Skip to content

Instantly share code, notes, and snippets.

@bobziuchkovski
Last active August 29, 2015 13:56
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save bobziuchkovski/9222926 to your computer and use it in GitHub Desktop.
Save bobziuchkovski/9222926 to your computer and use it in GitHub Desktop.
DCERPC Decryption Debug Output
** (wireshark:32560): WARNING **: Can't load fallback CSS resource: Failed to import: The resource at '/org/gnome/adwaita/gtk-fallback.css' does not exist
** (wireshark:32560): WARNING **: Can't load fallback CSS resource: Failed to import: The resource at '/org/gnome/adwaita/gtk-fallback.css' does not exist
p11-kit: invalid config filename, will be ignored in the future: /etc/pkcs11/modules/.
p11-kit: couldn't read config file: /etc/pkcs11/modules/.
(wireshark:32560): IBUS-WARNING **: The owner of /home/bobbyz/.config/ibus/bus is not root!
read keytab file /home/bobbyz/tmp/gistbins/master.keytab
added key in 244 keytype:18 len:32
added key in 244 keytype:18 len:32
added key in 253 keytype:18 len:32
added key in 256 keytype:18 len:32
added key in 256 keytype:18 len:32
added key in 264 keytype:18 len:32
added key in 266 keytype:18 len:32
added key in 266 keytype:18 len:32
added key in 271 keytype:18 len:32
added key in 271 keytype:18 len:32
added key in 271 keytype:18 len:32
added key in 271 keytype:18 len:32
added key in 274 keytype:18 len:32
1)Len 11 offset 100 txt WIN2008APP1
2)Len 11 offset 100 txt WIN2008APP1
Adding initial vars with this start packet = 313
Found some vars (ie. server/client challenges), let's see if I can get a session key
Found 17 passwords
MD5: CF 9F 47 6E C0 75 A7 09
Client challenge: EA D1 36 4C 71 4C 05 4E
Server challenge: FF 11 4B 50 E6 FC 79 46
Server creds: F4 04 1B A7 3D 8B 44 96
Session key not found !
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
added key in 337 keytype:18 len:32
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
added key in 346 keytype:18 len:32
added key in 346 keytype:18 len:32
added key in 352 keytype:18 len:32
added key in 352 keytype:18 len:32
added key in 380 keytype:18 len:32
Found some vars (ie. server/client challenges), let's see if I can get a session key
Found 17 passwords
MD5: CF 9F 47 6E C0 75 A7 09
Client challenge: EA D1 36 4C 71 4C 05 4E
Server challenge: FF 11 4B 50 E6 FC 79 46
Server creds: F4 04 1B A7 3D 8B 44 96
Session key not found !
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
added key in 439 keytype:18 len:32
added key in 439 keytype:18 len:32
added key in 448 keytype:18 len:32
added key in 457 keytype:18 len:32
added key in 457 keytype:18 len:32
added key in 462 keytype:18 len:32
added key in 462 keytype:18 len:32
added key in 465 keytype:18 len:32
added key in 507 keytype:18 len:32
added key in 507 keytype:18 len:32
added key in 509 keytype:18 len:32
added key in 514 keytype:18 len:32
added key in 516 keytype:18 len:32
added key in 516 keytype:18 len:32
added key in 526 keytype:18 len:32
added key in 532 keytype:18 len:32
added key in 532 keytype:18 len:32
added key in 534 keytype:18 len:32
added key in 534 keytype:18 len:32
added key in 542 keytype:18 len:32
added key in 542 keytype:18 len:32
added key in 548 keytype:18 len:32
added key in 567 keytype:18 len:32
added key in 570 keytype:18 len:32
added key in 570 keytype:18 len:32
added key in 578 keytype:18 len:32
added key in 580 keytype:18 len:32
added key in 580 keytype:18 len:32
added key in 585 keytype:18 len:32
added key in 585 keytype:18 len:32
added key in 585 keytype:18 len:32
added key in 585 keytype:18 len:32
added key in 588 keytype:18 len:32
added key in 713 keytype:18 len:32
added key in 713 keytype:18 len:32
added key in 716 keytype:18 len:32
added key in 730 keytype:18 len:32
added key in 730 keytype:18 len:32
added key in 733 keytype:18 len:32
added key in 752 keytype:18 len:32
added key in 752 keytype:18 len:32
added key in 760 keytype:18 len:32
added key in 764 keytype:18 len:32
added key in 764 keytype:18 len:32
added key in 870 keytype:18 len:32
added key in 870 keytype:18 len:32
added key in 870 keytype:18 len:32
added key in 870 keytype:18 len:32
added key in 875 keytype:18 len:32
added key in 1007 keytype:18 len:32
added key in 1007 keytype:18 len:32
added key in 1061 keytype:18 len:32
added key in 1061 keytype:18 len:32
added key in 1069 keytype:18 len:32
added key in 1071 keytype:18 len:32
added key in 1071 keytype:18 len:32
added key in 1122 keytype:18 len:32
added key in 1122 keytype:18 len:32
added key in 1123 keytype:23 len:16
added key in 1123 keytype:23 len:16
added key in 1146 keytype:18 len:32
added key in 1146 keytype:18 len:32
added key in 1188 keytype:18 len:32
added key in 1188 keytype:18 len:32
added key in 1195 keytype:23 len:16
added key in 1195 keytype:23 len:16
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
added key in 1202 keytype:18 len:32
added key in 1204 keytype:23 len:16
added key in 1204 keytype:23 len:16
added key in 1212 keytype:18 len:32
added key in 1212 keytype:23 len:16
added key in 1262 keytype:18 len:32
added key in 1262 keytype:18 len:32
added key in 1295 keytype:18 len:32
added key in 1295 keytype:18 len:32
added key in 1302 keytype:23 len:16
added key in 1302 keytype:23 len:16
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
added key in 1358 keytype:18 len:32
added key in 1358 keytype:18 len:32
added key in 1381 keytype:18 len:32
added key in 1381 keytype:18 len:32
added key in 1388 keytype:23 len:16
added key in 1388 keytype:23 len:16
1)Len 11 offset 100 txt WIN2008APP1
2)Len 11 offset 100 txt WIN2008APP1
It seems that I already record this vars start packet = 313
Found some vars (ie. server/client challenges), let's see if I can get a session key
Found 28 passwords
MD5: CF 9F 47 6E C0 75 A7 09
Client challenge: EA D1 36 4C 71 4C 05 4E
Server challenge: FF 11 4B 50 E6 FC 79 46
Server creds: F4 04 1B A7 3D 8B 44 96
Session key not found !
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Found some vars (ie. server/client challenges), let's see if I can get a session key
Found 28 passwords
MD5: CF 9F 47 6E C0 75 A7 09
Client challenge: EA D1 36 4C 71 4C 05 4E
Server challenge: FF 11 4B 50 E6 FC 79 46
Server creds: F4 04 1B A7 3D 8B 44 96
Session key not found !
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
1)Len 11 offset 100 txt WIN2008APP1
2)Len 11 offset 100 txt WIN2008APP1
It seems that I already record this vars start packet = 313
Found some vars (ie. server/client challenges), let's see if I can get a session key
Found 28 passwords
MD5: CF 9F 47 6E C0 75 A7 09
Client challenge: EA D1 36 4C 71 4C 05 4E
Server challenge: FF 11 4B 50 E6 FC 79 46
Server creds: F4 04 1B A7 3D 8B 44 96
Session key not found !
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Found some vars (ie. server/client challenges), let's see if I can get a session key
Found 28 passwords
MD5: CF 9F 47 6E C0 75 A7 09
Client challenge: EA D1 36 4C 71 4C 05 4E
Server challenge: FF 11 4B 50 E6 FC 79 46
Server creds: F4 04 1B A7 3D 8B 44 96
Session key not found !
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found (is null 1) 1 (dissect_verf)
Vars not found 1 (packet_data)
Vars not found (is null 1) 1 (dissect_verf)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment