1
0
mirror of https://github.com/hashcat/hashcat.git synced 2025-07-05 06:12:35 +00:00
hashcat/tools/test_modules/m33700.pm

127 lines
2.9 KiB
Perl

#!/usr/bin/env perl
##
## Author......: See docs/credits.txt
## License.....: MIT
##
use strict;
use warnings;
use Crypt::PBKDF2;
use Crypt::CBC;
use Encode qw(encode);
sub module_constraints { [[0, 256], [-1, -1], [-1, -1], [-1, -1], [-1, -1]] }
sub module_generate_hash
{
my $word = shift;
my $iter = shift;
my $ct = shift;
$iter = 10000 unless defined ($iter) && $iter =~ /^\d+$/;
my $hid = 0;
my $iv = "\x00" x 16;
my $key_len = 32;
my $kdf = Crypt::PBKDF2->new
(
hasher => Crypt::PBKDF2->hasher_from_algorithm ('HMACSHA2', 256),
iterations => $iter,
output_len => $key_len,
salt_len => 0
);
my $word_utf16le = encode ("UTF-16LE", $word);
my $key = $kdf->PBKDF2 ('', $word_utf16le);
my $is_decrypt = defined ($ct);
my $data_bin;
if ($is_decrypt == 1)
{
$data_bin = pack ("H*", $ct);
my $aes = Crypt::CBC->new ({
cipher => "Crypt::Rijndael",
key => $key,
iv => $iv,
keysize => $key_len,
literal_key => 1,
header => "none",
padding => "standard",
});
my $pt_bin = $aes->decrypt ($data_bin);
my $pt = unpack ("H*", $pt_bin);
my $pt_tmp = substr ($pt, 0, 16);
my $kp = "\x00\x00\x00\x00\x01\x00\x00\x00";
my $kp_tmp = unpack ("H*", $kp);
if ($pt_tmp eq $kp_tmp)
{
$data_bin = $pt_bin;
}
}
else
{
$data_bin = pack ("H*", "0000000001000000000000006000000060000000000000002000000040000000d43b8a0960a5654d8b9b31562f8be8b60efac1c060d2c74ee14db2b9328daac71e21bff7f1888a56e087f0bc861ced541ccf651d0fd7bcddbd9dd360ebfa36e810e461f6e4066171944c20d0cf0971f27b2256657273696f6e223a332c202255736572496e666f223a7b2256657273696f6e223a322c2022556e697175654964223a2238633466343238362d653262342d346264652d393330642d343537346361386230363566222c20225072696d617279536964223a22532d312d31322d31");
}
my $aes = Crypt::CBC->new ({
cipher => "Crypt::Rijndael",
key => $key,
iv => $iv,
keysize => $key_len,
literal_key => 1,
header => "none",
padding => "standard",
});
my $ct_bin = $aes->encrypt ($data_bin);
my $hash = sprintf ('$MSONLINEACCOUNT$%d$%d$%s', $hid, $iter, unpack ("H*", $ct_bin));
return $hash;
}
sub module_verify_hash
{
my $line = shift;
my $idx = index ($line, ':');
return unless $idx >= 0;
my $hash = substr ($line, 0, $idx);
my $word = substr ($line, $idx + 1);
return unless substr ($hash, 0, 18) eq '$MSONLINEACCOUNT$0';
my (undef, $signature, $hid, $iter, $ct) = split '\$', $hash;
return unless defined $signature;
return unless defined $hid;
return unless defined $iter;
return unless defined $ct;
return unless ($signature eq 'MSONLINEACCOUNT');
return unless ($hid eq '0');
my $word_packed = pack_if_HEX_notation ($word);
my $new_hash = module_generate_hash ($word_packed, $iter, $ct);
return ($new_hash, $word);
}
1;