added interface ip=192.168.1.5 bcast=192.168.1.255 nmask=255.255.255.0 lp_load: refreshing parameters Initialising global parameters Attempting to register new charset UCS-2LE Registered charset UCS-2LE Attempting to register new charset UTF8 Registered charset UTF8 Attempting to register new charset ASCII Registered charset ASCII Attempting to register new charset 646 Registered charset 646 Attempting to register new charset UCS2-HEX Registered charset UCS2-HEX Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE params.c:pm_process() - Processing configuration file "/home/hadess/.smb/smb.conf" pm_process() returned Yes lp_servicenumber: couldn't find homes set_server_role: role = ROLE_STANDALONE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Substituting charset 'ISO-8859-1' for LOCALE Using netbios name WYATT. Using workgroup WORKGROUP. parsed path: fname='smb://' server='' share='' path='' internal_resolve_name: looking up WORKGROUP#1d Opening cache file at /var/cache/samba/gencache.tdb tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/gencache.tdb: Permission denied Attempt to open gencache.tdb has failed. resolve_lmhosts: Attempting lmhosts lookup for name WORKGROUP<0x1d> getlmhostsent: lmhost entry: 127.0.0.1 localhost name_resolve_bcast: Attempting broadcast lookup for name WORKGROUP<0x1d> bind succeeded on port 0 socket option SO_KEEPALIVE = 0 socket option SO_REUSEADDR = 1 socket option SO_BROADCAST = 1 Could not test socket option TCP_NODELAY. socket option IPTOS_LOWDELAY = 0 socket option IPTOS_THROUGHPUT = 0 socket option SO_SNDBUF = 65535 socket option SO_RCVBUF = 65535 socket option SO_SNDLOWAT = 1 socket option SO_RCVLOWAT = 1 socket option SO_SNDTIMEO = 0 socket option SO_RCVTIMEO = 0 Sending a packet of len 50 to (192.168.1.255) on port 137 Sending a packet of len 50 to (192.168.1.255) on port 137 Sending a packet of len 50 to (192.168.1.255) on port 137 internal_resolve_name: looking up WORKGROUP#1b Opening cache file at /var/cache/samba/gencache.tdb tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/gencache.tdb: Permission denied Attempt to open gencache.tdb has failed. resolve_lmhosts: Attempting lmhosts lookup for name WORKGROUP<0x1b> getlmhostsent: lmhost entry: 127.0.0.1 localhost resolve_wins: Attempting wins lookup for name WORKGROUP<0x1b> resolve_wins: WINS server resolution selected and no WINS servers listed. name_resolve_bcast: Attempting broadcast lookup for name WORKGROUP<0x1b> bind succeeded on port 0 socket option SO_KEEPALIVE = 0 socket option SO_REUSEADDR = 1 socket option SO_BROADCAST = 1 Could not test socket option TCP_NODELAY. socket option IPTOS_LOWDELAY = 0 socket option IPTOS_THROUGHPUT = 0 socket option SO_SNDBUF = 65535 socket option SO_RCVBUF = 65535 socket option SO_SNDLOWAT = 1 socket option SO_RCVLOWAT = 1 socket option SO_SNDTIMEO = 0 socket option SO_RCVTIMEO = 0 Sending a packet of len 50 to (192.168.1.255) on port 137 Sending a packet of len 50 to (192.168.1.255) on port 137 Sending a packet of len 50 to (192.168.1.255) on port 137 Unable to find master browser for workgroup WORKGROUP name_resolve_bcast: Attempting broadcast lookup for name __MSBROWSE__<0x1> bind succeeded on port 0 socket option SO_KEEPALIVE = 0 socket option SO_REUSEADDR = 1 socket option SO_BROADCAST = 1 Could not test socket option TCP_NODELAY. socket option IPTOS_LOWDELAY = 0 socket option IPTOS_THROUGHPUT = 0 socket option SO_SNDBUF = 65535 socket option SO_RCVBUF = 65535 socket option SO_SNDLOWAT = 1 socket option SO_RCVLOWAT = 1 socket option SO_SNDTIMEO = 0 socket option SO_RCVTIMEO = 0 Sending a packet of len 50 to (192.168.1.255) on port 137 read_udp_socket: lastip 192.168.1.5 lastport 137 read: 62 parse_nmb: packet id = 27423 Received a packet of len 62 from (192.168.1.5) port 137 nmb packet from 192.168.1.5(137) header: id=27423 opcode=Query(0) response=Yes header: flags: bcast=No rec_avail=Yes rec_des=Yes trunc=No auth=Yes header: rcode=0 qdcount=0 ancount=1 nscount=0 arcount=0 answers: nmb_name=__MSBROWSE__<01> rr_type=32 rr_class=1 ttl=259200 answers 0 char ...... hex 8000C0A80105 Got a positive name query response from 192.168.1.5 ( 192.168.1.5 ) name_status_find: looking up *#00 at 192.168.1.5 Opening cache file at /var/cache/samba/gencache.tdb tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/gencache.tdb: Permission denied Attempt to open gencache.tdb has failed. bind succeeded on port 0 Sending a packet of len 50 to (192.168.1.5) on port 137 read_udp_socket: lastip 192.168.1.5 lastport 137 read: 229 parse_nmb: packet id = 7490 Received a packet of len 229 from (192.168.1.5) port 137 nmb packet from 192.168.1.5(137) header: id=7490 opcode=Query(0) response=Yes header: flags: bcast=No rec_avail=No rec_des=No trunc=No auth=Yes header: rcode=0 qdcount=0 ancount=1 nscount=0 arcount=0 answers: nmb_name=*<00> rr_type=33 rr_class=1 ttl=0 answers 0 char .WYATT hex 07575941545420202020202020202020 answers 10 char ...WYATT hex 00040057594154542020202020202020 answers 20 char ...WYATT hex 20200304005759415454202020202020 answers 30 char ....__MSBRO hex 2020202020040001025F5F4D5342524F answers 40 char WSE__....HADESS hex 5753455F5F0201840048414445535320 answers 50 char ...HADES hex 20202020202020200084004841444553 answers 60 char S ...HAD hex 532020202020202020201D0400484144 answers 70 char ESS .... hex 4553532020202020202020201E840000 answers 80 char ................ hex 00000000000000000000000000000000 answers 90 char ................ hex 00000000000000000000000000000000 answers a0 char ............. hex 00000000000000000000000000 WYATT#00: flags = 0x04 WYATT#03: flags = 0x04 WYATT#20: flags = 0x04 __MSBROWSE__#01: flags = 0x84 HADESS#00: flags = 0x84 HADESS#1d: flags = 0x04 HADESS#1e: flags = 0x84 Opening cache file at /var/cache/samba/gencache.tdb tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/gencache.tdb: Permission denied Attempt to open gencache.tdb has failed. name_status_find: name found, name HADESS ip address is 192.168.1.5 internal_resolve_name: looking up HADESS#1d Opening cache file at /var/cache/samba/gencache.tdb tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/gencache.tdb: Permission denied Attempt to open gencache.tdb has failed. resolve_lmhosts: Attempting lmhosts lookup for name HADESS<0x1d> getlmhostsent: lmhost entry: 127.0.0.1 localhost name_resolve_bcast: Attempting broadcast lookup for name HADESS<0x1d> bind succeeded on port 0 socket option SO_KEEPALIVE = 0 socket option SO_REUSEADDR = 1 socket option SO_BROADCAST = 1 Could not test socket option TCP_NODELAY. socket option IPTOS_LOWDELAY = 0 socket option IPTOS_THROUGHPUT = 0 socket option SO_SNDBUF = 65535 socket option SO_RCVBUF = 65535 socket option SO_SNDLOWAT = 1 socket option SO_RCVLOWAT = 1 socket option SO_SNDTIMEO = 0 socket option SO_RCVTIMEO = 0 Sending a packet of len 50 to (192.168.1.255) on port 137 read_udp_socket: lastip 192.168.1.5 lastport 137 read: 62 parse_nmb: packet id = 6533 Received a packet of len 62 from (192.168.1.5) port 137 nmb packet from 192.168.1.5(137) header: id=6533 opcode=Query(0) response=Yes header: flags: bcast=No rec_avail=Yes rec_des=Yes trunc=No auth=Yes header: rcode=0 qdcount=0 ancount=1 nscount=0 arcount=0 answers: nmb_name=HADESS<1d> rr_type=32 rr_class=1 ttl=259200 answers 0 char ...... hex 0000C0A80105 Got a positive name query response from 192.168.1.5 ( 192.168.1.5 ) remove_duplicate_addrs2: looking for duplicate address/port pairs Opening cache file at /var/cache/samba/gencache.tdb tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/gencache.tdb: Permission denied Attempt to open gencache.tdb has failed. internal_resolve_name: returning 1 addresses: 192.168.1.5:0 found master browser HADESS, 192.168.1.5 Connecting to host=192.168.1.5 Connecting to 192.168.1.5 at port 445 socket option SO_KEEPALIVE = 0 socket option SO_REUSEADDR = 0 socket option SO_BROADCAST = 0 socket option TCP_NODELAY = 1 socket option IPTOS_LOWDELAY = 0 socket option IPTOS_THROUGHPUT = 0 socket option SO_SNDBUF = 50544 socket option SO_RCVBUF = 87824 socket option SO_SNDLOWAT = 1 socket option SO_RCVLOWAT = 1 socket option SO_SNDTIMEO = 0 socket option SO_RCVTIMEO = 0 write_socket(3,183) write_socket(3,183) wrote 183 got smb length of 127 size=127 smb_com=0x72 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=1 smt_wct=17 smb_vwv[ 0]= 7 (0x7) smb_vwv[ 1]=12803 (0x3203) smb_vwv[ 2]= 256 (0x100) smb_vwv[ 3]= 1024 (0x400) smb_vwv[ 4]= 65 (0x41) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 256 (0x100) smb_vwv[ 7]=53504 (0xD100) smb_vwv[ 8]= 31 (0x1F) smb_vwv[ 9]=64768 (0xFD00) smb_vwv[10]=32995 (0x80E3) smb_vwv[11]=32896 (0x8080) smb_vwv[12]=50821 (0xC685) smb_vwv[13]= 2184 (0x888) smb_vwv[14]=50116 (0xC3C4) smb_vwv[15]= 1 (0x1) smb_vwv[16]=14848 (0x3A00) smb_bcc=58 [000] 77 79 61 74 74 00 00 00 00 00 00 00 00 00 00 00 wyatt... ........ [010] 60 28 06 06 2B 06 01 05 05 02 A0 1E 30 1C A0 0E `(..+... .. .0. . [020] 30 0C 06 0A 2B 06 01 04 01 82 37 02 02 0A A3 0A 0...+... ..7...