2 * Author......: Jens Steube <jens.steube@gmail.com>
8 #include "inc_vendor.cl"
9 #include "inc_hash_constants.h"
10 #include "inc_hash_functions.cl"
11 #include "inc_types.cl"
12 #include "inc_common.cl"
14 #define COMPARE_S "inc_comp_single.cl"
15 #define COMPARE_M "inc_comp_multi.cl"
17 #define md5crypt_magic 0x00243124u
19 void md5_transform (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[4])
43 MD5_STEP (MD5_Fo, a, b, c, d, w0_t, MD5C00, MD5S00);
44 MD5_STEP (MD5_Fo, d, a, b, c, w1_t, MD5C01, MD5S01);
45 MD5_STEP (MD5_Fo, c, d, a, b, w2_t, MD5C02, MD5S02);
46 MD5_STEP (MD5_Fo, b, c, d, a, w3_t, MD5C03, MD5S03);
47 MD5_STEP (MD5_Fo, a, b, c, d, w4_t, MD5C04, MD5S00);
48 MD5_STEP (MD5_Fo, d, a, b, c, w5_t, MD5C05, MD5S01);
49 MD5_STEP (MD5_Fo, c, d, a, b, w6_t, MD5C06, MD5S02);
50 MD5_STEP (MD5_Fo, b, c, d, a, w7_t, MD5C07, MD5S03);
51 MD5_STEP (MD5_Fo, a, b, c, d, w8_t, MD5C08, MD5S00);
52 MD5_STEP (MD5_Fo, d, a, b, c, w9_t, MD5C09, MD5S01);
53 MD5_STEP (MD5_Fo, c, d, a, b, wa_t, MD5C0a, MD5S02);
54 MD5_STEP (MD5_Fo, b, c, d, a, wb_t, MD5C0b, MD5S03);
55 MD5_STEP (MD5_Fo, a, b, c, d, wc_t, MD5C0c, MD5S00);
56 MD5_STEP (MD5_Fo, d, a, b, c, wd_t, MD5C0d, MD5S01);
57 MD5_STEP (MD5_Fo, c, d, a, b, we_t, MD5C0e, MD5S02);
58 MD5_STEP (MD5_Fo, b, c, d, a, wf_t, MD5C0f, MD5S03);
60 MD5_STEP (MD5_Go, a, b, c, d, w1_t, MD5C10, MD5S10);
61 MD5_STEP (MD5_Go, d, a, b, c, w6_t, MD5C11, MD5S11);
62 MD5_STEP (MD5_Go, c, d, a, b, wb_t, MD5C12, MD5S12);
63 MD5_STEP (MD5_Go, b, c, d, a, w0_t, MD5C13, MD5S13);
64 MD5_STEP (MD5_Go, a, b, c, d, w5_t, MD5C14, MD5S10);
65 MD5_STEP (MD5_Go, d, a, b, c, wa_t, MD5C15, MD5S11);
66 MD5_STEP (MD5_Go, c, d, a, b, wf_t, MD5C16, MD5S12);
67 MD5_STEP (MD5_Go, b, c, d, a, w4_t, MD5C17, MD5S13);
68 MD5_STEP (MD5_Go, a, b, c, d, w9_t, MD5C18, MD5S10);
69 MD5_STEP (MD5_Go, d, a, b, c, we_t, MD5C19, MD5S11);
70 MD5_STEP (MD5_Go, c, d, a, b, w3_t, MD5C1a, MD5S12);
71 MD5_STEP (MD5_Go, b, c, d, a, w8_t, MD5C1b, MD5S13);
72 MD5_STEP (MD5_Go, a, b, c, d, wd_t, MD5C1c, MD5S10);
73 MD5_STEP (MD5_Go, d, a, b, c, w2_t, MD5C1d, MD5S11);
74 MD5_STEP (MD5_Go, c, d, a, b, w7_t, MD5C1e, MD5S12);
75 MD5_STEP (MD5_Go, b, c, d, a, wc_t, MD5C1f, MD5S13);
77 MD5_STEP (MD5_H , a, b, c, d, w5_t, MD5C20, MD5S20);
78 MD5_STEP (MD5_H , d, a, b, c, w8_t, MD5C21, MD5S21);
79 MD5_STEP (MD5_H , c, d, a, b, wb_t, MD5C22, MD5S22);
80 MD5_STEP (MD5_H , b, c, d, a, we_t, MD5C23, MD5S23);
81 MD5_STEP (MD5_H , a, b, c, d, w1_t, MD5C24, MD5S20);
82 MD5_STEP (MD5_H , d, a, b, c, w4_t, MD5C25, MD5S21);
83 MD5_STEP (MD5_H , c, d, a, b, w7_t, MD5C26, MD5S22);
84 MD5_STEP (MD5_H , b, c, d, a, wa_t, MD5C27, MD5S23);
85 MD5_STEP (MD5_H , a, b, c, d, wd_t, MD5C28, MD5S20);
86 MD5_STEP (MD5_H , d, a, b, c, w0_t, MD5C29, MD5S21);
87 MD5_STEP (MD5_H , c, d, a, b, w3_t, MD5C2a, MD5S22);
88 MD5_STEP (MD5_H , b, c, d, a, w6_t, MD5C2b, MD5S23);
89 MD5_STEP (MD5_H , a, b, c, d, w9_t, MD5C2c, MD5S20);
90 MD5_STEP (MD5_H , d, a, b, c, wc_t, MD5C2d, MD5S21);
91 MD5_STEP (MD5_H , c, d, a, b, wf_t, MD5C2e, MD5S22);
92 MD5_STEP (MD5_H , b, c, d, a, w2_t, MD5C2f, MD5S23);
94 MD5_STEP (MD5_I , a, b, c, d, w0_t, MD5C30, MD5S30);
95 MD5_STEP (MD5_I , d, a, b, c, w7_t, MD5C31, MD5S31);
96 MD5_STEP (MD5_I , c, d, a, b, we_t, MD5C32, MD5S32);
97 MD5_STEP (MD5_I , b, c, d, a, w5_t, MD5C33, MD5S33);
98 MD5_STEP (MD5_I , a, b, c, d, wc_t, MD5C34, MD5S30);
99 MD5_STEP (MD5_I , d, a, b, c, w3_t, MD5C35, MD5S31);
100 MD5_STEP (MD5_I , c, d, a, b, wa_t, MD5C36, MD5S32);
101 MD5_STEP (MD5_I , b, c, d, a, w1_t, MD5C37, MD5S33);
102 MD5_STEP (MD5_I , a, b, c, d, w8_t, MD5C38, MD5S30);
103 MD5_STEP (MD5_I , d, a, b, c, wf_t, MD5C39, MD5S31);
104 MD5_STEP (MD5_I , c, d, a, b, w6_t, MD5C3a, MD5S32);
105 MD5_STEP (MD5_I , b, c, d, a, wd_t, MD5C3b, MD5S33);
106 MD5_STEP (MD5_I , a, b, c, d, w4_t, MD5C3c, MD5S30);
107 MD5_STEP (MD5_I , d, a, b, c, wb_t, MD5C3d, MD5S31);
108 MD5_STEP (MD5_I , c, d, a, b, w2_t, MD5C3e, MD5S32);
109 MD5_STEP (MD5_I , b, c, d, a, w9_t, MD5C3f, MD5S33);
117 void memcat16 (u32 block0[4], u32 block1[4], u32 block2[4], u32 block3[4], const u32 block_len, const u32 append[4])
125 #if defined IS_AMD || defined IS_GENERIC
127 const int offset_minus_4 = 4 - (block_len & 3);
129 tmp0 = amd_bytealign (append[0], 0, offset_minus_4);
130 tmp1 = amd_bytealign (append[1], append[0], offset_minus_4);
131 tmp2 = amd_bytealign (append[2], append[1], offset_minus_4);
132 tmp3 = amd_bytealign (append[3], append[2], offset_minus_4);
133 tmp4 = amd_bytealign ( 0, append[3], offset_minus_4);
135 const u32 mod = block_len & 3;
150 const int offset_minus_4 = 4 - (block_len & 3);
152 const int selector = (0x76543210 >> (offset_minus_4 * 4)) & 0xffff;
154 tmp0 = __byte_perm ( 0, append[0], selector);
155 tmp1 = __byte_perm (append[0], append[1], selector);
156 tmp2 = __byte_perm (append[1], append[2], selector);
157 tmp3 = __byte_perm (append[2], append[3], selector);
158 tmp4 = __byte_perm (append[3], 0, selector);
162 const u32 div = block_len / 4;
166 case 0: block0[0] |= tmp0;
172 case 1: block0[1] |= tmp0;
178 case 2: block0[2] |= tmp0;
184 case 3: block0[3] |= tmp0;
190 case 4: block1[0] |= tmp0;
196 case 5: block1[1] |= tmp0;
202 case 6: block1[2] |= tmp0;
208 case 7: block1[3] |= tmp0;
214 case 8: block2[0] |= tmp0;
220 case 9: block2[1] |= tmp0;
229 void memcat16_x80 (u32 block0[4], u32 block1[4], u32 block2[4], u32 block3[4], const u32 block_len, const u32 append[4])
237 #if defined IS_AMD || defined IS_GENERIC
239 const int offset_minus_4 = 4 - (block_len & 3);
241 tmp0 = amd_bytealign (append[0], 0, offset_minus_4);
242 tmp1 = amd_bytealign (append[1], append[0], offset_minus_4);
243 tmp2 = amd_bytealign (append[2], append[1], offset_minus_4);
244 tmp3 = amd_bytealign (append[3], append[2], offset_minus_4);
245 tmp4 = amd_bytealign ( 0x80, append[3], offset_minus_4);
247 const u32 mod = block_len & 3;
262 const int offset_minus_4 = 4 - (block_len & 3);
264 const int selector = (0x76543210 >> (offset_minus_4 * 4)) & 0xffff;
266 tmp0 = __byte_perm ( 0, append[0], selector);
267 tmp1 = __byte_perm (append[0], append[1], selector);
268 tmp2 = __byte_perm (append[1], append[2], selector);
269 tmp3 = __byte_perm (append[2], append[3], selector);
