Cracking Windows 2000 Passwords

More on topic
Suggest new related link
  Code (6640A):  
Url:  



Article published on 24th February 2004 in TECH          










UK GOVERNMENT SUPPORTS WAR CRIMES ACCUSED FOR EU PRESIDENT
It has been revealed that the Gordon Brown Government is endorsing former UK Prime Minister Tony Blair to become EU President. In a move that will be fiercely opposed in Europe, current UK Government ministers are lobbying behind the scenes on Blair's behalf.

  Latest from The Cheers MUSIC
NewNobility
Genre: Indie
New Nobility peace-rock band http://myspace.com/newnobility...

Rad Wolf
Genre: Other
Hailing from Fort Worth Texas, Jacob Shelton makes music in ...

JO&CO
Genre: Acoustic
Five diverse musicians who bring their own style to everythi...

Shannon Corey
Genre: Pop
Mix together some Tori Amos, Fiona Apple and Ben Folds to ge...

The Fireman's Daughter
Genre: Acoustic
The Fireman�s Daughter is a female Americana duo based out...

Bruce Unger
Genre: Alternative
Bruce is singer/songwriter in a folk/country vein, reminisce...

The Simple Pages
Genre: Indie
Above all else you must know about us is that we are three g...

Hearts in Pencil
Genre: Indie
"Taking folk and stamping it through a new wave filter, thei...

Hail Animator
Genre: Indie
Hail Animator is the result of a brainchild of four peopl...

FRIDAY
Genre: Indie
shoegaze-rock-ambient Is this a lost Creation Records relea...


Cracking Windows 2000 Passwords

Article by
"IT" Journalist
How can the assertively most secured operating system in the world be cracked for passwords? How can you crack windows passwords? If you have read my second article also available in this issue - Security Issues and Solutions, I stated that no system in this world can be fully secured. There are always loop holes and conflicting situations in which by securing one part would reveal some other parts vulnerabilities. So you are guessing it right, in a step or two we'll be able to crack passwords.
 
Before further discussion let me clarify that Windows 2000 is available in two broad categories:

1. Windows Server
2. Windows Workstation (Win2K Professional)

Windows Professional passwords are easy to break as compared to Server because Servers mostly have Active Directory Enabled which means there are separate databases for stand-alone environment users and ADS users, and normally you will need to crack in to ADS users not normal users. I will be writing about this in the next articles.

The idea of this article is not to show off the number of ways I know to crack Win2K passwords, but rather rather just give you an idea How it could be done. Recover windows passwords that is. Being a network administrator for a long time, time has taught me many ways which work under specific situations. I would like to discuss one very effective way to perform such task which is effective in almost all situations, even if you have got most updated version of Windows 2000 Professional, a version which is completely (assertively) protected by the patches from Microsoft Windows Update site.

The following technique will help you disable and change passwords for Server (without ADS) and Professionals Local Users Password.

This solution is not recommended for EFS File Systems, so be careful, you won't be able to access your files unless you remember your original password with which you encrypted your files. Also, Windows 2000 Server with ADS installed arent eligible for this solution. You will need to have an empty floppy with nothing on it, please ensure that its error-free, otherwise it will cause you a lot of havoc should it you get stuck during the process. Download this utility which comes with a floppy image writing program from: http://home.eunet.no/~pnordahl/ntpasswd/bd040116.zip Obviously you need to have WinZip as well so you can unzip this file. You can download it from http://winzip.com if you dont have it. Unzip the file to any folder, now you will see three unzipped files. Insert a blank floppy in your floppy drive and double-click or Run install.bat. Now the file is extracted from the zip. Follow the onscreen instructions to create a bootable floppy Once the process completes, it is recommended that you collect the following information about the target hard drive: - Number of Partitions and logical drives it has The name of folder in which windows is installed The exact path to the systemconfig folder The name of the security databases: sam, security etc. After you have noted down all these things you should reboot computer and boot it using the newly created bootable floppy. Follow the onscreen instructions It is recommended that you blank your administrator password rather than change it as sometimes changing the password to some new one doesnt work properly. This was the simple procedure using which you can change your local administrator and other users passwords.

The above will work even if you have got syskey installed with highest possible encryption.

But what to do if your file system is encrypted? Well, a simple solution would be to somehow ger sam.dat hive from the config folder (get it from your backups or however possible) and then use the utility called L0phtcrack by @stake from their web site. The use of this utility is pretty simple, you can retrieve the LANMAN Hash, Syskey HASH and System MD5 Hash by using the previous procedure, i.e. using the bootable floppy thing. While working, this procedure will show you the hashes named above. You can note those hashes down and then use any password cracking utility like L0phtcrack or John the password ripper etc. to crack the password.

One of the most effective but relatively slow (not that slow, very-very fast as compared to other brute force techniques) is that you boot your computer using the target hard drive ensuring that you are connected to the LAN. You will need to have two Network computers to perform this. One will be the target computer and the other you can use to crack the password to any specific user.

Download the and install the utility named NAT nat10bin.zip from the internet (I cannot provide you specific links, use any good search engine like google.com to search for that filename) on the source computer. It would be very good if you could download a text with all possible combinations of alphanumeric characters. You can also find those types of files in the internet pretty easily. And use those files as your passwords dictionary, though only if you really dont have a clue of what the password could be. Otherwise you can create a password file of your own and write down all the possible passwords which you could have set and use the same utility to crack into that system.

NAT comes with a fair amount of documentation so I won't need to explain it any further.

