找回密码
 立即注册
欢迎中测联盟老会员回家,1997年注册的域名
查看: 2238|回复: 0
打印 上一主题 下一主题

爆破、破解Disduz x 2.5 md5(md5(pass)$salt)密码加密

[复制链接]
跳转到指定楼层
楼主
发表于 2013-2-14 00:03:14 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
测试环境8 I" j2 x: ~3 q# Z+ w+ I' p
OS 名称: Microsoft® Windows Server® 2008 Enterprise
# ]- U# H# F! ~: ], uOS 版本: 6.0.6001 Service Pack 1 Build 6001
$ Q* p* }0 |$ P2 I, lOS 制造商: Microsoft Corporation* O1 {! q$ j/ b# A& K( {, W( i0 P
OS 配置: 独立服务器
- N. A  n8 L. [: `7 ROS 构件类型: Multiprocessor Free2 n3 ^) E8 ~( R
注册的所有人: Windows 用户
( @$ p/ d% n( c) M5 ]) C系统型号: PowerEdge R620; f3 ~6 n- w5 u" H
系统类型: x64-based PC% K' B( i% X5 A+ {. r- }/ w
处理器: 安装了 1 个处理器。2 P- D; K2 v/ \3 M
[01]: Intel64 Family 6 Model 45 Stepping 7 GenuineIntel ~2400
# o6 j9 g/ c# gcat md5.txt" ^, n& a% ~. Q( }" B/ a
3fb78e9bc0b297e3de4e77531766c37a:f29f95 /* = md5中无法查询的。*/
/ V- q& g' }7 n2 x: {: g865a697fb9b4bd9c6737432aaff136bd:22dc87 /* = 304892415 */
! _4 G0 R/ i: a% Q. w15b7a21513f24ffe97d9f9830acf51ad:07626c /* = 123456 */
2 {  S, H0 z6 _. y: X. U- ^' o8 W9 D /* -a 使用穷举模式 -m HASH的类型是VB DISCUZ跟DV加密是一样,?d是代表数字 穷举10个数字 */ hashcat-cli64.exe -a 3 -m 2611 md5.txt ?d?d?d?d?d?d?d?d?d?d& ?' d' K" W" `/ s! z; d
Input.Mode: Mask (?d?d?d?d?d)$ r) W2 P# F9 W% w" a0 B( ], ~
Index…..: 0/1 (segment), 100000 (words), 0 (bytes)0 G) E9 [! O8 Y$ Q& F8 _
Recovered.: 0/3 hashes, 0/3 salts
$ K7 |( ?3 e- F! RSpeed/sec.: – plains, – words
: F- X- q' L& j& u! ~6 S# T* KProgress..: 100000/100000 (100.00%)
/ K8 Q9 d. P9 R" iRunning…: –:–:–:–
" _- W& B3 U$ X* I1 F# R: QEstimated.: –:–:–:–
1 a$ r" o, O7 h+ F8 l. c* E% U15b7a21513f24ffe97d9f9830acf51ad:07626c:123456) t  M2 J7 \4 ~* ]& @
Input.Mode: Mask (?d?d?d?d?d?d)
" ?9 [; `" O- i; OIndex…..: 0/1 (segment), 1000000 (words), 0 (bytes)
1 u- v, \: Z! b& j) fRecovered.: 1/3 hashes, 1/3 salts
" l2 C! h, w, H% K& ?/ cSpeed/sec.: 7.43M plains, 3.72M words
' W- z* ~" p1 v# ^7 CProgress..: 1000000/1000000 (100.00%)
8 y$ ^* B6 k1 N) \5 xRunning…: 00:00:00:012 k3 P; F0 Z0 O! u: a. }6 [0 d* X
Estimated.: –:–:–:–
6 y" n! M# b  Y! D! ~8 s' G3 xInput.Mode: Mask (?d?d?d?d?d?d?d)
% C' |" {8 ^* {+ R6 E' XIndex…..: 0/1 (segment), 10000000 (words), 0 (bytes)9 R9 F- W2 C' n/ p
Recovered.: 1/3 hashes, 1/3 salts
  i7 ~/ H* K: Q  D* KSpeed/sec.: 13.67M plains, 6.83M words
- G2 b5 V. `) i) c) t- @Progress..: 10000000/10000000 (100.00%)
- A1 z- a% J) g  l9 `' A3 gRunning…: 00:00:00:012 Q+ D6 {: w3 x+ {& L4 T0 M" N
Estimated.: –:–:–:–
2 y! x7 H6 |( v% Q; T3 NInput.Mode: Mask (?d?d?d?d?d?d?d?d)$ R4 t/ p5 V7 R. e6 ]
Index…..: 0/1 (segment), 100000000 (words), 0 (bytes)6 t9 O  L0 w: g* h
Recovered.: 1/3 hashes, 1/3 salts
* w" o+ S5 _) A3 V" @" r' WSpeed/sec.: 18.59M plains, 9.29M words& v% P2 h& [; ]/ {* D
Progress..: 100000000/100000000 (100.00%)/ G6 l! b- o* L$ F- H
Running…: 00:00:00:11
# u& R7 a# d/ ?/ t. }* NEstimated.: –:–:–:–! ^! A+ O; [1 L+ |; m$ [4 x
865a697fb9b4bd9c6737432aaff136bd:22dc87:3048924152 g5 y; T! F( [) @; X
可以看到破解 9位3开纯数字密码需要11秒。4 `- c3 ^1 u7 U( d! V; ~
Input.Mode: Mask (?d?d?d?d?d?d?d?d?d?d)
8 I2 P' C+ j6 X7 N( F$ KIndex…..: 0/1 (segment), 10000000000 (words), 0 (bytes)
" r1 `* E6 e% V$ U) a* _$ w) rRecovered.: 2/3 hashes, 2/3 salts
" D3 h+ E! M; a# o4 X* K$ NSpeed/sec.: 12.70M plains, 12.70M words
! x1 S3 C+ k( l+ z( U+ C/ \. f5 k' wProgress..: 10000000000/10000000000 (100.00%)
) u2 l) f: `6 ]0 eRunning…: 00:00:13:07% A. s2 ?) `# ?( K3 ^
Estimated.: –:–:–:–+ v6 ~- v" K8 H7 R* c* g' T: k3 |$ o
而10个数字即需要13分钟,这样的速度如果有服务器是8核或更多,或者自己GPU强劲,会更加快,我测试只是用了一个入门级的CPU。9 n" I4 Y, t' o) ^) i
在这里可以下载到一些字典,不过国人对这些字典貌似无视。
8 A* c+ @& X$ G; X" ohttp://blog.g0tmi1k.com/2011/06/dictionaries-wordlists.html
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表