Quantcast
Channel: hashcat Forum - All Forums
Viewing all 8103 articles
Browse latest View live

slow cracking WPA2 on GeForce GT320M

$
0
0
Hello, i dont understand why is cracking on my GT320M 1024Mb 1100Mhz slow.
It is only about 1150/s . I got 6GB RAM , Core i5 2x2,27Ghz and 64bit windows . I have also installed latest drivers. So what is wrong ?

worldlist extra rules

$
0
0
how to treat a wordlist file as follows,and that such work keys -a6 -a7 ?

dicfile.txt
aa
bb
cc


aaaa
aabb
aacc
bbaa
bbbb
bbcc
ccaa
ccbb
cccc

and how combine -a6 -a7 ?

md5 unix blank password hash

$
0
0
md5 unix blank password hash not recognise, why?
John the ripper - recognise

Legal agreements for password audits.

$
0
0
For those of you performing password audits for clients. What do your contracts for service look like? Our legal counsel is having an issue with us providing this service due to "privacy" issues. I think they are mostly worried about what would happen if the information got out post audit. Not by fault of our own, but by someone placing blame because they were aware of the audit. Any comments are appreciated.

Encrypted containers

$
0
0
[Disclaimer--this is my first foray into password cracking using such an awesome tool, so I'm naïve at most of this. Be gentle.]

My scenario: I have an encrypted container created by a program called MyWinLocker 3 (aka Yo-Safe) in a child exploitation case. My suspect gave me some of his former passwords and I think the keyspace I'm dealing with is about 8 to 10 characters. The password itself is probably in plain English and has a few numbers slapped together. The part I don't understand is whether hashcat can be used to directly attack the encrypted container to find which password allows it to be decrypted. The application developer website claims the app is using AES based encryption, though I don't know in what bit strength.

My question: Can I used hashcat to attack this encrypted container with some known password permutations and have any real chance of succeeding without knowing where a password hash would exist?

The app has a GUI and lets me guess infinitely (it doesn't lock me out,) but being forced to use the GUI and wait a few seconds between each attempt is brutally futile.

Thanks for any and all help and replies!

Raspberry Pi

$
0
0
I get that its not all that powerful. That being said, its biggest asset is its graphics processing abilities. I don't *personally* have a lot of compute resources, with my everyday computer being OSX-based, ...but I have all the time I have left.

Do any of the family of Hashcats (preferably ocl-*) work on the raspbian install? Has anybody here actually done it? Any pointers/tips?

Thanks

SMF

$
0
0
In order to have something meaningful to test hashcat with, I went onto my forum and using phpmyadmin, exported the usernames & password hashes to separate files. I have the first 200 hashes and usernames in separate files. I've thrown a variety of options at it and expected to at least reveal low-hanging fruit but haven't turned up any plains.

I'm roughly following/borrowing (*.[rule|dic]) from here:
http://www.adeptus-mechanicus.com/codex/...ateasy.php

../hashcat-cli32.bin -a0 -r linkedin2012.rule -e smfMembers-top200.salt -m121 -o results.txt -n8 --remove smfMembers-top200.hash linked.dic

Nothing after 10 minutes (this time).

../hashcat-cli32.bin -a3 -1 ?l?u?d?s -m121 -e smfMembers-top200.salt -n8 --remove smfMembers-top200.hash ?1?1?1?1?1?1?1?1

Nothing after some other amount of time.


All of that's got me wondering if I have the hashes in the right format. They're essentially 40 Alphanumeric chars w/ no ":" separating the hash from the salt. Is this the right format for what I'm trying to show?

Anything obvious that I'm not doing right?

Incompatible with kernel update *.48

$
0
0
after updating linux system from 3.0.0.45 to 3.0.0.48 i get the following error:

FATAL: Module fglrx not found.
Error! Fail to load fglrx kernel module! Maybe you can switch to root user to load kernel module directly
X Error of failed request: BadRequest (invalid request code or no such operation)
Major opcode of failed request: 136 ()
Minor opcode of failed request: 19
Serial number of failed request: 12
Current serial number in output stream: 12

command was :

"./oclHashcat-plus64.bin -a 0 -m 0 --remove /media/*******/********/Hashes/******** --outfile-format=2 --outfile=cracked --rules-file=/media/*****/*******/Rules/*********.txt /media/******/********/Dictionaries/*******.txt"

Amd driver 13.1 installed !
Linux 64 bit !


BytePuker

EDIT:

after downgrading to *.45 everything works fine again !!

*using root-shell was no solution for *.48 problem

BytePuker

UTF-16 in dictionary files

$
0
0
For those that are working with hashes that involve UTF-16, there are problems with oclHashcat.

For example, consider the hash of the UTF-16 string 234567, which is 69ab...30e37fa0. The ASCII or UTF-8 encoded version of this string would be 508d...58cfb975.

When a dictionary file used with oclHashcat or hashcat contains a UTF-16 string, both hashcat and oclHashcat do properly read it, and will properly process it. In oclHashcat, if a hash resolves to a UTF-16 password, the password is truncated at the first UTF-16 character (really, the first NUL), no matter what output format is selected.

This is made even more vexing when you are using rules - it becomes virtually impossible to figure out what the password might have been.

So, if you are using UTF-16 in your dictionaries, beware; oclHashcat will not properly output the passwords. I have filed a ticket on this.

Until this is fixed, you may wish to verify your passwords with hashcat, after the oclhashcat.

stop working !

$
0
0
Why my oclHashcat-plus stoped working ? what's the salutation ? Please help me.
My GPU is HD7750.

.png  Capture.PNG (Size: 207.36 KB / Downloads: 15)

Not working after reverting catalyst drivers

$
0
0
I was using the latest Catalyst, and noticed the warning not to use them, and noticed it was very slow compared to what I was expecting. So I reverted to Catalyst 13.1, and just to be sure I deleted the oclhashcat-plus directory and re-extracted, and rebooted.

Now it just refuses to work. If I run it on a valid hash (including the example commands) it unceremoniously dumps me out and tells me "oclHashcat-plus64.exe has stopped working". I'm using Windows 7 64 bit, the GPU is an AMD 6900 series, either 6950 or 6970 (can't seem to find out without opening the case and looking).

Thanks.

Need Help Secure Boot and Certificates

$
0
0
Hey guys, BytePuker again Wink

I have a big problem with one of my new samsung laptops. I had Linux installed (Ubuntu) and wanted to change to Win8 for better compatibility with adobe photoshop etc.

I wanted to use secure boot with win8 so i activated it in the bios. Next step was to configure secure boot. I enabled the option to clear current certificate cache (here was my mistake I think).
Atfer hitting F10 for save and exit the laptop restarted and does nothing. Sad

Only black screen with disabled keyboard and no choice to boot from any dvd or the hdd usb etc. I searched alot around secure boot and bios reset. Problem is that either in the samsung handbook nor any forum etc stands sth about my problem. I cant access the bios or bootable device like win dvd. Also the Laptop has no cmos batt to reset bios. On the motherboard is no jumper for resetting it (I found none ^^ )

I hope u linux/windows cracks can help me Smile

Laptop model: Samsung NP550P7C-S0EDE

BytePuker

Radeon HD 7990 Review

$
0
0
Just unboxed an XFX Radeon R7990 and decided to try it out with lite.

First impression, the card is extremely sturdy and well-built. The shroud is all metal. The heatsink and fan setup appear adequate at first glance. The card also has a metal backplate, which we have not yet seen from AMD with this generation of cards. The card is very long, seems longer than a 6990, though I didn't have one handy for comparison.

I installed it in a mid-size ATX case with quiet fans. The case fans do not push very much air, as they are designed for silent operation rather than performance. The 7990 is the only GPU in this case. I had to remove some hard drive caddies to make it fit, because it's so long.

This system is running Ubuntu 12.04 desktop with Catalyst 13.4. Immediate problem: this card does not work with 13.4. Catalyst 13.4 reports that no supported devices are installed, and xorg defaults to the vesa driver.

It is now working with 13.6 beta. This driver reports itself as "13.101," I'm not sure why. But the card is now working. I can also see that this card comes out of the box clocked at 1000 Mhz, instead of the advertised 950 Mhz. I also noticed that the memory is well overclocked as well, running at 1500 Mhz instead of 1375 Mhz.

Running lite 0.15 with --force, GPU performance is exactly to be expected. Same speed as 2x 7970. However we have an immediate problem with heat.

Even though this is a reference design card, it dissipates heat like an OEM cooler. The fans vent the air inside the chassis, not out the back of the card. There is no airflow coming out the back of the card at all, it is all coming out of the top of the card. Since this case does not have very powerful fans, the fans are not able to exhaust all the hot air the GPUs are pushing into the case.

Running lite, temps were around 86C for the GPU driving the display, and 80C for the second GPU. However, when the benchmark got to MD4. the temp on both GPUs spiked up over 90C. The GPU driving the 1080p display got up to 95C before I killed it.

I set the clocks at what would be a normal stock clock for a 7970 (non-Ghz edition), which is 950/1375, and manually set the fans to 100%. It ran about 6C cooler for all the algorithms, until we got to MD4 again, which made it spike up to 92C.

I dropped the core down to 850 Mhz and benchmarked just MD4 for 300 seconds, and while it stayed around 86C for most of the run, by the end it had reached 90C.

I think that if this card were used in a chassis which had sufficient airflow, such as a server chassis or open-air system, then it would not be too much of a problem cooling these cards. But it seems the largest reason AMD is able to claim that these cards are so quiet is because it's relying on the chassis fans to cool the cards. So I would not advise one to use this card in a desktop chassis at all, unless your desktop is populated with Delta fans.

Next week I will have the opportunity to install multiple 7990s into a proper server chassis with powerful fans, and I will let you know how the 7990 fares under those conditions.

oclHashcat-plus restore file format struct

$
0
0
Hi,

I couldn't find any documentation on the restore file struct for oclHashcat-plus. I'm not convinced that it's the same as oclHashcat-lite because of the file size differences.
Atom, if you could drop me the struct that would be great! I'm trying to distribute oclHashcat-plus workload in the same way as oclHashcat-lite (using pw_skip and pw_limit). I'm still thinking about how I'm going to stop it at some limit :/

Regards,
Otter.

Does restore affect --gpu-accel?

$
0
0
It seems restore remembers --gpu-accel settings. At default I was getting around 57,000 /s. I decided to lower accel to 4 which put me around 49,000 /s. After quiting and then restoring the session, speed seems to stay at 49,000 and 80% utilization even without a --gpu-accel parameter.

oclHashcat-plus64.exe -m 2500 -d 1 -o rangerkey ranger.hccap g:\noname2 == 57,000 /s
oclHashcat-plus64.exe -m 2500 -d 1 -n 4 -o rangerkey ranger.hccap g:\noname2 == 49,000 /s (QUIT)
oclHashcat-plus64.exe -m 2500 -d 1 --restore -o rangerkey ranger.hccap g:\noname2 == 49,000 /s
oclHashcat-plus64.exe -m 2500 -d 1 --restore -n 64 -o rangerkey ranger.hccap g:\noname2 == 49,000 /s

Is this a coincidence or is it supposed to do that?

how can i update hashcat on bacntrack ?

$
0
0
i just start using hashcat
but when i try to crack a password i get this !
ERROR: this copy of hashcat is outdated. Get a more recent version.
i have BackTrack r3 ...

if i download the last version from website
when i try to crack i get this
ERROR: this copy of hashcat is outdated. Get a more recent version.
Purpose

Software has been created for scientific, analyzation, demonstration and
sportive reasons. It is a dual-use tool under federal german law in the
meaning of the Convention on Cybercrime, Budapest, 23.XI.2001. Usage
restricted to legal use.

License agreement

1. All copyrights to this program are exclusively owned by the author --
atom

2. You may only use this software for legal purposes.

3. THIS PROGRAM IS DISTRIBUTED "AS IS". NO WARRANTY OF ANY KIND IS
EXPRESSED OR IMPLIED. YOU USE THIS SOFTWARE AT YOUR OWN RISK. THE AUTHOR
WILL NOT BE LIABLE FOR DATA LOSS, DAMAGES, LOSS OF PROFITS OR ANY OTHER
KIND OF LOSS WHILE USING OR MISUSING THIS SOFTWARE.

4. If your countries law(s) do not allow restrictions as in (3.) you
need to get an additional, written and individual license by the
copyright holder to use this software. Unless you have such a
license, you are not allowed to use the software.

5. You may not rent, lease, sell, modify, decompile, disassemble, or reverse
engineer this program or any subset of this program. Any such unauthorized
use shall result in immediate and automatic termination of this license and
may result in criminal and/or civil prosecution.

6. Redistribution of the original package, in whole or in part, or a modified
version as needed for distribution packaging is permitted without restrictions.

Enter YES in uppercase if you accept this EULA:

infiniband setup guide?

$
0
0
Hi,
Can anyone point me to the working infiniband setup guide for using vclhashcat?
I've tried several guide that found in google, found this one is quite easy:
http://pkg-ofed.alioth.debian.org/howto/...wto-4.html

And then 2 machines can ping each other, but when running vclhashcat, it only detect 3 cards in local computer, then kernel, and just frozen there
eg:
Device #1: Cayman, 1024MB, 800Mhz, 24MCU
Device #3: Cayman, 1024MB, 800Mhz, 24MCU
Device #3: Cayman, 1024MB, 800Mhz, 24MCU
Device #1: Kernel ./kernels/4098/m0000_a1.Cayman_938.2_CAL 1.4.1741.kernel (490316 bytes)

then it does nothing.

Help please Sad
Will reward if required.

VLC/IB cluster: SDR vs FDR adapters

$
0
0
Hello,

in most threads about VLC/IB clusters, 4 x SDR hardware is recommended.
As I understand, latency is the most critical factor for a VLC/IB cluster.

What is the reason that 4 x SDR hardware is recommended? (Price? Well suppored by the VLS software)?


Thank you very much for any feedback!

John

base64 decode doesn't handle alternative alphabets

$
0
0
base64 allows for alternate 62nd and 63rd characters. The LDAP {SSHA} scheme allows for this, but cudaHashcat-plus 0.14 doesn't seem to like. I get either a crash or the offending character in the hash is converted to an 'A'. For example:

foobar hashes to:

{SSHA}cdE9?c1HqhqfM7stWIbexLPqadQQUuVy

% ./cudaHashcat-plus64.bin -m 111 -d 2 ../ck3 ../foobar.dict
cudaHashcat-plus v0.14 by atom starting...

Hashes: 1 total, 1 unique salts, 1 unique digests
Bitmaps: 8 bits, 256 entries, 0x000000ff mask, 1024 bytes
Rules: 1
Workload: 128 loops, 80 accel
Watchdog: Temperature abort trigger set to 90c
Watchdog: Temperature retain trigger set to 80c
Device #1: skipped by user
Device #2: Quadro K5000, 4095MB, 705Mhz, 8MCU
Device #1: Kernel ./kernels/4318/m0110_a0.sm_30.64.ptx

Generated dictionary stats for ../foobar.dict: 7 bytes, 1 words, 1 keyspace

NOTE: autotuned --gpu-accel from 80 to 1


Session.Name...: cudaHashcat-plus
Status.........: Exhausted
Input.Mode.....: File (../foobar.dict)
Hash.Target....: {SSHA}cdE9Ac1HqhqfM7stWIbexLPqadQQUuVy
Hash.Type......: SSHA-1(Base64), nsldaps, Netscape LDAP SSHA
Time.Started...: Tue Jun 18 16:51:52 2013 (1 sec)
Time.Estimated.: 0 secs
Speed.GPU.#1...: 0/s
Recovered......: 0/1 (0.00%) Digests, 0/1 (0.00%) Salts
Progress.......: 1/1 (100.00%)
Rejected.......: 0/1 (0.00%)
HWMon.GPU.#1...: 0% Util, 35c Temp, 30% Fan

Started: Tue Jun 18 16:51:52 2013
Stopped: Tue Jun 18 16:51:53 2013

base64 definition: http://tools.ietf.org/html/rfc1521.html#section-5.2

HashCat almost there but doesn't work

$
0
0
I have tried it with no success. Read WIKI, I tried running this thing as .bat file it launches, but it does not do anything.

[Image: CFYKqEx.png]

[Image: 7eTTTST.png]

[Image: 9rJwrdM.png]
Thanks.


When I do press YES that I accept the ToS it does "initializing hashcat v0.45 by atom with 8 threads and 32 mb segment-size..

then "/fev no such file or directory?
Viewing all 8103 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>