Page 1 of 1

NTLM or MD4?

PostPosted: Thu Jun 18, 2009 4:50 am
by zifr
I have the hash that I used SAMinside to pull out of a Windows SAM file. The hash is listed under NT Hash, should I be using the MD4 function or NTLM for my cracking? Thank you for the insight.

zifr

Re: NTLM or MD4?

PostPosted: Thu Jun 18, 2009 2:41 pm
by blazer
the NTLM hashing implements MD4 but the general output is different, so to attack NTLM just use the NTLM algorithm ? I'm assuming you're transferring the hash over to the multiforcer ?

Re: NTLM or MD4?

PostPosted: Thu Jun 18, 2009 2:56 pm
by 1epi

Re: NTLM or MD4?

PostPosted: Fri Jun 19, 2009 1:48 am
by Bitweasil
You will attack a Windows NTLM hash with NTLM.

It is performing a MD4 on the UTF-16LE representation of the password, if you were curious. Adding MD4 to the cracker, while fairly useless, was trivial to do.

Re: NTLM or MD4?

PostPosted: Fri Feb 18, 2011 6:09 am
by blendaperry
NTLM Provides confidentiality and Authentication to the users, As it is a set of Microsoft Security Protocols, it also provides backward compatability with LANMAN.

Re: NTLM or MD4?

PostPosted: Fri Feb 18, 2011 4:08 pm
by Bitweasil
blendaperry wrote:NTLM Provides confidentiality and Authentication to the users, As it is a set of Microsoft Security Protocols, it also provides backward compatability with LANMAN.


What?

No, it's not backwards compatible with LanMan hashes... they're DES based.

*confused as to why you posted this*

Re: NTLM or MD4?

PostPosted: Fri Feb 18, 2011 5:43 pm
by Sc00bz
None of his posts make any sense. I would say he's a bot but there are no ads on his posts. He should totally wear the "I failed the Turing test" t-shirt.

Re: NTLM or MD4?

PostPosted: Fri Feb 18, 2011 6:13 pm
by Bitweasil
Sc00bz wrote:None of his posts make any sense. I would say he's a bot but there are no ads on his posts. He should totally wear the "I failed the Turing test" t-shirt.


I'm confused too. Bots have trouble registering, and he's not spamming.

blendaperry, send me a PM to verify that you're a human and are of some value to the forum, or I'll just ban you. You're not contributing in a meaningful manner.