Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Tue, 19 Jan 2010 19:59:55 -0600
From: Greg White <pcguy11@...e.com>
To: <john-users@...ts.openwall.com>
Subject: john 1.4.2 with jumbo patch 1 - lm hash problem


Hi,

I just downloaded and compiled john 1.4.2 and jumbo patch 1.  I am running john against my test hash.txt and should take about 5 seconds to complete.  john has been going at my hashes for 30 minutes so far.  Something is very wrong.  I am testing the lm hash.  My PC is a P3 so I compiled john with make linux-x86-mmx.

# ./john /root/hash.txt
Loaded 6 password hashes with no different salts (LM DES [64/64 BS MMX])
BB               (b)
A                  (a)
TESTTES    (Administrator:1)
CDC             (c)
DEDE          (d)

# cat /root/hash.txt
Administrator:500:CEEB0FA9F240C200417EAF40CFAC29C3:D280553F0103F2E643406517296E7582:::
a:1011:7584248B8D2C9F9EAAD3B435B51404EE:186CB09181E2C2ECAAC768C47C729904:::
b:1012:AC5BA6A944526699AAD3B435B51404EE:F07A9DFFFC2C5C7F9D9EBC83FD69D68E:::
c:1013:E7EED3F5C2C85B88AAD3B435B51404EE:6AA15B3D14492D3FA4AA7C5E9CDC0E6A:::
d:1014:8142C9E2CCAFA80EAAD3B435B51404EE:D43EB3C12D597DFE44A31859C586B2DC:::

The administrator LM password should be TESTTEST.  The NTLM password is TestTest.  The NTLM crack works as it should.

Also I used to use john -f:nt hash.txt to tell john to use the NTLM algorithm.  In 1.4.2 I have to use john --format:nt hash.txt.  Is this change on purpose?

Thanks,



 		 	   		  
_________________________________________________________________
Hotmail: Powerful Free email with security by Microsoft.
http://clk.atdmt.com/GBL/go/196390710/direct/01/

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.