hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Sam
Montana
I wanne know which one cracks the sam password faster, CAIN or LC4 ...or is there any other faster prog out there? ;P
ZoraX
Rainbow crack, http://www.antsight.com/zsl/rainbowcrack/

Search the forum, its a hot topic, alot of postes about it:D
saetji
rainbowcrack is fastest IF u have axs to precompiled tables

dic attacks: go with john
brute attacks: go with lc5
Montana
thx alot, and sorry for not searching, but what about CAIN? And what do you mean wiht "precompiled tables" ?
dissolutions
Rainbowcrack uses rainbow tables
Use:
hxxp://www.antsight.com/zsl/rainbowcrack/
for more information.
BTW that site was the first hit on a google search of rainbowcrack.
Montana
uhm, I use pwdump2 to get the sam file, can I still use these "tables" ? Or do I need to get the sam file another way?
JonJon
without using rainbow tabels with precompiled ones...
for win(not sure about linux and stuff) mdcrack is the fastest...
since cain and lc4 use win gui they take extra memory and time to crack...

mdcrack : http://membres.lycos.fr/mdcrack/download/mdcrack.exe
it's better...

Enjoy biggrin.gif
White Scorpion
well, lcrack appears to be the fastest one (not counting the rainbow tables), since it is able to smart search for passwords, i've read a tutorial about lcrack once, and it was able to crack some common passwords using bruteforce in a couple of seconds...

but i personally almost use john, since i find it easy to use and pretty fast too...

mdcrack however, only cracks the md hash, and as far as i can remember (might be mistaken) doesn't look at the lanmanhash, and most of the times the lanmanhash is available and therefor the fastest to crack...
so you need a program which can crack the lanmanhash and then when the program got the password in lanman, try the password for md5, this way it will take only a few seconds more to get the md5 hash password...

john standard only cracks the lanmanhash (meaning only uppercases), so i usually crack it first with john, and then use the outcome in a dictionary with LC5.

Montana
thx alot guys, I kinda know what tables are now, but seems like they cost money, posible to get some for free? Or do they all cost?
TRi
Well already finished tables sure cost money but of course you can compute some for yourself, check the topics on the rainbow crack page or search the forum here.

But be prepared to have you pc turned on over a week and be sure to have decent free space as the proccess very cpu and hdd consuming.
Montana
So, I just "press the button" and wait and I'll get a table? or do I need to "code" it my self? :s
nuorder
QUOTE (Montana @ Sep 12 2004, 10:28 PM)
So, I just "press the button" and wait and I'll get a table? or do I need to "code" it my self? :s

go to rainbowcrack site read examples and tutorial
run commands to generate tables

so yes "press the button" and then wait (may be days or weeks or months depending on the speed of your computer) for a table - easy 123


or use John the Ripper (JTR), leptonscrack, mdcrack saminside, passwords explorer pro
withdraw
QUOTE
uhm, I use pwdump2 to get the sam file, can I still use these "tables" ? Or do I need to get the sam file another way?


yes all you need is the hash
read this...

http://www.antsight.com/zsl/rainbowcrack/rcracktutorial.htm
Zonko
With LC5, I cracked my password within one minute, it had capital letters, lots of characters, and numbers. Cain is good, but its not quite as good. However, it is useful for other things, like dial-up passwords.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.