<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>FreeXploiT - 密码算法</title><link>http://blog.csdn.net/freexploit/category/130664.aspx</link><description>密码算法</description><dc:language>zh-CN</dc:language><lastUpdateTime>Fri, 11 Jan 2008 22:43:21 GMT</lastUpdateTime><ttl>60</ttl><item><dc:creator>FreeXploiT</dc:creator><title>FreeXploiT 成立三年感言！</title><link>http://blog.csdn.net/freexploit/archive/2008/01/11/2038442.aspx</link><pubDate>Fri, 11 Jan 2008 22:43:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2008/01/11/2038442.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/2038442.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2008/01/11/2038442.aspx#Feedback</comments><slash:comments>8</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/2038442.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=2038442</trackback:ping><description>FreeXploiT&lt;img src ="http://blog.csdn.net/freexploit/aggbug/2038442.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>CMD记录器改良版</title><link>http://blog.csdn.net/freexploit/archive/2007/09/29/1807169.aspx</link><pubDate>Sat, 29 Sep 2007 23:07:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2007/09/29/1807169.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/1807169.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2007/09/29/1807169.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/1807169.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1807169</trackback:ping><description>CMD记录器 根据superjj代码改的 比较好用！&lt;img src ="http://blog.csdn.net/freexploit/aggbug/1807169.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>清空系统密码</title><link>http://blog.csdn.net/freexploit/archive/2007/08/24/1756845.aspx</link><pubDate>Fri, 24 Aug 2007 00:56:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2007/08/24/1756845.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/1756845.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2007/08/24/1756845.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/1756845.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1756845</trackback:ping><description>这个没啥好说的。。。&lt;img src ="http://blog.csdn.net/freexploit/aggbug/1756845.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>冰点密码破解 — 强悍的调试器 SOFTICE</title><link>http://blog.csdn.net/freexploit/archive/2007/06/23/1663913.aspx</link><pubDate>Sat, 23 Jun 2007 22:07:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2007/06/23/1663913.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/1663913.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2007/06/23/1663913.aspx#Feedback</comments><slash:comments>8</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/1663913.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1663913</trackback:ping><description>因为解密的方法特殊,所以解密器只专用于 冰点6.00.220.1692 企业版.
写文章的时候没有对它声明是我的疏忽,万用的冰点解密器我没兴趣编写(很浪费时间的!)
不过文章中的解法却不受版本限制,希望能认真阅读...&lt;img src ="http://blog.csdn.net/freexploit/aggbug/1663913.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>checkfile</title><link>http://blog.csdn.net/freexploit/archive/2007/06/05/1638454.aspx</link><pubDate>Tue, 05 Jun 2007 02:02:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2007/06/05/1638454.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/1638454.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2007/06/05/1638454.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/1638454.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1638454</trackback:ping><description>可用于系统文件 完成性的检测 防止被后门更改或者替换

里面有三款工具分别是 微软的fciv 以及fsum 和 md5
&lt;img src ="http://blog.csdn.net/freexploit/aggbug/1638454.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>扭曲变换加密 【目前防止软件被破解最好的方法】</title><link>http://blog.csdn.net/freexploit/archive/2006/10/22/1345532.aspx</link><pubDate>Sun, 22 Oct 2006 16:46:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/10/22/1345532.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/1345532.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/10/22/1345532.aspx#Feedback</comments><slash:comments>1</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/1345532.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=1345532</trackback:ping><description>用它来加密我们做的一个共享软件，就再也没人写出注册机了。去读懂大量的经过以上变换的代码是不可
想象的。但还是有人暴破了，真佩服他。我会不断丰富加密方法，让暴破者都放弃。
&lt;img src ="http://blog.csdn.net/freexploit/aggbug/1345532.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>矛与盾的较量——奇妙的Base64编码 【 矛盾系列的一篇 挺不错的 】</title><link>http://blog.csdn.net/freexploit/archive/2006/07/14/917441.aspx</link><pubDate>Fri, 14 Jul 2006 01:04:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/07/14/917441.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/917441.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/07/14/917441.aspx#Feedback</comments><slash:comments>5</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/917441.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=917441</trackback:ping><description>Base64编码 这篇写的不错 很多木马，盗QQ程序用的是这个代码加密方式  结果被人嗅探了
拿到了邮箱密码用户，呵呵&lt;img src ="http://blog.csdn.net/freexploit/aggbug/917441.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>MD5加强验证 挑战王小云破解 【 ALLyeSNO 】</title><link>http://blog.csdn.net/freexploit/archive/2006/05/30/764427.aspx</link><pubDate>Tue, 30 May 2006 20:56:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/05/30/764427.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/764427.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/05/30/764427.aspx#Feedback</comments><slash:comments>2</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/764427.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=764427</trackback:ping><description>这样rootkit就写好了 由于md5值跟系统文件 lsass.exe是一样的 就更加增加了check的难度

再yy一样，如果把后门写成热门程序，比如人手一份的 winrar，BT，icesword 等软件

放给大家下载，md5值都一样 中招的那就多了 娃哈哈。。

说了一大堆废话 现在进入正题，假如这种情况有一天出现了，我做梦的时候想到了一个加强

验证的方法。&lt;img src ="http://blog.csdn.net/freexploit/aggbug/764427.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>ASP数据库插马小议 By lake2 （ http://lake2.0x54.org ）</title><link>http://blog.csdn.net/freexploit/archive/2006/05/02/705394.aspx</link><pubDate>Tue, 02 May 2006 11:49:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/05/02/705394.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/705394.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/05/02/705394.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/705394.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=705394</trackback:ping><description>那么，在这种情况下如何插马呢？