270 tmp4 = __byte_perm (append[3], 0x80, selector);
274 const u32 div = block_len / 4;
278 case 0: block0[0] |= tmp0;
284 case 1: block0[1] |= tmp0;
290 case 2: block0[2] |= tmp0;
296 case 3: block0[3] |= tmp0;
302 case 4: block1[0] |= tmp0;
308 case 5: block1[1] |= tmp0;
314 case 6: block1[2] |= tmp0;
320 case 7: block1[3] |= tmp0;
326 case 8: block2[0] |= tmp0;
332 case 9: block2[1] |= tmp0;
341 void memcat8 (u32 block0[4], u32 block1[4], u32 block2[4], u32 block3[4], const u32 block_len, const u32 append[2])
347 #if defined IS_AMD || defined IS_GENERIC
349 const int offset_minus_4 = 4 - (block_len & 3);
351 tmp0 = amd_bytealign (append[0], 0, offset_minus_4);
352 tmp1 = amd_bytealign (append[1], append[0], offset_minus_4);
353 tmp2 = amd_bytealign ( 0, append[1], offset_minus_4);
355 const u32 mod = block_len & 3;
368 const int offset_minus_4 = 4 - (block_len & 3);
370 const int selector = (0x76543210 >> (offset_minus_4 * 4)) & 0xffff;
372 tmp0 = __byte_perm ( 0, append[0], selector);
373 tmp1 = __byte_perm (append[0], append[1], selector);
374 tmp2 = __byte_perm (append[1], 0, selector);
378 const u32 div = block_len / 4;
382 case 0: block0[0] |= tmp0;
386 case 1: block0[1] |= tmp0;
390 case 2: block0[2] |= tmp0;
394 case 3: block0[3] |= tmp0;
398 case 4: block1[0] |= tmp0;
402 case 5: block1[1] |= tmp0;
406 case 6: block1[2] |= tmp0;
410 case 7: block1[3] |= tmp0;
414 case 8: block2[0] |= tmp0;
418 case 9: block2[1] |= tmp0;
422 case 10: block2[2] |= tmp0;
426 case 11: block2[3] |= tmp0;
433 void append_sign (u32 block0[4], u32 block1[4], const u32 block_len)
438 block0[0] = md5crypt_magic;
442 block0[0] = block0[0] | md5crypt_magic << 8u;
443 block0[1] = md5crypt_magic >> 24u;
447 block0[0] = block0[0] | md5crypt_magic << 16u;
448 block0[1] = md5crypt_magic >> 16u;
452 block0[0] = block0[0] | md5crypt_magic << 24u;
453 block0[1] = md5crypt_magic >> 8u;
457 block0[1] = md5crypt_magic;
461 block0[1] = block0[1] | md5crypt_magic << 8u;
462 block0[2] = md5crypt_magic >> 24u;
466 block0[1] = block0[1] | md5crypt_magic << 16u;
467 block0[2] = md5crypt_magic >> 16u;
471 block0[1] = block0[1] | md5crypt_magic << 24u;
472 block0[2] = md5crypt_magic >> 8u;
476 block0[2] = md5crypt_magic;
480 block0[2] = block0[2] | md5crypt_magic << 8u;
481 block0[3] = md5crypt_magic >> 24u;
485 block0[2] = block0[2] | md5crypt_magic << 16u;
486 block0[3] = md5crypt_magic >> 16u;
490 block0[2] = block0[2] | md5crypt_magic << 24u;
491 block0[3] = md5crypt_magic >> 8u;
495 block0[3] = md5crypt_magic;
499 block0[3] = block0[3] | md5crypt_magic << 8u;
500 block1[0] = md5crypt_magic >> 24u;
504 block0[3] = block0[3] | md5crypt_magic << 16u;
505 block1[0] = md5crypt_magic >> 16u;
509 block0[3] = block0[3] | md5crypt_magic << 24u;
510 block1[0] = md5crypt_magic >> 8u;
515 void append_1st (u32 block0[4], u32 block1[4], u32 block2[4], u32 block3[4], const u32 block_len, const u32 append)
524 block0[0] = block0[0] | append << 8;
528 block0[0] = block0[0] | append << 16;
532 block0[0] = block0[0] | append << 24;
540 block0[1] = block0[1] | append << 8;
