2 * Author......: Jens Steube <jens.steube@gmail.com>
8 //too much register pressure
9 //#define NEW_SIMD_CODE
11 #include "inc_vendor.cl"
12 #include "inc_hash_constants.h"
13 #include "inc_hash_functions.cl"
14 #include "inc_types.cl"
15 #include "inc_common.cl"
16 #include "inc_simd.cl"
26 void swap (__local RC4_KEY *rc4_key, const u8 i, const u8 j)
31 rc4_key->S[i] = rc4_key->S[j];
35 void rc4_init_16 (__local RC4_KEY *rc4_key, const u32 data[4])
40 __local u32 *ptr = (__local u32 *) rc4_key->S;
45 for (u32 i = 0; i < 64; i++)
52 for (u32 i = 0; i < 16; i++)
60 j += rc4_key->S[idx] + (v >> 0); swap (rc4_key, idx, j); idx++;
61 j += rc4_key->S[idx] + (v >> 8); swap (rc4_key, idx, j); idx++;
62 j += rc4_key->S[idx] + (v >> 16); swap (rc4_key, idx, j); idx++;
63 j += rc4_key->S[idx] + (v >> 24); swap (rc4_key, idx, j); idx++;
67 j += rc4_key->S[idx] + (v >> 0); swap (rc4_key, idx, j); idx++;
68 j += rc4_key->S[idx] + (v >> 8); swap (rc4_key, idx, j); idx++;
69 j += rc4_key->S[idx] + (v >> 16); swap (rc4_key, idx, j); idx++;
70 j += rc4_key->S[idx] + (v >> 24); swap (rc4_key, idx, j); idx++;
74 j += rc4_key->S[idx] + (v >> 0); swap (rc4_key, idx, j); idx++;
75 j += rc4_key->S[idx] + (v >> 8); swap (rc4_key, idx, j); idx++;
76 j += rc4_key->S[idx] + (v >> 16); swap (rc4_key, idx, j); idx++;
77 j += rc4_key->S[idx] + (v >> 24); swap (rc4_key, idx, j); idx++;
81 j += rc4_key->S[idx] + (v >> 0); swap (rc4_key, idx, j); idx++;
82 j += rc4_key->S[idx] + (v >> 8); swap (rc4_key, idx, j); idx++;
83 j += rc4_key->S[idx] + (v >> 16); swap (rc4_key, idx, j); idx++;
84 j += rc4_key->S[idx] + (v >> 24); swap (rc4_key, idx, j); idx++;
88 u8 rc4_next_16 (__local RC4_KEY *rc4_key, u8 i, u8 j, const u32 in[4], u32 out[4])
93 for (u32 k = 0; k < 4; k++)
102 swap (rc4_key, i, j);
104 idx = rc4_key->S[i] + rc4_key->S[j];
106 xor4 |= rc4_key->S[idx] << 0;
111 swap (rc4_key, i, j);
113 idx = rc4_key->S[i] + rc4_key->S[j];
115 xor4 |= rc4_key->S[idx] << 8;
120 swap (rc4_key, i, j);
122 idx = rc4_key->S[i] + rc4_key->S[j];
124 xor4 |= rc4_key->S[idx] << 16;
129 swap (rc4_key, i, j);
131 idx = rc4_key->S[i] + rc4_key->S[j];
133 xor4 |= rc4_key->S[idx] << 24;
135 out[k] = in[k] ^ xor4;
141 void md5_transform (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[4])
165 MD5_STEP (MD5_Fo, a, b, c, d, w0_t, MD5C00, MD5S00);
166 MD5_STEP (MD5_Fo, d, a, b, c, w1_t, MD5C01, MD5S01);
167 MD5_STEP (MD5_Fo, c, d, a, b, w2_t, MD5C02, MD5S02);