突破口就在 Unicode 压缩那儿，既然数据库不给我们压缩，那么就让我们自己来压缩吧。
对VB来说，转换之后的代码的长度已经减少一半，嘿嘿，那这个可不可以说是对最小的ASP后门的一种突破呢？

&lt;img src ="http://blog.csdn.net/freexploit/aggbug/705394.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>海洋顶端2006+密码编码分析 zz 原作者 lake2</title><link>http://blog.csdn.net/freexploit/archive/2006/04/27/693821.aspx</link><pubDate>Thu, 27 Apr 2006 20:21:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/04/27/693821.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/693821.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/04/27/693821.aspx#Feedback</comments><slash:comments>2</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/693821.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=693821</trackback:ping><description>海洋顶端以往的各个版本密码都是明文存放的，这回 2006+ 专门有个 vbs 脚本用于加密密码。这几天闲得无聊，就来尝试分析一下它的加密方式。

加密密码的脚本是在 down 回来的 vbs 目录里面名为Encode.vbs的文件。先看代码，注释是我加的：

 

&lt;img src ="http://blog.csdn.net/freexploit/aggbug/693821.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>破解WEP密钥过程全解（上）</title><link>http://blog.csdn.net/freexploit/archive/2006/04/05/652130.aspx</link><pubDate>Wed, 05 Apr 2006 23:08:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/04/05/652130.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/652130.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/04/05/652130.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/652130.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=652130</trackback:ping><description>面笔者来给大家介绍一些关于WEP加密手段的知识，以及就是菜鸟只要按照步骤操作也可成功破解WEP密钥的方法。当然最终的目的还是为了让记者做好安全设置对破解更好的进行防范。&lt;img src ="http://blog.csdn.net/freexploit/aggbug/652130.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>破解WEP密钥过程全解 （下）</title><link>http://blog.csdn.net/freexploit/archive/2006/04/05/652119.aspx</link><pubDate>Wed, 05 Apr 2006 23:01:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/04/05/652119.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/652119.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/04/05/652119.aspx#Feedback</comments><slash:comments>1</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/652119.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=652119</trackback:ping><description>要破解一个64bit的WEP在需要5分钟时间，由同时运行于replay attack的几个操作的时间组成的:用airodump扫描、用aircrack破解和用aireplay产生网络通信流量，不过这里有许多幸运的地方，有时破解一个64bit的WEP的密钥要收集25000个左右的IV，则它花费的时间就更长了。必须把这个你尝试恢复的WEP密钥的长度输入到Aircrack中，这个长度没有哪一个工具能提供，对你自己的实验环境的WLAN当然能够知道这个信息，但在别的你一无所知的网络环境中则可以使用64或128这两个密钥长度去尝试。&lt;img src ="http://blog.csdn.net/freexploit/aggbug/652119.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>破解静态WEP KEY全过程</title><link>http://blog.csdn.net/freexploit/archive/2006/04/05/652022.aspx</link><pubDate>Wed, 05 Apr 2006 21:36:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2006/04/05/652022.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/652022.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2006/04/05/652022.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/652022.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=652022</trackback:ping><description>破解静态WEP KEY全过程&lt;img src ="http://blog.csdn.net/freexploit/aggbug/652022.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>编译器C-Free V3.52注册算法分析 【附注册机】 </title><link>http://blog.csdn.net/freexploit/archive/2005/12/28/563976.aspx</link><pubDate>Wed, 28 Dec 2005 14:41:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2005/12/28/563976.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/563976.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2005/12/28/563976.aspx#Feedback</comments><slash:comments>1</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/563976.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=563976</trackback:ping><description>本来邪恶八进制有一个注册机的 可是这几天进不去 我在网上找了这篇文章 顺便把注册机编译出来&lt;img src ="http://blog.csdn.net/freexploit/aggbug/563976.aspx" width = "1" height = "1" /&gt;</description></item><item><dc:creator>FreeXploiT</dc:creator><title>Md5 And Salts</title><link>http://blog.csdn.net/freexploit/archive/2005/10/28/518555.aspx</link><pubDate>Fri, 28 Oct 2005 18:03:00 GMT</pubDate><guid>http://blog.csdn.net/freexploit/archive/2005/10/28/518555.aspx</guid><wfw:comment>http://blog.csdn.net/freexploit/comments/518555.aspx</wfw:comment><comments>http://blog.csdn.net/freexploit/archive/2005/10/28/518555.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://blog.csdn.net/freexploit/comments/commentRss/518555.aspx</wfw:commentRss><trackback:ping>http://tb.blog.csdn.net/TrackBack.aspx?PostId=518555</trackback:ping><description>I can't understand hashes and salts. I made a password of 'a' on my Invision Forum and then I looked up the hash and the salt for it in my database. I typed in the salt and then 'a' beside it through Cain and Abel and got it to convert it to an MD5. I thought this hash would turn out the same as the one recorded in the forum. This is because I thought the salt gets appended to the password and then it is hashed. By appending a known salt to a known password I thought the hash would turn out the &lt;img src ="http://blog.csdn.net/freexploit/aggbug/518555.aspx" width = "1" height = "1" /&gt;</description></item></channel></rss>