在Win2012上创建test文件并开启文件共享
主机访问Win2012(清除之前的连接记录)
开启wireshark抓包并过滤流量
得到主机名为admin,没有域名
解密hash值,密码为123456
hashcat -m 5600 admin:::50c2d39bf17c9d8d:ca6664b72a0de0892dbb9e8aa7becf7f:0101000000000000fbcb7049e03eda01d81b87c77fb6c8a40000000002000800440041004d004e0001001e00570049004e002d00390055004d004500460050004900500041004e004b0004001000440041004d004e002e0063006f006d0003003000570049004e002d00390055004d004500460050004900500041004e004b002e00440041004d004e002e0063006f006d0005001000440041004d004e002e0063006f006d0007000800fbcb7049e03eda01060004000200000008003000300000000000000001000000002000008644e8576bb1cf7ba0b19767494b8502d1c8c34d11ccc568478267197d8cb1040a001000000000000000000000000000000000000900240063006900660073002f003100390032002e003100360038002e00310030002e00310030000000000000000000 /usr/share/wordlists/rockyou.txt