Supplements
                Unsigned Heaven     Travel Blog     Travel World     The Cheers Blogs     InnerCircle     Forum    







Cracking Windows 2000 Passwords

More on topic
Suggest new related link
  Code (6640A):  
Url:  



Article published on 24th February 2004 in TECH          


















Article by
"IT" Journalist
How can the assertively most secured operating system in the world be cracked for passwords? How can you crack windows passwords? If you have read my second article also available in this issue - Security Issues and Solutions, I stated that no system in this world can be fully secured. There are always loop holes and conflicting situations in which by securing one part would reveal some other parts vulnerabilities. So you are guessing it right, in a step or two we'll be able to crack passwords.
 
Before further discussion let me clarify that Windows 2000 is available in two broad categories:

1. Windows Server
2. Windows Workstation (Win2K Professional)

Windows Professional passwords are easy to break as compared to Server because Servers mostly have Active Directory Enabled which means there are separate databases for stand-alone environment users and ADS users, and normally you will need to crack in to ADS users not normal users. I will be writing about this in the next articles.

The idea of this article is not to show off the number of ways I know to crack Win2K passwords, but rather rather just give you an idea How it could be done. Recover windows passwords that is. Being a network administrator for a long time, time has taught me many ways which work under specific situations. I would like to discuss one very effective way to perform such task which is effective in almost all situations, even if you have got most updated version of Windows 2000 Professional, a version which is completely (assertively) protected by the patches from Microsoft Windows Update site.

The following technique will help you disable and change passwords for Server (without ADS) and Professionals Local Users Password.

This solution is not recommended for EFS File Systems, so be careful, you won't be able to access your files unless you remember your original password with which you encrypted your files. Also, Windows 2000 Server with ADS installed arent eligible for this solution. You will need to have an empty floppy with nothing on it, please ensure that its error-free, otherwise it will cause you a lot of havoc should it you get stuck during the process. Download this utility which comes with a floppy image writing program from: http://home.eunet.no/~pnordahl/ntpasswd/bd040116.zip Obviously you need to have WinZip as well so you can unzip this file. You can download it from http://winzip.com if you dont have it. Unzip the file to any folder, now you will see three unzipped files. Insert a blank floppy in your floppy drive and double-click or Run install.bat. Now the file is extracted from the zip. Follow the onscreen instructions to create a bootable floppy Once the process completes, it is recommended that you collect the following information about the target hard drive: - Number of Partitions and logical drives it has The name of folder in which windows is installed The exact path to the systemconfig folder The name of the security databases: sam, security etc. After you have noted down all these things you should reboot computer and boot it using the newly created bootable floppy. Follow the onscreen instructions It is recommended that you blank your administrator password rather than change it as sometimes changing the password to some new one doesnt work properly. This was the simple procedure using which you can change your local administrator and other users passwords.

The above will work even if you have got syskey installed with highest possible encryption.

But what to do if your file system is encrypted? Well, a simple solution would be to somehow ger sam.dat hive from the config folder (get it from your backups or however possible) and then use the utility called L0phtcrack by @stake from their web site. The use of this utility is pretty simple, you can retrieve the LANMAN Hash, Syskey HASH and System MD5 Hash by using the previous procedure, i.e. using the bootable floppy thing. While working, this procedure will show you the hashes named above. You can note those hashes down and then use any password cracking utility like L0phtcrack or John the password ripper etc. to crack the password.

One of the most effective but relatively slow (not that slow, very-very fast as compared to other brute force techniques) is that you boot your computer using the target hard drive ensuring that you are connected to the LAN. You will need to have two Network computers to perform this. One will be the target computer and the other you can use to crack the password to any specific user.

Download the and install the utility named NAT nat10bin.zip from the internet (I cannot provide you specific links, use any good search engine like google.com to search for that filename) on the source computer. It would be very good if you could download a text with all possible combinations of alphanumeric characters. You can also find those types of files in the internet pretty easily. And use those files as your passwords dictionary, though only if you really dont have a clue of what the password could be. Otherwise you can create a password file of your own and write down all the possible passwords which you could have set and use the same utility to crack into that system.

NAT comes with a fair amount of documentation so I won't need to explain it any further.

Now, I'l give you a bonus tip - If you want to crack passwords to network shares on windows 95 or 98 clients, use this nifty utility: xIntruder (http://www.irctoolz.com) just provide the IP address and network share name to this GUI utility and it will crack the password for you within 20 seconds maximum. Do keep in mind the fact that you provide the computer name and the share name in the exact same case as original.

Hope this helps a lot of network administrators like me, who are craving to have such information to lessen their re-installation work every time they forget the password.

