Package: fcrackzip
Version: 0.3-2
Severity: normal

I found a false positive with the following zip file:

  http://www1.videofilia.com/videosjj/dedete_en_plena_calle.zip

  (WARNING: contains sexualy explicit video)

  sha1sum: a2ea72658c6a3dc20abe0ce08109b6c848076227

Using the following command:

  $ nice -20 fcrackzip --brute-force --method zip6 --verbose --length 6 
--use-unzip -c a1: dedete_en_plena_calle.zip

fcrackzip reported "bd6veg" as valid password, but in fact it isn't.

(of course, re-trying with "-p bd6veh" works around the problem)

-- System Information:
Debian Release: testing/unstable
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.8-2-k7
Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ANSI_X3.4-1968) (ignored: LC_ALL 
set to C)

Versions of packages fcrackzip depends on:
ii  libc6                         2.3.5-8.1  GNU C Library: Shared libraries an

fcrackzip recommends no packages.

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to