找回密码
 立即注册
查看: 3011|回复: 0
打印 上一主题 下一主题

爆破、破解Disduz x 2.5 md5(md5(pass)$salt)密码加密

[复制链接]
跳转到指定楼层
楼主
发表于 2013-2-14 00:03:14 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
测试环境4 Y% i8 w+ n& |
OS 名称: Microsoft® Windows Server® 2008 Enterprise
' u+ [4 W  r4 I% ~' B7 dOS 版本: 6.0.6001 Service Pack 1 Build 6001
+ Q/ C# `8 N6 ?OS 制造商: Microsoft Corporation* Y0 i# v! j& T2 S1 S
OS 配置: 独立服务器8 _: `4 T5 @7 ?) A; O. s
OS 构件类型: Multiprocessor Free
- L/ x5 F# i( e% ]: B0 ^8 P7 W% f: O& ?注册的所有人: Windows 用户; R0 g% ?: ^2 Y/ Q) ]$ O! [$ A
系统型号: PowerEdge R620
  f# F* K# z& q' r$ S系统类型: x64-based PC1 P; j) O) P3 H: t. s7 l3 J
处理器: 安装了 1 个处理器。
1 a; O$ W1 M: y! n[01]: Intel64 Family 6 Model 45 Stepping 7 GenuineIntel ~2400" k$ n2 V" V/ J( B2 t: z5 B9 n
cat md5.txt7 X( K* k2 g/ D+ T( v" ^
3fb78e9bc0b297e3de4e77531766c37a:f29f95 /* = md5中无法查询的。*/. u# J5 C( V4 D6 |, V  s
865a697fb9b4bd9c6737432aaff136bd:22dc87 /* = 304892415 */7 n$ B  a9 V7 H7 H* D* q
15b7a21513f24ffe97d9f9830acf51ad:07626c /* = 123456 */
9 N; t1 C0 c: @; H /* -a 使用穷举模式 -m HASH的类型是VB DISCUZ跟DV加密是一样,?d是代表数字 穷举10个数字 */ hashcat-cli64.exe -a 3 -m 2611 md5.txt ?d?d?d?d?d?d?d?d?d?d6 C9 v+ O$ E5 U" p% \" f1 a
Input.Mode: Mask (?d?d?d?d?d)5 v$ q0 R; a0 h) {( Z+ ^$ }1 v
Index…..: 0/1 (segment), 100000 (words), 0 (bytes)( T! X# k7 u# d- K5 R" S
Recovered.: 0/3 hashes, 0/3 salts
" {" }& y/ W! v; j, kSpeed/sec.: – plains, – words6 z& y$ s9 L. B( o. R  S
Progress..: 100000/100000 (100.00%)
0 {7 K" z: H8 g6 d, URunning…: –:–:–:–
8 A+ }- Z2 X) ~6 n: d8 mEstimated.: –:–:–:–
- h8 r4 X7 e2 ]& o4 g. l  D15b7a21513f24ffe97d9f9830acf51ad:07626c:123456
4 f4 e0 N5 e% h% l' O- \$ p$ ZInput.Mode: Mask (?d?d?d?d?d?d)
3 j$ D' x) j& ^Index…..: 0/1 (segment), 1000000 (words), 0 (bytes)
& _4 h* o) W6 W3 Y# JRecovered.: 1/3 hashes, 1/3 salts
; J$ O5 f8 ^& Z/ ?. rSpeed/sec.: 7.43M plains, 3.72M words
1 t: j$ t9 |2 k/ EProgress..: 1000000/1000000 (100.00%)
6 R- b" k$ H% h4 O0 |2 Y3 aRunning…: 00:00:00:01
0 P/ h' e& h6 v4 N% F, Y4 `5 g5 eEstimated.: –:–:–:–0 L" a& q( T  c: Y  Q
Input.Mode: Mask (?d?d?d?d?d?d?d)
* s( v5 ^/ x/ _2 L; pIndex…..: 0/1 (segment), 10000000 (words), 0 (bytes); l8 Y# _! I, u( L
Recovered.: 1/3 hashes, 1/3 salts
9 y# x1 n* W$ cSpeed/sec.: 13.67M plains, 6.83M words
/ t8 \2 _+ X& W  G. Z0 j  L( KProgress..: 10000000/10000000 (100.00%)' n( e. {& [0 q5 U4 r- F
Running…: 00:00:00:01
% Q6 t. y' ]; g+ a# ~1 k' U1 M9 r& ?Estimated.: –:–:–:–
: |  B8 [5 ]# }% E, gInput.Mode: Mask (?d?d?d?d?d?d?d?d)
3 T& r# v9 V3 g/ ?/ R, gIndex…..: 0/1 (segment), 100000000 (words), 0 (bytes)
1 M" v1 Q% ~, ]! rRecovered.: 1/3 hashes, 1/3 salts' _9 S& h1 @9 W6 U( o0 Z0 c0 h
Speed/sec.: 18.59M plains, 9.29M words. ~: n* h' ^- i# M* e
Progress..: 100000000/100000000 (100.00%)
5 e& t6 h/ k1 iRunning…: 00:00:00:112 d( }2 d& p0 C  W0 R
Estimated.: –:–:–:–
2 X, u* R; v- a- \6 {) m865a697fb9b4bd9c6737432aaff136bd:22dc87:304892415
" f5 ]! c! q0 L, X可以看到破解 9位3开纯数字密码需要11秒。
3 e$ Z6 w& }0 q" y# W" ]4 I+ FInput.Mode: Mask (?d?d?d?d?d?d?d?d?d?d)
( q3 c2 s- k  l- Q) ~/ hIndex…..: 0/1 (segment), 10000000000 (words), 0 (bytes)3 u3 v, X" a/ m( e' J' ^* \$ k
Recovered.: 2/3 hashes, 2/3 salts
2 B% P# E/ w1 }. c; {3 |# j% QSpeed/sec.: 12.70M plains, 12.70M words
( b7 i5 {- H& _( |8 GProgress..: 10000000000/10000000000 (100.00%)* v% p* M+ t( Z+ r* k
Running…: 00:00:13:07
% F% v) g: u4 z7 wEstimated.: –:–:–:–
( `  o8 Q# L& Y: X6 c. j3 l而10个数字即需要13分钟,这样的速度如果有服务器是8核或更多,或者自己GPU强劲,会更加快,我测试只是用了一个入门级的CPU。" s4 \+ Y, J" e8 j  f2 X
在这里可以下载到一些字典,不过国人对这些字典貌似无视。/ M9 N1 o1 U+ R6 y, d" N
http://blog.g0tmi1k.com/2011/06/dictionaries-wordlists.html
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表