                  



Latest stories in Tech

Three Myths Along the High Tech Trail ----A Philosophy of Precaution

Giant Google and its new toys - Google Desktop 2

Apple revenue boost, that's normal!

IT - Call centers (BPO) and cultural changes

Want to become an IT specialist for The Cheers?


marafee




marafee says on 2009-03-04 06:12:57 about shopping and computeres
hey just logon to

www.marafee.weebly.com

for free softwares and computers and

shopping at your home

thanks






anon.




anon. says on 2008-02-22 04:06:37 about
5666u






sweetu




sweetu says on 2008-02-16 04:09:38 about for my server
loss password






sweetu




sweetu says on 2008-02-16 04:09:23 about for my server
loss password






sweetu




sweetu says on 2008-02-16 04:09:19 about for my server
loss password






Rob Favero




Rob Favero says on 2004-02-26 12:42:58 about
I liked your list of 10 steps. That made things easy to follow. Also, the tone of your article is authoritative, giving a sense of confidence to the reader.









Post Comment

 
 Your nickname
 
 About what
 
 Your comment
 




The Cheers discussions






Syed Rizwan Muhammad Rizvi
Programming Experience in Assembly, Visual Basic, C++, Delphi, Developer, ADA, COBOL, HUGS, ProLog etc.

A fully qualified Human Being








Write for us    





The Unravelling
Genre: Metal
The Unravelling is a progressive rock band from Calgary, Can...
The Shambolic
Genre: Alternative
The bands music is a celebration of life and women! Its wove...
rebel inc.
Genre: Rock
rebel inc. is an intense live rock band formed on the outski...
Edward Barrington
Genre: Acoustic
I'm a singer-songwriter, musician, & music teacher who still...
Counting Dead Rabbits
Genre: Rock
Lovers of Rock/Blues/SouthernRock....
Baby Cow
Genre: Pop
edgy, pop/rock. Baby Cow is a new and upcoming artist who is...
Jon Hart
Genre: Acoustic
A lively singer-songwriter that blends acoustic blues, jazz,...
ILL PHIL - Christian Rap Artist
Genre: Hip-Hop
Please visit www.THEOFFICIALILLPHIL.com for more information...
Matt Macaulay
Genre: Indie
I"m a NYC based singer-songwriter. On 4/7/09 I released my ...
Most common mistakes travelers make

...read

Morocco myths and reality

...read

Prices in Morocco / Morocco price guide

...read

Food in Morocco

...read

Students and English teachers in Morocco

...read

Morocco and dealing with street sellers

...read

Hotels in Morocco – you get more than you pay for

...read

Morocco - work and poverty

...read

Driving in morocco – all hell’s broken loose

...read

Journey To Morocco and Western Sahara – Weeze, forgotten village?

...read

My face, the Chuas and their astigism Continue reading
Axes of Evil Continue reading
Schizophrenia Help Continue reading
Where is your conscience, America? Continue reading
Hyflux to blame for Singapore's dry dirty weather? Continue reading
Dyslexia Help Continue reading
Natural Disaster? Go green and think long-term! Continue reading
About Singapore's local banks Continue reading
Celebrate Celebrities\' Privacy Continue reading
Oscar Wilde and the Golden Boy Continue reading








ADVERTISEMENTS
Anxiety - Anxiety, Depression and ADHD related information.


DUI Attorney - find the right attorney nationwide | vasectomy reversal - Up to 95 percent vasectomy reversal success rate. | Super 8 Film to DVD | Comcast promotional offers - . | erase bad credit | Staff Leasing Company | Steel Buildings | Frigidaire parts |  Holdem and Omaha | 

The Cheers magazine: About us | Contact us | The Cheers Story | Advertising
Work with The Cheers: Writers guide | Write for us | Writer application | Reporter application 
The Cheers:Thoughts about | Free online stock market game | Wifi hotspots and wireless laptops | Brand Lady (sister magazine) | Terms and conditions | Privacy policy | Sponsoring | Sitemap
Listen: Online radio station | Unsigned musicians | Music reviews | Listen to unknown bands
Travel World: World travel locations | Morocco Agadir travel
Travel: Travel blogs | Travel destinations | Hotel reviews | Beer around the world
Watch: Watch movies online | Watch free tv online | Watch heroes online
Exchange: Forex trading help | Learn to trade forex | Cheap forex trade
Trade: Virtual stock market | Fantasy investing competitions | Free day trading tips
Learn: Business videos online | Business networking | Business strategies | Business ideas
Copyright © 2004-2009 The Cheers magazine