Now, I'l give you a bonus tip - If you want to crack passwords to network shares on windows 95 or 98 clients, use this nifty utility: xIntruder (http://www.irctoolz.com) just provide the IP address and network share name to this GUI utility and it will crack the password for you within 20 seconds maximum. Do keep in mind the fact that you provide the computer name and the share name in the exact same case as original.

Hope this helps a lot of network administrators like me, who are craving to have such information to lessen their re-installation work every time they forget the password.



Tags:                   




Latest stories in Tech

Three Myths Along the High Tech Trail ----A Philosophy of Precaution

Giant Google and its new toys - Google Desktop 2

Apple revenue boost, that's normal!

IT - Call centers (BPO) and cultural changes

Want to become an IT specialist for The Cheers?






marafee says on 2009-03-04 06:12:57 about shopping and computeres
hey just logon to

www.marafee.weebly.com

for free softwares and computers and

shopping at your home

thanks










anon. says on 2008-02-22 04:06:37 about
5666u










sweetu says on 2008-02-16 04:09:38 about for my server
loss password










sweetu says on 2008-02-16 04:09:23 about for my server
loss password










sweetu says on 2008-02-16 04:09:19 about for my server
loss password










Rob Favero says on 2004-02-26 12:42:58 about
I liked your list of 10 steps. That made things easy to follow. Also, the tone of your article is authoritative, giving a sense of confidence to the reader.









Post Comment

 
 Your nickname
 
 About what
 
 Your comment
 
Are you human? Re-type this code - GYTDDDL
 








Syed Rizwan Muhammad Rizvi
Programming Experience in Assembly, Visual Basic, C++, Delphi, Developer, ADA, COBOL, HUGS, ProLog etc.

A fully qualified Human Being




Write for us    









NewNobility
Genre: Indie
New Nobility peace-rock band http://myspace.com/newnobility...

Rad Wolf
Genre: Other
Hailing from Fort Worth Texas, Jacob Shelton makes music in ...

JO&CO
Genre: Acoustic
Five diverse musicians who bring their own style to everythi...

Shannon Corey
Genre: Pop
Mix together some Tori Amos, Fiona Apple and Ben Folds to ge...

The Fireman's Daughter
Genre: Acoustic
The Fireman�s Daughter is a female Americana duo based out...

Bruce Unger
Genre: Alternative
Bruce is singer/songwriter in a folk/country vein, reminisce...

The Simple Pages
Genre: Indie
Above all else you must know about us is that we are three g...

Hearts in Pencil
Genre: Indie
"Taking folk and stamping it through a new wave filter, thei...

Hail Animator
Genre: Indie
Hail Animator is the result of a brainchild of four peopl...

FRIDAY
Genre: Indie
shoegaze-rock-ambient Is this a lost Creation Records relea...


NewNobility
Genre: Indie
New Nobility peace-rock band http://myspace.com/newnobility...
Rad Wolf
Genre: Other
Hailing from Fort Worth Texas, Jacob Shelton makes music in ...
JO&CO
Genre: Acoustic
Five diverse musicians who bring their own style to everythi...
Shannon Corey
Genre: Pop
Mix together some Tori Amos, Fiona Apple and Ben Folds to ge...
The Fireman's Daughter
Genre: Acoustic
The Fireman�s Daughter is a female Americana duo based out...
Bruce Unger
Genre: Alternative
Bruce is singer/songwriter in a folk/country vein, reminisce...
The Simple Pages
Genre: Indie
Above all else you must know about us is that we are three g...
Hearts in Pencil
Genre: Indie
"Taking folk and stamping it through a new wave filter, thei...
Hail Animator
Genre: Indie
Hail Animator is the result of a brainchild of four peopl...
FRIDAY
Genre: Indie
shoegaze-rock-ambient Is this a lost Creation Records relea...
Travel to Tartu and have a beer

...read

Finding the best Arizona rentals

...read

Going to Mexico? Visit Playa Blanca

...read

The Lapa Street Party, Rio de Janeiro : Where Samba is attempted by all, perfected by few…

...read

Funny Dutch language

...read

5 weeks in israel........political report from an american

...read

Arab camel joke

...read

Where the hell is Azerbaijan?

...read

Difficult day in "Holy shit" land

...read

Friday morning with Charlie in the old city of Jerusalem

...read

WHY should i? Continue reading
Alien Abductions Continue reading
No qualification? Good at tech? Then go into tech! Continue reading
Prophecy: Don't support Far East Organization Continue reading
My face, the Chuas and their astigism Continue reading
Axes of Evil Continue reading
Schizophrenia Help Continue reading
Where is your conscience, America? Continue reading
Hyflux to blame for Singapore's dry dirty weather? Continue reading
Dyslexia Help Continue reading









ADVERTISEMENTS
Anxiety - Anxiety, Depression and ADHD related information.



The Cheers magazine: About us | Contact us | The Cheers Story | Advertising
Work with The Cheers: Writers guide | Write for us | Writer application | Reporter application 
The Cheers:Terms and conditions | Privacy policy | Sponsoring | Sitemap
Sister sites:Thoughts about | Free online stock market game | Wifi hotspots and wireless laptops | Brand Lady 
Listen: Online radio station | Unsigned musicians | Music reviews | Listen to unknown bands
Travel World: World travel locations | Morocco Agadir travel
Travel: Travel blogs | Travel destinations | Hotel reviews | Beer around the world
Watch: Watch movies online | Watch free tv online | Watch heroes online
Trade: Virtual stock market | Fantasy investing competitions | Free day trading tips
Learn: Business videos online | Business networking | Business strategies | Business ideas
Copyright © 2004-2009 The Cheers magazine / Crack windows passwords & windows crack