Jump to content

WinRAR question


rudrax

Recommended Posts

Guys, I just get to know here that winRAR stores password in registry..Does anybody know the path?

Link to comment
Share on other sites


  • Replies 13
  • Views 2.4k
  • Created
  • Last Reply
SnakeMasteR

HKEY_CURRENT_USER\Software\WinRAR\Passwords

that are only those, that you entered yourself for later use. ;)

Link to comment
Share on other sites


HKEY_CURRENT_USER\Software\WinRAR\Passwords

that are only those, that you entered yourself for later use. ;)

Thanks..any tricks for breaking a password protected archive comes from other?
Link to comment
Share on other sites


SnakeMasteR

If WinRAR would store/encrypt passwords from external archives, the password

function would be really useless. ^_^ There are different ways to encrypt unknown

archives, e.g. using RAR GPU or cRARk. If you have no additional info about the

password, it will take a long time anyway. :)

Link to comment
Share on other sites


If WinRAR would store/encrypt passwords from external archives, the password

function would be really useless. ^_^ There are different ways to encrypt unknown

archives, e.g. using RAR GPU or cRARk. If you have no additional info about the

password, it will take a long time anyway. :)

RAR GPU support is up to winRAR 3.x

cRARk promises up to winRAR 4.0

Well, thanks a lot buddy..

Link to comment
Share on other sites


HKEY_CURRENT_USER\Software\WinRAR\Passwords

that are only those, that you entered yourself for later use. ;)

Thanks..any tricks for breaking a password protected archive comes from other?
There's a lot of software that use Bruteforce to break it, but it's not sure that it works and if it works it takes a very very long time so just leave it...

For example a password with only 6 characters (and just letters !) give 19.770.609.660 possibilities !

;)

Link to comment
Share on other sites


SnakeMasteR

RAR GPU support is up to winRAR 3.x

cRARk promises up to winRAR 4.0

Well, thanks a lot buddy..

Good luck. ^_^

Link to comment
Share on other sites


Best way to find the password if the archive was downloaded is to google the .rar file. Usually brings up the location of where the file was downloaded, hopefully with the password on the same site.

-BTY

Link to comment
Share on other sites


I think, the password gets stored somewhere in the winRAR database..If windows admin password can be cracked even without logging in and facebooks's salted MD5 hashes can be decrypted, then why not winRAR..? :rolleyes:

Link to comment
Share on other sites


How about Advanced RAR Repair?

http://www.datanumen.com/arar/

Practically useless,if the rar archieve has been encrypted with a password of more than 3 alphabets,its unlikely it can be opened with any of these softwares.Even with bruteforcing it could take days,hence not practical.

Link to comment
Share on other sites


I think, the password gets stored somewhere in the winRAR database..If windows admin password can be cracked even without logging in and facebooks's salted MD5 hashes can be decrypted, then why not winRAR..? :rolleyes:

The password is not stored. The files are first compressed and then encrypted with state of the art algorihms. When you try to extract the files are decrypted with the password that you gave and then their hashes are compared with the stored ones, if they match the decrypted files are assumed as ok.

If the password is strong (long enough, not in dictionary...) there is no practical way of recover the content of the archive. You may try to bruteforce the password with some software/hardware combination, but is very unlikely to succed (unless the password is a very weak one)

The best aproach is to to try to have the password or the content by some other mean. In Windows the password hash is stored because of the content is not encrypted. Salted MD5 is considerably weaker criptography than WinRAR´s AES. Even if you manage to find a hash colission, a correct decryption is not warranted.

Link to comment
Share on other sites


Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...