2

I ran the NTLM_stealer metasploit module and ended up with the following results:

LMHASH:Disabled
NTHASH:008940f335e9b2ddc182bb5b960a0c5bad0b125cbee3cf84

I was wondering if there is way to successfully use the pass the hash technique with just the NT Hash. Every tool and blog seem to outline techniques that require both LM and NT hash.

SilverlightFox
  • 33,408
  • 6
  • 67
  • 178
JohnnyHunter
  • 233
  • 1
  • 7

1 Answers1

3

You need either of the hashes in order to 'pass the hash'. Here is some further reading for you if you're interested in learning more about it.

https://www.sans.org/reading-room/whitepapers/testing/crack-pass-hash-33219

xorist
  • 870
  • 4
  • 15