28 May 2008 | 13,943 views

fgdump 2.1.0 and pwdump 1.7.1 Released – Dump LanMan & NTLM Hashes

Acunetix Web Application Security

The major change is both tools now support 64-bit targets! Good news for us.

pwdump6 is a password hash dumper for Windows 2000 and later systems. It is capable of dumping LanMan and NTLM hashes as well as password hash histories. It is based on pwdump3e, and should be stable on XP SP2 and 2K3. If you have had LSASS crash on you using older tools, this should fix that.

fgdump is a more powerful version of pwdump6. pwdump tends to hang and such when antivirus is present, so fgdump takes care of that by shutting down and later restarting a number of AV programs. It also can dump cached credentials and protected storage items, and can be run in a multithreaded fashion very easily.

I strongly recommend using fgdump over pwdump6, especially given that fgdump uses pwdump6 under the hood! You’ll get everything pwdump6 gives you and a lot more.

fgdump now has:

  • Better 32/64 bit detection. This is not as easy as it sounds, at least not remotely! If someone has a sure-fire way for 100% reliably detecting the target OS, please let me know. In the mean time, if fgdump is unsure, it will report it and default to 32-bit.
  • The -O [32|64] flag will manually override the target OS architecture. So, for example if fgdump is reporting a host as 32-bit and you KNOW it is 64-bit, you can use -O 64 (or vice-versa, of course). Note that this flag will apply to ALL hosts you are dumping! You might want to single out any hosts you need to override.

So if you’re still using pwdump…DON’T! Use fgdump.

Get pwdump here

Get fgdump here

You can read more here and here.





                

Recent in Hacking Tools:
- Blackhash – Audit Passwords Without Hashes
- EyeWitness – A Rapid Web Application Triage Tool
- wig – WebApp Information Gatherer – Identify CMS

Related Posts:
- Download pwdump6 and fgdump version 1.6.0 available now.
- Download pwdump 1.4.2 and fgdump 1.3.4 – Windows Password Dumping
- pwdump6 1.5.0 as well as fgdump 1.5.0 Released for Download

Most Read in Hacking Tools:
- Top 15 Security/Hacking Tools & Utilities - 1,845,733 views
- Brutus Password Cracker – Download brutus-aet2.zip AET2 - 1,030,979 views
- wwwhack 1.9 – Download wwwhack19.zip Web Hacking Tool - 613,607 views

Advertise on Darknet

4 Responses to “fgdump 2.1.0 and pwdump 1.7.1 Released – Dump LanMan & NTLM Hashes”

  1. Jinesh Doshi 29 May 2008 at 5:22 am Permalink

    Thanks buddy. Nice tool!!!

  2. Navin 5 June 2008 at 12:26 pm Permalink

    pwdump tends to hang and such when antivirus is present

    which antivirus?? Never faced this problem!!

  3. Bogwitch 5 June 2008 at 1:27 pm Permalink

    As with any pentesting or VA tools, there are likely to be flagged up as malware of one form or another.

    Your pentest or VA system wouldn’t normally have a resident virus scanner active, would it?

  4. Pantagruel 6 June 2008 at 8:58 am Permalink

    with Bogwitch

    Recently got the Ethical Hackers Tool kit v2 and boy-o-boy all bells and whistles went of when I unrarred the containers on a windows box.