找回密码
 立即注册
查看: 2918|回复: 0
打印 上一主题 下一主题

爆破、破解Disduz x 2.5 md5(md5(pass)$salt)密码加密

[复制链接]
跳转到指定楼层
楼主
发表于 2013-2-14 00:03:14 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
测试环境1 }  L) W7 d$ {
OS 名称: Microsoft® Windows Server® 2008 Enterprise, t, c# k5 I  }8 d
OS 版本: 6.0.6001 Service Pack 1 Build 6001
0 i+ l! t' G, I0 F- L7 a% POS 制造商: Microsoft Corporation5 @3 T& T+ u! q( i7 A
OS 配置: 独立服务器7 n5 Z2 C  `- c5 |: J0 Q
OS 构件类型: Multiprocessor Free2 i3 Q4 b3 t$ j6 k/ P4 b
注册的所有人: Windows 用户% h# g1 M3 k! P2 X
系统型号: PowerEdge R620
9 J5 x7 a0 S5 x) {% T* S/ `, j2 ?系统类型: x64-based PC
4 x. q: J4 c. p: z+ z0 ~9 K2 {处理器: 安装了 1 个处理器。
- z: b* i/ D- q! j9 p[01]: Intel64 Family 6 Model 45 Stepping 7 GenuineIntel ~24009 C9 k: Y1 m0 l9 n5 n
cat md5.txt- i9 l$ C0 F9 E7 f% w
3fb78e9bc0b297e3de4e77531766c37a:f29f95 /* = md5中无法查询的。*/, o0 I3 j0 r" Z2 P
865a697fb9b4bd9c6737432aaff136bd:22dc87 /* = 304892415 */: q( A; W3 ^: q3 r$ G
15b7a21513f24ffe97d9f9830acf51ad:07626c /* = 123456 */2 z- {, q2 `! U! X5 R! m" b* m2 A
/* -a 使用穷举模式 -m HASH的类型是VB DISCUZ跟DV加密是一样,?d是代表数字 穷举10个数字 */ hashcat-cli64.exe -a 3 -m 2611 md5.txt ?d?d?d?d?d?d?d?d?d?d( Z) b' H" J% ?: U5 v% m
Input.Mode: Mask (?d?d?d?d?d)
) {% l3 S' g$ N  i; M8 P* PIndex…..: 0/1 (segment), 100000 (words), 0 (bytes)
. \5 `+ |/ l( Z6 G& s4 fRecovered.: 0/3 hashes, 0/3 salts
% Y7 L1 H, J( _! c# t" B& hSpeed/sec.: – plains, – words
& x! Z+ J+ a" J0 aProgress..: 100000/100000 (100.00%)7 k* y: A2 H5 e  E' _4 x
Running…: –:–:–:–
- [" R; X& O$ d" B; d; U& R+ jEstimated.: –:–:–:–
  N$ o4 K* N# K3 [7 @15b7a21513f24ffe97d9f9830acf51ad:07626c:1234561 T7 O6 n6 x; F0 c
Input.Mode: Mask (?d?d?d?d?d?d)% P6 F$ F- x) h3 W7 {. S
Index…..: 0/1 (segment), 1000000 (words), 0 (bytes)9 K5 O( R2 w% d* q# [2 s% F4 Y
Recovered.: 1/3 hashes, 1/3 salts) d- f1 M1 @8 I. Z2 w5 F. U
Speed/sec.: 7.43M plains, 3.72M words
" y$ E0 }2 N$ O, @9 H0 @Progress..: 1000000/1000000 (100.00%)
7 ^, a. }) T- RRunning…: 00:00:00:014 q1 a5 y7 U$ V/ T& p
Estimated.: –:–:–:–; k/ a) P) S% e
Input.Mode: Mask (?d?d?d?d?d?d?d)
7 S2 i  J5 [9 n9 s7 xIndex…..: 0/1 (segment), 10000000 (words), 0 (bytes): `- C$ Z) b! ^  Z
Recovered.: 1/3 hashes, 1/3 salts. B% K2 w5 R4 b, [0 j. M1 L2 P2 B
Speed/sec.: 13.67M plains, 6.83M words
2 ?& x' t; s, |$ a9 P7 Q8 \Progress..: 10000000/10000000 (100.00%)
! W( I/ M  |! h7 T% T2 o  _  xRunning…: 00:00:00:01) R( E) ]6 v( _, G2 d& F
Estimated.: –:–:–:–( Y& x! i5 G8 o
Input.Mode: Mask (?d?d?d?d?d?d?d?d)
* u9 h; f7 [; p) Z" e5 h* LIndex…..: 0/1 (segment), 100000000 (words), 0 (bytes)" I! x' ?0 a7 T
Recovered.: 1/3 hashes, 1/3 salts& i7 O" n: ?$ n' h% }! n& k
Speed/sec.: 18.59M plains, 9.29M words( V, M2 H6 n6 y& ]) w& ]
Progress..: 100000000/100000000 (100.00%)
1 J! A4 F5 c" R3 C$ Q( gRunning…: 00:00:00:11
( x% p* y! q: }# z- }Estimated.: –:–:–:–
; V" j9 v: @$ T! F4 p0 b  X9 p; E865a697fb9b4bd9c6737432aaff136bd:22dc87:304892415
9 O( a3 _0 x) A! W+ \+ Z可以看到破解 9位3开纯数字密码需要11秒。" m0 a6 a3 F3 `7 W/ r7 h
Input.Mode: Mask (?d?d?d?d?d?d?d?d?d?d)
% w* \, v# a8 E6 iIndex…..: 0/1 (segment), 10000000000 (words), 0 (bytes)
; v6 A3 S* L; O! Y) j, L6 d4 HRecovered.: 2/3 hashes, 2/3 salts
4 V$ C! k8 N- P5 O0 \) SSpeed/sec.: 12.70M plains, 12.70M words
2 h6 Q$ d8 Q# @* R9 Z: r: FProgress..: 10000000000/10000000000 (100.00%)' A3 y: P9 I6 t
Running…: 00:00:13:079 w4 a" N- W0 E3 c
Estimated.: –:–:–:–
: o9 g# h3 K3 I/ n% _# ?而10个数字即需要13分钟,这样的速度如果有服务器是8核或更多,或者自己GPU强劲,会更加快,我测试只是用了一个入门级的CPU。5 g" D$ f' `  |
在这里可以下载到一些字典,不过国人对这些字典貌似无视。
2 V6 g% G/ b" Z9 [7 H. x( x2 ohttp://blog.g0tmi1k.com/2011/06/dictionaries-wordlists.html
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表