Follow us on Twitter!
Imagination is more valuable than knowledge - Albert Einstein
Friday, April 25, 2014
Navigation
Home
HellBoundHackers Main:
HellBoundHackers Find:
HellBoundHackers Information:
Learn
Communicate
Submit
Shop
Challenges
HellBoundHackers Exploit:
HellBoundHackers Programming:
HellBoundHackers Think:
HellBoundHackers Track:
HellBoundHackers Patch:
HellBoundHackers Other:
HellBoundHackers Need Help?
Other
Members Online
Total Online: 27
Guests Online: 25
Members Online: 2

Registered Members: 82906
Newest Member: ilija
Latest Articles
View Thread

HellBound Hackers | Challenges | Realistic

Author

realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 06-05-05 08:35
After getting sql file, what can I do with hash, do I need to bruteforce it to get pass?
Author

RE: realistic 2

Mr_Cheese




Posts: 2468
Location: Brighton, UK
Joined: 30.11.04
Rank:
Uber Elite
Posted on 06-05-05 10:27
yes, its a MD5 hash.


http://www.hellboundhackers.org/
Author

RE: realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 06-05-05 15:02
Huh it has pretty strong password, I am cracking it with JTR for 4hours now
Author

RE: realistic 2

Mr_Cheese




Posts: 2468
Location: Brighton, UK
Joined: 30.11.04
Rank:
Uber Elite
Posted on 06-05-05 16:10
JtR ????

i didnt know what did MD5!!!

perhaps use Cain Wink


http://www.hellboundhackers.org/
Author

RE: realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 06-05-05 18:04
Oh, 10 minutes with cain against 6hours of waiting in JTR. For which password is JTR useful than??
Author

RE: realistic 2

Mr_Cheese




Posts: 2468
Location: Brighton, UK
Joined: 30.11.04
Rank:
Uber Elite
Posted on 06-05-05 18:14
cant recall the name. i think its unix passwords.

they about 7 - 9 charachters long i think. Usally stored on servers etc


http://www.hellboundhackers.org/
Author

RE: realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 06-05-05 19:54
Doesn't JTR crack DES encryption? I forgot... All i know is that it cracks .htaccess encrypted stuff.


Author

RE: realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 07-05-05 04:33
nights_shadow wrote:
Doesn't JTR crack DES encryption? I forgot... All i know is that it cracks .htaccess encrypted stuff.


You're right JTR does DES really well. DES type encryption is the encryption that UNIX uses for it's password files.

according to the JTR docs

JTR supports (and autodetects) the following ciphertext
formats: standard and double-length DES-based, BSDI's extended DES-based, FreeBSD's (and not only) MD5-based, and OpenBSD's Blowfish-based.

With just one extra command (required to extract the passwords), John can
crack AFS passwords and WinNT LM hashes.



Author

RE: realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 04-06-05 00:54
i found the directory where is backup file but i cant figure out file name....

brute force it?


Author

RE: realistic 2


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 04-06-05 03:15
Yea, you gotta brute force it. That's what I did.


Author

RE: realistic 2

Mr_Cheese




Posts: 2468
Location: Brighton, UK
Joined: 30.11.04
Rank:
Uber Elite
Posted on 04-06-05 10:20
the purpose of this mission is to encourage people to program a scanner.

However you can do it the easy way and type in each url.


http://www.hellboundhackers.org/