Bitlocker password character encodings

Mat Walker 96 Reputation points
2022-03-10T05:03:37.527+00:00

A good friend's computer got hacked a while ago (https://support.google.com/mail/thread/97622912/daughter-being-held-to-ransom-ransomer-hiding-behind-a-gmail-address-what-to-do?hl=en) and I have been helping him out. We now have the password (no $$$ was paid I hasten to add) but it doesnt work. It may be false, but I dont think so.

The password we got is (and I dont mind publishing it at all!);
123Φxî◙╧▬╫¶╘≥N^&_%0135å>ô0á÷º•y#$%13#%$$φ1ùφ«]¯Σ√IÆD╡▀^@@╞1φ«.$ú¡Z↔╝↓ë@«4╓|I2æ

My thought is that somehow it has become corrupted between languages and/or character encodings. IE. If hacker was a non-english nationality, they may have used their own language characterset which has then been converted to UTF8/16 in the process. So, when I try it on my machine which is US English the Bitlocker password interpreter may be reading the password wrong.

Could this be a possibly? If so, how could I go about trying a fix?

EG. (And I'm not casting any dispersions here!). A Russian hacker hacks in and has a password he uses in Russian. He copy/pastes it into the Bitlocker set-password field and (by whatever means) forwards me the password. In sending it to me it becomes the set of characters we see above. When i try then, because the characters are now different, it fails.

Hope someone can help here as it is quite an emotional rollercoaster he has been on with this and I'd really like to be able to help the family.

Windows for business Windows Client for IT Pros Devices and deployment Configure application groups
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. MTG 1,246 Reputation points
    2022-03-10T13:26:53.763+00:00

    How did you try to enter that password?
    What is encrypted, the boot drive or a data drive?


  2. Limitless Technology 39,916 Reputation points
    2022-03-15T16:00:41.897+00:00

    Hello @Mat Walker

    What you're saying is definitely a possibility. However, if the nefarious entity who hacked into the system is giving you this password, it's also possible that it's false.

    Assuming that your theory is correct, you will need to know the original language in order to interpret the password.

    I suggest that you go back to the source in order to establish if this is the correct password.

    I really hope you get this situation resolved.

    --
    --If the reply is helpful, please Upvote and Accept as answer--


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.