Full Disclosure mailing list archives

Re: IncrediMail Password Decryptor is just released


From: Christian Sciberras <uuf6429 () gmail com>
Date: Mon, 30 May 2011 17:09:10 +0200

Wait, "encrypted" or "encoded"?

Chris.




On Mon, May 30, 2011 at 4:52 PM, Nagareshwar Talekar <tnagareshwar () gmail com
wrote:

Hi all,

We have just released new tool,  IncrediMail Password Decryptor to
instantly recover passwords from IncrediMail client.

IncrediMail stores all the configured mail account passwords in
registry in an encrypted format at following location.

HKEY_CURRENT_USER\Software\IncrediMail\Identities\<GUID>\Accounts\<GUID>

Usernames are stored in clear text, however passwords are encrypted
using proprietary encoding algorithm. Passwords for each type
(POP3/SMTP) are stored in the registry values “PopPassword“ &
“SMTPPassword“.

IncrediMail Password Decryptor helps in automatically discovering &
decrypting all such stored passwords.

For more interesting details, check out
http://securityxploded.com/incredimail-password-decryptor.php

For users in Gulf countries, use alternative portal
http://passwordforensics.com/incredimail-password-decryptor.php


- SecurityXploded
An Infosec Research & Development Portal

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: