06 28 08 35 04 16 21 33 24 08 25 22 12

The last 25 combinations are used as a form of "salt" in it's own sense. Crunching the numbers shows that there are (145 numbers)*(38 possibilities)*(2 digits per possibility) = 11,020 possibilities. I obviously know that this would be possible to solve using oclHashcat for MD5 (I forgot to mention it's MD5 encoded). I am wondering what I can do to indicate to oclHashcat that there are spaces after each combination of 2? Each one of the numbers also outputs after 30 seconds so if there might be a way to feed an "update" to oclHashcat indicating that the digits are known since this would exponentially decrease the amount of possibilities every 30 seconds.

I'm using oclHashcat for CUDA drivers on my GTX 970M. If someone could help me with known ways to do this, or point me in the right direction that'd be helpful! Big Grin

P.S. I think my graphics card is good enough for this, but could someone aid me in figuring out how long it might take to break this hash?

New Oclhashcat with keepass - 0 speed

the issue occurs on cracking speed, 
plz have look at this.
(this is after 4min of crecking)

oclHashcat>oclHashcat64.exe -m 13400 -d 1 -a 0 d:\hash d:\55 --weak-hash-threshold 0 -w 3
oclHashcat v2.01 (g67c1500) starting...

Device #1: Tahiti, 2112/3072 MB allocatable, 930Mhz, 28MCU

Hashes: 1 hashes; 1 unique digests, 1 unique salts
Bitmaps: 16 bits, 65536 entries, 0x0000ffff mask, 262144 bytes, 5/13 rotates
Rules: 1
Applicable Optimizers:
* Zero-Byte
* Single-Hash
* Single-Salt
Watchdog: Temperature abort trigger set to 90c
Watchdog: Temperature retain trigger set to 80c

Cache-hit dictionary stats d:\55: 36397290 bytes, 2158325 words, 2158325 keyspace

[s]tatus [p]ause [r]esume ypass [c]heckpoint [q]uit =>

Session.Name...: oclHashcat
Status.........: Running
Input.Mode.....: File (d:\55)
Hash.Target....: $keepass$*2*15081984*222*03bb842d6f465847...
Hash.Type......: Keepass 1 (AES/Twofish) and Keepass 2 (AES)
Time.Started...: Sun Apr 10 12:08:09 2016 (4 mins, 47 secs)
[b]Speed.Dev.#1...:        0 H/s (102.24ms)[/b]
Recovered......: 0/1 (0.00%) Digests, 0/1 (0.00%) Salts
Progress.......: 0/2158325 (0.00%)
Rejected.......: 0/0 (0.00%)
Restore.Point..: 0/2158325 (0.00%)
HWMon.GPU.#1...: 99% Util, 80c Temp, 15% Fan

[s]tatus [p]ause [r]esume ypass [c]heckpoint [q]uit =>

I was trying to tune with -u and -n parametters without anny succes. Any1 can help?

office2hashcat.py strange output

I'm working with a 97-2003 office document and when I run the office2hashcat.py I get a something I'm not sure what to do with.

XOR obfuscation detected, Password Verifier : 18e787d1 (made up numbers, but it's the same length as the output)

Can anyone tell me what's going on here?


Help with simple mask

Why is this working?

hashcat-cli64.exe --stdout -a 3 -m 0 hash.txt -i -1 ?u ?1?1?1?1?1?1?1?1

It seems to be using the hash as charset

hashcat working in new Win10 Bash

If you're unaware Microsoft added Bash support in the latest Windows 10 (Build 14316).  Thought I'd give hashcat a try and it works!

Had to install texinfo from repository manually (probably other packages as well I'm forgetting) but was able to compile from GitHub source.

root@localhost:/mnt/c/Users/forumhero/hashcat# ./hashcat-cli64.bin -b
Initializing hashcat v2.00 with 4 threads and 32mb segment-size...

