Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
Jan 2009 Free Giveaway Sponsor - Black Hat DC
Scooby Doo and the Crypto Caper - Answers and Winners
Daemon - A Contest Revealed
Hacking: The Art of Exploitation 2nd Edition
Nov 2008 Free Giveaway - Winners
Dec 2008 Free Giveaway Sponsor - SANS
Santa Claus is Hacking to Town
Plug-N-Play Network Hacking
Nov 2008 Free Giveaway Sponsor - CWNP
Daemon - A Contest Begins Now
It Happened One Friday - Answers and Winners
Daemon - A Contest
Scooby Doo and the Crypto Caper
MS Blue Hat Hackers Headline Chicago Security Con
The Pen Testing Perfect Storm Webcast Series with Skoudis, Wright, Johnson
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 34 guests and 3 members online
EH-Net Donations
Enter Amount:
$
CAD
USD
GBP
AUD
JPY
EUR
Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations
You are here:
Home
Forum
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
Locked Computer - Limited Account "No Admin Password"
Ethical Hacker Community Forums
January 08, 2009, 04:41:16 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: ChicagoCon 2009 - May 4 - 9. Boot Camps & an Ethical Hacking Conf.
www.chicagocon.com
Home
Help
Calendar
Login
Register
Ethical Hacker Community Forums
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
Locked Computer - Limited Account "No Admin Password"
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Locked Computer - Limited Account "No Admin Password" (Read 4660 times)
0 Members and 1 Guest are viewing this topic.
thecount
Newbie
Offline
Posts: 1
Locked Computer - Limited Account "No Admin Password"
«
on:
July 31, 2008, 04:42:23 AM »
Friends,
I hope you're well.
I'm facing a bit of a dilemma that I would apprecaite some expert assistance with.
I recently got a second hand computer that is completely locked out. At least for a novice/intermediate user like myself.
The only access i have is through a limited user account that has zero privileges as it seems. I can't change anything on the computer. Not even access the calendar. No installation privilieges, no access to bios (password protected), the system boot sequence is set to hard drive only and I can't change it.
I have serached the net and came accross some weak and illogical tricks...none worked for me, not even the password retrival softwares since I can't install them nor booth them. I tried to reset the bios password by removing the backup battery that didn't work either. I wasn't provided with a password reset CD either.
How can I increase the privilieges of this user or reset any of the passwords? I'm Stuck!!!
Thanks in advance.
Logged
apollo
Jr. Member
Online
Posts: 51
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #1 on:
July 31, 2008, 08:10:19 AM »
This seems to be a good reference on clearing the BIOS password.
http://www.dewassoc.com/support/bios/bios_password.htm
. My guess is that you may not have left the battery out long enough. Once you do this, there are a few things you can try, including Trinity Rescue CD:
http://trinityhome.org/Home/index.php?wpid=1&front_id=12
which a a program called winpass which will let you reset the administrator password.
Logged
don
Editor-In-Chief
Administrator
Hero Member
Online
Posts: 2435
Editor-In-Chief
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #2 on:
July 31, 2008, 09:40:53 AM »
If it's an older system, there is a good chance that there is a jumper on the motherboard that tells BIOS to enable the power on password. Find this jumper, remove it, restart the computer and try getting into BIOS now.
You could always look at the model number of the motherboard and search out the manufacturer and/or manuals. Google is your friend here.
Hope this helps,
Don
Logged
CISSP, MCSE, CEH, Security+ SME
Simon
Newbie
Offline
Posts: 18
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #3 on:
August 19, 2008, 08:16:15 PM »
A few things to try:
1. F12 during boot to select an alternate boot device
2. Pull the hard drive and plug it into another system via USB (or otherwise)
3. Log into the system with your existing account and see if the repair directoy has been protected.
One way or another, what you're after is access to the system's drive while booted into an alternate OS. Get the SAM and the SYSTEM files (ideally, from C:\WINDOWS\System32\config if you're booted into an alternate OS, though C:\WINDOWS\repair will work in a pinch). Save them.
