lesser-equity

Magazine
Go Back   Computer Juice > Computer Software > Windows Operating Systems


Register


Reply
 
Thread Tools
  #1  
Old 24th Aug 2008, 13:38
MJM
Donor Group
 
Basically a friend of mine changed her password. Then she went on holidays and forgot what she changed her password to.
Now I know Vista has a Adminstrator account and I know it doesn't have a password since ophcrack tells me so, but I can't figure out how the hell to access the account. Google gives me results of having to enable it first - is that true? If so, that is one of the most stupid security features known to man.
If all else fails I'll have to find software to reset the password to something else... the only problem would be that she'd lose to weeks of work on her thesis.
__________________

My System: Toshiba Satellite A200-28P

Processor(s):
Intel Core 2 Duo T8100
Motherboard:
Mobile Intel PM965 Express Chipset
RAM Memory:
1024 + 2048MB DDR2 667
Graphics Card(s):
ATI HD 2600 XT
Sound Card:
Toshiba Bass Enhanced Sound System
Hard Drive(s):
200GB 5400RPM
Optical Drive(s):
DVD Super Multi
Case / PSU:
Satellite A200 Series
Cooling:
Stock
Network / Internet:
Intel 4965AGN
Monitor(s):
15.4" 1,280x800 Toshiba TruBrite
Operating System(s):
Windows Vista SP1 / Fedora i386
  #2  
Old 24th Aug 2008, 13:53
Administrator Group
 
Ophcrack should give you the pw to the personal account anyway?
__________________

My System: Hybr!d

Processor(s):
AMD Turion 64 x2 TL-64 2.2GHz
Motherboard:
HP nForce 560
RAM Memory:
2GB DDR2 PC2-5300
Graphics Card(s):
Nvidia 7150M Onboard Integrated
Sound Card:
5.1 Onboard Integrated
Hard Drive(s):
250GB 5400RPM SATA300
Optical Drive(s):
18x CD/DVDRW-DL ATA
Case / PSU:
Stock HP
Cooling:
Stock HP
Network / Internet:
10/100 Nic / 10MB Virgin Cable
Monitor(s):
17" WXGA+ HD BrightView Widescreen
Operating System(s):
Windows 7 Ultimate 32Bit
  #3  
Old 24th Aug 2008, 14:12
Donor Group
 
or Ophcrack? You may have to leave it running a long time. Overnight will crack 9-10 chars.

Has the 7+7 bug in Windoze security been fixed yet?

(ie, that a 14 char password is just two 7 char passwords that can be attacked independently?)
__________________
I think I am a signature, therefore I exist!
I believe a higher being has me as a signature...

  #4  
Old 24th Aug 2008, 14:52
MJM
Donor Group
 
WinXP still has 7+7.

Ophcrack is not giving out the password, says not found. It's from the live cd and that may be why. I know the company behind it sells better rainbow tables, but I'm not spending a hundred on that.

I have the NTHash so I'll try some other sites and possibly Cain as well before resetting the password, but it would all be easier if we could just access the admin account, so anyone know anything about that?
  #5  
Old 24th Aug 2008, 14:55
Administrator Group
 
http://www.google.co.uk/search?hl=en...e+Search&meta=

At first glance it appears it can only be activated via a working profile, but have a read.
  #6  
Old 24th Aug 2008, 15:11
Moderator Group
 
You can't use the Administrator account unless you've previously enabled it so it is pretty pointless having it TBH.

What you need is the Offline NT Admin Password Reset Disk.

It works an absolute treat. Just flipping impossible to find in Google.

Edit: I see you mention she will loose work if your reset the password? Why do you think this will be the case?
__________________
serverguy

__________________

My System: Eclipse

Processor(s):
Intel C2D E7200 OC'd @ 3.6Ghz
Motherboard:
Asus P5Q Pro
RAM Memory:
OCZ 8GB 800Mhz
Graphics Card(s):
Saphire Radeon 4850
Sound Card:
Onboard
Hard Drive(s):
Vast
Optical Drive(s):
Sony al cheapo one.
Case / PSU:
Antec Three Hundred
Cooling:
Arctic Cooler 7 Pro, 3 case fans.
Network / Internet:
Titan ADSL
Monitor(s):
Dual 19" LCD
Operating System(s):
XP SP3
  #7  
Old 24th Aug 2008, 16:06
MJM
Donor Group
 
Taken from the site directly:

DANGER WILL ROBINSON!
If used on users that have EFS encrypted files, and the system is XP or Vista, all encrypted files for that user will be UNREADABLE! and cannot be recovered unless you remember the old password again If you don't know if you have encrypted files or not, you most likely don't have them. (except maybe on corporate systems)

Yeah, she enabled that. Don't ask me why. She has a backup of the thesis, but it's about two weeks old.

P.S.: I found that site via Google... well actually I found a backup server or something (http://ntpass.blaa.net/).
  #8  
Old 24th Aug 2008, 16:11
Moderator Group
 
Quote:
Originally Posted by MJM View Post
Taken from the site directly:

DANGER WILL ROBINSON!
If used on users that have EFS encrypted files, and the system is XP or Vista, all encrypted files for that user will be UNREADABLE! and cannot be recovered unless you remember the old password again If you don't know if you have encrypted files or not, you most likely don't have them. (except maybe on corporate systems)

Yeah, she enabled that. Don't ask me why. She has a backup of the thesis, but it's about two weeks old.

P.S.: I found that site via Google... well actually I found a backup server or something (http://ntpass.blaa.net/).
Ahh OK. Stupid question...why one earth did she enable it?

Well, your only option is a brute force attack with one of the programs already mentioned or just resetting the password.

I never seem to be able to find this site easily... maybe I just always use the wrong keywords.
__________________
serverguy

  #9  
Old 24th Aug 2008, 16:14
MJM
Donor Group
 
Because she thought she needed to. It's her PhD and I guess she wanted to feel that it's "secure".
  #10  
Old 24th Aug 2008, 17:21
Moderator Group
 
Quote:
Originally Posted by MJM View Post
Because she thought she needed to. It's her PhD and I guess she wanted to feel that it's "secure".
Which is why you should always back up the certificates if you're going to encrypt it.

Oh well.

Any luck with the brute force?
__________________
serverguy

Reply

Register
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright ©2006 - 2009 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2009 Jelsoft Enterprises Ltd. SEO by vBSEO ©2009, Crawlability, Inc.