Device...........: Intel(R) Core(TM) i5-5300U CPU @ 2.30GHz
Instruction set..: x86_64
Number of threads: 4

Hash type: MD4
Speed/sec: 42.87M words

Hash type: MD5
Speed/sec: 34.78M words

This is awesome because we can now run Windows as the OS and have the ability to compile latest code for hashcat and other tools as well.

root@localhost:/mnt/c/Users/forumhero/hashcat# uname -a
Linux localhost 3.4.0+ #1 PREEMPT Thu Aug 1 17:06:05 CST 2013 x86_64 x86_64 x86_64 GNU/Linux
root@localhost:/mnt/c/Users/forumhero/hashcat# ls -lh /mnt/c
ls: cannot access /mnt/c/Documents and Settings: Input/output error
ls: cannot access /mnt/c/hiberfil.sys: Permission denied
ls: cannot access /mnt/c/pagefile.sys: Permission denied
ls: cannot access /mnt/c/swapfile.sys: Permission denied
total 444K
-rwxrwxrwx 1 root root 396K Apr  3 16:21 bootmgr
-rwxrwxrwx 1 root root    1 Apr  3 16:21 BOOTNXT
drwxrwxrwx 2 root root    0 Apr  3 16:33 Data
drwxrwxrwx 2 root root    0 Apr 11 17:17 Dell
d????????? ? ?    ?       ?            ? Documents and Settings
drwxrwxrwx 2 root root    0 Apr 11 17:12 drivers
-????????? ? ?    ?       ?            ? hiberfil.sys
drwxrwxrwx 2 root root    0 Apr 11 17:19 Intel
-????????? ? ?    ?       ?            ? pagefile.sys
drwxrwxrwx 2 root root    0 Apr  3 16:33 PerfLogs
drwxrwxrwx 2 root root    0 Apr 11 17:18 ProgramData
drwxrwxrwx 2 root root    0 Apr 11 17:18 Program Files
drwxrwxrwx 2 root root    0 Apr 11 17:18 Program Files (x86)
drwxrwxrwx 2 root root    0 Apr 11 16:56 Recovery
drwxrwxrwx 2 root root    0 Apr 11 17:01 $Recycle.Bin
-????????? ? ?    ?       ?            ? swapfile.sys
drwxrwxrwx 2 root root    0 Apr 11 17:17 System Volume Information
drwxrwxrwx 2 root root    0 Apr 11 17:16 Users
drwxrwxrwx 2 root root    0 Apr 11 17:34 Windows

Question on hardware lifespan

Hey guys,
I was wondering how long is the average lifespan of your cards... I'm building a computer from scratch and I'm thinking about purchasing a single GTX 970 to try my hand at password cracking. Now, this is a really amateur setup, but I don't plan on cracking passwords 24/7 for a year, this is not the main purpose of this box. It will be, however, one of the main purposes for the graphics card, as I rarely game... So I was wondering if the card is stuck with an hash for a couple of months, how long can I expect the card to withstand the abuse? I'm planning on a fairly decent air cooling setup and I'll be closely monitoring the temperatures...


Poll for new algorithm


Are you always launching a forum poll before deciding which new algorithms to implement to the next version?
I remember seeing this a couple of times.

A good initiative anyway.

Regards, BigBlackNose

OSX 10.10 hash

I've been following this guide to get the plist and ended up generating a hash using this hash generator  . I'm running hashcat 2.00 and also referenced this video 

I tried running this command
hashcat-cli64.exe -m 7100 -output-file=cracked.txt --remove hash.txt wordlists/

I end up getting

C:\Users\xxxxxxx\hashcat-2.00>hashcat-cli64.exe -m 7100 -output-file=cracked.txt --remove hash.txt wordlists/
Initializing hashcat v2.00 with 12 threads and 32mb segment-size...

Skipping line: ・ソ$ml$xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx(signature unmatched)

No hashes loaded

Any idea what might be causing the problem?

Support for Nvidia GeForce 9300M GS

Hi, i only have macbook air I7 2014, but it have bad GPU (Intel Graphics 5000) and Old PC with GeForce 9300M GS. But it is not supported by olcHashcat, also tried old versions like 1.35 and 1.20, changed time and date of PC, but no luck.. It say that "Shader Model 1.0 - 1.3 Based GPU Detected".. What version you recomend use?
Right now i only can run Hashcat on macbook (VMware Kali linux), its using CPU and is very slow (1600 WPA2 passwords/second).. I think that even old video card would be able to decode WPA2 Passsword fastest way that CPU running over VMWARE on MAC.. Buy new Graphic card, isnt option to me as this old PC is ALL in One..
Thank you guys !

