<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hacking-Gurus &#187; Password Recovery</title>
	<atom:link href="http://www.hacking-gurus.net/category/password-recovery/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hacking-gurus.net</link>
	<description>Security Blog</description>
	<lastBuildDate>Mon, 26 Apr 2010 07:25:03 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>The Top 500 Worst Passwords of All Time</title>
		<link>http://www.hacking-gurus.net/2010/04/19/the-top-500-worst-passwords-of-all-time/</link>
		<comments>http://www.hacking-gurus.net/2010/04/19/the-top-500-worst-passwords-of-all-time/#comments</comments>
		<pubDate>Mon, 19 Apr 2010 20:43:46 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[Tutorialz]]></category>
		<category><![CDATA[12345]]></category>
		<category><![CDATA[12345678]]></category>
		<category><![CDATA[654321]]></category>
		<category><![CDATA[696969]]></category>
		<category><![CDATA[Character Case]]></category>
		<category><![CDATA[Cleverness]]></category>
		<category><![CDATA[common]]></category>
		<category><![CDATA[George Lucas]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[lost]]></category>
		<category><![CDATA[Nascar]]></category>
		<category><![CDATA[Offensive Words]]></category>
		<category><![CDATA[pass]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[Qazwsx]]></category>
		<category><![CDATA[Qwerty]]></category>
		<category><![CDATA[recover]]></category>
		<category><![CDATA[Redsox]]></category>
		<category><![CDATA[Rosebud]]></category>
		<category><![CDATA[Sevens]]></category>
		<category><![CDATA[Six Sixes]]></category>
		<category><![CDATA[Starship Enterprise]]></category>
		<category><![CDATA[Tommy Tutone]]></category>
		<category><![CDATA[Typical Keyboard]]></category>
		<category><![CDATA[Van Halen]]></category>
		<category><![CDATA[Zxcvbn]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/?p=186</guid>
		<description><![CDATA[
		
		
		
