Hello mates!
Been a while since my last post, well life catches on. This is a quick tutorial to bypass / crack the windows admin password. Might sound mighty illegal – but hey .. you might have just forgotten your password right
Disclaimer : The procedures listed below are exclusively for educational purposes, any mis-use of the information here is done at your own risk and the author (aka me ) should not be held liable.
Jargon out, please be aware that your actions might even land you out of a job. At the same time, the tools I’m mentioning here can potentially save your day if your computer does act up.
What does it do ?
Bypass the windows administrator login for all windows releases xp and higher.
Cracks the admin password for xp and vista (did not try it on my windows 7 lappy yet)
How does it do it?
To be filled
What do I need?
.2 Pen drives – 2 GB each preferred 1 Pen drive of 4 GB!
Xboot for multiboot from ISO (http://sites.google....hamurxboot/home) 5.26MB
A torrent manager to get some of the utilities you’ll need … I use www.utorrent.com 722.86 KB
Magic ISO to edit ISO images http://www.magiciso.com/download.htm 4.70 MB Though I’d recommend getting a cr@ck3d version from http://www.torrentz.eu Since we’d be working on images larger than 300 MB (PS : I DO NOT SUPPORT PIRACY! But this is for educational testing )
Ophcrack windows XP live ISO http://downloads.sou...ivecd-2.3.1.iso 415.65 MB Vista tables : http://sourceforge.n...ee.zip/download 391.58 MB
Hirens boot CD for a lot of tools (including the ones to bypass the login) http://www.hirensbootcd.org/download/ 498. 38MB
Patience and another computer with access to the internet J I use my android phone
Process :
1 . Insert pen drive in the USB slot.
2. Open MagicISO and open the ophcrack-xp-livecd-2.3.1.iso, go to tables folder and create a new directory : vista_free
3. Extract and drag the contents of tables_vista_free to the folder you created in magic ISO.
4. Save the iso as ophcrack.iso on your desktop
5. Fire up xboot drag the ophcrack.iso you made and the hirens boot cd 15.1 iso you downloaded to xboot, HBCD will ask for a prompt, choose this
Once done ...
Boot from the flash drive :
Step 1 : To bypass windows passwords :
Choose hirens boot disk :
Choose Kon-Boot or boot to mini windows xp and choose any of these :
Step 2: HOW TO CRACK THE PASSWORD ...
Boot from the flash drive, and choose OphCrack
Choose the graphical mode - automatic.
The computer will startup a linux load of ophcrack with both the xp rainbow tables as well as the vista tables.
A rainbow table is a bunch of precomputed tables for decrypting hash functions. A semi detailed approach about the
functionality is mentioned on wikipedia at http://en.wikipedia.org/wiki/Rainbow_table
The boot up will automatically load the ophcrack tool, which scans for hash tables off SAM/Security lists to generate both the NT hash and LM hash. (http://en.wikipedia.org/wiki/LM_hash) which can be run thro the table list to get the actual password.
I needed the password for #admin (which is used by most corporates), note the LM Hash and NT Hash
You'll note that a password is generated on LM PWD1 / LM PWD2. But considering the fact that we're using the
free tables a password like "a5h0k@R!mw3b" will be generated as ASHOKARIMWEB or A?H0K?R?MW?B
note the LM/NT passwords like : LMhash:NThash that'll be 32 characters on each side of the ":"
eg :
8b75c0f157f**7b******bd*f1f***ba:d0f****b1231e0f***a0e****de20f8f
I've hashed out a few of the characters for obvious reasons
Copy the same and paste it here :
http://www.objectif-securite.ch/en/products.php
At the bottom of the page, enter your hash and submit ... wait for a couple of seconds - and bingo you have the password including special characters!!
HURAAY!!!
cheers
Karki