Get 0phcrack. Use it to decrypt the SAM (it's SYSKEY encrypted). Just open the SAM file with 0phcrack (it needs to be in the same directory as the SYSTEM file) and then save the results out....don't bother cracking with 0phcrack -- we'll get to that.
Get rainbowcrack. This part is easy (quick d/l).
Get the LANMAN rainbow tables. The full set. Save them somewhere VERY safe, since it's about a 60GB download via bitorrent and will take you the better part of a week.
Run rainbowcrack with the full LANMAN rainbow tables against the decrypted SAM that you grabbed. This will give you every username and password on the system, including the Administrator account.
Sounds like a lot of work....and it is for the first run-through. Once you've done it and have all of the tools that you need (the LANMAN rainbow tables are a bear), it's pretty quick and easy.
Logged
C|EH, ECSA, C|EI
http://www.halock.com
dalepearson
Full Member
Offline
Posts: 163
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #4 on:
August 20, 2008, 02:43:28 AM »
Just for clarification, am I reading this right?
You need to access the bios but cant as its password protected?
You can not do alot with the installed OS as you only have a limited access account? What is the OS?
Logged
:: Security Active ::
GaryPod
Newbie
Offline
Posts: 1
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #5 on:
October 12, 2008, 08:55:34 AM »
Put the HD in a different PC that you have BIOS access to, run rainbow tables against the windows password via ophtcrack maybe, then place the HD back in the original PC... then you won't need to access the BIOS on the original PC...
Logged
NetStrikr
Newbie
Offline
Posts: 2
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #6 on:
October 14, 2008, 02:25:24 AM »
Why not use a live cd and just reset the password?
Logged
shednik
Jr. Member
Offline
Posts: 65
Re: Locked Computer - Limited Account "No Admin Password"
«
Reply #7 on:
October 14, 2008, 08:23:45 AM »
Quote from: Simon on August 19, 2008, 08:16:15 PM
A few things to try:
1. F12 during boot to select an alternate boot device
2. Pull the hard drive and plug it into another system via USB (or otherwise)
3. Log into the system with your existing account and see if the repair directoy has been protected.
One way or another, what you're after is access to the system's drive while booted into an alternate OS. Get the SAM and the SYSTEM files (ideally, from C:\WINDOWS\System32\config if you're booted into an alternate OS, though C:\WINDOWS\repair will work in a pinch). Save them.
Get 0phcrack. Use it to decrypt the SAM (it's SYSKEY encrypted). Just open the SAM file with 0phcrack (it needs to be in the same directory as the SYSTEM file) and then save the results out....don't bother cracking with 0phcrack -- we'll get to that.
Get rainbowcrack. This part is easy (quick d/l).
Get the LANMAN rainbow tables. The full set. Save them somewhere VERY safe, since it's about a 60GB download via bitorrent and will take you the better part of a week.
Run rainbowcrack with the full LANMAN rainbow tables against the decrypted SAM that you grabbed. This will give you every username and password on the system, including the Administrator account.
Sounds like a lot of work....and it is for the first run-through. Once you've done it and have all of the tools that you need (the LANMAN rainbow tables are a bear), it's pretty quick and easy.
This would be the best way to do it IMO...you may not need the rainbow tables but it wouldn't hurt...I've used 0phcrack with the standard tables it came with and it will usually crack the passwords unless there was a special character but then it would only get pieces of it. So its up to you how much you want to download to get this working.
Logged
CCNA, MCP, A+, N+
WIP: Masters of Infosec, CEH, & Mastering C
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Special Events
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009
=> News Items and General Discussion About EH-Net
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> Certification
===> The Charter Study Group - Pen Test
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
=====> CEH - Official Course Modules v4
=====> CEH - Official Course Modules v5
=====> CEH - Official Course Modules v6
===> CPTS - Certified Pen Testing Specialist
=====> CPTS - Official Course Modules v5
===> CPTE - Certified Pen Testing Expert
=====> CPTE - Official Course Modules v1
===> ECSA - EC-Council Certified Security Analyst
=====> ECSA - Official Course Modules v1.2
=====> ECSA / LPT - Official Course Modules v3
===> OSCP - Offensive Security Certified Professional
===> GPEN - GIAC Certified Penetration Tester
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
=====> CHFI - Official Course Modules v2
===> EnCE - EnCase® Certified Examiner
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Hardware
=> Malware
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Gates
=> Heffner
=> Hoffman
=> RichM
=> Murray
=> J. Peltier
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
Loading...
Sponsors
Polls
How many security events including conferences and training do you attend a year:
1 - 2
3 - 4
5 - 6
7+
None - But want to
None - Choose not to
Support EH-Net
Support EH-Net by
Buying all of your
Amazon items using
the search bar above.
Try CBT Nuggets Free!
Recent Forum Topics
Tools
: Core Impact Essentials
(0) by
sgt_mjc
Web Applications
: Determine URL from IP address
(0) by
scottr
News from the Outside World
: Google branching out a little further...
(3) by
jason
Physical Security
: Magnetic stripe card spoofing
(5) by
jason
Gates
: Oracle version module for metasploit
(3) by
RoleReversal
Malware
: THe website is Evil but what to do??
(3) by
NickFnord
CEH - Certified Ethical Hacker
: Helow... help some tutorials...
(7) by
K3lV1n
CEH - Certified Ethical Hacker
: CEH is a scam
(20) by
K3lV1n
Malware
: uninstall trend mciro officescan clients
(0) by
Hack_80
Mass Media
: Daniel Suarez Interview
(9) by
blackazarro
Malware
: Security Forecast for 2009
(5) by
jason
News from the Outside World
: Is this acceptable?
(9) by
jason
Wireless
: Wireless Pen Testing Cards
(6) by
jason
Oct 2008 - Scooby Doo and the Crypto Caper
: Skillz October 08 Winning Entry - Technical
(1) by
jason
Book Reviews
: [Article]-Mitnick - The Art Of Intrusion: Ch 1 - Hacking The Casinos For A Million Bu...
(5) by
jason
Links to cool sites.
: Free Computer Engineering Classes From Stanford
(3) by
jason
Oct 2008 - Scooby Doo and the Crypto Caper
: Skillz October 08 Winning Entry - Creative
(1) by
jason
Oct 2008 - Scooby Doo and the Crypto Caper
: [Article]-Scooby Doo and the Crypto Caper - Answers and Winners
(2) by
jason
News Items and General Discussion About EH-Net
: [Article]-Jan 2009 Free Giveaway Sponsor - Black Hat DC
(1) by
jason
Book Reviews
: Need a book suggestion!
(2) by
jason
News Items and General Discussion About EH-Net
: EH-Net Milestone - 2 Articles Cross 1 Million Page Views
(3) by
BillV
Other
: What kind of lab, machines you have for your security testing?
(12) by
charlottebandit
Malware
: Network Virus Problem
(9) by
RoleReversal
Wireless
: WUSB600N good usb ?
(2) by
nap191
Other
: FBI code cracking challenge
(3) by
jimbob
Calendar Of Events
: RSA 2009
(0) by
don
Forensics
: Network Forensic tools/practice/techniques
(2) by
jimbob
Malware
: Autoplay when i try to open the drive.
(4) by
jimbob
Other
: Insanity?
(3) by
jason
CEH - Certified Ethical Hacker
: Any Practice Environment for learning tool for CEH?
(15) by
don
Wireless
: a petri-dish bridge
(2) by
don
CEH - Certified Ethical Hacker
: TFTP Tranfer time out
(5) by
jason
Tools
: tool to trace users
(8) by
pseud0
Malware
: Malware Challenge 2008 Analysis
(0) by
blackazarro
Programming
: Python 3.0 Released
(0) by
don
Forensics
: SANS SIFT Forensic toolkit
(1) by
don
Links to cool sites.
: Omgili Hacking - Another Search Engine dedicated to Hacking Related Forums
(2) by
RoleReversal
Tools
: Insecure.org's 2006 Top 100 Security Tools List Released
(10) by
shednik
Other
: Happy New Year!
(8) by
vijay2
CEH - Official Course Modules v6
: Community-built CEH Wiki
(2) by
yehg
Vote For EH-Net
progenic.com
binarica.com
technorati fave
Privacy Notice
for TDCC & All Properties
© 2009 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.