544 block0[1] = block0[1] | append << 16;
548 block0[1] = block0[1] | append << 24;
556 block0[2] = block0[2] | append << 8;
560 block0[2] = block0[2] | append << 16;
564 block0[2] = block0[2] | append << 24;
572 block0[3] = block0[3] | append << 8;
576 block0[3] = block0[3] | append << 16;
580 block0[3] = block0[3] | append << 24;
588 block1[0] = block1[0] | append << 8;
592 block1[0] = block1[0] | append << 16;
596 block1[0] = block1[0] | append << 24;
604 block1[1] = block1[1] | append << 8;
608 block1[1] = block1[1] | append << 16;
612 block1[1] = block1[1] | append << 24;
620 block1[2] = block1[2] | append << 8;
624 block1[2] = block1[2] | append << 16;
628 block1[2] = block1[2] | append << 24;
636 block1[3] = block1[3] | append << 8;
640 block1[3] = block1[3] | append << 16;
644 block1[3] = block1[3] | append << 24;
652 block2[0] = block2[0] | append << 8;
656 block2[0] = block2[0] | append << 16;
660 block2[0] = block2[0] | append << 24;
668 block2[1] = block2[1] | append << 8;
672 block2[1] = block2[1] | append << 16;
676 block2[1] = block2[1] | append << 24;
684 block2[2] = block2[2] | append << 8;
688 block2[2] = block2[2] | append << 16;
692 block2[2] = block2[2] | append << 24;
700 block2[3] = block2[3] | append << 8;
704 block2[3] = block2[3] | append << 16;
708 block2[3] = block2[3] | append << 24;
716 block3[0] = block3[0] | append << 8;
720 block3[0] = block3[0] | append << 16;
724 block3[0] = block3[0] | append << 24;
732 block3[1] = block3[1] | append << 8;
736 block3[1] = block3[1] | append << 16;
740 block3[1] = block3[1] | append << 24;
749 __kernel void m00500_init (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global md5crypt_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global void *esalt_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
755 const u32 gid = get_global_id (0);
757 if (gid >= gid_max) return;
761 w0[0] = pws[gid].i[0];
762 w0[1] = pws[gid].i[1];
763 w0[2] = pws[gid].i[2];
764 w0[3] = pws[gid].i[3];
766 const u32 pw_len = pws[gid].pw_len;
774 salt_buf[0] = salt_bufs[salt_pos].salt_buf[0];
775 salt_buf[1] = salt_bufs[salt_pos].salt_buf[1];
777 const u32 salt_len = salt_bufs[salt_pos].salt_len;
783 //memcat16 (block0, block1, block2, block3, block_len, w0);
784 //block_len += pw_len;
786 u32 block_len = pw_len;
816 memcat8 (block0, block1, block2, block3, block_len, salt_buf);
818 block_len += salt_len;
820 memcat16 (block0, block1, block2, block3, block_len, w0);
824 append_0x80_4x4 (block0, block1, block2, block3, block_len);
826 block3[2] = block_len * 8;
835 md5_transform (block0, block1, block2, block3, digest);
837 /* The password first, since that is what is most unknown */
838 /* Then our magic string */
839 /* Then the raw salt */
840 /* Then just as many characters of the MD5(pw,salt,pw) */
842 //memcat16 (block0, block1, block2, block3, block_len, w);
843 //block_len += pw_len;
867 append_sign (block0, block1, block_len);
871 memcat8 (block0, block1, block2, block3, block_len, salt_buf);
873 block_len += salt_len;
875 truncate_block (digest, pw_len);
877 memcat16 (block0, block1, block2, block3, block_len, digest);