£. [030] 30 08 A0 06 1B 04 4E 4F 4E 45 0. ...NO NE size=127 smb_com=0x72 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=1 smt_wct=17 smb_vwv[ 0]= 7 (0x7) smb_vwv[ 1]=12803 (0x3203) smb_vwv[ 2]= 256 (0x100) smb_vwv[ 3]= 1024 (0x400) smb_vwv[ 4]= 65 (0x41) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 256 (0x100) smb_vwv[ 7]=53504 (0xD100) smb_vwv[ 8]= 31 (0x1F) smb_vwv[ 9]=64768 (0xFD00) smb_vwv[10]=32995 (0x80E3) smb_vwv[11]=32896 (0x8080) smb_vwv[12]=50821 (0xC685) smb_vwv[13]= 2184 (0x888) smb_vwv[14]=50116 (0xC3C4) smb_vwv[15]= 1 (0x1) smb_vwv[16]=14848 (0x3A00) smb_bcc=58 [000] 77 79 61 74 74 00 00 00 00 00 00 00 00 00 00 00 wyatt... ........ [010] 60 28 06 06 2B 06 01 05 05 02 A0 1E 30 1C A0 0E `(..+... .. .0. . [020] 30 0C 06 0A 2B 06 01 04 01 82 37 02 02 0A A3 0A 0...+... ..7...£. [030] 30 08 A0 06 1B 04 4E 4F 4E 45 0. ...NO NE Serverzone is 0 Doing spnego session setup (blob length=58) got OID=1 3 6 1 4 1 311 2 2 10 got principal=NONE write_socket(3,166) write_socket(3,166) wrote 166 got smb length of 266 size=266 smb_com=0x73 smb_rcls=22 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=2 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 169 (0xA9) smb_bcc=223 [000] A1 81 A6 30 81 A3 A0 03 0A 01 01 A1 0C 06 0A 2B ¡.¦0.£ . ...¡...+ [010] 06 01 04 01 82 37 02 02 0A A2 81 8D 04 81 8A 4E .....7.. .¢.....N [020] 54 4C 4D 53 53 50 00 02 00 00 00 0A 00 0A 00 30 TLMSSP.. .......0 [030] 00 00 00 05 02 83 20 F2 D0 CF 80 F2 1C D9 FB 00 ...... ò ÐÏ.ò.Ùû. [040] 00 00 00 00 00 00 00 50 00 50 00 3A 00 00 00 57 .......P .P.:...W [050] 00 59 00 41 00 54 00 54 00 02 00 0A 00 57 00 59 .Y.A.T.T .....W.Y [060] 00 41 00 54 00 54 00 01 00 0A 00 57 00 59 00 41 .A.T.T.. ...W.Y.A [070] 00 54 00 54 00 04 00 14 00 68 00 61 00 64 00 65 .T.T.... .h.a.d.e [080] 00 73 00 73 00 2E 00 6E 00 65 00 74 00 03 00 14 .s.s...n .e.t.... [090] 00 68 00 61 00 64 00 65 00 73 00 73 00 2E 00 6E .h.a.d.e .s.s...n [0A0] 00 65 00 74 00 00 00 00 00 55 00 6E 00 69 00 78 .e.t.... .U.n.i.x [0B0] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [0C0] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [0D0] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... size=266 smb_com=0x73 smb_rcls=22 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=2 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 169 (0xA9) smb_bcc=223 [000] A1 81 A6 30 81 A3 A0 03 0A 01 01 A1 0C 06 0A 2B ¡.¦0.£ . ...¡...+ [010] 06 01 04 01 82 37 02 02 0A A2 81 8D 04 81 8A 4E .....7.. .¢.....N [020] 54 4C 4D 53 53 50 00 02 00 00 00 0A 00 0A 00 30 TLMSSP.. .......0 [030] 00 00 00 05 02 83 20 F2 D0 CF 80 F2 1C D9 FB 00 ...... ò ÐÏ.ò.Ùû. [040] 00 00 00 00 00 00 00 50 00 50 00 3A 00 00 00 57 .......P .P.:...W [050] 00 59 00 41 00 54 00 54 00 02 00 0A 00 57 00 59 .Y.A.T.T .....W.Y [060] 00 41 00 54 00 54 00 01 00 0A 00 57 00 59 00 41 .A.T.T.. ...W.Y.A [070] 00 54 00 54 00 04 00 14 00 68 00 61 00 64 00 65 .T.T.... .h.a.d.e [080] 00 73 00 73 00 2E 00 6E 00 65 00 74 00 03 00 14 .s.s...n .e.t.... [090] 00 68 00 61 00 64 00 65 00 73 00 73 00 2E 00 6E .h.a.d.e .s.s...n [0A0] 00 65 00 74 00 00 00 00 00 55 00 6E 00 69 00 78 .e.t.... .U.n.i.x [0B0] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [0C0] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [0D0] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... Got challenge flags: Got NTLMSSP neg_flags=0x20830205 NTLMSSP_NEGOTIATE_UNICODE NTLMSSP_REQUEST_TARGET NTLMSSP_NEGOTIATE_NTLM NTLMSSP_CHAL_TARGET_INFO NTLMSSP_NEGOTIATE_128 NTLMSSP: Set final flags: Got NTLMSSP neg_flags=0x20000215 NTLMSSP_NEGOTIATE_UNICODE NTLMSSP_REQUEST_TARGET NTLMSSP_NEGOTIATE_SIGN NTLMSSP_NEGOTIATE_NTLM NTLMSSP_NEGOTIATE_128 write_socket(3,250) write_socket(3,250) wrote 250 got smb length of 106 size=106 smb_com=0x73 smb_rcls=109 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=3 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 9 (0x9) smb_bcc=63 [000] A1 07 30 05 A0 03 0A 01 02 55 00 6E 00 69 00 78 ¡.0. ... .U.n.i.x [010] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [020] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [030] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... size=106 smb_com=0x73 smb_rcls=109 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=3 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 9 (0x9) smb_bcc=63 [000] A1 07 30 05 A0 03 0A 01 02 55 00 6E 00 69 00 78 ¡.0. ... .U.n.i.x [010] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [020] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [030] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... write_socket(3,92) write_socket(3,92) wrote 92 got smb length of 96 size=96 smb_com=0x73 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=100 smb_mid=4 smt_wct=3 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 1 (0x1) smb_bcc=55 [000] 00 55 00 6E 00 69 00 78 00 00 00 53 00 61 00 6D .U.n.i.x ...S.a.m [010] 00 62 00 61 00 20 00 33 00 2E 00 30 00 2E 00 30 .b.a. .3 ...0...0 [020] 00 2D 00 31 00 35 00 00 00 48 00 41 00 44 00 45 .-.1.5.. .H.A.D.E [030] 00 53 00 53 00 00 00 .S.S... size=96 smb_com=0x73 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=100 smb_mid=4 smt_wct=3 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 1 (0x1) smb_bcc=55 [000] 00 55 00 6E 00 69 00 78 00 00 00 53 00 61 00 6D .U.n.i.x ...S.a.m [010] 00 62 00 61 00 20 00 33 00 2E 00 30 00 2E 00 30 .b.a. .3 ...0...0 [020] 00 2D 00 31 00 35 00 00 00 48 00 41 00 44 00 45 .-.1.5.. .H.A.D.E [030] 00 53 00 53 00 00 00 .S.S... write_socket(3,90) write_socket(3,90) wrote 90 got smb length of 48 size=48 smb_com=0x75 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=1 smb_pid=8144 smb_uid=100 smb_mid=5 smt_wct=3 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 1 (0x1) smb_bcc=7 [000] 49 50 43 00 00 00 00 IPC.... cli_init_creds: user hadess domain WORKGROUP using workgroup HADESS 192.168.1.5 smbc_server: server_n=[192.168.1.5] server=[192.168.1.5] -> server_n=[192.168.1.5] server=[192.168.1.5] Connecting to 192.168.1.5 at port 445 socket option SO_KEEPALIVE = 0 socket option SO_REUSEADDR = 0 socket option SO_BROADCAST = 0 socket option TCP_NODELAY = 1 socket option