MD4 Hash Generator

Compute the 1990 MD4 digest, still found in NTLM authentication and some legacy protocols, directly in your browser.

  • Runs in your browser
  • Free, no sign-up

The text is encoded as UTF-8 before hashing.

Ctrl + Enter also runs the tool

What this tool gives you

MD4 digest

The original Rivest algorithm, matching PHP hash("md4") and OpenSSL.

NTLM option

The Windows NT password hash is MD4 over UTF-16LE; tick one box to get it.

Local computation

Suitable for passwords because nothing is transmitted.

Frequently asked questions

Where is MD4 still used?

Mainly in NTLM authentication on Windows networks, in some older file-sharing protocols and in legacy software that nobody has migrated yet.

Is MD4 secure?

No. Collisions can be computed by hand, so it must never be used for new designs. It exists here for interoperability and forensic work.

What exactly is an NTLM hash?

The MD4 digest of the password encoded as little-endian UTF-16, without any salt. That lack of salt is why NTLM hashes crack so quickly.

Why does the NTLM value differ from the MD4 value?

Because the input bytes differ: MD4 is computed over UTF-8 text, NTLM over UTF-16LE, which inserts a zero byte after every ASCII character.

From APIVoid

Need security checks inside your own product?

APIVoid turns the lookups you run here into developer-friendly JSON APIs: IP reputation, URL status and redirects, DNS lookups, SSL info, domain age, screenshots and much more. Simple pricing, 30-day free trial.