		From the moment people started using passwords, it didn’t take long  to realize how many people picked the very same passwords over and over.  Even the way people misspell words is consistent. In fact, people are  so predictable that most hackers make use of lists of common passwords  just like these. [...]]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2010/04/19/the-top-500-worst-passwords-of-all-time/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "The+Top+500+Worst+Passwords+of+All+Time";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = "From the moment people started using passwords, it didn’t take long  to realize how many people picked the very same passwords over and over.  Even the way people misspell words is consistent. In fact, people are  so predictable that most hackers make use of lists of common passwords  just like these. To give you some insight into how predictable...";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p>From the moment people started using passwords, it didn’t take long  to realize how many people picked the very same passwords over and over.  Even the way people misspell words is consistent. In fact, people are  so predictable that most hackers make use of lists of common passwords  just like these. To give you some insight into how predictable humans  are, the following is a list of the 500 most common passwords. If you  see your password on this list, please change it immediately. Keep in  mind that every password listed here has been used by at least <a id="AdBriteInlineAd_hundreds" style="cursor: pointer; color: #006600; text-decoration: none; background: url(&quot;http://files.adbrite.com/mb/images/green-double-underline-006600.gif&quot;) repeat-x scroll center bottom transparent; margin-bottom: -2px; padding-bottom: 2px;" name="AdBriteInlineAd_hundreds" target="_top">hundreds</a> if not  thousands of other people.</p>
<p><span id="more-186"></span></p>
<p>There are some interesting passwords on this list that show how  people try to be clever, but even human cleverness is predictable. For  example, look at these passwords that I found interesting:</p>
<p><strong>ncc1701</strong> The ship number for the Starship Enterprise<br />
<strong>thx1138</strong> The name of George Lucas’s first movie, a 1971  remake of an earlier student project<br />
<strong>qazwsx</strong> Follows a simple pattern when typed on a typical  keyboard<br />
<strong>666666</strong> Six sixes<br />
<strong>7777777</strong> Seven sevens<br />
<strong>ou812</strong> The title of a 1988 Van Halen album<br />
<strong>8675309</strong> The number mentioned in the 1982 Tommy Tutone  song. The song supposedly <a id="AdBriteInlineAd_caused" style="cursor: pointer; color: #006600; text-decoration: none; background: url(&quot;http://files.adbrite.com/mb/images/green-double-underline-006600.gif&quot;) repeat-x scroll center bottom transparent; margin-bottom: -2px; padding-bottom: 2px;" name="AdBriteInlineAd_caused" target="_top">caused</a> an epidemic of  people dialing 867- 5309 and asking for “Jenny”</p>
<p>“…Approximately one out of every nine people uses at least one  password on the list shown in Table 9.1! And one out of every 50 people  uses one of the top 20 worst passwords..”</p>
<p>Lists the top 500 worst passwords of all time, not considering  character case. Don’t blame me for the offensive words; you were the  ones who picked these, not me.</p>
<table border="1">
<tbody>
<tr>
<td>NO</td>
<td>Top 1-100</td>
<td>Top 101–200</td>
<td>Top 201–300</td>
<td>Top 301–400</td>
<td>Top 401–500</td>
</tr>
<tr>
<td>1</td>
<td>123456</td>
<td>porsche</td>
<td>firebird</td>
<td>prince</td>
<td>rosebud</td>
</tr>
<tr>
<td>2</td>
<td>password</td>
<td>guitar</td>
<td>butter</td>
<td>beach</td>
<td>jaguar</td>
</tr>
<tr>
<td>3</td>
<td>12345678</td>
<td>chelsea</td>
<td>united</td>
<td>amateur</td>
<td>great</td>
</tr>
<tr>
<td>4</td>
<td>1234</td>
<td>black</td>
<td>turtle</td>
<td>7777777</td>
<td>cool</td>
</tr>
<tr>
<td>5</td>
<td>pussy</td>
<td>diamond</td>
<td>steelers</td>
<td>muffin</td>
<td>cooper</td>
</tr>
<tr>
<td>6</td>
<td>12345</td>
<td>nascar</td>
<td>tiffany</td>
<td>redsox</td>
<td>1313</td>
</tr>
<tr>
<td>7</td>
<td>dragon</td>
<td>jackson</td>
<td>zxcvbn</td>
<td>star</td>
<td>scorpio</td>
</tr>
<tr>
<td>8</td>
<td>qwerty</td>
<td>cameron</td>
<td>tomcat</td>
<td>testing</td>
<td>mountain</td>
</tr>
<tr>
<td>9</td>
<td>696969</td>
<td>654321</td>
<td>golf</td>
<td>shannon</td>
<td>madison</td>
</tr>
<tr>
<td>10</td>
<td>mustang</td>
<td>computer</td>
<td>bond007</td>
<td>murphy</td>
<td>987654</td>
</tr>
<tr>
<td>11</td>
<td>letmein</td>
<td>amanda</td>
<td>bear</td>
<td>frank</td>
<td>brazil</td>
</tr>
<tr>
<td>12</td>
<td>baseball</td>
<td>wizard</td>
<td>tiger</td>
<td>hannah</td>
<td>lauren</td>
</tr>
<tr>
<td>13</td>
<td>master</td>
<td>xxxxxxxx</td>
<td>doctor</td>
<td>dave</td>
<td>japan</td>
</tr>
<tr>
