Password cracking tutorial

Source: Internet
Author: User
Tags lost password password protection elcomsoft

In daily computer operations, we can't do without passwords anytime, anywhere-we need to use the CMOS password to start the system and enter Windows
98 to use the user password, edit the Word document, set the document password ......, All of these provide necessary security protection for user data security! However, as the application scope of passwords increases, the number of forgotten passwords is also increasing (no one can guarantee that they will never forget the password )! How to crack these passwords after they are forgotten and minimize losses becomes a topic of interest to users. For ease of use, we will give a brief introduction to common computer password cracking methods:

I. boot password
Depending on the user settings, the boot password is generally divided into two different situations, one is the SETUP password (In this mode, the system can start directly, however, you only need to enter the password when entering the BIOS settings. The other is the SYSTEM password (when using this method, you need to enter the password either directly starting or configuring the BIOS, ). For the two passwords set by the user, our attack methods are different:

1. SETUP Password
If the computer can boot normally, but cannot enter BIOS settings (that is, the SETUP password is set), we only need to start DEBUG in the DOS state after the password is forgotten, run the following command to manually clear the password:

_ O 70 16
_ O 71 16
_ Q
In addition, users who are not familiar with DEBUG can download cmospwd, a tool for cracking the CMOS password, at http://www.newhua.com/down/cmospwd.zip. Then start the program in DOS, and it will display the user's CMOS Password (Cmospwd supports Acer, AMI, AWARD, COMPAQ, DELL, IBM, PACKARD
BELL, PHOENIX, zenith ami and other BIOS), very convenient to use.
2. SYSTEM Password
If the computer cannot be started without a password (that is, the SYSTEM password is set), we cannot solve the password forgetting problem through software. In this case, the only way is to open the chassis, discharge the CMOS, clear all the content in the CMOS (including the password), and then re-boot and set. In addition, some boards are configured with a CMOS password to clear the jumper. You can also use this patch cord for the same purpose (see the motherboard manual for details ).

Ii. Windows Password
1. Windows Startup Password
If you forget the Windows 98 Startup Password, it will not affect the system startup, but it will prevent users from entering their personal settings.
98 start password to retrieve the "lost" "personality" is also necessary. To this end, we can delete the *. PWL password file under the Windows Installation Directory and all the personal information files under the Profiles subdirectory, and then restart Windows
98, the system will pop up a password setting box that does not contain any user name, we do not need to enter any content, directly click the "OK" button, Windows
The 98 password is deleted. In addition, modify the UserProfiles under the HKEY_LOCAL_MACHINE, Network, and Logon branches of the registry database to "0", and restart Windows.
98 can achieve the same purpose.
2. Screen Protection Password
Using the screen protection function of the system can prevent others from stealing their computers while they are absent, thus protecting data security. However, without other restrictions, the screen protection password of the system is very fragile. After the password is forgotten, we only need to use the "reset" key to forcibly start the computer (some poorly designed Screen Saver can even be forcibly disabled using Ctrl + Alt + Del, and then right-click the blank area on the desktop and execute the "attribute" command from the shortcut menu, open the "Display Properties" setting box, click the "Screen Protection" tab, and then cancel the "password protection" option (you do not need to confirm the password when canceling this option ). In addition, it is said that there is still a CD dedicated to cracking the Screen Protection password on the market. After the disc is inserted, it uses Windows
The 98 automatic operation function starts the Screen Protection password cracking program stored on the CD, analyzes and decrypts the password of the screen protection function, finally, it is easier to display the password on the screen or write it to a floppy disk (Sorry, this feature is just a hearsay, and I have not seen such a CD with my own eyes ).

3. Power Management Password
Windows
You can also set a password for the 98 power management function. After this function is set, the system requires a password when returning from the energy-saving status, so as to protect the system to a certain extent. However, due to the power management function password and Windows
The START password of 98 is exactly the same, so we only need to follow the previous method to crack the start password of Windows 98, and its power management password will not be cracked.
From the above introduction, we can see that Windows
The password protection function of 98 is not complete. Both the boot password, screen protection, and power management password are very fragile. We must use other control measures to prevent others' intrusion, for more information, see.

