找回密码
 立即注册
欢迎中测联盟老会员回家,1997年注册的域名
查看: 2122|回复: 0
打印 上一主题 下一主题

爆破、破解Disduz x 2.5 md5(md5(pass)$salt)密码加密

[复制链接]
跳转到指定楼层
楼主
发表于 2013-2-14 00:03:14 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
测试环境! [+ |' \4 f6 Q' {( L' s
OS 名称: Microsoft® Windows Server® 2008 Enterprise
3 h! `7 L: D7 HOS 版本: 6.0.6001 Service Pack 1 Build 6001/ V$ c( n2 |) H. R4 v+ C) X7 I' w( Q9 K
OS 制造商: Microsoft Corporation
0 }  o- y6 A+ ~0 R- ]6 j5 c9 k. nOS 配置: 独立服务器  l3 O% |3 \# K" @7 i
OS 构件类型: Multiprocessor Free
# H9 ]/ S; E+ g% f, x1 f注册的所有人: Windows 用户
8 o0 V( X7 y; b! A系统型号: PowerEdge R6206 T2 v, I- ^  |/ w7 L. X
系统类型: x64-based PC+ _: |7 |' s  ?) [  i9 Y
处理器: 安装了 1 个处理器。2 H5 L$ D! |0 J6 u; p: j- P" ?
[01]: Intel64 Family 6 Model 45 Stepping 7 GenuineIntel ~24001 V2 S8 ]* D, h, w0 E/ f% H. W6 r
cat md5.txt! x) `4 X) L8 }# T0 N5 N: f
3fb78e9bc0b297e3de4e77531766c37a:f29f95 /* = md5中无法查询的。*/8 c1 U6 N/ D: r+ [( d
865a697fb9b4bd9c6737432aaff136bd:22dc87 /* = 304892415 */2 w) H2 [0 K8 f+ O
15b7a21513f24ffe97d9f9830acf51ad:07626c /* = 123456 */
7 V8 \# {9 H' g1 u /* -a 使用穷举模式 -m HASH的类型是VB DISCUZ跟DV加密是一样,?d是代表数字 穷举10个数字 */ hashcat-cli64.exe -a 3 -m 2611 md5.txt ?d?d?d?d?d?d?d?d?d?d/ I' L0 g& @8 o& V# H  U
Input.Mode: Mask (?d?d?d?d?d)/ }+ J. U$ w6 S$ F% C7 _" \
Index…..: 0/1 (segment), 100000 (words), 0 (bytes)
# l7 d/ ?3 R: y* w- G9 p0 H+ |Recovered.: 0/3 hashes, 0/3 salts
/ L& U0 Q9 `+ r1 N- l0 S8 E  a9 NSpeed/sec.: – plains, – words
4 g8 c% D# }3 C) V: M: e: H1 sProgress..: 100000/100000 (100.00%)# @6 _" N. Q2 ], j
Running…: –:–:–:–
9 s$ v+ S7 B. v1 T8 xEstimated.: –:–:–:–
& f$ x6 T- ?, p& R2 ~0 ?& w' h15b7a21513f24ffe97d9f9830acf51ad:07626c:123456
4 B2 f7 C/ |$ Y6 O# k. i4 d! |( jInput.Mode: Mask (?d?d?d?d?d?d)
) x! s, y7 ~( DIndex…..: 0/1 (segment), 1000000 (words), 0 (bytes)
: ]9 \2 @% ]/ K9 B; hRecovered.: 1/3 hashes, 1/3 salts( Q; ~- h" ]3 @9 z
Speed/sec.: 7.43M plains, 3.72M words: M3 A" L6 v8 a% Y4 O
Progress..: 1000000/1000000 (100.00%)
% D( u& \4 g, bRunning…: 00:00:00:01/ @$ X& N( S6 @  G+ w( m# f9 n
Estimated.: –:–:–:–! v$ D0 Y0 N  H
Input.Mode: Mask (?d?d?d?d?d?d?d), N% R) W0 E  K8 m* g5 z
Index…..: 0/1 (segment), 10000000 (words), 0 (bytes)
2 ?% p3 l1 s, H" ~$ R) x( w+ G, `Recovered.: 1/3 hashes, 1/3 salts
" l$ k2 z0 q/ dSpeed/sec.: 13.67M plains, 6.83M words7 z) n5 H; m! P" D
Progress..: 10000000/10000000 (100.00%)
* F" v7 M. p" DRunning…: 00:00:00:01
7 z9 E& b! I" {- _. j2 c* s8 d$ cEstimated.: –:–:–:–
4 j8 r! m" S( ~; fInput.Mode: Mask (?d?d?d?d?d?d?d?d)5 A; I6 h8 b. Z" R
Index…..: 0/1 (segment), 100000000 (words), 0 (bytes)
3 t! `' w" l7 X# Q  ORecovered.: 1/3 hashes, 1/3 salts" j5 p3 i6 \; I+ }3 y9 X3 E# ?
Speed/sec.: 18.59M plains, 9.29M words
3 P$ H/ K5 T, u1 M: fProgress..: 100000000/100000000 (100.00%)
1 S2 N! B6 P/ V# d7 tRunning…: 00:00:00:11' A( I& W5 z& g; U. x1 ^/ e
Estimated.: –:–:–:–& U2 V$ }7 z- Y6 z, ?$ z
865a697fb9b4bd9c6737432aaff136bd:22dc87:304892415/ a! T) e9 O6 T* Z0 O1 T8 Q
可以看到破解 9位3开纯数字密码需要11秒。+ \' h" C0 }$ ~; B3 ?  o
Input.Mode: Mask (?d?d?d?d?d?d?d?d?d?d)
' O( o  \% X6 S) pIndex…..: 0/1 (segment), 10000000000 (words), 0 (bytes)3 F  h* N+ o0 Y- _% s( h% S! ]7 }% b
Recovered.: 2/3 hashes, 2/3 salts$ a5 a* J, W4 U8 E' h
Speed/sec.: 12.70M plains, 12.70M words9 b5 J# y5 O6 A$ s+ @
Progress..: 10000000000/10000000000 (100.00%)* I' O# j  B! A4 a5 H) D
Running…: 00:00:13:07) M5 W. ?) Q5 L1 s3 N8 a
Estimated.: –:–:–:–( M& O5 L, X; i
而10个数字即需要13分钟,这样的速度如果有服务器是8核或更多,或者自己GPU强劲,会更加快,我测试只是用了一个入门级的CPU。
' s# a, h9 ~( o( t7 U# g& x% b在这里可以下载到一些字典,不过国人对这些字典貌似无视。% u7 ]/ R/ w3 Y* L
http://blog.g0tmi1k.com/2011/06/dictionaries-wordlists.html
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表