Waraxe IT Security Portal
Login or Register
September 22, 2026
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 216
Members: 0
Total: 216
Full disclosure
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
[0day-rubbish] core-admin 1.0.164 (build 16468) Systemic shell command injection via ineffective quote escaping (8.8)
[0day-rubbish] OP5 Monitor 9.20 Command injection surviving the CVE-2025-34115 patch (OPT-IN fix ineffective) (8.8)
[0day-rubbish] QuantaStor 6.8.3.018 Command injection in the alert-mail command via the smtpPassword field (8.8)
[0day-rubbish] SmarterMail 100.0.9693 (Build 9693) Antivirus command-line configuration executing as NT AUTHORITY\SYSTEM (7.2)
[0day-rubbish] Jitterbit Agent 12.8.1.6 (Docker jitterbit/agent:12.8.1.6) Unauthenticated SOAP with hard-coded credentials leading to OS command execution (9.8)
[0day-rubbish] Accurate Online Private Cloud on-prem (current) Unauthenticated Hessian deserialization leading to JNDI remote class loading (9.8)
[0day-rubbish] DBxtra .NET 13.1.1.0 Unauthenticated SOAP API to xp_cmdshell code execution (9.8)
**Subject:** CVE-2026-2035703: Tozed ZLT X300 5G CPE — Unauthenticated Remote Root Code Execution via TR-069 Command Injection (CVSS 9.8)
CVE-2026-52307: Stored XSS in 1CMS v5.6
HP Easy Start for macOS: CVE-2026-12554 / CVE-2026-12555 /CVE-2026-12556
Next.js 16.4.0-canary.13 Image Optimizer DNS Rebinding TOCTOU SSRF Still Exists
O-CMS 1.0.0 Authenticated OS Command Injection viaai_cli_script
Flextype v1.0.0-alpha.3 CMS registerShortcodes() Remote Code Execution via Attacker-Controlled File Inclusion
Flextype v1.0.0-alpha.3 Stored Fetch Shortcode Allows Server-Side Request Forgery
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index -> All other hashes -> IPB 2.3.5 Hash Help?
Post new topicReply to topic View previous topic :: View next topic
IPB 2.3.5 Hash Help?
PostPosted: Sat Nov 15, 2008 6:13 pm Reply with quote
renaker
Active user
Active user
Joined: Nov 15, 2008
Posts: 27




Hash: d7b22e1b6a5e2d8ebd02900647596433
Salt: h[Gc>

or

Hash: f8a61450f592777c189d25e54ee70742
Salt: nlR1T

or this one, which would be the best, but is probably the hardest to attack

Hash: ce092fe7d7361e52a0a2a8afa27116e0
Salt: ?1~%$

I know I'm brand new, but would anybody be up to helping retrieve the password associated with this hash and salt? It's to an IPB 2.3.5 board. I would go far enough to call you my mortal Jesus for any help regarding this issue. I hopefully only need one of those passes.<3
View user's profile Send private message
PostPosted: Sat Nov 15, 2008 8:58 pm Reply with quote
waraxe
Site admin
Site admin
Joined: May 11, 2004
Posts: 2407
Location: Estonia, Tartu




Plaintext of ce092fe7d7361e52a0a2a8afa27116e0 is password

Smile
View user's profile Send private message Send e-mail Visit poster's website
PostPosted: Sat Nov 15, 2008 11:03 pm Reply with quote
renaker
Active user
Active user
Joined: Nov 15, 2008
Posts: 27




Wow, you ARE my mortal Jesus. Out of curiosity, why kind of system are you using? Anything to do with elcomsoft? I'm a newb when it comes to hash's.
View user's profile Send private message
PostPosted: Sat Nov 15, 2008 11:14 pm Reply with quote
waraxe
Site admin
Site admin
Joined: May 11, 2004
Posts: 2407
Location: Estonia, Tartu




I'm using these two excellent utilities:

http://www.insidepro.com/eng/passwordspro.shtml

http://www.insidepro.com/eng/egb.shtml
View user's profile Send private message Send e-mail Visit poster's website
PostPosted: Sun Nov 16, 2008 4:56 am Reply with quote
renaker
Active user
Active user
Joined: Nov 15, 2008
Posts: 27




I tried googling it, but I failed. Would you mind posting the hash format that ipb 2.3.5 uses? like: MD5($salt.$pass.$salt); or whatever it happens to be. I'm trying to learn how to use the tools you showed me. I wish I had the graphics card to go with it, lol. I'd much rather learn to do this on my own instead of begging for help every time I need a hash cracked. Thanks in advance if you decide to post. Btw, this site rocks. It's not normal policy for a newbie to join and get that level of help. I really appreciate it.

EDIT:

I found this on the site, but is this true for 2.3.5?

"Just let me know what you think, and I might implement an md5 bruteforcer that supports IPB md5(md5(salt).md5(pwd)) hashing algorithm and uses this method to bruteforce your hashes..."
View user's profile Send private message
PostPosted: Sun Nov 16, 2008 4:17 pm Reply with quote
Pinox
Regular user
Regular user
Joined: Dec 22, 2005
Posts: 13




Yeah that's right just download passwordspro find a good wordlist and use this setting to try and crack the hash:

Code:
md5(md5($salt).md5($pass))


Smile
View user's profile Send private message
PostPosted: Mon Nov 17, 2008 6:07 pm Reply with quote
renaker
Active user
Active user
Joined: Nov 15, 2008
Posts: 27




Pinox wrote:
Yeah that's right just download passwordspro find a good wordlist and use this setting to try and crack the hash:

Code:
md5(md5($salt).md5($pass))


Smile


Smile Thanks man, also, would you happen to know where to find a decent wordlist? I downloaded every wordlist at:

http://www.insidepro.com/eng/download.shtml

but so far I've only had like 30% success rate, and it's only finding really simple passes. Would you happen to know where to find a really good list?
View user's profile Send private message
IPB 2.3.5 Hash Help?
www.waraxe.us Forum Index -> All other hashes
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
All times are GMT
Page 1 of 1

Post new topicReply to topic


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.039 Seconds