<td>14</td>
<td>michael</td>
<td>money</td>
<td>gateway</td>
<td>eagle1</td>
<td>naked</td>
</tr>
<tr>
<td>15</td>
<td>football</td>
<td>phoenix</td>
<td>gators</td>
<td>11111</td>
<td>squirt</td>
</tr>
<tr>
<td>16</td>
<td>shadow</td>
<td>mickey</td>
<td>angel</td>
<td>mother</td>
<td>stars</td>
</tr>
<tr>
<td>17</td>
<td>monkey</td>
<td>bailey</td>
<td>junior</td>
<td>nathan</td>
<td>apple</td>
</tr>
<tr>
<td>18</td>
<td>abc123</td>
<td>knight</td>
<td>thx1138</td>
<td>raiders</td>
<td>alexis</td>
</tr>
<tr>
<td>19</td>
<td>pass</td>
<td>iceman</td>
<td>porno</td>
<td>steve</td>
<td>aaaa</td>
</tr>
<tr>
<td>20</td>
<td>fuckme</td>
<td>tigers</td>
<td>badboy</td>
<td>forever</td>
<td>bonnie</td>
</tr>
<tr>
<td>21</td>
<td>6969</td>
<td>purple</td>
<td>debbie</td>
<td>angela</td>
<td>peaches</td>
</tr>
<tr>
<td>22</td>
<td>jordan</td>
<td>andrea</td>
<td>spider</td>
<td>viper</td>
<td>jasmine</td>
</tr>
<tr>
<td>23</td>
<td>harley</td>
<td>horny</td>
<td>melissa</td>
<td>ou812</td>
<td>kevin</td>
</tr>
<tr>
<td>24</td>
<td>ranger</td>
<td>dakota</td>
<td>booger</td>
<td>jake</td>
<td>matt</td>
</tr>
<tr>
<td>25</td>
<td>iwantu</td>
<td>aaaaaa</td>
<td>1212</td>
<td>lovers</td>
<td>qwertyui</td>
</tr>
<tr>
<td>26</td>
<td>jennifer</td>
<td>player</td>
<td>flyers</td>
<td>suckit</td>
<td>danielle</td>
</tr>
<tr>
<td>27</td>
<td>hunter</td>
<td>sunshine</td>
<td>fish</td>
<td>gregory</td>
<td>beaver</td>
</tr>
<tr>
<td>28</td>
<td>fuck</td>
<td>morgan</td>
<td>porn</td>
<td>buddy</td>
<td>4321</td>
</tr>
<tr>
<td>29</td>
<td>2000</td>
<td>starwars</td>
<td>matrix</td>
<td>whatever</td>
<td>4128</td>
</tr>
<tr>
<td>30</td>
<td>test</td>
<td>boomer</td>
<td>teens</td>
<td>young</td>
<td>runner</td>
</tr>
<tr>
<td>31</td>
<td>batman</td>
<td>cowboys</td>
<td>scooby</td>
<td>nicholas</td>
<td>swimming</td>
</tr>
<tr>
<td>32</td>
<td>trustno1</td>
<td>edward</td>
<td>jason</td>
<td>lucky</td>
<td>dolphin</td>
</tr>
<tr>
<td>33</td>
<td>thomas</td>
<td>charles</td>
<td>walter</td>
<td>helpme</td>
<td>gordon</td>
</tr>
<tr>
<td>34</td>
<td>tigger</td>
<td>girls</td>
<td>cumshot</td>
<td>jackie</td>
<td>casper</td>
</tr>
<tr>
<td>35</td>
<td>robert</td>
<td>booboo</td>
<td>boston</td>
<td>monica</td>
<td>stupid</td>
</tr>
<tr>
<td>36</td>
<td>access</td>
<td>coffee</td>
<td>braves</td>
<td>midnight</td>
<td>shit</td>
</tr>
<tr>
<td>37</td>
<td>love</td>
<td>xxxxxx</td>
<td>yankee</td>
<td>college</td>
<td>saturn</td>
</tr>
<tr>
<td>38</td>
<td>buster</td>
<td>bulldog</td>
<td>lover</td>
<td>baby</td>
<td>gemini</td>
</tr>
<tr>
<td>39</td>
<td>1234567</td>
<td>ncc1701</td>
<td>barney</td>
<td>cunt</td>
<td>apples</td>
</tr>
<tr>
<td>40</td>
<td>soccer</td>
<td>rabbit</td>
<td>victor</td>
<td>brian</td>
<td>august</td>
</tr>
<tr>
<td>41</td>
<td>hockey</td>
<td>peanut</td>
<td>tucker</td>
<td>mark</td>
<td>3333</td>
</tr>
<tr>
<td>42</td>
<td>killer</td>
<td>john</td>
<td>princess</td>
<td>startrek</td>
<td>canada</td>
</tr>
<tr>
<td>43</td>
<td>george</td>
<td>johnny</td>
<td>mercedes</td>
<td>sierra</td>
<td>blazer</td>
</tr>
<tr>
<td>44</td>
<td>sexy</td>
<td>gandalf</td>
<td>5150</td>
<td>leather</td>
<td>cumming</td>
</tr>
<tr>
<td>45</td>
<td>andrew</td>
<td>spanky</td>
<td>doggie</td>
<td>232323</td>
<td>hunting</td>
</tr>
<tr>
<td>46</td>
<td>charlie</td>
<td>winter</td>
<td>zzzzzz</td>
<td>4444</td>
<td>kitty</td>
</tr>
<tr>
<td>47</td>
<td>superman</td>
<td>brandy</td>
<td>gunner</td>
<td>beavis</td>
<td>rainbow</td>
</tr>
<tr>
<td>48</td>
<td>asshole</td>
<td>compaq</td>
<td>horney</td>
<td>bigcock</td>
<td>112233</td>
</tr>
<tr>
<td>49</td>
<td>fuckyou</td>
<td>carlos</td>
<td>bubba</td>
<td>happy</td>
<td>arthur</td>
</tr>
<tr>
<td>50</td>
<td>dallas</td>
<td>tennis</td>
<td>2112</td>
<td>sophie</td>
<td>cream</td>
</tr>
<tr>
<td>51</td>
<td>jessica</td>
<td>james</td>
<td>fred</td>
<td>ladies</td>
<td>calvin</td>
</tr>
<tr>
<td>52</td>
<td>panties</td>
<td>mike</td>
<td>johnson</td>
<td>naughty</td>
<td>shaved</td>
</tr>
<tr>
<td>53</td>
<td>pepper</td>
<td>brandon</td>
<td>xxxxx</td>
<td>giants</td>
<td>surfer</td>
</tr>
<tr>
<td>54</td>
<td>1111</td>
<td>fender</td>
<td>tits</td>
<td>booty</td>
<td>samson</td>
</tr>
<tr>
<td>55</td>
<td>austin</td>
<td>anthony</td>
<td>member</td>
<td>blonde</td>
<td>kelly</td>
</tr>
<tr>
<td>56</td>
<td>william</td>
<td>blowme</td>
<td>boobs</td>
<td>fucked</td>
<td>paul</td>
</tr>
<tr>
<td>57</td>
<td>daniel</td>
<td>ferrari</td>
<td>donald</td>
<td>golden</td>
<td>mine</td>
</tr>
<tr>
<td>58</td>
<td>golfer</td>
<td>cookie</td>
<td>bigdaddy</td>
<td>0</td>
<td>king</td>
</tr>
<tr>
<td>59</td>
<td>summer</td>
<td>chicken</td>
<td>bronco</td>
<td>fire</td>
<td>racing</td>
</tr>
<tr>
<td>60</td>
<td>heather</td>
<td>maverick</td>
<td>penis</td>
<td>sandra</td>
<td>5555</td>
</tr>
<tr>
<td>61</td>
<td>hammer</td>
<td>chicago</td>
<td>voyager</td>
<td>pookie</td>
<td>eagle</td>
</tr>
<tr>
<td>62</td>
<td>yankees</td>
