PasswordsPro - Welcome to mysterious world of hashes!


Many know that hashes are encoded passwords. Using hashes greatly increases safety of passwords storage, for example, in the forums, databases, etc. Let's assume, forum administrator has password "admin12345" which is certainly stored in the forum database. What is to be done to authenticate user on the forum? Input password shall be compared with "admin12345". If they match, administrator may enter the forum. It seems working great, but what whether someone unautorized gets access to database and sees open password and can easily log in as administrator. Here hashes come to rescue. For instance, MD5-hash for "admin12345" password will look like "7488e331b8b64e5794da3fa4eb10ad5d" and it's exactly what we store in our database, not a password itself. During user authentication input password is converted to hash to compare with the hash stored in the database - if these two match that wealth input password is correct and logging on is successful.



But what provided we duty to perform reverse deal - to try to restore password from hash? It's impossible to determine that directly, as any hashing algorithm is password's checksum calculation. This transaction involves irreversible mathematical operations like logical operation AND, etc. For example, even brainy Y and Z we can never find exact X from "X AND Y = Z" equation (all we can do is reckoning of range of viable X values satisfying the equation).



So if we need to treasure trove password for certain hash there's the only course of action to make hashes for different passwords and then compare hashes we got with source one. If they match, it means exactly the source password is found as opportunity of collision (i.e. another password which has hash matching our source hash) is actual low - for example, it is (1 / 2128) in case of MD5-hashing.



Here PasswordsPro comes in handy - it is a professional stuff for passwords trial and recovery of passwords for hashes. It's main purpose is to recover your forgotten password when you have only one hash, or check passwords for crack-resistance.



This exclusive programme supports about 40 types of hashes, and any new type can easily be added through writing your own DLL-hashing module.



Built-in types of hashes:



Supported types of hashes: MySQL, MySQL5, DES(Unix), MD4, MD4(HMAC), MD5, MD5(HMAC), MD5(Unix), MD5(APR), SHA-1, SHA-1(HMAC), SHA-256, SHA-384, SHA-512, Kingdom Cached Credentials, Haval-128, Haval-160, Haval-192, Haval-224, Haval-256 and others. The program further supports many complex hashes like md5($pass.$salt), md5($salt.$pass), md5(md5($pass)), etc. Third-party developers had already written modules for PasswordsPro for such types of hashes as MD2, Oracle DES, MS SQL and many others, including hashes no one else program in the world works nevertheless PasswordsPro!



Program uses the following methods to recover passwords:




  • Preliminary attack;

  • Brute-force blitz (including distributed attack);

  • Mask attack;

  • Simple dictionary attack;

  • Combined dictionary attack;

  • Hybrid vocabulary attack;

  • Pre-calculated Rainbow-table attack.



PasswordsPro also has the adjacent features:




  • Recovery of the passwords up to 127-symbol length;

  • Recovery of the passwords for incomplete hashes of any type;

  • Editing of users' hashes;

  • Search of users' list for required data;

  • Quick addition of hash wound up dialog box;

  • Quick analysis of current password for all hashes in the list;

  • Unlimited amount of dictionaries used for dictionary attack;

  • Unlimited numeral of tables used for Rainbow-table attack.



Important feature of PasswordsPro it is friendly interface - all hash manipulations are made with literally couple clicks, what makes passwords check very convenient, pictorial and effective.



Another knowing advantage of the program is labour with Rainbow-tables for any hashing algorithms. These tables can be generated with RTGEN utility of account 1.2. or later. I.e. you can generate tables for SHA-512 algorithm, and PasswordsPro will now derivation working with them.



If you yet couldn't find password for your hash, you can always get assist at PasswordsPro forum.



Program has Shareware status and is distributed as Demo-version which has the only limitation - character of hashes to import for check is 1, while licensed version doesn't limit this number.




Download PasswordsPro

PasswordsPro forum

Dictionaries

Hash database (over 10 millions of rare hashes)

Comments: [0] / Post comment:
10 Oct 2008 11:03:17

Symantec shows Microsoft how to do UAC - ZDNet

BetaNews Symantec shows Microsoft how to do UAC ZDNet - A: The meta information contains file name and file hashes for the EXE that caused the prompt and the EXE that is to be the recipient of the elevated ... New Norton Vista tool trades UAC for online feedback
10 Oct 2008 07:51:11

Herm Edwards Speaks - Arrowhead Pride

Herm Edwards Speaks Arrowhead Pride - When youre a tackle, the basic rule is you never want to rush outside the hashes because it expands the pocket too much. You want the pocket to close so ...
10 Oct 2008 02:12:27

Kansas State notebook - Topeka Capital Journal

Kansas State notebook Topeka Capital Journal, KS - "It's something that's so simple, but the hashes are different in the pro game and the college game," Prince said. "In the pro game, they're right on the ... It's time to get mad, coach A&M test is pivotal for Kansas State
09 Oct 2008 13:28:28

Virtualization Meets Data De-duplication - CTR

Virtualization Meets Data De-duplication CTR, CA - With this type of hardware acceleration solution it scans data blocks and generate hashes at up to 250 megabytes per second. For very high performance ...
05 Oct 2008 02:13:46

Nanticoke hashes out rental law - Wilkes Barre Times-Leader

Nanticoke hashes out rental law Wilkes Barre Times-Leader, PA - By Sherry Long slong timesleader.com NANTICOKE A proposed rental unit ordinance in Nanticoke is getting mixed reviews from council members. ...
Keywords: