From
Alexander Bondarenko
→
To
All
21 June 2004
*Hello, All!*
No one can tell you whether it’s possible to figure out the user’s password in Win2K if you have
access to its folder and, accordingly, to ntuser.dat?
In general, it would be interesting to know something about how from a workstation
plant a grid built on Win2K...
/That’s all, All, you can scroll further.../
From
Eugene Palenock
→
To
Alexander Bondarenko
23 June 2004
Hello Alexander!
21 Jun 04 19:05, Alexander Bondarenko -> All:
AB> No one can tell you whether it is possible to calculate the user's password in Win2K if
AB> do you have access to its folder and, accordingly, to ntuser.dat?
The password is calculated by brute force. There are tricks for this...
6 signs - they move in 2-3 days, and 8 signs - more than a year,
on a 1500 MHz processor.
PS The password itself is not stored anywhere, only its hash is stored.
Best regards, Evgeniy.
From
Eugene Palenock
→
To
Alexander Bondarenko
24 June 2004
Hello Alexander!
23 Jun 04 20:15, Eugene Palenock -> Alexander Bondarenko:
AB>> No one can tell you whether it is possible to calculate the user's password in Win2K,
AB>> if you have access to his folder and, accordingly, to ntuser.dat?
By the way. It just flew by. It will probably be on ftp://ddt.demos.su.
=== Home Windows Clipboard ===
Area: 1072.SOFTWARE.MISC
l0pht.rar 5606477 The most powerful program for audit and recovery
operating passwords
Windows and Unix systems.
===End of Windows Clipboard ===
Best regards, Evgeniy.
From
Sergey Zotov
→
To
Alexander Bondarenko
24 June 2004
A day has passed, and you are still alive! Alexander!
On 21 Jun 04, Alexander Bondarenko wrote to All:
AB> No one can tell you whether it’s possible to calculate a user’s password
AB> Win2K if
AB> do you have access to its folder and, accordingly, to ntuser.dat?
AB> In general, it would be interesting to know something about how to deal with work
AB> stations are equipped with a grid built on Win2K...
Passwords on local machines are here: %SystemRoot%system32configSAM
They can only be accessed when Windows is NOT WORKING, i.e. steal it
booting from a floppy disk or CD. Naturally, they are not there in open form.
You can also get password hashes as an administrator on a local machine using
loophcrack+ (or whatever it is correctly called). He can do too much too.
There are special Linux mini-distributions for resetting the administrator password on
local machine (again, you need to boot from it).
In networks with dull hardware, you can extract hashes from the network. I have never had this
it worked.
In general, you know the joke:
- One of my friends broke a server in 5 minutes yesterday! >:E
- Is he a hacker!? 8[ ]
- He's an asshole! Asshole!
Therefore, the subject is, of course, interesting, but there is too much unnecessary information to know
need...
ZXNet: 500:8462/1 ~/ <~ http://zxnet.da.ru/ Fido: 2:5057/56 /_ _> SkyNet: 71:170/21
From
Eugene Palenock
→
To
Sergey Zotov
24 June 2004
Hello Sergey!
24 Jun 04 08:20, Sergey Zotov -> Alexander Bondarenko:
SZ> Passwords on local machines are here:
SZ> %SystemRoot%system32configSAM They can only be accessed by
SZ> NOT WORKING Windows, i.e. steal it by booting from a floppy disk or cd.
It’s possible while it’s working ;)
As a last resort, open the disk as \.PhysicalDrive0 and rummage around
in fat (however, you need admin rights).
Best regards, Evgeniy.
From
Costa Pilnik
→
To
Alexander Bondarenko
24 June 2004
hi Alexander!
I am responding to your letter dated June 21, 2004, then written by Alexander Bondarenko
to All, and then it was 19:05:13.
AB> No one can tell you whether it is possible to calculate the user's password in Win2K if
AB> do you have access to its folder and, accordingly, to ntuser.dat?
in this regard, the sam and system files are more interesting
(can be taken from %windir%/repair), saminside will pull out the nt and lm passes from them
AB> In general, it would be interesting to know something about how to deal with work
AB> stations are equipped with a grid built on Win2K...
check hosts for dcom, lsa, rpc vulnerabilities
everything works on a remote machine ;)
Bay W.B.R.
rNd
[Team: X-Tension] [FREE] [BSB] [GMD]
From
Roman Alexandrov
→
To
Alexander Bondarenko
24 June 2004
Hello, Alexander!
21 Jun 04, 19:05, Alexander Bondarenko wrote to All on the topic "HACK":
AB> In general, it would be interesting to know something about how to deal with work
AB> stations are equipped with a grid built on Win2K...
Install a keylogger and invite an admin for some reason
about.
Happy connections. Roman.
From
Kirill Frolov
→
To
Sergey Zotov
25 June 2004
Press RESET immediately, Sergey Zotov!
On Thu, 24 Jun 04 07:20:24 +0400, Sergey Zotov wrote:
SZ> - One of my friends broke a server in 5 minutes yesterday! >:E
SZ> - Is he a hacker!? 8[ ]
SZ> - He's an asshole! Asshole!
I would like to especially highlight the last line...