MD5 Decrypter Forums - www.md5decrypter.co.uk/forum/



Wireless Hacking
 MD5 Decrypter Forums : Wireless Cracking : Wireless Hacking
Message Icon Topic: Online service cracking! Post Reply Post New Topic
Author Message
extreme
Newbie
Newbie


Joined: 09 Aug 2010
Online Status: Offline
Posts: 4
Quote extreme Replybullet Topic: Online service cracking!
    Posted: 09 Aug 2010 at 11:13pm

I have been researching and I have found few online services that can crack wpa handshake.

Maybe if yours file will not be cracked on this forum then you can give it a try with them.

One in my opinion is the best because they charge only if passphrase was successfully cracked www.recoverwpa.com

So you can use them to check if your handshake is crackable at all.

What do you think?
IP IP Logged
BlandyUK
Admin Group
Admin Group
Avatar

Joined: 17 Dec 2008
Online Status: Offline
Posts: 267
Quote BlandyUK Replybullet Posted: 10 Aug 2010 at 8:36am
Seems ok, all they are doing is running the WPA hand-shake thru password lists like everyone else does .
IP IP Logged
extreme
Newbie
Newbie


Joined: 09 Aug 2010
Online Status: Offline
Posts: 4
Quote extreme Replybullet Posted: 12 Aug 2010 at 6:15pm
You are right on that one BlandyUK, but they have specialize hardware to speedup the process, can save lots of time.

Apart from that, I have seen yours inquiry about BTHomeHub2-T2ZZ on this forum and I am currently working on the BTHHv2 WPA2 default algorithm.

Have you managed to get the key for that network?

Because I need some more default ESSIDs MACs and default WPA keys (and if possible serials) to move forward.

At the moment I have only five of them and can post them here so more people could try they best. Basically BTHHv2 uses only 2-9 and a-f characters.
IP IP Logged
BlandyUK
Admin Group
Admin Group
Avatar

Joined: 17 Dec 2008
Online Status: Offline
Posts: 267
Quote BlandyUK Replybullet Posted: 12 Aug 2010 at 11:59pm
Glad to see someone else interested on the default key algos from the ESSID and MACS. There is a pattern, and the BTHHv1 have been cracked, just need v2 now. I'll see what I can get with regards to default keys etc.

With regards special hardware, all you need is a very good GPU to get over 10,000+ WPA keys / sec. Top end Radeon HD 5970 will get over 134,000+ / sec. See below for GPU speeds:

http://www.golubev.com/blog/?p=35


Edited by BlandyUK - 13 Aug 2010 at 12:00am
IP IP Logged
extreme
Newbie
Newbie


Joined: 09 Aug 2010
Online Status: Offline
Posts: 4
Quote extreme Replybullet Posted: 13 Aug 2010 at 12:34am
Well, my friend has HD 5970 and he is getting only 86000 to 96000 h/s average with EWSA. These estimates are well over the scale and before I would buy one, ATI would have to improve they drivers to use the GPUs for calculations .

But still that site I mentioned above is the only one that charges after cracking, that is a huge step forward for WPA decryption. So must be legitimate otherwise they would not make any money.
Not like the other services that charge up front and you can only believe that they did something. I have never heard someone saying on any forum that after payment their handshake was successfully cracked.

Going back to BTHHv2, I think that they use two different algorithms based on the year 08 or 09.
So that why I would need bigger list of ESSIDS, MACs and keys.
Can you provide any? Or where can I post my collection?

Edited by extreme - 13 Aug 2010 at 12:36am
IP IP Logged
extreme
Newbie
Newbie


Joined: 09 Aug 2010
Online Status: Offline
Posts: 4
Quote extreme Replybullet Posted: 19 Aug 2010 at 7:03pm
Together we can find the algorithm faster.
Below is all default info I could get about BTHomeHub2 on the Internet.

ESSID; MAC; WPA2 key; Serial; Model / Year
BTHomeHub2-2RRC 00:1F:9F:3E:26:3C 7279e24999 CP0825JH09Y A 08
BTHomeHub2-M76Z 00:1F:E1:CA:4B:0F 2ad7e7aa8b N/A N/A
BTHomeHub2-C5NN 00:24:2C:4E:72:D9 3d3534d6c4 N/A N/A
BTHomehub2-NJ98     N/A 838da66f57 N/A N/A
BTHomeHub2-3H2R 00:24:2B:48:00:54 bb5cbe7c5f CP0901JH12J A 09



If we could find two characters and the location in the password then brute force of the rest of the key would be possible in reasonable short time.

Just to make it clear, the WPA2 encryption in BTHHv2 uses only 23456789abcdef chracters.

There is also two different types A (Thomson) and B (Siemens).


Just please participate in this subject and add more default inf. to the list.



Thanks
IP IP Logged
Post Reply Post New Topic
Printable version Printable version

Forum Jump
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot delete your posts in this forum
You cannot edit your posts in this forum
You cannot create polls in this forum
You cannot vote in polls in this forum



This page was generated in 0.063 seconds.