Security Basics mailing list archives

questions about cracking password with Cain....


From: "Jorge L. Vazquez" <jlvazquez825 () gmail com>
Date: Wed, 16 Jul 2008 13:16:37 -0400

one thing that has happened to me with Cain is that when pulling a MITM attack on a victim to sniff off password, I can get the password for pop3, telnet, ftp with no problem; well those are sent in clear text over the network with no kind of encryption, but when I try to dump the hashes from a windows box login/authentication with a Domain Controller or when trying to access a share on the network via UNC path....I get the hashes in the sniffer session in Cain, and then import them into crack session to do a dictionary or brute force attack, but when I actually launch the attack it doesn't load the hashes; I get the error no hashes imported, like if Cain is not recognizing the hashes or the hashes are in the wrong format.....do I have to modify this hashes for Cain to understand them....or am I missing something here


Thanks
Jorge L. Vazquez

www.pctechtips.org


Current thread: