Metasploit mailing list archives

NTLM Type 3 message and Windows Passwd


From: abhi.hatekar at gmail.com (Abhijeet Hatekar)
Date: Wed, 12 Mar 2008 12:00:31 -0500

hi All,

When we decode the GSS-API data for the NTLM type 3 message; we can get
LM/LMv2 Response and NTLM/NTLMv2 Response from it.
These response are nothing but replies created from the user's password in
response to the Type 2 challenge right?
So my question is knowing the server challenge and these responses can we
get User Password? if yes, how?

Is these responses and NTLM hashes are having some relation?



-- 
Abhie
----r00t Is stAt3 0f mInD---
http://bughira.sf.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.metasploit.com/pipermail/framework/attachments/20080312/fb6fde77/attachment.htm>


Current thread: