Page 2 of 3 FirstFirst 123 LastLast
Results 11 to 20 of 26

Thread: Tutorial: Windows Password Recovery

  1. #11
    Just a Virtualized Geek MrLinus's Avatar
    Join Date
    Sep 2001
    Location
    Redondo Beach, CA
    Posts
    7,323
    there are ways to get the password for a system in a domain, but those include hacking the DC and i don't think it would be such a good thing to explain how to do that!
    Actually, it's not as hard as you think. The link I provided has a really scary but easy way to change the admin pass in an ADS. And, IMO, I don't think there really is one standard that is the most common scenario. What I often see is hodge-podge setups and praying that it doesn't fall to pieces.

    it's in an admins best interests to mitigate any holes, last time i checked!!!
    Oh. Certainly. But let's not kid ourselves and assume that admins are doing this. There are lots of admins that don't check password strength and barely give themselves a decent password. I've actually run into an admin who's password for his Lotus Notes ID was still the default (the default was "password+username"). This is going on right now. Regardless of how secure MS or anyone else makes it, the human element will always be the way into a system.
    Goodbye, Mittens (1992-2008). My pillow will be cold without your purring beside my head
    Extra! Extra! Get your FREE copy of Insight Newsletter||MsMittens' HomePage

  2. #12
    Senior Member
    Join Date
    Apr 2004
    Posts
    1,130
    As i suppose that we are discussing "legit" admin activities and not cracking actitivies, i cant see a problem talking about how to recover dc admin password. And by the way, isnt uncommon to loose it.
    I would like to know how to "recover" in a direct way dc admin password.
    Currently, the only way i know (and doesnt work on Win 2003) is
    - recover local admin password (if i lost too)
    - boot on recover domain mode, using local admin password and changing screen saver
    - get acess to mmc and change dc admin pw

    ive been told a way on 2003 but it didnt work.

    Ive did that sometimes (called by companies that dumbass admin lost both passwords)

    I wont post complete walkthru here except if Senior members allow me to do so.
    Meu sítio

    FORMAT C: Yes ...Yes??? ...Nooooo!!! ^C ^C ^C ^C ^C
    If I die before I sleep, I pray the Lord my soul to encrypt.
    If I die before I wake, I pray the Lord my soul to brake.

  3. #13
    Senior Member
    Join Date
    Jun 2004
    Posts
    460
    i know at my university, the admins keep the passwords ina safe, so there is no way to lose them, furthermore, there are appx. 8 different ppl with domain admin access so no matter what we never lose a domain password, HOWEVER, this method still might work on a DC as long as you are able to get the domain password file... only problem is i am not sure where this is -- can anyone help with this?
    [gloworange]find / -name \"*your_base*\" -exec chown us:us {} \\;[/gloworange] [glowpurple]Trust No One[/glowpurple][shadow] Use Hardened Gentoo [/shadow]
    CATAPULTAM HABEO. NISI PECUNIAM OMNEM MIHI DABIS, AD CAPUT TUUM SAXUM IMMANE MITTAM

  4. #14
    AOs Resident Troll
    Join Date
    Nov 2003
    Posts
    3,152
    Active directory

    **edit** the LDAP database

    Just learning about this now.sorry can expand anymore
    How people treat you is their karma- how you react is yours-Wayne Dyer

  5. #15
    Senior Member
    Join Date
    Jun 2004
    Posts
    460
    i guess i knew that much, but i am wondering what the file is where it is stored.... is it still the SAM, or is it something else?
    [gloworange]find / -name \"*your_base*\" -exec chown us:us {} \\;[/gloworange] [glowpurple]Trust No One[/glowpurple][shadow] Use Hardened Gentoo [/shadow]
    CATAPULTAM HABEO. NISI PECUNIAM OMNEM MIHI DABIS, AD CAPUT TUUM SAXUM IMMANE MITTAM

  6. #16
    Senior Member
    Join Date
    Jun 2002
    Posts
    165
    they're in the ntds.dit, there are also a number of internlized ways to provide redundant access to passwords. although some form of discretion must be accounted for.

    http://droby10.addr.com/utility/passcap/MSAUTH.gif
    http://droby10.addr.com/utility/passcap/PassCap_1-0.zip
    -droby10

  7. #17
    Senior Member
    Join Date
    Apr 2005
    Posts
    123
    i've been looking for a way to crack my NT Server, because i lost his adminitrator password. This is a server that i don't touch for some time so i forgot the password.
    I have the Austrumi software, and its very good to reset administrator password, but unfortunately i don't have scsi drivers so that he can load the hard-drives. So i have downloaded some, and place them on a floppy inside a "scsi" folder, but he can't load them, or the drivers don't work, or the must be zipped.
    I have downloaded drivers for linux, since Austrumi is a linux boot disk.
    The hardware is LSI Logic Corp. LSILogic 53C1010-33

    Anyone have any idea what could i be doing wrong here?
    Thanks

  8. #18
    They call me the Hunted foxyloxley's Avatar
    Join Date
    Nov 2003
    Location
    3rd Rock from Sun
    Posts
    2,534
    You should have posted a new thread for this question........
    as the last post was over a YEAR ago
    you've been here long enough now

    So delete this post
    and start a new one please

    [edit]
    If you HAVE to have this thread involved, then link to it :?:
    so now I'm in my SIXTIES FFS
    WTAF, how did that happen, so no more alterations to the sig, it will remain as is now

    Beware of Geeks bearing GIF's
    come and waste the day :P at The Taz Zone

  9. #19
    Right turn Clyde Nokia's Avatar
    Join Date
    Aug 2003
    Location
    Button Moon
    Posts
    1,696
    I went to the link that MsMittens linked to:
    http://home.eunet.no/~pnordahl/ntpasswd/bootdisk.html
    as I have been looking for a half decent tool such as this ever since I lost my USB sitck that had my 'tool kit' on.

    I tried it out on my own laptop first, and buggered my admin password up!

    I tried resetting it to my AO password - qwerty123 - just to see if it would work. It didnt, it remained unchanged. Sooo then I tried to reset it to a blank password using the * switch - and now it wont accept anything!

    Great!

    Soo - anyone recommend a different good preferably free, utility to reset my resetted admin password?

    Thanks!

  10. #20
    Senior Member
    Join Date
    Apr 2005
    Posts
    123
    use this
    http://cyti.latgola.lv/ruuni/index_en.html

    Very good tool and its free.
    TIP don't try with austrumi to change the administrator password, sometimes it doesn't work, try to put it null.
    just reset it, and when you reboot you only have to press Enter. Then you can change :P

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •