找回密码
 立即注册
欢迎中测联盟老会员回家,1997年注册的域名
查看: 2121|回复: 0
打印 上一主题 下一主题

爆破、破解Disduz x 2.5 md5(md5(pass)$salt)密码加密

[复制链接]
跳转到指定楼层
楼主
发表于 2013-2-14 00:03:14 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
测试环境8 p4 N# W3 u9 j
OS 名称: Microsoft® Windows Server® 2008 Enterprise
- x" g8 C0 n- lOS 版本: 6.0.6001 Service Pack 1 Build 6001
1 X; Z& K9 v9 J' O- Z# KOS 制造商: Microsoft Corporation0 v: z' q* m3 Z3 w0 ]; T, F
OS 配置: 独立服务器) F' N3 ^) G1 A7 P+ K2 v! G
OS 构件类型: Multiprocessor Free# Q; d" q4 f8 k1 V/ P" @
注册的所有人: Windows 用户) ?" y0 g5 X$ K
系统型号: PowerEdge R620* E( p) e' R0 m- _1 r  `+ U
系统类型: x64-based PC
8 q$ d7 s5 N0 {) t3 r8 g" h处理器: 安装了 1 个处理器。9 R! B5 u0 g6 ^! I# o3 B8 \
[01]: Intel64 Family 6 Model 45 Stepping 7 GenuineIntel ~2400  w! Q0 w, J, b6 q% E
cat md5.txt3 n# s  [% w, _& o9 H
3fb78e9bc0b297e3de4e77531766c37a:f29f95 /* = md5中无法查询的。*/; U/ o8 b2 D, \: `
865a697fb9b4bd9c6737432aaff136bd:22dc87 /* = 304892415 */
$ @' d, I. d/ [! n/ S3 {7 X15b7a21513f24ffe97d9f9830acf51ad:07626c /* = 123456 */: c. X3 Y8 f+ U6 A9 A% s! u
/* -a 使用穷举模式 -m HASH的类型是VB DISCUZ跟DV加密是一样,?d是代表数字 穷举10个数字 */ hashcat-cli64.exe -a 3 -m 2611 md5.txt ?d?d?d?d?d?d?d?d?d?d! r* S) w! D# P3 Z
Input.Mode: Mask (?d?d?d?d?d)
# `% d5 y& U( `8 Z, P7 K$ C5 qIndex…..: 0/1 (segment), 100000 (words), 0 (bytes)
" T% \8 l! X. Y* H' J, pRecovered.: 0/3 hashes, 0/3 salts
( y; x' }: X9 l! e; w* a, RSpeed/sec.: – plains, – words
& l) j" C8 l* `9 C6 _8 [Progress..: 100000/100000 (100.00%)% o: {' `0 E( g1 V7 P$ S/ Y
Running…: –:–:–:–
8 Y- Y9 a7 F% l' ?, o% V, i. QEstimated.: –:–:–:–" {% i" U) s% H- R7 N" g5 _" @* R" E% A
15b7a21513f24ffe97d9f9830acf51ad:07626c:123456! M( C+ S* S5 M! p$ i2 Q
Input.Mode: Mask (?d?d?d?d?d?d)' S' b3 e5 t% G3 M* M0 x* ]
Index…..: 0/1 (segment), 1000000 (words), 0 (bytes)
( `/ [% R, \7 D' ~$ l5 N7 O/ ERecovered.: 1/3 hashes, 1/3 salts* B- N4 \2 o9 p: U2 ?
Speed/sec.: 7.43M plains, 3.72M words
) I4 K' e6 L; }1 PProgress..: 1000000/1000000 (100.00%)
, ]. i) h4 G% B  W% G- \/ ORunning…: 00:00:00:01
1 |( ~( J4 x6 d4 l6 M, \Estimated.: –:–:–:–! O8 r! p- J* x! L0 k
Input.Mode: Mask (?d?d?d?d?d?d?d)
! I8 x; ~0 H8 y. FIndex…..: 0/1 (segment), 10000000 (words), 0 (bytes)
' i( T* b) ]" I( A4 ARecovered.: 1/3 hashes, 1/3 salts5 J' g( l6 i7 y. m/ M3 W
Speed/sec.: 13.67M plains, 6.83M words
, P, ]9 H" C" MProgress..: 10000000/10000000 (100.00%)/ x, }) J  n/ P. B' @4 I* ?
Running…: 00:00:00:01& U; ~: f( I0 q3 o2 t
Estimated.: –:–:–:–
  |! N7 U2 O3 QInput.Mode: Mask (?d?d?d?d?d?d?d?d)/ C' B/ T! ?& M# e
Index…..: 0/1 (segment), 100000000 (words), 0 (bytes)
) Y: W% ?; E6 p# ?$ }& {7 ORecovered.: 1/3 hashes, 1/3 salts7 F! i" x( v+ f' R
Speed/sec.: 18.59M plains, 9.29M words7 E+ f. u  K3 Y7 q
Progress..: 100000000/100000000 (100.00%)5 F) N! @8 X9 E% ~1 G. t
Running…: 00:00:00:11, Z7 ~, c) W) a' V' \
Estimated.: –:–:–:–5 H2 |! J; ^( R5 n. `, s
865a697fb9b4bd9c6737432aaff136bd:22dc87:304892415
+ h' c* _. w9 z1 j7 p1 u. m: j! ~可以看到破解 9位3开纯数字密码需要11秒。
1 Z% Q7 N# G+ w0 r) a' L/ x: FInput.Mode: Mask (?d?d?d?d?d?d?d?d?d?d): P$ T. K0 u% q& m6 R
Index…..: 0/1 (segment), 10000000000 (words), 0 (bytes)
; r0 U% S( A0 `- o6 {& s4 F% SRecovered.: 2/3 hashes, 2/3 salts+ R. q! ^( u4 R- U; \6 i  E7 D
Speed/sec.: 12.70M plains, 12.70M words# u+ Z) ^' k' E7 V' V  t
Progress..: 10000000000/10000000000 (100.00%)4 v  j/ e2 ~, V' V2 `0 v4 c
Running…: 00:00:13:07, J! D. i7 w& D1 [  \/ P
Estimated.: –:–:–:–$ \/ J0 q' ~( ~5 ]
而10个数字即需要13分钟,这样的速度如果有服务器是8核或更多,或者自己GPU强劲,会更加快,我测试只是用了一个入门级的CPU。
8 m9 `/ D5 D9 {6 x, W9 h" y在这里可以下载到一些字典,不过国人对这些字典貌似无视。
) m3 @3 }0 y; d2 S0 e' yhttp://blog.g0tmi1k.com/2011/06/dictionaries-wordlists.html
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表