Restrict session to IP 

Have almost everything  Go to the MD5.SALT challenge

1 2
Global Rank: 151
Totalscore: 128031
Posts: 14
Thanks: 15
UpVotes: 13
Registered: 13y 258d

Last Seen: 264d 14h
The User is Offline
Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link

Do I have to crack the admin's hash or there is an easier way? I have the hash and I also know what the salt is...
Totalscore: 362463
Posts: 107
Thanks: 151
UpVotes: 94
Registered: 16y 106d
Jinx`s Avatar

The User is Offline
RE: Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
Yes the hash needs to be cracked.
Global Rank: 251
Totalscore: 87347
Posts: 1649
Thanks: 1346
UpVotes: 897
Registered: 16y 163d

Last Seen: 2h 47m
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
As an additional hint:
It can be easily cracked with a common english wordlist.
I chose a long, plural, lowercase word.

Good luck and have fun with the challenges Smile
The geeks shall inherit the properties and methods of object earth.
Global Rank: 67
Totalscore: 227668
Posts: 245
Thanks: 420
UpVotes: 281
Registered: 15y 214d
shadum`s Avatar

Last Seen: 10d 10h
The User is Offline
RE: Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
Quote from CHItA
Nov 15, 2010 - 18:46:40

Do I have to crack the admin's hash or there is an easier way?

I tried, unsuccessfully, to get around cracking the hash. I'm not sure that would have been an easier way though. Smile

Cracking it isn't hard if you know the salt, have a decent wordlist, and the right tool. It cracked in seconds for me, once I had those three things. Really, if you've got the hash and the salt you have already done the hardest part.
Totalscore: 362463
Posts: 107
Thanks: 151
UpVotes: 94
Registered: 16y 106d
Jinx`s Avatar

The User is Offline
RE: Have almost everything
Google/translate2Thank You!1Good Post!1Bad Post! link
Quote from shadum
Cracking it isn't hard if you know the salt, have a decent wordlist, and the right tool. It cracked in seconds for me, once I had those three things. Really, if you've got the hash and the salt you have already done the hardest part.

I totally agree with Gizmore and shadum. The cracking part took me around 10 seconds. The hardest part was to find the hash .. it took me ages!
Last edited by Jinx - Nov 15, 2010 - 21:04:00
Global Rank: 151
Totalscore: 128031
Posts: 14
Thanks: 15
UpVotes: 13
Registered: 13y 258d

Last Seen: 264d 14h
The User is Offline
RE: Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
That's quiet funny because for me to get these stuff was the shorter part, now i try to find wordlists and password crackers that is able to crack pass.salt format and these stuff didn't work at all... :/

EDIT: Finally I got the answer Smile thanks for hints!
Last edited by CHItA - Nov 15, 2010 - 22:17:52
Global Rank: 1458
Totalscore: 17804
Posts: 2
Thanks: 2
UpVotes: 2
Registered: 13y 242d
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
I have the hash, it was the easier part for me. The cracking could be easy also, but I don't know what the salt is.
Is it a "guess the salt" challenge or I have to get the salt somehow else?
Global Rank: 31
Totalscore: 313536
Posts: 54
Thanks: 79
UpVotes: 58
Registered: 16y 113d

Last Seen: 2h 16m
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
yeap you can guess the salt if you are lucky enough.. Drool
but there is a way to find it so you don't have to guess anything...
so no it's not a "guess the salt" challenge.. Smile
good luck

Global Rank: 1458
Totalscore: 17804
Posts: 2
Thanks: 2
UpVotes: 2
Registered: 13y 242d
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
Quote from criple_ripper
Dec 03, 2010 - 12:04:15

yeap you can guess the salt if you are lucky enough.. Drool
but there is a way to find it so you don't have to guess anything...
so no it's not a "guess the salt" challenge.. Smile
good luck


oh, ok, then i've to rethink it Smile
Global Rank: 222
Totalscore: 95415
Posts: 15
Thanks: 19
UpVotes: 15
Registered: 14y 156d

Last Seen: 333d 8h
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
there are many ways to use the salt..
like md5(md5(pass).md5(salt)) or md5(pass.md5(salt)) or md5(md5(pass).salt) or even md5(pass.salt)
is the used way mentioned in the title (md5(md5(pass).salt))?
1 2
faxtorial, Redknee, tunelko, silenttrack, n0tHappy, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, SwolloW, dangarbri, kalungmas have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 48995 times.