IPTOS_LOWDELAY = 0 socket option IPTOS_THROUGHPUT = 0 socket option SO_SNDBUF = 50544 socket option SO_RCVBUF = 87824 socket option SO_SNDLOWAT = 1 socket option SO_RCVLOWAT = 1 socket option SO_SNDTIMEO = 0 socket option SO_RCVTIMEO = 0 session request ok write_socket(3,183) write_socket(3,183) wrote 183 got smb length of 127 size=127 smb_com=0x72 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=1 smt_wct=17 smb_vwv[ 0]= 7 (0x7) smb_vwv[ 1]=12803 (0x3203) smb_vwv[ 2]= 256 (0x100) smb_vwv[ 3]= 1024 (0x400) smb_vwv[ 4]= 65 (0x41) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 256 (0x100) smb_vwv[ 7]=53760 (0xD200) smb_vwv[ 8]= 31 (0x1F) smb_vwv[ 9]=64768 (0xFD00) smb_vwv[10]=32995 (0x80E3) smb_vwv[11]=32896 (0x8080) smb_vwv[12]=50821 (0xC685) smb_vwv[13]= 2184 (0x888) smb_vwv[14]=50116 (0xC3C4) smb_vwv[15]= 1 (0x1) smb_vwv[16]=14848 (0x3A00) smb_bcc=58 [000] 77 79 61 74 74 00 00 00 00 00 00 00 00 00 00 00 wyatt... ........ [010] 60 28 06 06 2B 06 01 05 05 02 A0 1E 30 1C A0 0E `(..+... .. .0. . [020] 30 0C 06 0A 2B 06 01 04 01 82 37 02 02 0A A3 0A 0...+... ..7...£. [030] 30 08 A0 06 1B 04 4E 4F 4E 45 0. ...NO NE size=127 smb_com=0x72 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=1 smt_wct=17 smb_vwv[ 0]= 7 (0x7) smb_vwv[ 1]=12803 (0x3203) smb_vwv[ 2]= 256 (0x100) smb_vwv[ 3]= 1024 (0x400) smb_vwv[ 4]= 65 (0x41) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 256 (0x100) smb_vwv[ 7]=53760 (0xD200) smb_vwv[ 8]= 31 (0x1F) smb_vwv[ 9]=64768 (0xFD00) smb_vwv[10]=32995 (0x80E3) smb_vwv[11]=32896 (0x8080) smb_vwv[12]=50821 (0xC685) smb_vwv[13]= 2184 (0x888) smb_vwv[14]=50116 (0xC3C4) smb_vwv[15]= 1 (0x1) smb_vwv[16]=14848 (0x3A00) smb_bcc=58 [000] 77 79 61 74 74 00 00 00 00 00 00 00 00 00 00 00 wyatt... ........ [010] 60 28 06 06 2B 06 01 05 05 02 A0 1E 30 1C A0 0E `(..+... .. .0. . [020] 30 0C 06 0A 2B 06 01 04 01 82 37 02 02 0A A3 0A 0...+... ..7...£. [030] 30 08 A0 06 1B 04 4E 4F 4E 45 0. ...NO NE Doing spnego session setup (blob length=58) got OID=1 3 6 1 4 1 311 2 2 10 got principal=NONE write_socket(3,166) write_socket(3,166) wrote 166 got smb length of 266 size=266 smb_com=0x73 smb_rcls=22 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=2 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 169 (0xA9) smb_bcc=223 [000] A1 81 A6 30 81 A3 A0 03 0A 01 01 A1 0C 06 0A 2B ¡.¦0.£ . ...¡...+ [010] 06 01 04 01 82 37 02 02 0A A2 81 8D 04 81 8A 4E .....7.. .¢.....N [020] 54 4C 4D 53 53 50 00 02 00 00 00 0A 00 0A 00 30 TLMSSP.. .......0 [030] 00 00 00 05 02 83 20 E7 C3 D1 32 4F D6 96 15 00 ...... ç ÃÑ2OÖ... [040] 00 00 00 00 00 00 00 50 00 50 00 3A 00 00 00 57 .......P .P.:...W [050] 00 59 00 41 00 54 00 54 00 02 00 0A 00 57 00 59 .Y.A.T.T .....W.Y [060] 00 41 00 54 00 54 00 01 00 0A 00 57 00 59 00 41 .A.T.T.. ...W.Y.A [070] 00 54 00 54 00 04 00 14 00 68 00 61 00 64 00 65 .T.T.... .h.a.d.e [080] 00 73 00 73 00 2E 00 6E 00 65 00 74 00 03 00 14 .s.s...n .e.t.... [090] 00 68 00 61 00 64 00 65 00 73 00 73 00 2E 00 6E .h.a.d.e .s.s...n [0A0] 00 65 00 74 00 00 00 00 00 55 00 6E 00 69 00 78 .e.t.... .U.n.i.x [0B0] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [0C0] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [0D0] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... size=266 smb_com=0x73 smb_rcls=22 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=2 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 169 (0xA9) smb_bcc=223 [000] A1 81 A6 30 81 A3 A0 03 0A 01 01 A1 0C 06 0A 2B ¡.