Vista Activation Cracked By Brute Force


Recommended Posts

I wonder what this means for me. I have multiple legitimate keys and if someone magically got one of my keys from a keygen mine would fail WGA :/

I guess if that happens in high enough numbers Microsoft will have to end WGA altogether?

Yes, I will definitely be ****ed if my key ever starts giving me trouble because someone generated it through brute force. I will give this a try just for fun. I wouldn't mind generating a list of keys and just keeping them on hand in case this becomes cold war between Microsoft and the citizens of the world.

Yay got mine only in 40 minutes!
Here's what to do next!
  1. Yell upstairs to your mom
  2. Tell the dumb broad to fix you some Pop Tarts
  3. Sit in front of your activated copy of Vista all day and develop some blood clots in your legs
  4. Have 1 (or more) of those clots pass up into your lungs
  5. Instruct your family to sue Microsoft for wrongful death after you've passed

What I want to know is how someone "comes across this accidentally" while learning vbscript. That statement right there is BS. If my key gets stolen, I expect Microsoft to replace it with a new one. In the end, it really doesn't matter. They let you activate your copy over the phone no matter what.

Not even MS said it was unhackable, so why do things like this keep being spread. Also, brute force generation is not really a crack; a crack involves bypassing a protection, while brute forcing is really just trying a whole lot of keys. Any protection using keys or passwords is "vulnerable" to that really, the difference is just how long it takes. But that's mostly semantics. What's important to both MS and priates alike is if this method is efficient enough. :)

What I'm surprised about is how bruteforcing can be possible even now...

25 characters with 26 (letters) + 10 (digits) combinations each => 25^36 combinations. That number is 50 digits long!

211758236813575084767080625169910490512847900390625 combinations.

I don't really get how they can do this in a viable way still... They have to have figured out a way to reduce the number of permutations far below 26^36 somehow, perhaps by figuring out the key algorithm and not trying *all* combinations. That would just be ridiculous! Perhaps they're able to just try out for a specific Vista Edition, but it still feels like a whole lot! 100 million "valid" keys among all those combinations would still just be a drop in the ocean?

add on top of that, on the forum the guy says it can only go 10,000 keys every 30min. and no there's no algorithm used its just striaght brute force. i think alot of people lie about getting a key maybe a small handful will get lucky cause of randomness.

Here's what to do next!
  1. Yell upstairs to your mom
  2. Tell the dumb broad to fix you some Pop Tarts
  3. Sit in front of your activated copy of Vista all day and develop some blood clots in your legs
  4. Have 1 (or more) of those clots pass up into your lungs
  5. Instruct your family to sue Microsoft for wrongful death after you've passed

Thats freakin ironic.

I was thinking about getting M$ to cough up a few billion that way for me, except, I was going to say it was

too much exposure to porno and drugs on the net that made me an addict, so M$ cough up. My lawyers will be the EU!

add on top of that, on the forum the guy says it can only go 10,000 keys every 30min. and no there's no algorithm used its just striaght brute force. i think alot of people lie about getting a key maybe a small handful will get lucky cause of randomness.

He should know at least that certain characters are not used in Microsoft's product keys... EVER!

When was the last time you've seen an A??? Or any vocal?!?!

Actually, theres a couple of them actually:

The 5 Vocals - A, E, I, O, U

4 consonants - N, L, S, Z

The numbers 0 and 1

So that drops the number of possible combinations down considerably. If his script is coded without these considerations then it would take a lot longer to get an usable key.

If you have Vista, you can try it yourself. Go over to Windows Properties and click on the change product key "link" and try punching in any of those characters! You will get a message that says that an unusable character was used.

If any of you guys have the script, please send it over to hotmail_staff_warning-AT-hotmail.com to review it.

care to elaborate ?
wow it was cracked, didnt see that coming..... haaaaaa

There was a BIOS hack that made the OS think the machine is an OEM machine and activated the OS without a problem. And then a week later this hack came out and the news break headlines. I just don't see how this method get more attention than it should. To my knowledge, I think if Microsoft was to fear of such hack it shouldn't be this one but the BIOS one. That is at the root of activation.

:::Update:::

icon_newest_reply.gif Brute force keygen a phoney

fact is the brute force keygen is a joke, i never intended for it to work. I have never gotten it to work, everyone should stop using it!

everyone who said they got a key a probably lying or mistaken!

i suggest everyone uses the 120 day 3x rearm method.

what a guy..

:::Update:::

icon_newest_reply.gif Brute force keygen a phoney

what a guy..

It's almost sounds like he got a call from MS lawyers or something...

A lot of people claim that it worked for them, are they all lieing?

Did you guys read his apology letter to MS ?

http://keznews.com/forum/viewtopic.php?t=2696

lmao :)

Is there anyone here who seriosly was able to get a legit key that activate through this method?

