12-01-2020, 03:37 AM
(This post was last modified: 12-01-2020, 03:46 AM by BruteShark.)
Current version of BruteShark can extract 7 hash types from raw pcap files and export them to a Hashcat input file:
Protocol Hash Type Hascat Mode (-m)
----------------------------------------------------------------
HTTP HTTP-Digest 11400
SMTP\IMAP CRAM-MD5 16400
NTLM (e.g. SMB) NTLMv1 5500
NTLM (e.g. SMB) NTLMv2 5600
Kerberos AS-REQ etype 23 7500
Kerberos TGS-REP etype 23 13100
Kerberos AS-REP etype 23 18200
Protocol Hash Type Hascat Mode (-m)
----------------------------------------------------------------
HTTP HTTP-Digest 11400
SMTP\IMAP CRAM-MD5 16400
NTLM (e.g. SMB) NTLMv1 5500
NTLM (e.g. SMB) NTLMv2 5600
Kerberos AS-REQ etype 23 7500
Kerberos TGS-REP etype 23 13100
Kerberos AS-REP etype 23 18200