168 MD5_STEP (MD5_Fo, b, c, d, a, w3_t, MD5C03, MD5S03);
169 MD5_STEP (MD5_Fo, a, b, c, d, w4_t, MD5C04, MD5S00);
170 MD5_STEP (MD5_Fo, d, a, b, c, w5_t, MD5C05, MD5S01);
171 MD5_STEP (MD5_Fo, c, d, a, b, w6_t, MD5C06, MD5S02);
172 MD5_STEP (MD5_Fo, b, c, d, a, w7_t, MD5C07, MD5S03);
173 MD5_STEP (MD5_Fo, a, b, c, d, w8_t, MD5C08, MD5S00);
174 MD5_STEP (MD5_Fo, d, a, b, c, w9_t, MD5C09, MD5S01);
175 MD5_STEP (MD5_Fo, c, d, a, b, wa_t, MD5C0a, MD5S02);
176 MD5_STEP (MD5_Fo, b, c, d, a, wb_t, MD5C0b, MD5S03);
177 MD5_STEP (MD5_Fo, a, b, c, d, wc_t, MD5C0c, MD5S00);
178 MD5_STEP (MD5_Fo, d, a, b, c, wd_t, MD5C0d, MD5S01);
179 MD5_STEP (MD5_Fo, c, d, a, b, we_t, MD5C0e, MD5S02);
180 MD5_STEP (MD5_Fo, b, c, d, a, wf_t, MD5C0f, MD5S03);
182 MD5_STEP (MD5_Go, a, b, c, d, w1_t, MD5C10, MD5S10);
183 MD5_STEP (MD5_Go, d, a, b, c, w6_t, MD5C11, MD5S11);
184 MD5_STEP (MD5_Go, c, d, a, b, wb_t, MD5C12, MD5S12);
185 MD5_STEP (MD5_Go, b, c, d, a, w0_t, MD5C13, MD5S13);
186 MD5_STEP (MD5_Go, a, b, c, d, w5_t, MD5C14, MD5S10);
187 MD5_STEP (MD5_Go, d, a, b, c, wa_t, MD5C15, MD5S11);
188 MD5_STEP (MD5_Go, c, d, a, b, wf_t, MD5C16, MD5S12);
189 MD5_STEP (MD5_Go, b, c, d, a, w4_t, MD5C17, MD5S13);
190 MD5_STEP (MD5_Go, a, b, c, d, w9_t, MD5C18, MD5S10);
191 MD5_STEP (MD5_Go, d, a, b, c, we_t, MD5C19, MD5S11);
192 MD5_STEP (MD5_Go, c, d, a, b, w3_t, MD5C1a, MD5S12);
193 MD5_STEP (MD5_Go, b, c, d, a, w8_t, MD5C1b, MD5S13);
194 MD5_STEP (MD5_Go, a, b, c, d, wd_t, MD5C1c, MD5S10);
195 MD5_STEP (MD5_Go, d, a, b, c, w2_t, MD5C1d, MD5S11);
196 MD5_STEP (MD5_Go, c, d, a, b, w7_t, MD5C1e, MD5S12);
197 MD5_STEP (MD5_Go, b, c, d, a, wc_t, MD5C1f, MD5S13);
199 MD5_STEP (MD5_H , a, b, c, d, w5_t, MD5C20, MD5S20);
200 MD5_STEP (MD5_H , d, a, b, c, w8_t, MD5C21, MD5S21);
201 MD5_STEP (MD5_H , c, d, a, b, wb_t, MD5C22, MD5S22);
202 MD5_STEP (MD5_H , b, c, d, a, we_t, MD5C23, MD5S23);
203 MD5_STEP (MD5_H , a, b, c, d, w1_t, MD5C24, MD5S20);
204 MD5_STEP (MD5_H , d, a, b, c, w4_t, MD5C25, MD5S21);
205 MD5_STEP (MD5_H , c, d, a, b, w7_t, MD5C26, MD5S22);
206 MD5_STEP (MD5_H , b, c, d, a, wa_t, MD5C27, MD5S23);
207 MD5_STEP (MD5_H , a, b, c, d, wd_t, MD5C28, MD5S20);
208 MD5_STEP (MD5_H , d, a, b, c, w0_t, MD5C29, MD5S21);
209 MD5_STEP (MD5_H , c, d, a, b, w3_t, MD5C2a, MD5S22);
210 MD5_STEP (MD5_H , b, c, d, a, w6_t, MD5C2b, MD5S23);
211 MD5_STEP (MD5_H , a, b, c, d, w9_t, MD5C2c, MD5S20);
212 MD5_STEP (MD5_H , d, a, b, c, wc_t, MD5C2d, MD5S21);
213 MD5_STEP (MD5_H , c, d, a, b, wf_t, MD5C2e, MD5S22);
214 MD5_STEP (MD5_H , b, c, d, a, w2_t, MD5C2f, MD5S23);
216 MD5_STEP (MD5_I , a, b, c, d, w0_t, MD5C30, MD5S30);
217 MD5_STEP (MD5_I , d, a, b, c, w7_t, MD5C31, MD5S31);
218 MD5_STEP (MD5_I , c, d, a, b, we_t, MD5C32, MD5S32);
219 MD5_STEP (MD5_I , b, c, d, a, w5_t, MD5C33, MD5S33);
220 MD5_STEP (MD5_I , a, b, c, d, wc_t, MD5C34, MD5S30);
221 MD5_STEP (MD5_I , d, a, b, c, w3_t, MD5C35, MD5S31);
222 MD5_STEP (MD5_I , c, d, a, b, wa_t, MD5C36, MD5S32);
223 MD5_STEP (MD5_I , b, c, d, a, w1_t, MD5C37, MD5S33);
224 MD5_STEP (MD5_I , a, b, c, d, w8_t, MD5C38, MD5S30);
225 MD5_STEP (MD5_I , d, a, b, c, wf_t, MD5C39, MD5S31);
226 MD5_STEP (MD5_I , c, d, a, b, w6_t, MD5C3a, MD5S32);
227 MD5_STEP (MD5_I , b, c, d, a, wd_t, MD5C3b, MD5S33);
228 MD5_STEP (MD5_I , a, b, c, d, w4_t, MD5C3c, MD5S30);
229 MD5_STEP (MD5_I , d, a, b, c, wb_t, MD5C3d, MD5S31);
230 MD5_STEP (MD5_I , c, d, a, b, w2_t, MD5C3e, MD5S32);
231 MD5_STEP (MD5_I , b, c, d, a, w9_t, MD5C3f, MD5S33);
239 void gen336 (u32 digest_pre[4], u32 salt_buf[4], u32 digest[4])
246 digest_t0[0] = digest_pre[0];
247 digest_t0[1] = digest_pre[1] & 0xff;
249 digest_t1[0] = digest_pre[0] << 8;
250 digest_t1[1] = digest_pre[0] >> 24 | digest_pre[1] << 8;
252 digest_t2[0] = digest_pre[0] << 16;
253 digest_t2[1] = digest_pre[0] >> 16 | digest_pre[1] << 16;
255 digest_t3[0] = digest_pre[0] << 24;
256 digest_t3[1] = digest_pre[0] >> 8 | digest_pre[1] << 24;
263 salt_buf_t0[0] = salt_buf[0];
264 salt_buf_t0[1] = salt_buf[1];
265 salt_buf_t0[2] = salt_buf[2];
266 salt_buf_t0[3] = salt_buf[3];
268 salt_buf_t1[0] = salt_buf[0] << 8;
269 salt_buf_t1[1] = salt_buf[0] >> 24 | salt_buf[1] << 8;
270 salt_buf_t1[2] = salt_buf[1] >> 24 | salt_buf[2] << 8;
271 salt_buf_t1[3] = salt_buf[2] >> 24 | salt_buf[3] << 8;
272 salt_buf_t1[4] = salt_buf[3] >> 24;
274 salt_buf_t2[0] = salt_buf[0] << 16;
275 salt_buf_t2[1] = salt_buf[0] >> 16 | salt_buf[1] << 16;
276 salt_buf_t2[2] = salt_buf[1] >> 16 | salt_buf[2] << 16;
277 salt_buf_t2[3] = salt_buf[2] >> 16 | salt_buf[3] << 16;
278 salt_buf_t2[4] = salt_buf[3] >> 16;
280 salt_buf_t3[0] = salt_buf[0] << 24;
281 salt_buf_t3[1] = salt_buf[0] >> 8 | salt_buf[1] << 24;
282 salt_buf_t3[2] = salt_buf[1] >> 8 | salt_buf[2] << 24;
283 salt_buf_t3[3] = salt_buf[2] >> 8 | salt_buf[3] << 24;
284 salt_buf_t3[4] = salt_buf[3] >> 8;