Iii. compressed file Password
1. WinZip
After you forget the password of the ZIP package, you can download the uzpc (Ultra Zip) decryption software dedicated to zipping the password of the ZIP package at http://www.golubev.com /.
Password Cracker) to help us retrieve the lost Password.
As shown in UZPC interface 1, we only need to execute the "New" command in the "Task" menu and select the ZIP file to crack the password from the "open" dialog box that appears, then, the UZPC opens a "Preferences" dialog box (2 ). The user should
In the Files list box, select which Files in the ZIP package are decrypted. (WinZip can set different passwords for different Files in the same ZIP package, however, most ZIP packages do not use this function. They usually set the same password for all files, therefore, common ZIP password cracking software can only process such ZIP files with the same password. They are often invalid for ZIP Packages containing multiple passwords at the same time. UZPC is different. It can separately decrypt the passwords of different files in the ZIP package to better meet the requirements of the majority of users. "Archive
Files "list is used to select Files with different passwords in the same ZIP compressed package ).
Next, we should select an appropriate decryption method (mainly four types: "backdoor method", "exhaustive method", "Dictionary Method" and "pattern matching method, we generally use "Brute"
"). After setting, click "Next". A "Brute Force Attack" dialog box appears.
The Parameter dialog box (shown in 3) requires the majority of users to crack the password parameters (such as whether to include uppercase and lowercase letters, numbers, spaces, symbols, or all content, password length, etc). Finally, click the "Go" button, and the system will use the exhaustion method to test all possible combinations of passwords until the final result is found, which is very convenient to use.

In addition, it should be noted that, if the number of digits of the password is long, the UZPC testing process may take a long time. To facilitate user use, UZPC provides the function of temporarily stopping the operation and continuing the test from the disconnection, we only need to use the "Save" button during the test to record the current cracking status, and then we can rest assured that the ongoing test will be interrupted without worrying about data loss. After that, we only need to click the "Open" button in the UZPC to Open the previous record, and the UZPC will continue searching from the break, thus saving the user time.

2. ARJ
After the password of the ARJ archive is forgotten, we can download a professional ARJ archive password cracking software aapr (Advanced ARJ) at http://www.elcomsoft.com /.
Password Recovery) to find the Password of the ARJ compressed package. As shown in interface 4 of AAPR, we only need
Select the ARJ compressed package to be cracked in the File dialog box, and
In the Options dialog box, select the password range (also set whether to include uppercase and lowercase letters, numbers, spaces, symbols, or all characters ). Finally, click the "Start" button, and the system will use the exhaustion method to test all possible combinations of passwords. After finding the password, it will be displayed, which is very convenient to use!

3. RAR
RAR is also a very popular compression software. After you forget the password of the RAR package, you can download a crarksoftware at http://www.ssl.stu.neva.ru/to crack it. This is a command line utility. It mainly uses the command line to crack the password of the RAR compressed package. The command format is "CRARK ".
Command Line Parameter RAR compressed package file name ". But in fact, we generally only need to use the "crark rar compressed package file name" command directly, and use the default parameters to crack the RAR compressed package password.

Appendix: Meaning of CRARK command line parameters:
-L Minimum Password Length
-G specifies the maximum password length
-S: Use your own settings
-D: Set the name of the main dictionary.
-U: Set the file name of the user dictionary.
-P: Set the password Progress File Name

Iv. Text Processing Software Password
1. WPS
1) WPS for DOS
In earlier versions, WPS has a general password Ctrl-QIUBOJUN. We only need to use this password to open all the Encrypted documents, then copy the content in the document to other documents in block copy mode to solve the problem (changes made when the document is opened with a general password cannot be saved ).

2) WPS 2000
As we all know, WPS
2000 two different levels of document encryption methods are used, namely, "common encryption" and "Top Secret encryption ". It said in the manual that after the user forgets the document password, if the document adopts the "common encryption" method, he can ask technical staff of Kingsoft for help, they will help you find the forgotten password. If the document adopts the "top secret encryption" method, the password cannot be decrypted after it is forgotten, but this is not the case. Whether we forget the "common" password or "top secret" password, we can download it at http://cyg.yeah.net/
Wps Password
Recovery. This is a password cracking software edited by Chinese people (but I still don't understand why so many Chinese people like to edit software on the English interface ), it provides four decryption methods (for general users, the most useful method is the "exhaustive mode"). You can simultaneously decrypt documents that adopt "common encryption" and "Top Secret encryption" (the operation method is the same ).