<td>joseph</td>
<td>rangers</td>
<td>packers</td>
<td>hentai</td>
</tr>
<tr>
<td>63</td>
<td>joshua</td>
<td>diablo</td>
<td>birdie</td>
<td>einstein</td>
<td>newyork</td>
</tr>
<tr>
<td>64</td>
<td>maggie</td>
<td>sexsex</td>
<td>trouble</td>
<td>dolphins</td>
<td>little</td>
</tr>
<tr>
<td>65</td>
<td>biteme</td>
<td>hardcore</td>
<td>white</td>
<td>0</td>
<td>redwings</td>
</tr>
<tr>
<td>66</td>
<td>enter</td>
<td>666666</td>
<td>topgun</td>
<td>chevy</td>
<td>smith</td>
</tr>
<tr>
<td>67</td>
<td>ashley</td>
<td>willie</td>
<td>bigtits</td>
<td>winston</td>
<td>sticky</td>
</tr>
<tr>
<td>68</td>
<td>thunder</td>
<td>welcome</td>
<td>bitches</td>
<td>warrior</td>
<td>cocacola</td>
</tr>
<tr>
<td>69</td>
<td>cowboy</td>
<td>chris</td>
<td>green</td>
<td>sammy</td>
<td>animal</td>
</tr>
<tr>
<td>70</td>
<td>silver</td>
<td>panther</td>
<td>super</td>
<td>slut</td>
<td>broncos</td>
</tr>
<tr>
<td>71</td>
<td>richard</td>
<td>yamaha</td>
<td>qazwsx</td>
<td>8675309</td>
<td>private</td>
</tr>
<tr>
<td>72</td>
<td>fucker</td>
<td>justin</td>
<td>magic</td>
<td>zxcvbnm</td>
<td>skippy</td>
</tr>
<tr>
<td>73</td>
<td>orange</td>
<td>banana</td>
<td>lakers</td>
<td>nipples</td>
<td>marvin</td>
</tr>
<tr>
<td>74</td>
<td>merlin</td>
<td>driver</td>
<td>rachel</td>
<td>power</td>
<td>blondes</td>
</tr>
<tr>
<td>75</td>
<td>michelle</td>
<td>marine</td>
<td>slayer</td>
<td>victoria</td>
<td>enjoy</td>
</tr>
<tr>
<td>76</td>
<td>corvette</td>
<td>angels</td>
<td>scott</td>
<td>asdfgh</td>
<td>girl</td>
</tr>
<tr>
<td>77</td>
<td>bigdog</td>
<td>fishing</td>
<td>2222</td>
<td>vagina</td>
<td>apollo</td>
</tr>
<tr>
<td>78</td>
<td>cheese</td>
<td>david</td>
<td>asdf</td>
<td>toyota</td>
<td>parker</td>
</tr>
<tr>
<td>79</td>
<td>matthew</td>
<td>maddog</td>
<td>video</td>
<td>travis</td>
<td>qwert</td>
</tr>
<tr>
<td>80</td>
<td>121212</td>
<td>hooters</td>
<td>london</td>
<td>hotdog</td>
<td>time</td>
</tr>
<tr>
<td>81</td>
<td>patrick</td>
<td>wilson</td>
<td>7777</td>
<td>paris</td>
<td>sydney</td>
</tr>
<tr>
<td>82</td>
<td>martin</td>
<td>butthead</td>
<td>marlboro</td>
<td>rock</td>
<td>women</td>
</tr>
<tr>
<td>83</td>
<td>freedom</td>
<td>dennis</td>
<td>srinivas</td>
<td>xxxx</td>
<td>voodoo</td>
</tr>
<tr>
<td>84</td>
<td>ginger</td>
<td>fucking</td>
<td>internet</td>
<td>extreme</td>
<td>magnum</td>
</tr>
<tr>
<td>85</td>
<td>blowjob</td>
<td>captain</td>
<td>action</td>
<td>redskins</td>
<td>juice</td>
</tr>
<tr>
<td>86</td>
<td>nicole</td>
<td>bigdick</td>
<td>carter</td>
<td>erotic</td>
<td>abgrtyu</td>
</tr>
<tr>
<td>87</td>
<td>sparky</td>
<td>chester</td>
<td>jasper</td>
<td>dirty</td>
<td>777777</td>
</tr>
<tr>
<td>88</td>
<td>yellow</td>
<td>smokey</td>
<td>monster</td>
<td>ford</td>
<td>dreams</td>
</tr>
<tr>
<td>89</td>
<td>camaro</td>
<td>xavier</td>
<td>teresa</td>
<td>freddy</td>
<td>maxwell</td>
</tr>
<tr>
<td>90</td>
<td>secret</td>
<td>steven</td>
<td>jeremy</td>
<td>arsenal</td>
<td>music</td>
</tr>
<tr>
<td>91</td>
<td>dick</td>
<td>viking</td>
<td>11111111</td>
<td>access14</td>
<td>rush2112</td>
</tr>
<tr>
<td>92</td>
<td>falcon</td>
<td>snoopy</td>
<td>bill</td>
<td>wolf</td>
<td>russia</td>
</tr>
<tr>
<td>93</td>
<td>taylor</td>
<td>blue</td>
<td>crystal</td>
<td>nipple</td>
<td>scorpion</td>
</tr>
<tr>
<td>94</td>
<td>111111</td>
<td>eagles</td>
<td>peter</td>
<td>iloveyou</td>
<td>rebecca</td>
</tr>
<tr>
<td>95</td>
<td>131313</td>
<td>winner</td>
<td>pussies</td>
<td>alex</td>
<td>tester</td>
</tr>
<tr>
<td>96</td>
<td>123123</td>
<td>samantha</td>
<td>cock</td>
<td>florida</td>
<td>mistress</td>
</tr>
<tr>
<td>97</td>
<td>bitch</td>
<td>house</td>
<td>beer</td>
<td>eric</td>
<td>phantom</td>
</tr>
<tr>
<td>98</td>
<td>hello</td>
<td>miller</td>
<td>rocket</td>
<td>legend</td>
<td>billy</td>
</tr>
<tr>
<td>99</td>
<td>scooter</td>
<td>flower</td>
<td>theman</td>
<td>movie</td>
<td>6666</td>
</tr>
<tr>
<td>100</td>
<td>please</td>
<td>jack</td>
<td>oliver</td>
<td>success</td>
<td>albert</td>
</tr>
</tbody>
</table>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=186&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2010/04/19/the-top-500-worst-passwords-of-all-time/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Microsoft Windows XP Default Accounts</title>
		<link>http://www.hacking-gurus.net/2009/08/24/microsoft-windows-xp-default-accounts/</link>
		<comments>http://www.hacking-gurus.net/2009/08/24/microsoft-windows-xp-default-accounts/#comments</comments>
		<pubDate>Mon, 24 Aug 2009 16:28:51 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[Tutorialz]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[Cheat Sheet]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Microsoft Windows]]></category>
		<category><![CDATA[Microsoft Xp]]></category>
		<category><![CDATA[windows xp]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/2009/08/24/microsoft-windows-xp-default-accounts/</guid>
		<description><![CDATA[
		
		
		
		A good cheat sheet to have  

]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2009/08/24/microsoft-windows-xp-default-accounts/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "Microsoft+Windows+XP+Default+Accounts";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = "A good cheat sheet to have  ";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p>A good cheat sheet to have <img src='http://www.hacking-gurus.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p><a href="http://www.hacking-gurus.net/wp-content/uploads/2009/08/28ja3ar.png"><img style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px" title="28ja3ar" src="http://www.hacking-gurus.net/wp-content/uploads/2009/08/28ja3ar_thumb.png" border="0" alt="28ja3ar" width="611" height="489" /></a></p>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=141&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2009/08/24/microsoft-windows-xp-default-accounts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Recover Active Directory Saved Passwords or mscash with John</title>
		<link>http://www.hacking-gurus.net/2009/05/17/recover-or-hack-active-directory-saved-passwords-or-mscash-with-john/</link>
		<comments>http://www.hacking-gurus.net/2009/05/17/recover-or-hack-active-directory-saved-passwords-or-mscash-with-john/#comments</comments>
		<pubDate>Sun, 17 May 2009 05:26:52 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[Abel]]></category>
		<category><![CDATA[active directory]]></category>
		<category><![CDATA[cachedump]]></category>
		<category><![CDATA[cain]]></category>
		<category><![CDATA[cracking]]></category>
		<category><![CDATA[cygwin]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[make]]></category>
		<category><![CDATA[miccrosoft]]></category>
		<category><![CDATA[mscash]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[registry]]></category>
		<category><![CDATA[root]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/?p=115</guid>
		<description><![CDATA[
		
		
		
		Hello Everyone ,
if you use active directory you may notice windows xp sometimes allows you to login to computer even if your network is unplugged. this is because microsoft save your active directory password hash into your system registry using some algorithm named as MSCASH . there are many tools availble on internet to dump [...]]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2009/05/17/recover-or-hack-active-directory-saved-passwords-or-mscash-with-john/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "Recover+Active+Directory+Saved+Passwords+or+mscash+with+John";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = "Hello Everyone ,if you use active directory you may notice windows xp sometimes allows you to login to computer even if your network is unplugged. this is because microsoft save your active directory password hash into your system registry using some algorithm named as MSCASH . there are many tools availble on internet to dump or to get these password...";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p>Hello Everyone ,</p>
<p>if you use active directory you may notice windows xp sometimes allows you to login to computer even if your network is unplugged. this is because microsoft save your active directory password hash into your system registry using some algorithm named as <em><strong>MSCASH</strong></em> . there are many tools availble on internet to dump or to get these password hashes from registry.Password hash is saved in the <span class="interwiki iw_wp">Windows registry</span> and by default saved 10 hashes.you can read more about <a href="http://openwall.info/wiki/john/MSCash" target="_blank">mscash </a>here .</p>
<p><span id="more-115"></span></p>
<p><strong>Tools :</strong></p>
<p><strong><em>cachedump:</em></strong></p>
<p>i personally first used cachedump a great dos based tool with which u can get saved active directory password hash.</p>
<p>you can download cachedump <a href="http://www.hacktoolrepository.com/files/Passwords/CacheDump/cachedump-1.2.zip" target="_blank">here</a> .</p>
<p><em><strong>Cain        &amp; Abel : </strong></em></p>
<p>the second great tool availble to dump AD {active directory} saved hashes is Cain        &amp; Abel you can download Cain        &amp; Abel <a href="http://www.oxid.it/" target="_blank">here</a></p>
<div id="attachment_117" class="wp-caption alignleft" style="width: 160px"><img class="size-thumbnail wp-image-117" title="recover lost active directory password" src="http://www.hacking-gurus.net/wp-content/uploads/2009/05/300_password0-150x150.jpg" alt="Recover Password" width="150" height="150" /><p class="wp-caption-text">Recover Password</p></div>
<p>.</p>
<p><strong>Second Part Crack Password : </strong></p>
<p>now as you have your lost password hash you can use john the ripper with a small patch to crack your lost password mscash hash.</p>
<p>first you need a linux (ubuntu will be ok ) machine to use john. offcourse u can use windows but i will preffer linux as i dont know how we can patch john for mscash support ( i think you can do it using cygwin ). ok lets download and install john and patch it.</p>
<p><strong>Rule # 1 :</strong> Don&#8217;t install john using apt-get install john ( if u do have thats ok but we will not be using that ) .</p>
<p><strong>Step # 1 :</strong> login to your linux box.</p>
<p><strong>Step # 2:</strong> download john 1.72 using :</p>
<p><code> wget -c ftp://ftp.openwall.com/pub/projects/john/1.7.2/john-1.7.2.tar.gz </code></p>
<p><strong>Step # 3: </strong>extract john using :</p>
<p><code>tar xzf john-1.7.2.tar.gz</code></p>
<p><strong>Step # 4:</strong> download patch for mscash using :</p>
<p><code>wget http://coast.cs.purdue.edu/pub/tools/unix/pwdutils/john/contrib/john-1.7.2-mscash-alainesp-4.1.diff.gz</code></p>
<p><strong>Step # 5: </strong>Rename john to :</p>
<p><code>mv john-1.7.2 john-1.7.2.orig</code></p>
<p><strong>Step # 6:</strong> patch john using :</p>
<p><code> gunzip -c john-1.7.2-mscash-alainesp-4.1.diff.gz | patch -p0 </code></p>
<p><strong>Step # 7:</strong> make John the ripper</p>
<p><code> cd john-1.7.2.orig/src &amp;&amp; make linux-x86-mmx (depend on your system architect) </code></p>
<p><strong>Step # 8: </strong> start cracking password using :</p>
<p><code>../run/john -i:all -format:mscash [filepath] </code></p>
<p>I hope this would help you. <strong>Please post comments and feedback.</strong></p>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=115&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2009/05/17/recover-or-hack-active-directory-saved-passwords-or-mscash-with-john/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Crack MD5 Password Hash Online</title>
		<link>http://www.hacking-gurus.net/2009/04/30/crack-md5-password-hash-online/</link>
		<comments>http://www.hacking-gurus.net/2009/04/30/crack-md5-password-hash-online/#comments</comments>
		<pubDate>Thu, 30 Apr 2009 03:23:19 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Database Security]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[Server Security]]></category>
		<category><![CDATA[Tutorialz]]></category>
		<category><![CDATA[Website Security]]></category>
		<category><![CDATA[cheatsheet]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[db]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[passwd]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[unix]]></category>
		<category><![CDATA[web]]></category>
		<category><![CDATA[web security]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/?p=111</guid>
		<description><![CDATA[
		
		
		
		Hello ,
below is some links to crack md5 password hashes online , i will keep this post updated with all online links for cracking md5.

