Some remark:

cause the SAM is on the ERD disks too, you could also read the sam hash from the ERD and use L0phtcrack to find the password...
so basicly you have 2 options if you have the ERD disks from a specific workstation:

1) reset the password to a previous one.

2) search the password from the SAM file with a password cracker.