¦0.£ . ...¡...+ [010] 06 01 04 01 82 37 02 02 0A A2 81 8D 04 81 8A 4E .....7.. .¢.....N [020] 54 4C 4D 53 53 50 00 02 00 00 00 0A 00 0A 00 30 TLMSSP.. .......0 [030] 00 00 00 05 02 83 20 E7 C3 D1 32 4F D6 96 15 00 ...... ç ÃÑ2OÖ... [040] 00 00 00 00 00 00 00 50 00 50 00 3A 00 00 00 57 .......P .P.:...W [050] 00 59 00 41 00 54 00 54 00 02 00 0A 00 57 00 59 .Y.A.T.T .....W.Y [060] 00 41 00 54 00 54 00 01 00 0A 00 57 00 59 00 41 .A.T.T.. ...W.Y.A [070] 00 54 00 54 00 04 00 14 00 68 00 61 00 64 00 65 .T.T.... .h.a.d.e [080] 00 73 00 73 00 2E 00 6E 00 65 00 74 00 03 00 14 .s.s...n .e.t.... [090] 00 68 00 61 00 64 00 65 00 73 00 73 00 2E 00 6E .h.a.d.e .s.s...n [0A0] 00 65 00 74 00 00 00 00 00 55 00 6E 00 69 00 78 .e.t.... .U.n.i.x [0B0] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [0C0] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [0D0] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... Got challenge flags: Got NTLMSSP neg_flags=0x20830205 NTLMSSP_NEGOTIATE_UNICODE NTLMSSP_REQUEST_TARGET NTLMSSP_NEGOTIATE_NTLM NTLMSSP_CHAL_TARGET_INFO NTLMSSP_NEGOTIATE_128 NTLMSSP: Set final flags: Got NTLMSSP neg_flags=0x20000215 NTLMSSP_NEGOTIATE_UNICODE NTLMSSP_REQUEST_TARGET NTLMSSP_NEGOTIATE_SIGN NTLMSSP_NEGOTIATE_NTLM NTLMSSP_NEGOTIATE_128 write_socket(3,244) write_socket(3,244) wrote 244 got smb length of 106 size=106 smb_com=0x73 smb_rcls=109 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=3 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 9 (0x9) smb_bcc=63 [000] A1 07 30 05 A0 03 0A 01 02 55 00 6E 00 69 00 78 ¡.0. ... .U.n.i.x [010] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [020] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [030] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... size=106 smb_com=0x73 smb_rcls=109 smb_reh=0 smb_err=49152 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=0 smb_mid=3 smt_wct=4 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 9 (0x9) smb_bcc=63 [000] A1 07 30 05 A0 03 0A 01 02 55 00 6E 00 69 00 78 ¡.0. ... .U.n.i.x [010] 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 33 ...S.a.m .b.a. .3 [020] 00 2E 00 30 00 2E 00 30 00 2D 00 31 00 35 00 00 ...0...0 .-.1.5.. [030] 00 48 00 41 00 44 00 45 00 53 00 53 00 00 00 .H.A.D.E .S.S... write_socket(3,92) write_socket(3,92) wrote 92 got smb length of 96 size=96 smb_com=0x73 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=100 smb_mid=4 smt_wct=3 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 1 (0x1) smb_bcc=55 [000] 00 55 00 6E 00 69 00 78 00 00 00 53 00 61 00 6D .U.n.i.x ...S.a.m [010] 00 62 00 61 00 20 00 33 00 2E 00 30 00 2E 00 30 .b.a. .3 ...0...0 [020] 00 2D 00 31 00 35 00 00 00 48 00 41 00 44 00 45 .