HACK

ZXNet echo conference «zxnet.pc»

From Alexander Bondarenko To All 21 June 2004

*Hello, All!* No one can tell you whether it’s possible to figure out the user’s password in Win2K if you have access to its folder and, accordingly, to ntuser.dat? In general, it would be interesting to know something about how from a workstation plant a grid built on Win2K... /That’s all, All, you can scroll further.../

From Eugene Palenock To Alexander Bondarenko 23 June 2004

Hello Alexander! 21 Jun 04 19:05, Alexander Bondarenko -> All: AB> No one can tell you whether it is possible to calculate the user's password in Win2K if AB> do you have access to its folder and, accordingly, to ntuser.dat? The password is calculated by brute force. There are tricks for this... 6 signs - they move in 2-3 days, and 8 signs - more than a year, on a 1500 MHz processor. PS The password itself is not stored anywhere, only its hash is stored. Best regards, Evgeniy.

From Eugene Palenock To Alexander Bondarenko 24 June 2004

Hello Alexander! 23 Jun 04 20:15, Eugene Palenock -> Alexander Bondarenko: AB>> No one can tell you whether it is possible to calculate the user's password in Win2K, AB>> if you have access to his folder and, accordingly, to ntuser.dat? By the way. It just flew by. It will probably be on ftp://ddt.demos.su. === Home Windows Clipboard === Area: 1072.SOFTWARE.MISC l0pht.rar 5606477 The most powerful program for audit and recovery operating passwords Windows and Unix systems. ===End of Windows Clipboard === Best regards, Evgeniy.

From Sergey Zotov To Alexander Bondarenko 24 June 2004

A day has passed, and you are still alive! Alexander! On 21 Jun 04, Alexander Bondarenko wrote to All: AB> No one can tell you whether it’s possible to calculate a user’s password AB> Win2K if AB> do you have access to its folder and, accordingly, to ntuser.dat? AB> In general, it would be interesting to know something about how to deal with work AB> stations are equipped with a grid built on Win2K... Passwords on local machines are here: %SystemRoot%system32configSAM They can only be accessed when Windows is NOT WORKING, i.e. steal it booting from a floppy disk or CD. Naturally, they are not there in open form. You can also get password hashes as an administrator on a local machine using loophcrack+ (or whatever it is correctly called). He can do too much too. There are special Linux mini-distributions for resetting the administrator password on local machine (again, you need to boot from it). In networks with dull hardware, you can extract hashes from the network. I have never had this it worked. In general, you know the joke: - One of my friends broke a server in 5 minutes yesterday! >:E - Is he a hacker!? 8[ ] - He's an asshole! Asshole! Therefore, the subject is, of course, interesting, but there is too much unnecessary information to know need... ZXNet: 500:8462/1 ~/ <~ http://zxnet.da.ru/ Fido: 2:5057/56 /_ _> SkyNet: 71:170/21

From Eugene Palenock To Sergey Zotov 24 June 2004

Hello Sergey! 24 Jun 04 08:20, Sergey Zotov -> Alexander Bondarenko: SZ> Passwords on local machines are here: SZ> %SystemRoot%system32configSAM They can only be accessed by SZ> NOT WORKING Windows, i.e. steal it by booting from a floppy disk or cd. It’s possible while it’s working ;) As a last resort, open the disk as \.PhysicalDrive0 and rummage around in fat (however, you need admin rights). Best regards, Evgeniy.

From Costa Pilnik To Alexander Bondarenko 24 June 2004

hi Alexander! I am responding to your letter dated June 21, 2004, then written by Alexander Bondarenko to All, and then it was 19:05:13. AB> No one can tell you whether it is possible to calculate the user's password in Win2K if AB> do you have access to its folder and, accordingly, to ntuser.dat? in this regard, the sam and system files are more interesting (can be taken from %windir%/repair), saminside will pull out the nt and lm passes from them AB> In general, it would be interesting to know something about how to deal with work AB> stations are equipped with a grid built on Win2K... check hosts for dcom, lsa, rpc vulnerabilities everything works on a remote machine ;) Bay W.B.R. rNd [Team: X-Tension] [FREE] [BSB] [GMD]

From Roman Alexandrov To Alexander Bondarenko 24 June 2004

Hello, Alexander! 21 Jun 04, 19:05, Alexander Bondarenko wrote to All on the topic "HACK": AB> In general, it would be interesting to know something about how to deal with work AB> stations are equipped with a grid built on Win2K... Install a keylogger and invite an admin for some reason about. Happy connections. Roman.

From Kirill Frolov To Sergey Zotov 25 June 2004

Press RESET immediately, Sergey Zotov! On Thu, 24 Jun 04 07:20:24 +0400, Sergey Zotov wrote: SZ> - One of my friends broke a server in 5 minutes yesterday! >:E SZ> - Is he a hacker!? 8[ ] SZ> - He's an asshole! Asshole! I would like to especially highlight the last line...