readme? who ever reads those things..... ;-)
yes you are correct, I did a --help which shows what I thought was all
the options, but it doesn't show this one it seems...
also, it has no brackets near the module name to indicate that there any
options for it unlike the other modules shown in --help. Inconsistent?
I still don't really understand the point of this option, perhaps just
to send NTLM hashes straight, so even if you have recovered them you
don't have to crack them, just fire them off at the target? Or perhaps
it's just that it's more secure to store them in this format and then
use them as is...
Thanks
Hari Sekhon
George A. Theall wrote:
On Fri, Mar 02, 2007 at 03:45:10PM +0000, Hari Sekhon wrote:
I'm wondering what the "Interpret Hashes as NTLM Hashes" option is
for under the Hydra SMB section.
It corresponds to the 'H' method of the '-m' option used by Hydra's
smbnt module.
Does this mean that it is sending the passwords as NTLM hashes?
It looks like it interprets the passwords in the password file as NTLM
hashes, like what you might have from pwdump or sam._ files.
I've never seen this option in Hydra, and having just confirmed that,
there is no option, at least in my version.
Have you looked in the README, under the smbnt service module options?
It's definitely in the current version (5.3) of THC-Hydra as well as 4.4.
George
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus