2 * Author......: Jens Steube <jens.steube@gmail.com>
8 #include "inc_vendor.cl"
9 #include "inc_hash_constants.h"
10 #include "inc_hash_functions.cl"
11 #include "inc_types.cl"
12 #include "inc_common.cl"
14 #define COMPARE_S "inc_comp_single.cl"
15 #define COMPARE_M "inc_comp_multi.cl"
17 void sha1_transform (const u32 w0[4], const u32 w1[4], const u32 w2[4], const u32 w3[4], u32 digest[5])
45 SHA1_STEP (SHA1_F0o, A, B, C, D, E, w0_t);
46 SHA1_STEP (SHA1_F0o, E, A, B, C, D, w1_t);
47 SHA1_STEP (SHA1_F0o, D, E, A, B, C, w2_t);
48 SHA1_STEP (SHA1_F0o, C, D, E, A, B, w3_t);
49 SHA1_STEP (SHA1_F0o, B, C, D, E, A, w4_t);
50 SHA1_STEP (SHA1_F0o, A, B, C, D, E, w5_t);
51 SHA1_STEP (SHA1_F0o, E, A, B, C, D, w6_t);
52 SHA1_STEP (SHA1_F0o, D, E, A, B, C, w7_t);
53 SHA1_STEP (SHA1_F0o, C, D, E, A, B, w8_t);
54 SHA1_STEP (SHA1_F0o, B, C, D, E, A, w9_t);
55 SHA1_STEP (SHA1_F0o, A, B, C, D, E, wa_t);
56 SHA1_STEP (SHA1_F0o, E, A, B, C, D, wb_t);
57 SHA1_STEP (SHA1_F0o, D, E, A, B, C, wc_t);
58 SHA1_STEP (SHA1_F0o, C, D, E, A, B, wd_t);
59 SHA1_STEP (SHA1_F0o, B, C, D, E, A, we_t);
60 SHA1_STEP (SHA1_F0o, A, B, C, D, E, wf_t);
61 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F0o, E, A, B, C, D, w0_t);
62 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F0o, D, E, A, B, C, w1_t);
63 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F0o, C, D, E, A, B, w2_t);
64 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F0o, B, C, D, E, A, w3_t);
69 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w4_t);
70 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w5_t);
71 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w6_t);
72 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w7_t);
73 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w8_t);
74 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w9_t);
75 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wa_t);
76 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, wb_t);
77 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, wc_t);
78 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wd_t);
79 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, we_t);
80 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wf_t);
81 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w0_t);
82 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w1_t);
83 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w2_t);
84 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w3_t);
85 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w4_t);
86 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w5_t);
87 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w6_t);
88 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w7_t);
93 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w8_t);
94 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w9_t);
95 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, wa_t);
96 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, wb_t);
97 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, wc_t);
98 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, wd_t);
99 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, we_t);
100 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, wf_t);
101 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, w0_t);
102 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, w1_t);
103 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w2_t);
104 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w3_t);
105 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, w4_t);
106 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, w5_t);