-.1.5.. .H.A.D.E [030] 00 53 00 53 00 00 00 .S.S... size=96 smb_com=0x73 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=0 smb_pid=8144 smb_uid=100 smb_mid=4 smt_wct=3 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 1 (0x1) smb_bcc=55 [000] 00 55 00 6E 00 69 00 78 00 00 00 53 00 61 00 6D .U.n.i.x ...S.a.m [010] 00 62 00 61 00 20 00 33 00 2E 00 30 00 2E 00 30 .b.a. .3 ...0...0 [020] 00 2D 00 31 00 35 00 00 00 48 00 41 00 44 00 45 .-.1.5.. .H.A.D.E [030] 00 53 00 53 00 00 00 .S.S... session setup ok write_socket(3,92) write_socket(3,92) wrote 92 got smb length of 48 size=48 smb_com=0x75 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=1 smb_pid=8144 smb_uid=100 smb_mid=5 smt_wct=3 smb_vwv[ 0]= 255 (0xFF) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 1 (0x1) smb_bcc=7 [000] 49 50 43 00 00 00 00 IPC.... tconx ok Server connect ok: //192.168.1.5/IPC$: 0x9e55f50 size=123 smb_com=0x25 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=8 smb_flg2=51201 smb_tid=1 smb_pid=8144 smb_uid=100 smb_mid=6 smt_wct=14 smb_vwv[ 0]= 33 (0x21) smb_vwv[ 1]= 0 (0x0) smb_vwv[ 2]= 8 (0x8) smb_vwv[ 3]=65535 (0xFFFF) smb_vwv[ 4]= 0 (0x0) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 0 (0x0) smb_vwv[ 7]= 0 (0x0) smb_vwv[ 8]= 0 (0x0) smb_vwv[ 9]= 33 (0x21) smb_vwv[10]= 90 (0x5A) smb_vwv[11]= 0 (0x0) smb_vwv[12]= 123 (0x7B) smb_vwv[13]= 0 (0x0) smb_bcc=60 [000] 00 5C 00 50 00 49 00 50 00 45 00 5C 00 4C 00 41 .\.P.I.P .E.\.L.A [010] 00 4E 00 4D 00 41 00 4E 00 00 00 68 00 57 72 4C .N.M.A.N ...h.WrL [020] 65 68 44 7A 00 42 31 36 42 42 44 7A 00 01 00 FF ehDz.B16 BBDz...ÿ [030] FF 00 00 00 80 48 41 44 45 53 53 00 ÿ....HAD ESS. write_socket(3,127) write_socket(3,127) wrote 127 got smb length of 96 size=96 smb_com=0x25 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=1 smb_pid=8144 smb_uid=100 smb_mid=6 smt_wct=10 smb_vwv[ 0]= 8 (0x8) smb_vwv[ 1]= 32 (0x20) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 8 (0x8) smb_vwv[ 4]= 56 (0x38) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 32 (0x20) smb_vwv[ 7]= 64 (0x40) smb_vwv[ 8]= 0 (0x0) smb_vwv[ 9]= 0 (0x0) smb_bcc=41 [000] 00 00 00 00 00 01 00 01 00 48 41 44 45 53 53 00 ........ .HADESS. [010] 00 00 00 00 00 00 00 00 00 00 00 00 10 00 80 1A ........ ........ [020] 00 00 00 57 59 41 54 54 00 ...WYATT . size=96 smb_com=0x25 smb_rcls=0 smb_reh=0 smb_err=0 smb_flg=136 smb_flg2=51201 smb_tid=1 smb_pid=8144 smb_uid=100 smb_mid=6 smt_wct=10 smb_vwv[ 0]= 8 (0x8) smb_vwv[ 1]= 32 (0x20) smb_vwv[ 2]= 0 (0x0) smb_vwv[ 3]= 8 (0x8) smb_vwv[ 4]= 56 (0x38) smb_vwv[ 5]= 0 (0x0) smb_vwv[ 6]= 32 (0x20) smb_vwv[ 7]= 64 (0x40) smb_vwv[ 8]= 0 (0x0) smb_vwv[ 9]= 0 (0x0) smb_bcc=41 [000] 00 00 00 00 00 01 00 01 00 48 41 44 45 53 53 00 ........ .HADESS. [010] 00 00 00 00 00 00 00 00 00 00 00 00 10 00 80 1A ........ ........ [020] 00 00 00 57 59 41 54 54 00 ...WYATT . auth_fn called: server: 192.168.1.5 share: IPC$ wgroup: HADESS read HADESS