Trying to crack NTLMv2
Thanks, I used responder as epixoip recommended and it worked beautifully and captured the entire hash altogether as in the examples you have linked. Not as a segmented series of challenge/responses like the Metasploit SMB scanner does.

Now for a slightly OT question, is there something better to use than ettercap for arp poisoning nowdays? I've always used it with good success in the past but lately I always run into problems with it or it's buggy and crashes.
