Tuesday, October 9, 2007

Crack Windows XP password in minutes.

(For full text with comments please click on the title)

Windows XP's password protection is based upon LM and NTLM hashes which are preety easy to get through. All you need is few software and bit of advise. In order to get the password containing hashes from the computer one has to be logged on as administrator. So the ones with no administrative privilege please wait for the next post.

List of software you need.

1) John the ripper

John the ripper can be found Here it is in zip format.

2) Saminside

plz google for saminside.I am so lazy.



Now open the saminside.exe program .There under File menu look for "import local user using LSASS".You should get the list of users.After that press "ctrl+s" name the file and save it as text file.You can name it password.txt if you want to.Copy the file and paste it inside the folder where "john-386.exe" is located.

Now comes John the rippers part.John the ripper does not have a gui. You have to use the dos to use it. Start->Run-> type cmd.Go to the place where you have john the ripper using dos commands. If you don't know the dos command i suggest you first go learn it.After reaching the folder look for "john-386.exe".It is inside the "run" directory.Make sure there is the "password.txt" file you had created using saminside inside run directory.Now in the dos prompt type this command "john-386 --incremental password.txt" without quotes wait for few minutes and sure enough you will get the passwords.
Next post will be about cracking windows xp password in seconds wait for it if you find this one difficult to understand.plz feel free to ask question.







9 comments:

Navin said...

i've a boot CD which just resets the XP passwords.. :)

Sulav said...

This is not about resetting the xp password. This is about stealing the password.he he he.Resetting the password would alert the administrator and he will defenitely implement more security measures.Think of a senario where administrator puts a bios password and physically locks the cpu.One can't do anything then.

Anonymous said...

john the ripper is already ripped!! i mean it's RIP ehehe. does this thing still works..? it's too old stuff dude.. i mean john the ripper as prog.

i had a software XP passord manager. If noone is there, simply copy the program, run the software, it generates a file with password and that's the password. :)

but to crack the passwords, i've this CD which does the job? but i'm rusty doing it, cos, i'm on Vista!!! :)

Sulav said...

anon the place i live is a dialup country i cannot at any cicumstances download those iso's you are talking about.This post is
usefull for people who can't download large stuff from internet.And yes John the Ripper Still works.

Anonymous said...

Active Password Changer 3.5 Professional

Active Password Changer is designed for resetting local administrator and user passwords on Windows XP / VISTA / 2003 / 2000 / NT systems in case an Administrator's password is forgotten or lost. You do not need to re-install and re-configure the operating system.

Forgotten password recovery software has a simple user interface, supports multiple hard disk drives, detects several SAM databases (if multiple OS were installed on one volume) and provides the opportunity to pick the right SAM before starting the password recovery process. It displays a list of all local users. The software user simply chooses the local user from the list to reset the password.

Other Windows login security restrictions like 'Account is disabled', 'Password never expires', 'Account is locked out', 'User Must Change Password at Next Logon' and 'Logon Hours' can be changed or reset.

With Active Password Changer you can log in as a particular user with a blank password.

-------------
SEARCH for it dude :) , GOOGLE is out there

Sulav said...

thanks for the tip man.

Sulav said...

bak at my college we couldn't logon to the internet coz it needed administrator password.Resetting password would defenitely trigger investigation so i researched for this solution.Once it so happened that people at the lab forgot what the passord was.One of the maintenence people was about to cry.So i told him the password.Password was easy to predict but with spelling error it was adminstrator with an "i" missing.He was really impressed.

Anonymous said...

Can anyone recommend the best MSP software for a small IT service company like mine? Does anyone use Kaseya.com or GFI.com? How do they compare to these guys I found recently: N-able N-central software inventory management
? What is your best take in cost vs performance among those three? I need a good advice please... Thanks in advance!

Anonymous said...

Yes if the truth be known, in some moments I can reveal that I acquiesce in with you, but you may be making allowance for other options.
to the article there is even now a without question as you did in the fall efflux of this solicitation www.google.com/ie?as_q=driver detective 6.2.5.0 ?
I noticed the utter you procure not used. Or you partake of the black methods of inspiriting of the resource. I take a week and do necheg

 
Blogging Secret