http://gdataonline.com
http://md5.rednoize.com
http://ice.breaker.free.fr
http://www.milw0rm.com/md5/
http://shm.hard-core.pl/md5/
http://www.hashchecker.com
http://lasecwww.epfl.ch/%7Eoechslin/projects/ophcrack/
http://md5.benramsey.com
http://md5.altervista.org
http://shm.hard-core.pl
http://plain-text.info
http://www.passcracking.ru/
http://www.securitystats.com/tools/hashcrack.php
http://www.xmd5.org/index_en.htm
]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2009/04/30/crack-md5-password-hash-online/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "Crack+MD5+Password+Hash+Online";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = "Hello ,below is some links to crack md5 password hashes online , i will keep this post updated with all online links for cracking md5.http://gdataonline.comhttp://md5.rednoize.comhttp://ice.breaker.free.frhttp://www.milw0rm.com/md5/http://shm.hard-core.pl/md5/http://www.hashchecker.comhttp://lasecwww.epfl.ch/%7Eoechslin/projects/ophcrack/http://md5.benramsey.comhttp://md5.altervista.orghttp://shm.hard-core.plhttp://plain-text.infohttp://www.passcracking.ru/http://www.securitystats.com/tools/hashcrack.phphttp://www.xmd5.org/index_en.htm";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p>Hello ,</p>
<p>below is some links to crack md5 password hashes online , i will keep this post updated with all online links for cracking md5.</p>
<p><span id="more-111"></span></p>
<p><a href="http://gdataonline.com" target="_blank">http://gdataonline.com</a><br />
<a href="http://md5.rednoize.com" target="_blank">http://md5.rednoize.com</a><br />
<a href="http://ice.breaker.free.fr" target="_blank">http://ice.breaker.free.fr</a><br />
<a href="http://www.milw0rm.com/md5/" target="_blank"><strong>http://www.milw0rm.com/md5/</strong></a><br />
<a href="http://shm.hard-core.pl/md5/" target="_blank">http://shm.hard-core.pl/md5/</a><br />
<a href="http://www.hashchecker.com" target="_blank">http://www.hashchecker.com</a><br />
<a href="http://lasecwww.epfl.ch/%7Eoechslin/projects/ophcrack/" target="_blank">http://lasecwww.epfl.ch/%7Eoechslin/projects/ophcrack/</a><br />
<a href="http://md5.benramsey.com" target="_blank">http://md5.benramsey.com</a><br />
<a href="http://md5.altervista.org" target="_blank">http://md5.altervista.org</a><br />
<a href="http://shm.hard-core.pl" target="_blank">http://shm.hard-core.pl</a><br />
<a href="http://plain-text.info" target="_blank">http://plain-text.info</a><br />
<a href="http://www.passcracking.ru/" target="_blank">http://www.passcracking.ru/</a><br />
<a href="http://www.securitystats.com/tools/hashcrack.php" target="_blank">http://www.securitystats.com/tools/hashcrack.php</a><br />
<a href="http://www.xmd5.org/index_en.htm" target="_blank">http://www.xmd5.org/index_en.htm</a></p>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=111&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2009/04/30/crack-md5-password-hash-online/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Lost Windows Vista Password Hack</title>
		<link>http://www.hacking-gurus.net/2009/04/08/lost-windows-vista-password-hack/</link>
		<comments>http://www.hacking-gurus.net/2009/04/08/lost-windows-vista-password-hack/#comments</comments>
		<pubDate>Wed, 08 Apr 2009 17:53:40 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[Tutorialz]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[password meter]]></category>
		<category><![CDATA[permission]]></category>
		<category><![CDATA[ping]]></category>
		<category><![CDATA[repair]]></category>
		<category><![CDATA[reset password]]></category>
		<category><![CDATA[reset vista password in 5 minutes]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vista]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/?p=74</guid>
		<description><![CDATA[
		
		
		
		 Have you forgotten your windows vista password ?   you cannot login to your  computer / laptop ? No worries you can hack windows vista to reset your windows vista password.



Requirements :
1 ) Windows Vista DVD
2 ) Computer with Windows Vista
Please follow steps below to reset your Windows Vista Password in 10 minutes.
Steps : 
1. [...]]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2009/04/08/lost-windows-vista-password-hack/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "Lost+Windows+Vista+Password+Hack";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = " Have you forgotten your windows vista password ?   you cannot login to your  computer / laptop ? No worries you can hack windows vista to reset your windows vista password.Requirements :1 ) Windows Vista DVD2 ) Computer with Windows VistaPlease follow steps below to reset your Windows Vista Password in 10 minutes.Steps : 1. Insert the Windows Vista...";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p><span style="color: #339966;"><span style="text-decoration: underline;"><strong><img class="alignleft size-medium wp-image-79" title="forgot password?" src="http://www.hacking-gurus.net/wp-content/uploads/2009/04/forgot_password-281x300.jpg" alt="forgot password?" width="142" height="150" /></strong></span></span><span style="color: #ff0000;"><strong> Have you forgotten your windows vista password ?   you cannot login to your  computer / laptop ?</strong></span><span style="color: #339966;"><strong> </strong><span style="text-decoration: underline;"><strong>No worries you can hack windows vista to reset your windows vista password.</strong></span></span></p>
<p><span id="more-74"></span></p>
<p><span style="color: #339966;"><span style="text-decoration: underline;"><strong><br />
</strong></span></span></p>
<p>Requirements :</p>
<p><strong>1 )</strong> Windows Vista DVD<br />
<strong>2 )</strong> Computer with Windows Vista</p>
<p><em><strong>Please follow steps below to reset your Windows Vista Password in 10 minutes.</strong></em></p>
<p><strong>Steps : </strong></p>
<p><strong>1.</strong> Insert the Windows Vista DVD into the DVD drive and then restart the computer.<br />
<strong>2.</strong> Change Boot Options 1st Priority to Optical Drive.<br />
<strong>3.</strong> When system booting up, if the message &#8220;Press any key to boot from cd&#8221; appears, immediately press Enter.<br />
<strong>4.</strong> On Language Settings, Time and Currency and Keyboard Layout screen, just choose the correct settings then click Next.<br />
<strong>5.</strong> On Install Now screen, click Repair. Note: Click No just in case you get the message: Windows found problems with your computer&#8217;s startup options.<br />
<strong>6.</strong> On the System Recovery Options screen, under Operating System, click Windows Vista then click Next. Then select Command Prompt.<br />
<strong>7.</strong> At the command prompt windows, type the following command then press Enter after typing each command:<br />
<span style="text-decoration: underline;"> c:<br />
cd windows\system32<br />
echo ~takeown /f %1 /r /d y &gt; TakeControlOf.cmd<br />
echo ~icacls %1 /grant administrators:F /t<br />
ren Magnify.exe Magnify.old<br />
ren cmd.exe Magnify.exe</span><br />
<strong>8.</strong> Restart the computer.<br />
<strong>9.</strong> On the Welcome Screen, click the Ease button.<br />
<strong>10.</strong> Check Make items on the screen larger then click OK.<br />
<strong>11. </strong>At the prompt, type the command then press Enter.</p>
<p><span style="text-decoration: underline;">net user Administrator /active:yes<br />
exit</span><br />
<strong>12.</strong> Restart the computer.</p>
<p><strong><br />
13.</strong> At the welcome screen, logon using the local administrator account.<br />
<strong>14.</strong> Access Control Panel then click User Accounts. Select the username of the account you can&#8217;t login to then remove the password.<br />
<strong>15.</strong> Log off on the current local administrator account your are logon to.<br />
<strong>16.</strong> Check if you can logon to your user account now.<br />
<strong>17.</strong> Open<span style="text-decoration: underline;"> c:\windows\system32</span>.<br />
<strong>18.</strong> Right click on Magnify.exe, select Properties -&gt; Security -&gt; Advanced -&gt; Owner -&gt; Edit -&gt; Administrators then click OK.<br />
<strong>19. </strong>Select Edit -&gt; Administrators -&gt; Full Control then click Apply then OK.<br />
<strong>20.</strong> Rename Magnify.old to Magnify.exe<br />
<strong>21.</strong> Open command prompt then type the command then press Enter.<br />
<span style="text-decoration: underline;">net user Administrator /active:no</span></p>
<p>i hope this will help you <img src='http://www.hacking-gurus.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  feedback will be appreciate.</p>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=74&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2009/04/08/lost-windows-vista-password-hack/feed/</wfw:commentRss>
		<slash:comments>17</slash:comments>
		</item>
		<item>
		<title>800 Most Commonly Chosen Passwords!</title>
		<link>http://www.hacking-gurus.net/2009/04/05/800-most-commonly-chosen-passwords/</link>
		<comments>http://www.hacking-gurus.net/2009/04/05/800-most-commonly-chosen-passwords/#comments</comments>
		<pubDate>Sun, 05 Apr 2009 18:38:55 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[Tutorialz]]></category>
		<category><![CDATA[common password]]></category>
		<category><![CDATA[default password]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[passwd]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[password meter]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[permission]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/?p=67</guid>
		<description><![CDATA[
		
