Bitlocker Password Question

192 views
Skip to first unread message

Philip Shaw

unread,
Jan 2, 2022, 8:13:09 AM1/2/22
to DataRecoveryCertification
Good morning and Happy New Year. A customer has a drive that is asking for a Bitlocker password and he has no idea what it is. He sent me this link and it looks interesting but it doesn't appear to work with TPM enabled. Has anybody ever tried this method? Would it only work with a password and not if you are looking for the 48-character key?

Thanks. 


Virus-free. www.avast.com

jol qwerr

unread,
Jan 2, 2022, 10:04:16 AM1/2/22
to datarecovery...@googlegroups.com
It will work on the 48 digit recovery key too, but will take ages to complete

Markus Bauer

unread,
Jan 2, 2022, 11:10:43 AM1/2/22
to DataRecoveryCertification
It should work on the 48 digit key. I would use Hashcat and a good GPU! I have cracked multiple drives with hashcat + GTX1660 + HaveIBeenPwned wordlist...

rzepk...@gmail.com

unread,
Jan 2, 2022, 12:37:09 PM1/2/22
to DataRecoveryCertification
HaveIBeenPwned wordlist is stored in plain-text passwords list ? or SHA1/NTLM hashes only?

Markus Bauer

unread,
Jan 2, 2022, 1:35:46 PM1/2/22
to DataRecoveryCertification
Paintext - I will upload my to github as the old repo went offline due to data loss. 

Markus Bauer

unread,
Jan 2, 2022, 5:32:40 PM1/2/22
to DataRecoveryCertification
I forget github has a file-size limit! Sourceforge to the rescue: https://sourceforge.net/projects/wordlist-collection/files/

Philip Shaw

unread,
Jan 3, 2022, 9:51:03 AM1/3/22
to DataRecoveryCertification
He also sent me this link which seems potentially doable. Any thoughts?


Virus-free. www.avast.com

--
Data Recovery Certification Group / for issue with google group please email sc...@myharddrivedied.com
---
You received this message because you are subscribed to the Google Groups "DataRecoveryCertification" group.
To unsubscribe from this group and stop receiving emails from it, send an email to datarecoverycertif...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/datarecoverycertification/ac1e32d5-19a9-49e3-9c6d-4690447a7e0en%40googlegroups.com.

LEE MARK

unread,
Jan 7, 2022, 2:49:09 AM1/7/22
to datarecovery...@googlegroups.com
Hello Please  where can I get the 48-bit key to get the HASH dictionary

Philip Shaw <shawcomput...@gmail.com> 于2022年1月3日周一 22:51写道:

Markus Bauer

unread,
Jan 7, 2022, 3:26:43 AM1/7/22
to DataRecoveryCertification
Bitlocker is a pretty heavy heach to calculate - see benchmark results of a RTX 3090:

Hashmode: 22100 - BitLocker (Iterations: 1048576)

Speed.#1.........: 4363 H/s (75.02ms) @ Accel:1 Loops:4096 Thr:1024 Vec:1 

With that value we can calculate now:

10 posibilities ^ 48 char. long / 4363 hashes per sec. / 60 sec. / 60 min. / 24 hours / 365 days = 7.2678872e+36 years

You will be long gone before the 48 digit key is cracked... 
Reply all
Reply to author
Forward
0 new messages