107 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, w6_t);
108 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F2o, A, B, C, D, E, w7_t);
109 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F2o, E, A, B, C, D, w8_t);
110 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F2o, D, E, A, B, C, w9_t);
111 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F2o, C, D, E, A, B, wa_t);
112 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F2o, B, C, D, E, A, wb_t);
117 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, wc_t);
118 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wd_t);
119 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, we_t);
120 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, wf_t);
121 w0_t = rotl32 ((wd_t ^ w8_t ^ w2_t ^ w0_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w0_t);
122 w1_t = rotl32 ((we_t ^ w9_t ^ w3_t ^ w1_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w1_t);
123 w2_t = rotl32 ((wf_t ^ wa_t ^ w4_t ^ w2_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w2_t);
124 w3_t = rotl32 ((w0_t ^ wb_t ^ w5_t ^ w3_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w3_t);
125 w4_t = rotl32 ((w1_t ^ wc_t ^ w6_t ^ w4_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w4_t);
126 w5_t = rotl32 ((w2_t ^ wd_t ^ w7_t ^ w5_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, w5_t);
127 w6_t = rotl32 ((w3_t ^ we_t ^ w8_t ^ w6_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, w6_t);
128 w7_t = rotl32 ((w4_t ^ wf_t ^ w9_t ^ w7_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, w7_t);
129 w8_t = rotl32 ((w5_t ^ w0_t ^ wa_t ^ w8_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, w8_t);
130 w9_t = rotl32 ((w6_t ^ w1_t ^ wb_t ^ w9_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, w9_t);
131 wa_t = rotl32 ((w7_t ^ w2_t ^ wc_t ^ wa_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wa_t);
132 wb_t = rotl32 ((w8_t ^ w3_t ^ wd_t ^ wb_t), 1u); SHA1_STEP (SHA1_F1, A, B, C, D, E, wb_t);
133 wc_t = rotl32 ((w9_t ^ w4_t ^ we_t ^ wc_t), 1u); SHA1_STEP (SHA1_F1, E, A, B, C, D, wc_t);
134 wd_t = rotl32 ((wa_t ^ w5_t ^ wf_t ^ wd_t), 1u); SHA1_STEP (SHA1_F1, D, E, A, B, C, wd_t);
135 we_t = rotl32 ((wb_t ^ w6_t ^ w0_t ^ we_t), 1u); SHA1_STEP (SHA1_F1, C, D, E, A, B, we_t);
136 wf_t = rotl32 ((wc_t ^ w7_t ^ w1_t ^ wf_t), 1u); SHA1_STEP (SHA1_F1, B, C, D, E, A, wf_t);
145 __kernel void m10300_init (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global saph_sha1_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global void *esalt_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
151 const u32 gid = get_global_id (0);
153 if (gid >= gid_max) return;
157 word_buf0[0] = pws[gid].i[0];
158 word_buf0[1] = pws[gid].i[1];
159 word_buf0[2] = pws[gid].i[2];
160 word_buf0[3] = pws[gid].i[3];
164 word_buf1[0] = pws[gid].i[4];
165 word_buf1[1] = pws[gid].i[5];
166 word_buf1[2] = pws[gid].i[6];
167 word_buf1[3] = pws[gid].i[7];
171 word_buf2[0] = pws[gid].i[8];
172 word_buf2[1] = pws[gid].i[9];
174 const u32 pw_len = pws[gid].pw_len;
180 u32 salt_len = salt_bufs[salt_pos].salt_len;
184 salt_buf[0] = salt_bufs[salt_pos].salt_buf[0];
185 salt_buf[1] = salt_bufs[salt_pos].salt_buf[1];
186 salt_buf[2] = salt_bufs[salt_pos].salt_buf[2];
187 salt_buf[3] = salt_bufs[salt_pos].salt_buf[3];
221 switch_buffer_by_offset_le (w0, w1, w2, w3, pw_len);
223 w0[0] |= word_buf0[0];
224 w0[1] |= word_buf0[1];
225 w0[2] |= word_buf0[2];
226 w0[3] |= word_buf0[3];
228 w1[0] |= word_buf1[0];
229 w1[1] |= word_buf1[1];
230 w1[2] |= word_buf1[2];
231 w1[3] |= word_buf1[3];
233 w2[0] |= word_buf2[0];
234 w2[1] |= word_buf2[1];