Specifically, when we use EWPR to crack the password in WPS 2000, we should first specify the required WPS in the "Encrypt WPS 2000 file" dialog box
2000 document (5), and
Select the appropriate password cracking method in the Attack list box (generally, select the "brute-force" brute force mode ). Next, you should
Select the password range that may be included in the Options list and
In the From dialog box, specify the characters to start searching (mainly used to continue cracking From the last interruption ). After setting these options, we only need to click the "RUN" button and EWPR will use the exhaustion method
2000 it is very convenient to use the password in the document for cracking (during the running process, we can use the "Pause" and "Resume" buttons to temporarily interrupt the operation and continue running from where it is disconnected ).
2. Office
WPS 2000 password protection is not secure, so what about Microsoft's Office? In fact, Microsoft's security is more untrusted (Windows
98, IE and other software security issues are typical textbooks ). The most common software used to crack the passwords of Office documents is AOPR (all called Advanced Office 97 ).
Password
Recovery, the download URL is http://www.elcomsoft.com /). This software can simultaneously crack the passwords generated by software such as Word, Excel, and Access in Microsoft Office series. This frees users from downloading them one by one and cracking the software using individual passwords. In addition, AOPR can search for the password of the *. DOT template file of Word, which is not available in other similar software! It must be noted that AOPR is for Office
97 developed (Office 2000 was not available when AOPR was launched), but the format of Office 2000 document and Office
There is basically no difference in the format of 97 documents, so we can also use AOPR to crack the password of Office 2000 documents (at least I did not find any problems during use ).
After starting AOPR (6), we only need to select the Office Document that forgets the password from the "Encrypted Office 97 Document" dialog box, and in the "Brute
-Force Range Options dialog box, select the password Range, and then click "Type
Select the appropriate password cracking method in the Attack list box (of course, select "Brute-
Force), and then click the Start button, the system will use the exhaustion method to test all possible combinations of passwords, find the password and then display it (the usage of different software seems similar ). How about it?

3. Lotus Word Pro
Lotus Word from Lotus Corporation (IBM subsidiary) in China
There may not be too many Pro users, but the features of the software are not inferior to those of Microsoft's Word (more advanced in some aspects ), it is widely used abroad (many users in China often use Lotus
In Word Pro format), most Chinese and foreign joint ventures also use Lotus Word Pro for daily text processing.
Pro password cracking method is introduced to everyone. When a user forgets Lotus Word
After the Pro Password, we can download a Wprokeyd (Password recovery for Lotus
To crack it.
Wprokeyd is a specialized tool for cracking Lotus Word
Pro document password application, we should first click the "Settings" button after starting the program (as shown in 7), open "Brute-Force"
In the Settings dialog box, set the Wprokeyd cracking status (mainly in "Password Character
Set ). After setting the password, we only need
The Pro document (*. LWP file) is dragged to the Wprokeyd window. Wprokeyd tests all possible passwords one by one based on the range specified by the user until the password is found.

V. ICQ Password
ICQ is currently the most popular network paging software, and many people cannot do without it when surfing the Internet ". When using ICQ, you must enter your personal password. If you forget the password, all the previous call numbers and conversation records will be lost, this is absolutely unacceptable! Don't worry, ICQ password cracking software ICQ
Password Revealer can solve this problem (http://www.encrsoft.com /). ICQ Password
Revealer is a DOS command line utility. You only need to execute this file in the NEWDB sub-folder of the ICQ installation folder, and then enter your UIN (8) as prompted on the screen ), the system will retrieve the "long-overdue" ICQ password, which is very convenient to use.

6. Use the "***" display Password
As we all know, Foxmail has the ability to remember the user's email password. It can remember the password of the user's email and then directly receive the email, thus eliminating the hassle of entering the password manually. There is a problem, that is, after a user does not touch the password for a long time, it is easy to forget the mailbox password, while the password recorded in Foxmail is displayed, we cannot directly view it (similar situations are common). How can this problem be solved? Don't worry, the "Knight software password viewer" can crack this type of password! The "software password viewer" is a tool that uses "*" to display passwords in the cracking application dialog box. It can identify the original characters of these passwords and display them in front of users. With it, "*" is no longer an insurmountable trap! As shown in interface 9 of "software password viewer", to use it to crack a password, you only need to open the password Setting dialog box for other applications (that is, the "*" window is displayed ), drag the" software" icon in the "software password viewer" to the "*" password of these applications, the" software password viewer" will crack these "*" passwords and display their original characters in the "password" box to meet users' needs. The download URL of "software password viewer" is http://xksoft.yeah.net /.

After reading the above introduction, I believe that you will never worry about your password, but on the contrary, users may worry about the security of their data. In fact, we do not need to be so nervous. The above-mentioned methods used by these Cryptographic software are mainly exhaustive. When the password is too long, it will exhaust all possible computations, currently, the computation speed of computers cannot meet the requirements of long passwords. That is to say, as long as we set the password long enough, there are not many opportunities for others to "peat" our secrets (of course, the password should contain at least 8 characters and be a combination of numbers, letters, and symbols ). In addition, in order to prevent special cracking such as the "Knight software password viewer" and adopt the "***" password display software, it is recommended that you do not use the software's automatic password memory function, you can directly enter the password as needed. With these two moves, you still cannot easily break through your "defense line ".

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.