Donate Now Goal amount for this year: 799 USD, Received: 100 USD (13%)
Please donate to help support this website. The funds will be used to purchase owned license of LiteSpeed Web Server Enterprise (2-CPU). It provides superior performance in terms of raw speed, scalability and anti-DDoS capabilities.

Results 1 to 9 of 9
  1. #1
    Newbie
    Points: 1,644, Level: 23
    Level completed: 44%, Points required for next Level: 56
    Overall activity: 0.5%
    Achievements:
    31 days registered3 months registered100 Experience Points500 Experience Points1 year registered

    Join Date
    Dec 2009
    Posts
    3
    Liked
    0 times

    Anyone Know how Rar Passwords Stored?

    Hi

    I have a few RARed backups I cannot remember the passwords to from a couple years ago and have given up trying to open them.

    My next thought was to use a HexEditor to view the code and discover the password that way, unfortunately nothing is familiar. I assume it is encoded.

    Is there anyone out there who is familiar with the structure used in Passworded Rars or WinRar itself? Or better yet - a site that discusses it. I have done a pretty exhaustive search on Google for such a place and was surprised that I cannot find anything on the workings of WinRar (or other compression routines - other than theory), all I find is brute force methods.

    I need a starting point to do this manually

    Help

  2. #2
    Administrator
    Points: 46,459, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 99.8%
    Achievements:
    Recommendation Second ClassRecommendation First Class31 days registered3 months registered1 year registered

    Join Date
    Nov 2006
    Location
    Malaysia
    Posts
    9,579
    Liked
    892 times
    If you could find the password by using a hexeditor, then it'd have been cracked looooooong ago.
    The password is definitely encrypted and tough to crack. The only possible way to crack a passworded RAR file is via bruteforce or dictionary attack.

    If you've downloaded the RAR file from internet, try googling on the filename and hopefully you can find the website that tells you the password.

  3. #3
    Newbie
    Points: 1,644, Level: 23
    Level completed: 44%, Points required for next Level: 56
    Overall activity: 0.5%
    Achievements:
    31 days registered3 months registered100 Experience Points500 Experience Points1 year registered

    Join Date
    Dec 2009
    Posts
    3
    Liked
    0 times

    RAR files

    I didn't download it. It actually is one I did for my Documents long ago and out smarted myself by choosing one I forgot.

    I have been thinking about how they work and I think you are right. the password itself isn't even in the rar set... But it used to encode the data Byte-by-Byte when the set was created. So only the original word-string can decode it.

    What I was hoping was that someone may have done some investigating and found a string constant that would be in all Rar sets so that could be used to determine the Password. But I guess its not to be. That would be too simple.

    Thanks

  4. #4
    Tech Wiz
    Points: 7,222, Level: 56
    Level completed: 36%, Points required for next Level: 128
    Overall activity: 0%
    Achievements:
    31 days registered3 months registered1 year registeredTagger Second Class100 Experience Points

    Join Date
    Oct 2008
    Location
    India
    Posts
    629
    Liked
    0 times
    Try link leading to scareware removed
    Last edited by leofelix; 09-26-2011 at 12:08 AM.

  5. #5
    Administrator
    Points: 46,459, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 99.8%
    Achievements:
    Recommendation Second ClassRecommendation First Class31 days registered3 months registered1 year registered

    Join Date
    Nov 2006
    Location
    Malaysia
    Posts
    9,579
    Liked
    892 times
    Pretty useless tool. Nobody would want to run their computer 24 hours a day for many years just to brute force a RAR file.

    If the password is very long, maybe you can't even get the password when you're a grandfather.

  6. #6
    Loverboy
    Points: 57,861, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 24.0%
    Achievements:
    31 days registered3 months registered1 year registeredTagger Second Class100 Experience Points

    Join Date
    Jul 2009
    Location
    Singapore
    Posts
    6,123
    Liked
    227 times
    Well, I've never tried any one of these RAR password 'unlock' tool before but 1 thing that I've seen people complaining about is that it takes a long time and the 'password found' might not even be the exact one...

    Personally, I don't password-protect my RAR files...I don't see the need to do so. Too much trouble in case I forget the password...and I suggest you not to do so next time.

    If you really need to maintain privacy, you can find ways to 'hide the files' (there are many tips and tricks for that...some include hiding files inside pictures or mp3...go and Google)...or you can try using TrueCrypt and set it to only 1 'universal' password that you are sure no one else knows of (and you must remember it of course)

    As for RAR files downloaded from internet, yeah, I do what Raymond have said earlier...Google the name of the file...it really is easy to find the password...(I've been doing this even before Raymond mentions it)
    They call me the mysterious one...
    my motto is...when it's hot, chill baby

  7. #7
    Newbie
    Points: 1,767, Level: 24
    Level completed: 67%, Points required for next Level: 33
    Overall activity: 0.5%
    Achievements:
    31 days registered3 months registered100 Experience Points500 Experience Points1 year registered

    Join Date
    Oct 2009
    Location
    Ireland
    Posts
    21
    Liked
    0 times
    As far as I know, RAR files that are password protected are encrypted with AES, with a 128-bit key length. Other than brute-forcing the password, I'm afraid you aren't going to have any luck with getting passed that protection =/

  8. #8
    Banned
    Points: 8,754, Level: 63
    Level completed: 2%, Points required for next Level: 296
    Overall activity: 0.5%
    Achievements:
    31 days registered3 months registered100 Experience Points500 Experience Points1000 Experience Points

    Join Date
    Dec 2009
    Location
    asia
    Posts
    263
    Liked
    0 times
    yeah...i was delighted when i saw those RAR password recover first..but,now i know it was the biggest delusion in my life...

  9. #9
    Banned
    Points: 2,846, Level: 32
    Level completed: 64%, Points required for next Level: 54
    Overall activity: 0.5%
    Achievements:
    31 days registered3 months registered1 year registered100 Experience Points500 Experience Points

    Join Date
    Jul 2009
    Location
    safeguy is homosexual
    Posts
    297
    Liked
    0 times

 

 

Similar Threads

  1. How do you keep track of your passwords?
    By geohac in forum Spyware/Viruses
    Replies: 22
    Last Post: 08-14-2011, 06:27 AM
  2. Where data is stored
    By Student26 in forum General Forum
    Replies: 1
    Last Post: 07-24-2011, 11:34 AM
  3. How secure are YOUR Passwords?
    By leofelix in forum General Forum
    Replies: 21
    Last Post: 07-19-2010, 09:43 AM
  4. AIM Stored Password Recovery
    By xsurf in forum Software
    Replies: 5
    Last Post: 10-27-2009, 01:28 PM
  5. Help were is the winks stored in windows XP
    By redneckrudy in forum General Forum
    Replies: 3
    Last Post: 01-27-2008, 08:58 AM
All times are GMT +8. The time now is 08:21 PM.