Hashcat rules handling (native *.rule files) added to JtR

JtR (bleeding-jumbo), can now handle the native hashcat .rules files.  There is also a document added to the john package, listing the syntax needed to be added to make it work (mostly to work around escape character requirements for some rules in john, due to the pre-processor).

The addition of these rules has shown a few differences between the tools.  The differences are on 'edge' conditions.  The notable rules are i x and O.

hashcat logic is to leave word alone, unless the letter (or full range of letters) are within the word.

john logic is to do 'best case' mangling, where if any of the range is in the word, then that is done, and for the 'i', if the insert is past end of word, it is treated as a $

The way I have implemented rules in 'hashcat logic' mode, I get the same results from john as from hashcat.  But it may be nice to have both tools producing the same candidate stream from the same input words and rule set.

Triple Dictionary Attack

Using oclhashcat, is there a way to use a 3 dictionary combinator attack? Separating each work with a hyphen?

Not sure how to crack a chained SHA-256 hash

I've got a chain of hashes where each one is put through SHA-256 to produce the next, but I need a way to work out a hash earlier in the chain via brute-force. How would I set this up with hashcat?

If my problem is unclear, imagine my hasher takes a number, triples it, then applies modulo 50. If I start with 12, I get:
12, 36, 8, 24, 22, 16, 48
I need a way of working out that 8 came before 24, but it doesn't need to be 8 specifically. It can be 108, it will still work fine for what I need. Ideally, it should be able to state what was a few back (that 12 was 4 before 22).

Help me!!!

How can i fix this error? help me please!!!

Error: shader mode 1.0 -1.3 based GPU detected. Support for CUDA was dropped by NVIDIA
Remove it from your system or use -d and select only supported cards

Incremental Mask Attack

I understand how the incremental mask attack works and all.

So when I write a command like this:
-m 0 -a 3 --increment --increment-min 2 --increment-max 5 hash.txt ?l?l?l?l?l

it gives the following trials:

However, how about if I want to make increments, and with each increment I want to try numbers from 0000 to 9999.
In other words I want the following trials:


Which is basically joining a name with a number, but without knowing the length of the name, each name length needs to be joined with the same length of numbers which is 4 numbers.

Thanks in advance.

Windows 10(64) and 3x R9 290

Hello everyone,

Normally I run my config in Ubuntu (According to the sweet manual from this website) with minor issues (no temp).
During a lazy Sunday I thought I'll give Windows 10 a try in combination with oclHashcat. After installation (no errors) I checked my device manger and it showed only 2 of my graphic cards. I used the latest crimson drivers.

Using my bff google i found out that it could be solved by performing a clean install with the latest drivers..
I performed the uninstall procedure (app manager AMD) booted in safe mode and used Guru3d's display driver uninstaller to completely wipeout any AMD existence. Strange enough Guru3d's tool was able to identify my 3 GPU's during the removal procedure. After that I did a clean install but the issue was still there.

Also AMD Settings gives a notice : No AMD Graphics driver is installed, or the AMD driver is not working properly ...

My GPU's are Sapphire Vapor-X R9 290X, (HAWAI).

Anyone the same issue ? is there a limit in the amount for GPU's for Windows 10 ?

thnx Everyone !

cleaning my .cap before converting to hccap?

hi! I would like to know if I need to clean my wpa handshake capture with aircrack-ng before converting it to hccap? When I use the tool wpaclean in kali-linux It seems to remove important part of 4 ways handshake... Can I just use the file with all the junk traffic and the full handhsake inside it without having problems? I dont want to spend a day to crack a broken handshake. 


If I got the 4 way handshake like this picture for the same client I should be ok even with a .cap file not clean?
Viewing all 7847 articles
Browse latest View live

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>