It is currently 30 Jul 2010, 11:56

All times are UTC + 1 hour [ DST ]




 Page 1 of 1 [ 15 posts ] 
Author Message
 Post subject: 20 characters
PostPosted: 09 Feb 2010, 07:26 
Shoulder Surfer

Joined: 09 Feb 2010, 06:44
Posts: 11
Hi, i'm completely new to this. forgive my ignorances... haha

ok, so my friend challenged me to figure/crack his windows XP logon password, and has told me it's 20 characters. i should also add that he is only using alpha numeric, and i'm not sure with or without lowercase, etc.

I figure brute force on any computer would take too long, and i need something that could work in perhaps 30-45 minutes tops.

I have ophcrack, but it only works for up to 14 characters.

my question is, does anyone have a link to a table or something that i can use that would enable me to do this?


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 09 Feb 2010, 10:46 
Rainbow Table

Joined: 04 Jun 2008, 06:26
Posts: 271
Lets see, someone check this please assuming LowerCase + Nums only

(36^20)/2 000 000 000/60/60/24/365
=2.119402355854219632775058025205479452054794520547945205479452054794520547945205479452054794520547945205479452... x 10^14 Years

Assuming you are using GPU acerleration cracking at 2 Billion passwords/sec

Your best chances would be to use wordlists of length 20? or combine lists to get you length 20 words.
Looks like bruteforcing is definately out of the question.



_________________
Image
Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 09 Feb 2010, 12:03 
Shoulder Surfer

Joined: 26 Dec 2009, 19:30
Posts: 15
/offtopic

you noticed 47945205 repeats?

2.119402355854219632775058025205479452054794520547945205479452054794520547945205479452054794520547945205479452

now all the math gurus here are going to write a long reply why that is. j/k :p


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 09 Feb 2010, 15:48 
Developer

Joined: 03 Dec 2007, 11:37
Posts: 725
superjames wrote:
now all the math gurus here are going to write a long reply why that is. j/k :p

... because you are dividing two integers (rational number) and the divisor has prime factors that are not 2 and 5.



_________________
http://www.tobtu.com/
Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 09 Feb 2010, 18:29 
Shoulder Surfer

Joined: 26 Dec 2009, 19:30
Posts: 15
Sc00bz wrote:
... because you are dividing two integers (rational number) and the divisor has prime factors that are not 2 and 5.


i don't know what that means but awesome nonetheless :)


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 09 Feb 2010, 20:48 
Shoulder Surfer

Joined: 09 Feb 2010, 06:44
Posts: 11
ok, so bruteforcing is way out of the question, and i knew that.

but does anyone know how i can make a table perhaps that would specifically cater to this? 20 characters long, aplha numeric, probably works with a word list, and is either physics or chess related.


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 10 Feb 2010, 13:19 
Dictionary

Joined: 01 Sep 2008, 22:43
Posts: 69
burningpuppies101 wrote:
ok, so bruteforcing is way out of the question, and i knew that.

but does anyone know how i can make a table perhaps that would specifically cater to this? 20 characters long, aplha numeric, probably works with a word list, and is either physics or chess related.

When you generate a table, you'll need more computing power then when you bruteforce the same keyspace once. Generating a table for "single use" only is not worth it.

In this case, you're playing a guessing game. Your friend thinks of a password or -maybe- a simple sentence and you need to guess it. So badger him for more clues :)


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 10 Feb 2010, 15:25 
Rainbow Table

Joined: 04 Jun 2008, 06:26
Posts: 271
your best chance would probably be to install a keylogger on your friends computer because you're really not left with much of a choice, either wordlists +rules, word combinations pretty much.



_________________
Image
Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 10 Feb 2010, 20:20 
Developer

Joined: 03 Dec 2007, 11:37
Posts: 725
Schnitzelwecken wrote:
So badger him for more clues :)

Screw that, all you need is a rubber hose: http://en.wikipedia.org/wiki/Rubber-hose_cryptanalysis



_________________
http://www.tobtu.com/
Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 10 Feb 2010, 20:45 
Perfect Table

Joined: 02 Apr 2008, 15:10
Posts: 833
Location: Romania
Sc00bz wrote:
Schnitzelwecken wrote:
So badger him for more clues :)

Screw that, all you need is a rubber hose: http://en.wikipedia.org/wiki/Rubber-hose_cryptanalysis

that's the way to do it ! :lol:


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 11 Feb 2010, 06:49 
Shoulder Surfer

Joined: 09 Feb 2010, 06:44
Posts: 11
haha i don't think i'll be using the rubber hose method..

any tips on a keylogger? i don't know too much about them, but i'd prefer one that would record all keystrokes from the moment of XP loading, so i get his login, and then send me the file in an email or something periodically.


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 11 Feb 2010, 07:49 
Rainbow Table

Joined: 04 Jun 2008, 06:26
Posts: 271
well when i said keylogger i was thinking more on the lines of something like this

http://cgi.ebay.com/KEYLLAMA-VALUE-USB- ... 51904f2fc7

though i'm sure software ones will suffice providing your friend isn't running any antivirus apps.
If i recall perfect Keylogger by blazing soft, doesit via a keyboard driver so yes it picks up the key when he logs in.

Perfect Keylogger also have a LITE edition which is free for home use.



_________________
Image
Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 14 Feb 2010, 23:29 
Shoulder Surfer

Joined: 09 Feb 2010, 06:44
Posts: 11
yea i'm not a hardware person... especially since he's using a laptop.


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 14 Feb 2010, 23:44 
Shoulder Surfer

Joined: 09 Feb 2010, 06:44
Posts: 11
sorry for double posting, but do you know of any free keyloggers? perfect keylogger only works on a trial version, which isn't that great for long term keylogging...


Offline
 Profile  
 
 Post subject: Re: 20 characters
PostPosted: 15 Feb 2010, 10:13 
Perfect Table

Joined: 02 Apr 2008, 15:10
Posts: 833
Location: Romania
burningpuppies101 wrote:
sorry for double posting, but do you know of any free keyloggers? perfect keylogger only works on a trial version, which isn't that great for long term keylogging...

no offensive hacking here. move your questions to another forum.


Offline
 Profile  
 
Display posts from previous:  Sort by  
 Page 1 of 1 [ 15 posts ] 

All times are UTC + 1 hour [ DST ]


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  

cron