881 /* Then something really weird... */
883 u32 append = block0[0] & 0xFF;
885 for (u32 j = pw_len; j; j >>= 1)
889 append_1st (block0, block1, block2, block3, block_len, append);
895 append_0x80_4x4 (block0, block1, block2, block3, block_len);
897 block3[2] = block_len * 8;
904 md5_transform (block0, block1, block2, block3, digest);
906 tmps[gid].digest_buf[0] = digest[0];
907 tmps[gid].digest_buf[1] = digest[1];
908 tmps[gid].digest_buf[2] = digest[2];
909 tmps[gid].digest_buf[3] = digest[3];
912 __kernel void m00500_loop (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global md5crypt_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global void *esalt_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
918 const u32 gid = get_global_id (0);
920 if (gid >= gid_max) return;
924 w0[0] = pws[gid].i[0];
925 w0[1] = pws[gid].i[1];
926 w0[2] = pws[gid].i[2];
927 w0[3] = pws[gid].i[3];
929 const u32 pw_len = pws[gid].pw_len;
938 append_0x80_1x4 (w0_x80, pw_len);
946 salt_buf[0] = salt_bufs[salt_pos].salt_buf[0];
947 salt_buf[1] = salt_bufs[salt_pos].salt_buf[1];
949 const u32 salt_len = salt_bufs[salt_pos].salt_len;
957 digest[0] = tmps[gid].digest_buf[0];
958 digest[1] = tmps[gid].digest_buf[1];
959 digest[2] = tmps[gid].digest_buf[2];
960 digest[3] = tmps[gid].digest_buf[3];
966 /* and now, just to make sure things don't run too fast */
998 for (u32 i = 0, j = loop_pos; i < loop_cnt; i++, j++)
1011 const u32 j1 = (j & 1) ? 1 : 0;
1012 const u32 j3 = (j % 3) ? 1 : 0;
1013 const u32 j7 = (j % 7) ? 1 : 0;
1026 memcat8 (block0, block1, block2, block3, block_len, salt_buf);
1028 block_len += salt_len;
1033 memcat16 (block0, block1, block2, block3, block_len, w0);
1035 block_len += pw_len;
1038 memcat16_x80 (block0, block1, block2, block3, block_len, digest);
1044 block0[0] = digest[0];
1045 block0[1] = digest[1];
1046 block0[2] = digest[2];
1047 block0[3] = digest[3];
1053 block1[0] = salt_buf[0];
1054 block1[1] = salt_buf[1];
1056 block_len += salt_len;
1058 memcat16 (block0, block1, block2, block3, block_len, w0);
1060 block_len += pw_len;
1064 block1[0] = salt_buf[0];
1065 block1[1] = salt_buf[1];
1067 block_len += salt_len;
1076 block_len += pw_len;
1079 memcat16 (block0, block1, block2, block3, block_len, w0_x80);
1081 block_len += pw_len;
1084 block3[2] = block_len * 8;
1091 md5_transform (block0, block1, block2, block3, digest);
1094 tmps[gid].digest_buf[0] = digest[0];
1095 tmps[gid].digest_buf[1] = digest[1];
1096 tmps[gid].digest_buf[2] = digest[2];
1097 tmps[gid].digest_buf[3] = digest[3];
1100 __kernel void m00500_comp (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global md5crypt_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global void *esalt_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
1106 const u32 gid = get_global_id (0);
1108 if (gid >= gid_max) return;
1110 const u32 lid = get_local_id (0);
1116 const u32 r0 = tmps[gid].digest_buf[DGST_R0];
1117 const u32 r1 = tmps[gid].digest_buf[DGST_R1];
1118 const u32 r2 = tmps[gid].digest_buf[DGST_R2];
1119 const u32 r3 = tmps[gid].digest_buf[DGST_R3];