291 // generate the 16 * 21 buffer
311 w0_t[0] = digest_t0[0];
312 w0_t[1] = digest_t0[1];
315 w0_t[1] |= salt_buf_t1[0];
316 w0_t[2] = salt_buf_t1[1];
317 w0_t[3] = salt_buf_t1[2];
318 w1_t[0] = salt_buf_t1[3];
319 w1_t[1] = salt_buf_t1[4];
322 w1_t[1] |= digest_t1[0];
323 w1_t[2] = digest_t1[1];
326 w1_t[2] |= salt_buf_t2[0];
327 w1_t[3] = salt_buf_t2[1];
328 w2_t[0] = salt_buf_t2[2];
329 w2_t[1] = salt_buf_t2[3];
330 w2_t[2] = salt_buf_t2[4];
333 w2_t[2] |= digest_t2[0];
334 w2_t[3] = digest_t2[1];
337 w2_t[3] |= salt_buf_t3[0];
338 w3_t[0] = salt_buf_t3[1];
339 w3_t[1] = salt_buf_t3[2];
340 w3_t[2] = salt_buf_t3[3];
341 w3_t[3] = salt_buf_t3[4];
345 w3_t[3] |= digest_t3[0];
347 md5_transform (w0_t, w1_t, w2_t, w3_t, digest);
367 w0_t[0] = digest_t3[1];
370 w0_t[1] = salt_buf_t0[0];
371 w0_t[2] = salt_buf_t0[1];
372 w0_t[3] = salt_buf_t0[2];
373 w1_t[0] = salt_buf_t0[3];
376 w1_t[1] = digest_t0[0];
377 w1_t[2] = digest_t0[1];
380 w1_t[2] |= salt_buf_t1[0];
381 w1_t[3] = salt_buf_t1[1];
382 w2_t[0] = salt_buf_t1[2];
383 w2_t[1] = salt_buf_t1[3];
384 w2_t[2] = salt_buf_t1[4];
387 w2_t[2] |= digest_t1[0];
388 w2_t[3] = digest_t1[1];
391 w2_t[3] |= salt_buf_t2[0];
392 w3_t[0] = salt_buf_t2[1];
393 w3_t[1] = salt_buf_t2[2];
394 w3_t[2] = salt_buf_t2[3];
395 w3_t[3] = salt_buf_t2[4];
398 w3_t[3] |= digest_t2[0];
400 md5_transform (w0_t, w1_t, w2_t, w3_t, digest);
420 w0_t[0] = digest_t2[1];
423 w0_t[0] |= salt_buf_t3[0];
424 w0_t[1] = salt_buf_t3[1];
425 w0_t[2] = salt_buf_t3[2];
426 w0_t[3] = salt_buf_t3[3];
427 w1_t[0] = salt_buf_t3[4];
430 w1_t[0] |= digest_t3[0];
431 w1_t[1] = digest_t3[1];
434 w1_t[2] = salt_buf_t0[0];
435 w1_t[3] = salt_buf_t0[1];
436 w2_t[0] = salt_buf_t0[2];
437 w2_t[1] = salt_buf_t0[3];
440 w2_t[2] = digest_t0[0];
441 w2_t[3] = digest_t0[1];
444 w2_t[3] |= salt_buf_t1[0];
445 w3_t[0] = salt_buf_t1[1];
446 w3_t[1] = salt_buf_t1[2];
447 w3_t[2] = salt_buf_t1[3];
448 w3_t[3] = salt_buf_t1[4];
451 w3_t[3] |= digest_t1[0];
453 md5_transform (w0_t, w1_t, w2_t, w3_t, digest);
473 w0_t[0] = digest_t1[1];
476 w0_t[0] |= salt_buf_t2[0];
477 w0_t[1] = salt_buf_t2[1];
478 w0_t[2] = salt_buf_t2[2];
479 w0_t[3] = salt_buf_t2[3];
480 w1_t[0] = salt_buf_t2[4];
483 w1_t[0] |= digest_t2[0];
484 w1_t[1] = digest_t2[1];
487 w1_t[1] |= salt_buf_t3[0];
488 w1_t[2] = salt_buf_t3[1];
489 w1_t[3] = salt_buf_t3[2];
490 w2_t[0] = salt_buf_t3[3];
491 w2_t[1] = salt_buf_t3[4];
494 w2_t[1] |= digest_t3[0];