Edited by Ron21
You would think it would be surprisingly easy to stop brute force attacks. Just limit activation attempts by IP.

ive said this already in the thread. it doesnt try to activate, it checks your vista locally to see if it accepts the key then if you want to you can try to activate.

In worst case .. it will take 4613477611100251487689152970642 years to find a valid key.

Exactly:

(25^36)/10,000/60/24/365 = The amount of years it would take to figure out all the keys if it did 10,000 per minute

And that's about:

4.02888578 ? 10^40 years.

So that's about 40,000,000,000,000,000,000,000,000,000,000,000,000,000 years

Good luck with that:pp

So yeh, I find it no surprise the guy called it in as phoney. I mean, cmon - do the maths:pp

Exactly:

(25^36)/10,000/60/24/365 = The amount of years it would take to figure out all the keys if it did 10,000 per minute

And that's about:

4.02888578 ? 10^40 years.

So that's about 40,000,000,000,000,000,000,000,000,000,000,000,000,000 years

Good luck with that:pp

So yeh, I find it no surprise the guy called it in as phoney. I mean, cmon - do the maths:pp

I agree with you that it's unlikely that a key can be found at random, but your math is off. First off, the total number of combinations is 25^25 (25 possible digits in a serial of length 25). That's still a lot. But what you're forgetting is that we have no idea how MS has limited the keyspace that Windows Vista will accept as a valid key. Further, nobody needs to find ALL the keys, they only need to find one. These 2 facts could make it considerably easier to happen upon a valid key. Impossible to say how likely unless we know the valid key space.

However, the brute-force script that is running around itself is flawed. The code is poorly written and includes the letter "L," which Vista will not accept; and the number "5," which Vista will also not accept. This means that, on average, every other key that the script tests will have no chance of being valid because it includes invalid characters. Further, I tested the script for a about an hour and found that on a dual-core machine it was only testing, on average, about 600 keys PER HOUR.

Bottom line: it's theoretically possible that people are happening on keys using this method, but I doubt it. However, the quadrizillion years claim (like the cryptographers like to use) is just silly. Once people figure out how to narrow down the key space by finding clues about how the key algorithm works, then a brute-force mechanism might become feasible.

The only way a brute force could work is if someone did some good coding and removes the obvious invalid keys such as AAAAA-AAAAA-AAAAA-AAAAA 11111-11111-11111-11111 etc something like that, it will still leave a few billion combination but it will be more specific as you only need to find 1 working key not all the possible keys.

Also arent some letters not allowed in cd keys?

I suppose if you did that you will probably be down to a few hundred million or a billion keys.

Then by pure chance you could find a cdkey or 2 in a couple of day or something.

It's almost sounds like he got a call from MS lawyers or something...

A lot of people claim that it worked for them, are they all lieing?

Did you guys read his apology letter to MS ?

http://keznews.com/forum/viewtopic.php?t=2696

lmao :)

Is there anyone here who seriosly was able to get a legit key that activate through this method?

It must have worked properly at least for some, otherwise they wouldn't have bothered to go after him (they have better things to do), and he wouldn't have needed to write that apology letter. He was probably also forced by MS to claim that it is fake to keep people from using it.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • I don't hate the new menus, I am not a fan of the lack of features and how they went live when they clearly are not complete. The menu itself presents much better than the previous - but what's lacking (IMO) is: 1) Any kind of automated manipulation such as: "this goes on the new menu because you use this feature more often on this filetype" "this is rarely used and will fall back to the old menu" 2) Any kind of user manipulation such as: "a UI to add/remove/order items to the new menu"
    • The biggest issue in this version of Win 11 context menu, from usability standpoint, is the movable row with basic commands. Think of a car analogy...if You turn the week left the infotainment screen will move right and vice versa. With how it works now Microsoft made something forbidden in designing in any UI, software or hardware. I can't grasp who were the morons within Microsoft suggesting it was a good idea and gave it a green light.
    • LibreOffice 26.2.4 by Razvan Serea LibreOffice is the free power-packed Open Source personal productivity suite for Windows, Macintosh and Linux, that gives you six feature-rich applications for all your document production and data processing needs: Writer, Calc, Impress, Draw, Math and Base. Support and documentation is free from our large, dedicated community of users, contributors and developers. You, too, can also get involved! Choosing Between LibreOffice Still and LibreOffice Fresh: LibreOffice Still is a good choice if you value stability, a longer support cycle, and a more conservative approach to software updates. It's suitable for businesses and organizations where reliability and compatibility are crucial. LibreOffice Fresh is ideal if you're an enthusiast or an early adopter who wants to stay on the cutting edge of LibreOffice development and is willing to accept more frequent updates and occasional minor issues. Features: Writer is the word processor inside LibreOffice. Use it for everything, from dashing off a quick letter to producing an entire book with tables of contents, embedded illustrations, bibliographies and diagrams. The while-you-type auto-completion, auto-formatting and automatic spelling checking make difficult tasks easy (but are easy to disable if you prefer). Writer is powerful enough to tackle desktop publishing tasks such as creating multi-column newsletters and brochures. The only limit is your imagination. Calc tames your numbers and helps with difficult decisions when you're weighing the alternatives. Analyze your data with Calc and then use it to present your final output. Charts and analysis tools help bring transparency to your conclusions. A fully-integrated help system makes easier work of entering complex formulas. Add data from external databases such as SQL or Oracle, then sort and filter them to produce statistical analyses. Use the graphing functions to display large number of 2D and 3D graphics from 13 categories, including line, area, bar, pie, X-Y, and net - with the dozens of variations available, you're sure to find one that suits your project. Impress is the fastest and easiest way to create effective multimedia presentations. Stunning animation and sensational special effects help you convince your audience. Create presentations that look even more professional than the standard presentations you commonly see at work. Get your collegues' and bosses' attention by creating something a little bit different. Draw lets you build diagrams and sketches from scratch. A picture is worth a thousand words, so why not try something simple with box and line diagrams? Or else go further and easily build dynamic 3D illustrations and special effects. It's as simple or as powerful as you want it to be. Base is the database front-end of the LibreOffice suite. With Base, you can seamlessly integrate into your existing database structures. Based on imported and linked tables and queries from MySQL, PostgreSQL or Microsoft Access and many other data sources, you can build powerful databases containing forms, reports, views and queries. Full integration is possible with the in-built HSQL database. Math is a simple equation editor that lets you lay-out and display your mathematical, chemical, electrical or scientific equations quickly in standard written notation. Even the most-complex calculations can be understandable when displayed correctly. E=mc2. LibreOffice also comes configured with a PDF file creator, meaning you can distribute documents that you're sure can be opened and read by users of almost any computing device or operating system. LibreOffice also comes configured with a PDF file creator, meaning you can distribute documents that you're sure can be opened and read by users of almost any computing device or operating system. Download: LibreOffice 64-bit | LibreOffice 32-bit ~300.0 MB (Open Source) View: LibreOffice Website | Screenshot | Release Notes Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Amazon eero Pro 6E mesh Wi-Fi system 2-pack is 27% off by Ivan Jenic The Amazon eero Pro 6E mesh Wi-Fi system is currently $239.99 on Amazon for the 2-pack, down from $329.99. That's 27% off and $90 saved for a solid Wi-Fi solution that covers your entire home (purchase link down below). The 2-pack covers up to 4,000 square feet (372 square meters) and supports 100+ connected devices, which handles the vast majority of home setups without breaking a sweat. Wi-Fi 6E brings access to the 6 GHz band for lower latency across the network, and the 2.5 Gb Ethernet port supports gigabit+ internet plans if your ISP offers them. eero's TrueMesh technology handles traffic routing automatically, so you're not manually managing which devices connect to which node. You set up the entire thing through the eero app, and the entire process takes a few minutes. The system also receives automatic security updates in the background, so once you set it up, you don't have to worry about compatibility issues. If you're covering a larger home or want more nodes, the 3-pack is $329.99 and the 4-pack is $479.98, both at similar discount levels. It's worth mentioning that a newer model exists, which is likely the reason for the discount, but the Pro 6E is still perfectly capable hardware for most homes. Amazon eero Pro 6E mesh Wi-Fi system 2-pack - $239.99 | 27% off on Amazon This Amazon deal is US-specific and not available in other regions unless specified. This is a first-party seller link (at the time of article publishing); ensure that you also purchase from a first-party seller link only. If you don't like it or want to look at more options, check out the previous deals that we have covered, OR you can also visit Amazon US deals page. Get Prime (SNAP), Prime Video, Audible Plus or Kindle / Music Unlimited. Free for 30 days. As an Amazon Associate, we earn from qualifying purchases.
  • Recent Achievements

    • Week One Done
      I2D earned a badge
      Week One Done
    • Week One Done
      Dr Jared Dental Studio earned a badge
      Week One Done
    • Week One Done
      RG INVESTMENT GROUP earned a badge
      Week One Done
    • Very Popular
      The Norwegian Drone Pilot earned a badge
      Very Popular
    • Very Popular
      s0nic69 earned a badge
      Very Popular
  • Popular Contributors

    1. 1
      +primortal
      484
    2. 2
      PsYcHoKiLLa
      258
    3. 3
      Skyfrog
      84
    4. 4
      FloatingFatMan
      64
    5. 5
      Michael Scrip
      63
  • Tell a friend

    Love Neowin? Tell a friend!