How long does it take to crack an 8 digit password?

Page 2 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.
Jan 31, 2002
40,819
2
0

eigen

Diamond Member
Nov 19, 2003
4,000
1
0
Lanman have a weakness that enables them to be cracked easily.That is why it is wise to disable it and use NThashes
What do you mean by RT. And if you have a prog that can crack md5 sha-1 in that time pm it over to me....or hell sell it to me
 
Jan 31, 2002
40,819
2
0
Originally posted by: eigen
Lanman have a weakness that enables them to be cracked easily.That is why it is wise to disable it and use NThashes
What do you mean by RT. And if you have a prog that can crack md5 sha-1 in that time pm it over to me....or hell sell it to me

Google "Rainbow Tables" and enlighten yourself. ;)

You can get RainbowCrack here for free, but you're on your own for the RTs.

Oh, and NTLMs are in a patched version.

- M4H
 
Jan 31, 2002
40,819
2
0
Originally posted by: eigen
cool.I am gonna make a rainbow table.

Heh. The dream of many. See you in a few years when it's done building.

Edit - Not trying to be a smartass, but that's the bottom line. A full RT for any hash with a full character set would take years to build without DC help.

To the OP - Really, the password should be fine. You're more likely to lose it to someone shoulder-surfing than a bored ATers with a set of rainbow tables. :p

- M4H
 

eigen

Diamond Member
Nov 19, 2003
4,000
1
0
Originally posted by: MercenaryForHire
Originally posted by: eigen
cool.I am gonna make a rainbow table.

Heh. The dream of many. See you in a few years when it's done building.

Edit - Not trying to be a smartass, but that's the bottom line. A full RT for any hash with a full character set would take years to build without DC help.

To the OP - Really, the password should be fine. You're more likely to lose it to someone shoulder-surfing than a bored ATers with a set of rainbow tables. :p

- M4H

I have access to clusters... http://www.mcsr.olemiss.edu/computing/mimosa2.html of course I dont have the oppurtunity to use it all the time to build something dumb like RT's but
I am building a cluster for my Senior thesis...This wouldnt be a bad way for it to spend time when its not doing its regurlar thing..
 
Jan 31, 2002
40,819
2
0
Originally posted by: eigen
I have access to clusters... http://www.mcsr.olemiss.edu/computing/mimosa2.html of course I dont have the oppurtunity to use it all the time to build something dumb like RT's but
I am building a cluster for my Senior thesis...This wouldnt be a bad way for it to spend time when its not doing its regurlar thing..

In that case, go for it. You can actually make a surprisingly good rate out of just alphanumeric rather than a full charset, given that 95% of people use crappy passwords.

- M4H
 

eigen

Diamond Member
Nov 19, 2003
4,000
1
0
Got your pm ....not really my cluster but like I said I can use it.I will definitely read up more about RT. This was a good thread as I learned a new crypto thing.
 
Jan 31, 2002
40,819
2
0
Originally posted by: eigen
Got your pm ....not really my cluster but like I said I can use it.I will definitely read up more about RT. This was a good thread as I learned a new crypto thing.

It's worth looking into, if alone for the chilling idea that you aren't secure ever.

That's why physical network security is a huge priority, and why people get fired for putting up rogue WAPs. Imagine what a wardriver with a laptop full of tables could do.

Scary, isn't it? :Q

- M4H
 

mrbass

Senior member
Sep 13, 2001
773
0
0
I had to crack some for work 8 character lengths...about 150 accounts. Exported LMHashes and used Lophtcrack ....took 4 1/2 hours on a Pentium 2.4GHz. Now if I were to use the freely available Cain it would have taken around 32 hours or so. One thing was I knew all were lowercase so I'm sure that cut down my time considerably.