236 const u32 pw_salt_len = pw_len + salt_len;
238 append_0x80_4x4 (w0, w1, w2, w3, pw_salt_len);
242 w0[0] = swap32 (w0[0]);
243 w0[1] = swap32 (w0[1]);
244 w0[2] = swap32 (w0[2]);
245 w0[3] = swap32 (w0[3]);
247 w1[0] = swap32 (w1[0]);
248 w1[1] = swap32 (w1[1]);
249 w1[2] = swap32 (w1[2]);
250 w1[3] = swap32 (w1[3]);
252 w2[0] = swap32 (w2[0]);
253 w2[1] = swap32 (w2[1]);
254 w2[2] = swap32 (w2[2]);
255 w2[3] = swap32 (w2[3]);
257 w3[0] = swap32 (w3[0]);
258 w3[1] = swap32 (w3[1]);
259 w3[2] = swap32 (w3[2]);
260 w3[3] = pw_salt_len * 8;
270 sha1_transform (w0, w1, w2, w3, digest);
272 tmps[gid].digest_buf[0] = digest[0];
273 tmps[gid].digest_buf[1] = digest[1];
274 tmps[gid].digest_buf[2] = digest[2];
275 tmps[gid].digest_buf[3] = digest[3];
276 tmps[gid].digest_buf[4] = digest[4];
279 __kernel void m10300_loop (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global saph_sha1_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global void *esalt_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
285 const u32 gid = get_global_id (0);
289 word_buf0[0] = swap32 (pws[gid].i[0]);
290 word_buf0[1] = swap32 (pws[gid].i[1]);
291 word_buf0[2] = swap32 (pws[gid].i[2]);
292 word_buf0[3] = swap32 (pws[gid].i[3]);
296 word_buf1[0] = swap32 (pws[gid].i[4]);
297 word_buf1[1] = swap32 (pws[gid].i[5]);
298 word_buf1[2] = swap32 (pws[gid].i[6]);
299 word_buf1[3] = swap32 (pws[gid].i[7]);
303 word_buf2[0] = swap32 (pws[gid].i[8]);
304 word_buf2[1] = swap32 (pws[gid].i[9]);
306 const u32 pw_len = pws[gid].pw_len;
310 digest[0] = tmps[gid].digest_buf[0];
311 digest[1] = tmps[gid].digest_buf[1];
312 digest[2] = tmps[gid].digest_buf[2];
313 digest[3] = tmps[gid].digest_buf[3];
314 digest[4] = tmps[gid].digest_buf[4];
320 for (u32 i = 0; i < loop_cnt; i++)
344 switch_buffer_by_offset_be (w0, w1, w2, w3, pw_len);
346 w0[0] |= word_buf0[0];
347 w0[1] |= word_buf0[1];
348 w0[2] |= word_buf0[2];
349 w0[3] |= word_buf0[3];
350 w1[0] |= word_buf1[0];
351 w1[1] |= word_buf1[1];
352 w1[2] |= word_buf1[2];
353 w1[3] |= word_buf1[3];
354 w2[0] |= word_buf2[0];
355 w2[1] |= word_buf2[1];
360 w3[3] = (pw_len + 20) * 8;
368 sha1_transform (w0, w1, w2, w3, digest);
371 tmps[gid].digest_buf[0] = digest[0];
372 tmps[gid].digest_buf[1] = digest[1];
373 tmps[gid].digest_buf[2] = digest[2];
374 tmps[gid].digest_buf[3] = digest[3];
375 tmps[gid].digest_buf[4] = digest[4];
378 __kernel void m10300_comp (__global pw_t *pws, __global kernel_rule_t *rules_buf, __global comb_t *combs_buf, __global bf_t *bfs_buf, __global saph_sha1_tmp_t *tmps, __global void *hooks, __global u32 *bitmaps_buf_s1_a, __global u32 *bitmaps_buf_s1_b, __global u32 *bitmaps_buf_s1_c, __global u32 *bitmaps_buf_s1_d, __global u32 *bitmaps_buf_s2_a, __global u32 *bitmaps_buf_s2_b, __global u32 *bitmaps_buf_s2_c, __global u32 *bitmaps_buf_s2_d, __global plain_t *plains_buf, __global digest_t *digests_buf, __global u32 *hashes_shown, __global salt_t *salt_bufs, __global void *esalt_bufs, __global u32 *d_return_buf, __global u32 *d_scryptV0_buf, __global u32 *d_scryptV1_buf, __global u32 *d_scryptV2_buf, __global u32 *d_scryptV3_buf, const u32 bitmap_mask, const u32 bitmap_shift1, const u32 bitmap_shift2, const u32 salt_pos, const u32 loop_pos, const u32 loop_cnt, const u32 il_cnt, const u32 digests_cnt, const u32 digests_offset, const u32 combs_mode, const u32 gid_max)
384 const u32 gid = get_global_id (0);
386 if (gid >= gid_max) return;
388 const u32 lid = get_local_id (0);
394 const u32 r0 = tmps[gid].digest_buf[0];
395 const u32 r1 = tmps[gid].digest_buf[1];
396 const u32 r2 = tmps[gid].digest_buf[2];
397 const u32 r3 = tmps[gid].digest_buf[3];