readme? who ever reads those things..... ;-)

yes you are correct, I did a --help which shows what I thought was all the options, but it doesn't show this one it seems...

also, it has no brackets near the module name to indicate that there any options for it unlike the other modules shown in --help. Inconsistent?

I still don't really understand the point of this option, perhaps just to send NTLM hashes straight, so even if you have recovered them you don't have to crack them, just fire them off at the target? Or perhaps it's just that it's more secure to store them in this format and then use them as is...

Thanks

Hari Sekhon



George A. Theall wrote:
On Fri, Mar 02, 2007 at 03:45:10PM +0000, Hari Sekhon wrote:

I'm wondering what the "Interpret Hashes as NTLM Hashes" option is for under the Hydra SMB section.

It corresponds to the 'H' method of the '-m' option used by Hydra's smbnt module.

Does this mean that it is sending the passwords as NTLM hashes?

It looks like it interprets the passwords in the password file as NTLM hashes, like what you might have from pwdump or sam._ files.

I've never seen this option in Hydra, and having just confirmed that, there is no option, at least in my version.

Have you looked in the README, under the smbnt service module options? It's definitely in the current version (5.3) of THC-Hydra as well as 4.4.

George
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to