		
		
		Here are most Commonly Chosen Passwords , Please don not use these words as your Passwords. Please use Password Meter [ http://www.passwordmeter.com/ ] .

aaa abc academia academic access ada admin adrian adrianna aerobics airplane albany albatross albert alex alexander alf algebra alias aliases alice alicia alisa alison allison alpha alphabet ama amadeus amanda amber amorphous [...]]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2009/04/05/800-most-commonly-chosen-passwords/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "800+Most+Commonly+Chosen+Passwords%21";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = "Here are most Commonly Chosen Passwords , Please don not use these words as your Passwords. Please use Password Meter  .aaa abc academia academic access ada admin adrian adrianna aerobics airplane albany albatross albert alex alexander alf algebra alias aliases alice alicia alisa alison allison alpha alphabet ama amadeus amanda amber amorphous amy analog...";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p>Here are most Commonly Chosen Passwords , Please don not use these words as your Passwords. Please use Password Meter [ http://www.passwordmeter.com/ ] .</p>
<p><span id="more-67"></span></p>
<p>aaa abc academia academic access ada admin adrian adrianna aerobics airplane albany albatross albert alex alexander alf algebra alias aliases alice alicia alisa alison allison alpha alphabet ama amadeus amanda amber amorphous amy analog anchor andrea andromache andy angela angerine angie animals anita ann anna anne annette answer anthropogenic anvils anything april aria ariadne arlene arrow arthur asd asm asshole athena atmosphere aztecs azure</p>
<p>bacchus badass bailey banana bananas bandit banks barbara barber baritone bart bartman basic bass bassoon batch batman beach beater beauty beaver becky beethoven beloved benz beowulf berkeley berlin berliner beryl beta beth betsie betty beverly bicameral bishop bitch bob bradley brandi brandy brenda brian bridget broadway bsd bumbling burgess</p>
<p>cad camille campanile candi candy cantor cardinal caren carla carmen carol carole carolina caroline carrie carson cascades castle cat catherine cathy cayuga cecily celtics cerulean change charity charles charming charon chat chem chemistry chess chester christina christine christy cigar cindy class classic claudia cluster clusters code coffee coke collins commrades computer comrade comrades condo condom connect connie console cookie cooper cornelius couscous create creation creosote cretin criminal cristina crystal cshrc cynthia</p>
<p>daemon daisy dana dancer daniel danielle danny dapper data dave dawn deb debbie deborah december default defoe deluge denise desiree desperate develop device dial diana diane diet dieter digital disc discovery disk disney dog dos drought dulce duncan</p>
<p>eager earth easier easy eatme edges edinburgh edwin edwina egghead eiderdown eileen einstein elaine elanor elephant elizabeth ellen email emerald emily emmanuel enemy engine engineer enterprise enzyme erenity erica erika erin ersatz establish estate eternity euclid evelyn extension</p>
<p>fairway felicia fender fermat ferrari fidelity field file finite fishers flakes float flower flowers foolproof football foresight format forsythe fourier fred friend frighten fun function fungible</p>
<p>gabriel games gardner garfield gatt gauss george gertrude gibson gina ginger glacier gnu golf golfer gorgeous gorges gosling gouge graham grahm group gryphon gucci guess guest guitar gumption guntis</p>
<p>hack hacker hal hamlet handily happening harmony harold harvey hawaii heather hebrides heidi heinlein hello help herbert hiawatha hibernia hidden holly homework honey horse horus hutchins hydrogen</p>
<p>ibm imbroglio imperial include ingres ingress ingrid inna innocuous internet irene irishman isis</p>
<p>jackie jane janet janice janie japan jasmin jean jeanne jen jenni jennifer jenny jessica jester jill jixian joanne jody johnny joseph joshua joy joyce judith judy juggle julia julie june jupiter</p>
<p>karen karie karina kate kathleen kathrine kathy katina katrina kelly keri kermit kernel kerri kerrie kerry key kim kimberly kirkland kitten knight krista kristen kristi kristie kristin kristine kristy</p>
<p>ladle lambda lamination lana lara larkin larry laura lazarus leah lebesgue lee leland leroy leslie lewis library light linda lisa lisp liz lock lockout lois lori lorin lorraine louis love lucy lynn lynne</p>
<p>macintosh mack maggot magic mail maint malcolm malcom manager mara marci marcy maria marietta mark markus marni mars marty marvin mary master math maurice meagan megan melissa mellon memory mercury merlin mets mgr michael michele michelle mickey mike minimum minsky mit modem mogul moguls monica moose morley mouse mozart mutant</p>
<p>nagel nancy napoleon nasa nepenthe neptune ness net network new news newton next nicole nita nobody noreen noxious nuclear nutrition nyquist</p>
<p>oceanography ocelot office olivetti olivia open operator oracle orca orwell osiris outlaw oxford</p>
<p>pacific pad painless pakistan pam pamela paper papers pass password pat patricia patty paula pencil penelope penguin penis peoria percolate persimmon persona pete peter philip phoenix phone pierre pizza plane playboy plover pluto plymouth polly polynomial pondering pork porsche poster power praise precious prelude presto prince princeton priv private privs professor profile program protect protozoa pub public pumpkin puneet puppet</p>
<p>qwerty</p>
<p>rabbit rachel rachelle rachmaninoff rainbow raindrop raleigh random rascal reagan really rebecca regional remote renee rick ripple risc rje robin robot robotics robyn rochelle rochester rodent rolex romano ronald root rose rosebud rosemary roses ruben rules ruth</p>
<p>sal samantha sandra sandy sara sarah saturn saxon scamper scheme school scott scotty secret security sensor serenity service sesame sex shannon sharc shark sharks sharon sheffield sheldon shell sherri shirley shit shiva shivers shuttle signature simon simple simpsons singer single smile smiles smooch smother snatch snoopy soap socrates somebody sondra sonia sonya sossina sparrows spit spring springer squires stacey staci stacie stacy steph stephanie strangle stratford student stuttgart subway success summer sun super superstage superuser support supported surfer susan susanne susie suzanne suzie swearer sybil symmetry sys sysadmin system</p>
<p>tamara tami tamie tammy tangerine tape tara target tarragon taylor tech telephone temptation tennis terminal test thailand theresa tiffany tiger tina toggle tomato topography tortoise toxic toyota traci tracie tracy trails transfer trisha trivial trombone tty tubas tuttle</p>
<p>umesh unhappy unicorn unix unknown uranus urchin ursula util utility uucp</p>
<p>valerie vasant venus veronica vertigo vicky village virgin virginia visitor</p>
<p>wargames warren water weenie wendi wendy whatever whatnot whiting whitney wholesale will william williamsburg willie wilma winston wisconsin wizard wombat woodwind word work wormwood wyoming</p>
<p>xfer xmodem xyz xyzzy</p>
<p>yaco yang yellowstone yolanda yosemite</p>
<p>zap zimmerman zmodem</p>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=67&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2009/04/05/800-most-commonly-chosen-passwords/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Lost Password Recovery :: John The Ripper TUTORIAL</title>
		<link>http://www.hacking-gurus.net/2009/03/11/lost-password-recovery-john-the-ripper-tutorial/</link>
		<comments>http://www.hacking-gurus.net/2009/03/11/lost-password-recovery-john-the-ripper-tutorial/#comments</comments>
		<pubDate>Wed, 11 Mar 2009 09:43:26 +0000</pubDate>
		<dc:creator>r00t</dc:creator>
				<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Network Tools]]></category>
		<category><![CDATA[Password Recovery]]></category>
		<category><![CDATA[Server Security]]></category>
		<category><![CDATA[Tutorialz]]></category>
		<category><![CDATA[decryper]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[jhon]]></category>
		<category><![CDATA[JTR]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[linux recover password]]></category>
		<category><![CDATA[lost password]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[passwd]]></category>
		<category><![CDATA[permission]]></category>
		<category><![CDATA[ping]]></category>
		<category><![CDATA[ripper]]></category>
		<category><![CDATA[sniffer]]></category>
		<category><![CDATA[tutorial]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[WORDFILE]]></category>

		<guid isPermaLink="false">http://www.hacking-gurus.net/?p=47</guid>
		<description><![CDATA[
		
		
		
		John the Ripper is a decrypting program for passwords. Although it has many
functions we will be looking at using it as a decryper for password files
you possess.

We will be looking at Password Files which you have put on your Hard Disk
- PREPARATION
SHORTCUT TIP FOR WINDOWS 95
PASSWORD FILES
- DECRYPTING
JTR MODES
SINGLE MODE
WORDFILE MODE
INCREMENTAL MODE
ALPHA
DIGITS
ALL
SHOW MODE &#8211; Saving [...]]]></description>
			<content:encoded><![CDATA[<div style="float: right; width: 42px; padding-right: 10px; margin: 0 0 0 10px;">
		<script type="text/javascript">
		<!--
		digg_url = "http://www.hacking-gurus.net/2009/03/11/lost-password-recovery-john-the-ripper-tutorial/";
		digg_bgcolor = "#FFFFFF";
		digg_skin = "";
		digg_window = "new";
		digg_title = "Lost+Password+Recovery+%3A%3A+John+The+Ripper+TUTORIAL";
		digg_media = "news";
		digg_topic = "";
		digg_bodytext = "John the Ripper is a decrypting program for passwords. Although it has manyfunctions we will be looking at using it as a decryper for password filesyou possess.We will be looking at Password Files which you have put on your Hard Disk- PREPARATIONSHORTCUT TIP FOR WINDOWS 95PASSWORD FILES- DECRYPTINGJTR MODESSINGLE MODEWORDFILE MODEINCREMENTAL MODEALPHADIGITSALLSHOW...";
		//-->
		</script>
		<script src="http://digg.com/tools/diggthis.js" type="text/javascript"></script></div><p>John the Ripper is a decrypting program for passwords. Although it has many</p>
<p>functions we will be looking at using it as a decryper for password files<br />
you possess.</p>
<p><span id="more-47"></span></p>
<p>We will be looking at Password Files which you have put on your Hard Disk<br />
- <strong>PREPARATION</strong><br />
SHORTCUT TIP FOR WINDOWS 95<br />
PASSWORD FILES<br />
- <strong>DECRYPTING</strong><br />
JTR MODES<br />
SINGLE MODE<br />
WORDFILE MODE<br />
INCREMENTAL MODE<br />
ALPHA<br />
DIGITS<br />
ALL<br />
SHOW MODE &#8211; Saving the Decrypted Files<br />
- <strong>ADVANCED COMMANDS</strong><br />
STOPPING JTR<br />
RULES<br />
SESSION and RESTORE<br />
- <strong>JTR QUICK REFERENCE</strong></p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p>. &#8212;&#8212;&#8212;&#8211;<br />
<strong>PREPARATION</strong><br />
&#8212;&#8212;&#8212;&#8211;<br />
1. Download the correct version of JTR, use win32 for Win 95/98<br />
2. Extract the zip File into a Directory<br />
3. Make sure you have your Password Files in the same directory</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
<strong>SHORTCUT TIP FOR WINDOWS 95</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
1. Right Click on the [Start] Button, and choose Open<br />
2. Double Click on [Programs] Folder<br />
3. Right Click and Copy, [MS-DOS Prompt]<br />
4. Close the [Programs] Folder<br />
5. Right Click and Paste on the Desktop, a [MS-DOS Prompt] should appear<br />
6. Right Click on the [MS-DOS Prompt] icon and choose Properties<br />
7. Click on the Program Tab<br />
8. In the box next to Working (It should have C:WINDOWS in there) Change<br />
it to the Directory of where-ever the Program JOHN.EXE has been<br />
extracted<br />
9. Click on the [OK] button<br />
10. Test what you have done by Double Clicking on the Icon, If you wish to<br />
rename [MS-DOS Prompt] to JTR, then do so</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8211;<br />
<strong> PASSWORD FILES</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8211;<br />
A. Naming<br />
I personally name my files with a p extension, some people use txt<br />
eg If i had the password file to Dannis&#8217;, I would name it danni.p<br />
The reason is that p stands for password file, I then name my decrypted<br />
password files with a txt extension<br />
It is really up to you what you name your password files, just remember<br />
that the names should be less than 8 characters<br />
eg likethis.p<br />
B. Where should I put them?<br />
Always have the password files you have found in the same directory as<br />
JOHN.EXE, Its just easier to handle them that way</p>
<p>&#8212;&#8212;&#8212;-<br />
<strong> DECRYPTING</strong><br />
&#8212;&#8212;&#8212;-<br />
Depending on what JTR version you have downloaded, you have to change into<br />
the directory JOHN.EXE is</p>
<p>&#8212;&#8212;&#8212;<br />
<strong> JTR MODES</strong><br />
&#8212;&#8212;&#8212;<br />
There are 3 main modes we will be dealing with<br />
-single, -wordfile, -incremental</p>
<p>[KEYS]<br />
[passfile] &#8211; this is the name of your password file<br />
[wordlist] &#8211; this is the name of your wordlist<br />
[output] &#8211; this is the name of the file you will name when you want to<br />
save your decrypted passwords</p>
<p>&#8212;&#8212;&#8212;&#8211;<br />
<strong> SINGLE MODE</strong><br />
&#8212;&#8212;&#8212;&#8211;<br />
Single Mode attempts to find the weakest of all the passwords. This is one<br />
of the fastest methods.</p>
<p>SINGLE MODE SYNTAX<br />
john -single [passfile]<br />
or you could use<br />
john -si [passfile]</p>
<p>Example:<br />
If you found a [passfile] and named it danni.p then you would type<br />
john -si danni.p</p>
<p>Take a look at SCREEN SHOT OF A JTR SESSION</p>
<p>&#8212;&#8212;&#8212;&#8212;-<br />
<strong> WORDFILE MODE</strong><br />
&#8212;&#8212;&#8212;&#8212;-<br />
Wordfile Mode is the next quickest method. It requires the use of a wordlist<br />
The wordlist must be in a single wordlist and not a combo list</p>
<p><strong>WORDFILE SYNTAX</strong><br />
john -wordfile:[wordlist] [passfile]<br />
or<br />
john -w:[wordlist] [passfile]</p>
<p>Example:<br />
If you found a [passfile] and named it danni.p and you had a [wordlist]<br />
named mydict.txt then you would type</p>
<p>john -w:mydict.txt danni.p</p>
<p>Take a look at SCREEN SHOT OF A JTR SESSION</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
<strong> INCREMENTAL MODE</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
Incremental mode is the slowest mode and will try to decrypt every pass in<br />
your passfile, as this can take days, months even years, I would use it as<br />
a last resort</p>
<p>There are 4 basic commands we will be dealing with<br />
digits, alpha, all, and leaving it blank</p>
<p>DIGITS mode<br />
This will try to decrypt all the Passwords that are in numbers</p>
<p>ALPHA mode<br />
This will try to decrypt all the Passwords that are letters only</p>
<p>ALL mode<br />
This will try to decrypt all the Passwords, whether they are in numbers, in<br />
letters or some special characters (@!^&amp;&#8230;etc)</p>
<p>WITH NO MODE SELECTED<br />
This will basically do everything to try to decrypt the password file</p>
<p>SYNTAX<br />
john -i [passfile]<br />
john -i:DIGITS [passfile]<br />
john -i:ALPHA [passfile]<br />
john -i:ALL [passfile]</p>
<p><strong>Example:</strong><br />
If you found a [passfile] and named it danni.p<br />
john -i danni.p<br />
john -i:DIGITS danni.p<br />
john -i:ALPHA danni.p<br />
john -i:ALL danni.p</p>
<p>Take a look at SCREEN SHOT OF A JTR SESSION</p>
<p>When running in this mode, If you ever want to stop it push CTRL &#8211; C</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<br />
<strong> SHOW MODE &#8211; Saving the Decrypted Files</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<br />
Finally, once JTR has finished its decrypting process, you will be ready<br />
to enjoy the results. These you will save in a file name of your choice.</p>
<p><strong>SHOW SYNTAX</strong><br />
john -show [passfile]&gt;[output]</p>
<p>Example:<br />
If you found a [passfile] and named it danni.p, you decide you want to name the<br />
decrypted password file or [output] to danni.txt</p>
<p>john -show danni.p&gt;danni.txt</p>
<p>Now you can open danni.txt in a TEXT EDITOR<br />
You will see something like this</p>
<p>italia:italiano<br />
makoto:makotox<br />
PADWICK:PADWICKH<br />
kelley:kelleyaj<br />
bechtel:jbechtel<br />
mequery:queryme<br />
seeeee:meeeee<br />
stevewm:stevenm</p>
<p>8 passwords cracked, 246 left</p>
<p>Hopefully you will get more passwords than the example though</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<br />
<strong> ADVANCED COMMANDS</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<br />
Here are a few more commands which prove handy when using JTR</p>
<p>&#8212;&#8212;&#8212;&#8212;<br />
<strong> STOPPING JTR</strong><br />
&#8212;&#8212;&#8212;&#8212;<br />
If at anytime you wish to stop the decrypting process then<br />
Hold down the [ CTRL ] key and Push the [ C ] key</p>
<p>&#8212;&#8211;<br />
<strong>RULES</strong><br />
&#8212;&#8211;<br />
This command is used with the Wordfile Option, without it JTR will try only<br />
the words in your wordlist. When this is activated it will try variations as<br />
outlined in the john.ini file. This is also quite slow</p>
<p>RULES SYNTAX<br />
john w:[wordlist] -rules [passfile]</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
<strong> SESSION &amp; RESTORE</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
Decrypting by now you will notice can become a long a slow process, JTR<br />
allows you to save save and restore sessions. A session is like a snap<br />
shot of what you are decrypting. It remembers what file you used, and<br />
where you were at if you decide to stop it. session can be used with any<br />
of the main modes.</p>
<p>SESSION &amp; RESTORE SYNTAX<br />
john -restore<br />
john -restore:[session name]<br />
john -session:[session name]</p>
<p>[session name] is any name you choose</p>
<p><strong>EXAMPLE</strong><br />
&#8212;&#8212;-<br />
Lets say you want to decrypt a file named danni.p</p>
<p>OK you&#8217;ve used the -si mode, which was quick<br />
With your trusty wordlist file named biglist.txt you next run the -w mode</p>
<p><strong>FINAL NOTES</strong><br />
&#8212;&#8212;&#8212;&#8211;<br />
There are many other features that JTR uses, that are Advanced, these can be<br />
found in the DOC folder in JTR, just use a text editor to open and read them<br />
We were only concerned with getting at least 50% of the passwords. This may<br />
be achieved by SINGLE and WORDFILE modes<br />
SPEED is dependant on your CPU, If you screen looks like its frozen and<br />
doing nothing, just hit any key a couple of times, you will see a mini<br />
progress report.<br />
Speed is also dependant on the size of your password file and the number of<br />
salts, A salt can be thought of as a slightly different way to encrypt a<br />
file. As there are many ways to encrypt a single password</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
<strong> JTR QUICK REFERENCE</strong><br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
[KEYS]<br />
[passfile] &#8211; this is the name of your password file<br />
[wordlist] &#8211; this is the name of your wordlist<br />
[output] &#8211; this is the name of the file you will name when you want to<br />
save your decrypted passwords<br />
: &#8211; whenever you see a colon then use it in the command<br />
- &#8211; whenever you see a minus sign then use it in the command<br />
&gt; &#8211; whenever you see this sign then use it in the command<br />
[] &#8211; DO NOT INCLUDE THESE IN THE COMMAND</p>
<p>SINGLE MODE<br />
john -si [passfile]<br />
WORDFILE MODE<br />
john -w:[wordlist] [passfile]<br />
INCREMENTAL MODES<br />
john -i [passfile]<br />
john -i:ALL [passfile]<br />
john -i:DIGITS [passfile]<br />
john -i:ALPHA [passfile]<br />
SHOW MODES<br />
john -show [passfile]&gt;[output]</p>
<p>Loaded 254 passwords with 85 different salts (Standard DES [32/32 BS])<br />
italia (italiano)<br />
makoto (makotox)<br />
PADWICK (PADWICKH)<br />
kelley (kelleyaj)<br />
bechtel (jbechtel)<br />
mequery (queryme)<br />
seeeee (meeeee)<br />
stevewm (stevenm)<br />
guesses: 8 time: 0:00:01:23 100% c/s: 25771 trying: zcatcatk &#8211; zcatcatz</p>
<img src="http://www.hacking-gurus.net/wp-content/plugins/pixelstats/trackingpixel.php?post_id=47&ts=1280468121" style="display:none;" alt="pixelstats trackingpixel"/>]]></content:encoded>
			<wfw:commentRss>http://www.hacking-gurus.net/2009/03/11/lost-password-recovery-john-the-ripper-tutorial/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