495 w2_t[2] = digest_t3[1];
498 w2_t[3] = salt_buf_t0[0];
499 w3_t[0] = salt_buf_t0[1];
500 w3_t[1] = salt_buf_t0[2];
501 w3_t[2] = salt_buf_t0[3];
504 w3_t[3] = digest_t0[0];
506 md5_transform (w0_t, w1_t, w2_t, w3_t, digest);
526 w0_t[0] = digest_t0[1];
529 w0_t[0] |= salt_buf_t1[0];
530 w0_t[1] = salt_buf_t1[1];
531 w0_t[2] = salt_buf_t1[2];
532 w0_t[3] = salt_buf_t1[3];
533 w1_t[0] = salt_buf_t1[4];
536 w1_t[0] |= digest_t1[0];
537 w1_t[1] = digest_t1[1];
540 w1_t[1] |= salt_buf_t2[0];
541 w1_t[2] = salt_buf_t2[1];
542 w1_t[3] = salt_buf_t2[2];
543 w2_t[0] = salt_buf_t2[3];
544 w2_t[1] = salt_buf_t2[4];
547 w2_t[1] |= digest_t2[0];
548 w2_t[2] = digest_t2[1];
551 w2_t[2] |= salt_buf_t3[0];
552 w2_t[3] = salt_buf_t3[1];
553 w3_t[0] = salt_buf_t3[2];
554 w3_t[1] = salt_buf_t3[3];
555 w3_t[2] = salt_buf_t3[4];
558 w3_t[2] |= digest_t3[0];
559 w3_t[3] = digest_t3[1];
561 md5_transform (w0_t, w1_t, w2_t, w3_t, digest);
563 w0_t[0] = salt_buf_t0[0];
564 w0_t[1] = salt_buf_t0[1];
565 w0_t[2] = salt_buf_t0[2];
566 w0_t[3] = salt_buf_t0[3];
577 w3_t[2] = 21 * 16 * 8;
580 md5_transform (w0_t, w1_t, w2_t, w3_t, digest);
583 __kernel void m09700_m04 (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global void *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global oldoffice01_t *oldoffice01_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
589 const u32 lid = get_local_id (0);
595 const u32 gid = get_global_id (0);
597 if (gid >= gid_max) return;
602 pw_buf0[0] = pws[gid].i[0];
603 pw_buf0[1] = pws[gid].i[1];
604 pw_buf0[2] = pws[gid].i[2];
605 pw_buf0[3] = pws[gid].i[3];
606 pw_buf1[0] = pws[gid].i[4];
607 pw_buf1[1] = pws[gid].i[5];
608 pw_buf1[2] = pws[gid].i[6];
609 pw_buf1[3] = pws[gid].i[7];
611 const u32 pw_l_len = pws[gid].pw_len;
617 __local RC4_KEY rc4_keys[64];
619 __local RC4_KEY *rc4_key = &rc4_keys[lid];
627 salt_buf[0] = salt_bufs[salt_pos].salt_buf[0];
628 salt_buf[1] = salt_bufs[salt_pos].salt_buf[1];
629 salt_buf[2] = salt_bufs[salt_pos].salt_buf[2];
630 salt_buf[3] = salt_bufs[salt_pos].salt_buf[3];
636 const u32 version = oldoffice01_bufs[salt_pos].version;
638 u32 encryptedVerifier[4];
640 encryptedVerifier[0] = oldoffice01_bufs[salt_pos].encryptedVerifier[0];
641 encryptedVerifier[1] = oldoffice01_bufs[salt_pos].encryptedVerifier[1];
642 encryptedVerifier[2] = oldoffice01_bufs[salt_pos].encryptedVerifier[2];
643 encryptedVerifier[3] = oldoffice01_bufs[salt_pos].encryptedVerifier[3];
649 for (u32 il_pos = 0; il_pos < il_cnt; il_pos += VECT_SIZE)
651 const u32x pw_r_len = pwlenx_create_combt (combs_buf, il_pos);
653 const u32x pw_len = pw_l_len + pw_r_len;
656 * concat password candidate
659 u32x wordl0[4] = { 0 };
660 u32x wordl1[4] = { 0 };
661 u32x wordl2[4] = { 0 };
662 u32x wordl3[4] = { 0 };
664 wordl0[0] = pw_buf0[0];
665 wordl0[1] = pw_buf0[1];
666 wordl0[2] = pw_buf0[2];
667 wordl0[3] = pw_buf0[3];
668 wordl1[0] = pw_buf1[0];
669 wordl1[1] = pw_buf1[1];
670 wordl1[2] = pw_buf1[2];
671 wordl1[3] = pw_buf1[3];
673 u32x wordr0[4] = { 0 };
674 u32x wordr1[4] = { 0 };
675 u32x wordr2[4] = { 0 };
676 u32x wordr3[4] = { 0 };
678 wordr0[0] = ix_create_combt (combs_buf, il_pos, 0);
679 wordr0[1] = ix_create_combt (combs_buf, il_pos, 1);
680 wordr0[2] = ix_create_combt (combs_buf, il_pos, 2);
681 wordr0[3] = ix_create_combt (combs_buf, il_pos, 3);
682 wordr1[0] = ix_create_combt (combs_buf, il_pos, 4);
683 wordr1[1] = ix_create_combt (combs_buf, il_pos, 5);
684 wordr1[2] = ix_create_combt (combs_buf, il_pos, 6);
685 wordr1[3] = ix_create_combt (combs_buf, il_pos, 7);
687 if (combs_mode == COMBINATOR_MODE_BASE_LEFT)
689 switch_buffer_by_offset_le_VV (wordr0, wordr1, wordr2, wordr3, pw_l_len);
693 switch_buffer_by_offset_le_VV (wordl0, wordl1, wordl2, wordl3, pw_r_len);
701 w0[0] = wordl0[0] | wordr0[0];
702 w0[1] = wordl0[1] | wordr0[1];
703 w0[2] = wordl0[2] | wordr0[2];
704 w0[3] = wordl0[3] | wordr0[3];
705 w1[0] = wordl1[0] | wordr1[0];
706 w1[1] = wordl1[1] | wordr1[1];
707 w1[2] = wordl1[2] | wordr1[2];
708 w1[3] = wordl1[3] | wordr1[3];
709 w2[0] = wordl2[0] | wordr2[0];
710 w2[1] = wordl2[1] | wordr2[1];
711 w2[2] = wordl2[2] | wordr2[2];
712 w2[3] = wordl2[3] | wordr2[3];
713 w3[0] = wordl3[0] | wordr3[0];
714 w3[1] = wordl3[1] | wordr3[1];
715 w3[2] = wordl3[2] | wordr3[2];
716 w3[3] = wordl3[3] | wordr3[3];
722 make_unicode (w1, w2, w3);
723 make_unicode (w0, w0, w1);
725 w3[2] = pw_len * 8 * 2;
730 digest_pre[0] = MD5M_A;
731 digest_pre[1] = MD5M_B;
732 digest_pre[2] = MD5M_C;
733 digest_pre[3] = MD5M_D;
735 md5_transform (w0, w1, w2, w3, digest_pre);
737 digest_pre[0] &= 0xffffffff;
738 digest_pre[1] &= 0x000000ff;
739 digest_pre[2] &= 0x00000000;
740 digest_pre[3] &= 0x00000000;
749 gen336 (digest_pre, salt_buf, digest);
751 // now the 40 bit input for the MD5 which then will generate the RC4 key, so it's precomputable!
754 w0[1] = digest[1] & 0xff;
775 md5_transform (w0, w1, w2, w3, digest);
786 rc4_init_16 (rc4_key, key);
790 u8 j = rc4_next_16 (rc4_key, 0, 0, encryptedVerifier, out);
814 md5_transform (w0, w1, w2, w3, digest);
816 rc4_next_16 (rc4_key, 16, j, digest, out);
818 COMPARE_M_SIMD (out[0], out[1], out[2], out[3]);
822 __kernel void m09700_m08 (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global void *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global oldoffice01_t *oldoffice01_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
826 __kernel void m09700_m16 (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global void *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global oldoffice01_t *oldoffice01_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
830 __kernel void m09700_s04 (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global void *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global oldoffice01_t *oldoffice01_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
836 const u32 lid = get_local_id (0);
842 const u32 gid = get_global_id (0);
844 if (gid >= gid_max) return;
849 pw_buf0[0] = pws[gid].i[0];
850 pw_buf0[1] = pws[gid].i[1];
851 pw_buf0[2] = pws[gid].i[2];
852 pw_buf0[3] = pws[gid].i[3];
853 pw_buf1[0] = pws[gid].i[4];
854 pw_buf1[1] = pws[gid].i[5];
855 pw_buf1[2] = pws[gid].i[6];
856 pw_buf1[3] = pws[gid].i[7];
858 const u32 pw_l_len = pws[gid].pw_len;
864 __local RC4_KEY rc4_keys[64];
866 __local RC4_KEY *rc4_key = &rc4_keys[lid];
874 salt_buf[0] = salt_bufs[salt_pos].salt_buf[0];
875 salt_buf[1] = salt_bufs[salt_pos].salt_buf[1];
876 salt_buf[2] = salt_bufs[salt_pos].salt_buf[2];
877 salt_buf[3] = salt_bufs[salt_pos].salt_buf[3];
883 const u32 version = oldoffice01_bufs[salt_pos].version;
885 u32 encryptedVerifier[4];
887 encryptedVerifier[0] = oldoffice01_bufs[salt_pos].encryptedVerifier[0];
888 encryptedVerifier[1] = oldoffice01_bufs[salt_pos].encryptedVerifier[1];
889 encryptedVerifier[2] = oldoffice01_bufs[salt_pos].encryptedVerifier[2];
890 encryptedVerifier[3] = oldoffice01_bufs[salt_pos].encryptedVerifier[3];
896 const u32 search[4] =
898 digests_buf[digests_offset].digest_buf[DGST_R0],
899 digests_buf[digests_offset].digest_buf[DGST_R1],
900 digests_buf[digests_offset].digest_buf[DGST_R2],
901 digests_buf[digests_offset].digest_buf[DGST_R3]
908 for (u32 il_pos = 0; il_pos < il_cnt; il_pos += VECT_SIZE)
910 const u32x pw_r_len = pwlenx_create_combt (combs_buf, il_pos);
912 const u32x pw_len = pw_l_len + pw_r_len;
915 * concat password candidate
918 u32x wordl0[4] = { 0 };
919 u32x wordl1[4] = { 0 };
920 u32x wordl2[4] = { 0 };
921 u32x wordl3[4] = { 0 };
923 wordl0[0] = pw_buf0[0];
924 wordl0[1] = pw_buf0[1];
925 wordl0[2] = pw_buf0[2];
926 wordl0[3] = pw_buf0[3];
927 wordl1[0] = pw_buf1[0];
928 wordl1[1] = pw_buf1[1];
929 wordl1[2] = pw_buf1[2];
930 wordl1[3] = pw_buf1[3];
932 u32x wordr0[4] = { 0 };
933 u32x wordr1[4] = { 0 };
934 u32x wordr2[4] = { 0 };
935 u32x wordr3[4] = { 0 };
937 wordr0[0] = ix_create_combt (combs_buf, il_pos, 0);
938 wordr0[1] = ix_create_combt (combs_buf, il_pos, 1);
939 wordr0[2] = ix_create_combt (combs_buf, il_pos, 2);
940 wordr0[3] = ix_create_combt (combs_buf, il_pos, 3);
941 wordr1[0] = ix_create_combt (combs_buf, il_pos, 4);
942 wordr1[1] = ix_create_combt (combs_buf, il_pos, 5);
943 wordr1[2] = ix_create_combt (combs_buf, il_pos, 6);
944 wordr1[3] = ix_create_combt (combs_buf, il_pos, 7);
946 if (combs_mode == COMBINATOR_MODE_BASE_LEFT)
948 switch_buffer_by_offset_le_VV (wordr0, wordr1, wordr2, wordr3, pw_l_len);
952 switch_buffer_by_offset_le_VV (wordl0, wordl1, wordl2, wordl3, pw_r_len);
960 w0[0] = wordl0[0] | wordr0[0];
961 w0[1] = wordl0[1] | wordr0[1];
962 w0[2] = wordl0[2] | wordr0[2];
963 w0[3] = wordl0[3] | wordr0[3];
964 w1[0] = wordl1[0] | wordr1[0];
965 w1[1] = wordl1[1] | wordr1[1];
966 w1[2] = wordl1[2] | wordr1[2];
967 w1[3] = wordl1[3] | wordr1[3];
968 w2[0] = wordl2[0] | wordr2[0];
969 w2[1] = wordl2[1] | wordr2[1];
970 w2[2] = wordl2[2] | wordr2[2];
971 w2[3] = wordl2[3] | wordr2[3];
972 w3[0] = wordl3[0] | wordr3[0];
973 w3[1] = wordl3[1] | wordr3[1];
974 w3[2] = wordl3[2] | wordr3[2];
975 w3[3] = wordl3[3] | wordr3[3];
981 make_unicode (w1, w2, w3);
982 make_unicode (w0, w0, w1);
984 w3[2] = pw_len * 8 * 2;
989 digest_pre[0] = MD5M_A;
990 digest_pre[1] = MD5M_B;
991 digest_pre[2] = MD5M_C;
992 digest_pre[3] = MD5M_D;
994 md5_transform (w0, w1, w2, w3, digest_pre);
996 digest_pre[0] &= 0xffffffff;
997 digest_pre[1] &= 0x000000ff;
998 digest_pre[2] &= 0x00000000;
999 digest_pre[3] &= 0x00000000;
1008 gen336 (digest_pre, salt_buf, digest);
1010 // now the 40 bit input for the MD5 which then will generate the RC4 key, so it's precomputable!
1013 w0[1] = digest[1] & 0xff;
1034 md5_transform (w0, w1, w2, w3, digest);
1045 rc4_init_16 (rc4_key, key);
1049 u8 j = rc4_next_16 (rc4_key, 0, 0, encryptedVerifier, out);
1073 md5_transform (w0, w1, w2, w3, digest);
1075 rc4_next_16 (rc4_key, 16, j, digest, out);
1077 COMPARE_S_SIMD (out[0], out[1], out[2], out[3]);
1081 __kernel void m09700_s08 (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global void *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global oldoffice01_t *oldoffice01_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
1085 __kernel void m09700_s16 (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global void *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global oldoffice01_t *oldoffice01_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)