.

Ophcrack Bug

<<

cd1zz

User avatar

Recruiters
Recruiters

Posts: 566

Joined: Sun Oct 03, 2010 9:01 pm

Post Mon Sep 24, 2012 9:15 pm

Ophcrack Bug

If anyone has a moment to test something, I would greatly appreciate it.

I think the most recent version of Ophcrack for both Linux and Windows has a bug. I've tested this on two separate machines and am getting the same result.

The problem is when Ophcrack cracks a password that contains a colon. It's not that it cant crack it, in fact the password does display correctly on the screen (both in the non gui *nix version on the screen as well as within the windows gui), but when it writes to an output file it mangles the colon.

It seems every time there is a colon, it replaces it with a ---> Á (C1 in hex). I am 100% certain the password does not have this character and when I double check by checking the NT hash, it does contain a colon.

Bizzare, just wondering if anyone can validate my claims.

For your own testing, you can use this hash:
2d6b481f44d7f18a5acdcd7c247fa83a:a903feb8614046a6bf6dde39fd334ffc

which = the password 2012:meh

WTF
Last edited by cd1zz on Mon Sep 24, 2012 10:04 pm, edited 1 time in total.
<<

dynamik

Recruiters
Recruiters

Posts: 1119

Joined: Sun Nov 09, 2008 11:00 am

Location: Mile High City

Post Tue Sep 25, 2012 2:40 am

Re: Ophcrack Bug

I tested with v3.4 of the Windows GUI. It displays fine in the GUI, but this is what is saved to file:

  Code:
::2d6b481f44d7f18a5acdcd7c247fa83a:a903feb8614046a6bf6dde39fd334ffc:2012ÁME:H:2012Ámeh
The day you stop learning is the day you start becoming obsolete.
<<

cd1zz

User avatar

Recruiters
Recruiters

Posts: 566

Joined: Sun Oct 03, 2010 9:01 pm

Post Tue Sep 25, 2012 7:53 am

Re: Ophcrack Bug

NICE, its not just me. Thanks for doing that.

Return to Tools

Who is online

Users browsing this forum: No registered users and 0 guests

cron
.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software