Page 1 of 2

[OS Password]Nice "Backdoor" in All Vista =)

Posted: Sun Mar 07, 2010 11:32 pm
by wizme
Hi, for this tutorial, we will talk about ways to reset/change windows password.
This is just one of the many methods for changing/resetting your windows password.

As most of us know, there is a ease of access button in the vista login screen as shown below:
Image

This is a nice hole for us to dig in.
What do you need to use this backdoor:
-physical access ( i personally think physical security is the most important )
-any unix based live boot CD ( backtrack, suse, ubuntu and many more )

Steps:
-First boot the computer you wish to change/reset your password with the live boot CD
-Depends on the OS of the live boot, some will auto mount your harddisk, some wont.
-To mount your hard disk and windows partition, use the command "mount -t ntfs /dev/hda1 /mnt". some will be sda1 depends whether your HDD is SATA or IDE.
-Now your windows partition is mounted on the folder /mnt, go to the system32 folder by using this command "cd /mnt/Windows/System32"
-Now there are 4 programs in the Ease of Access, which are
magnify.exe - magnify function
narrator.exe - narrator function
osk.exe - show on screenkeyboard
utilman.exe - this will show ease of access menu

-Now we need to backup cmd.exe and any one of the above program you wish to use, i will be using utilman.exe
issue this command "cp cmd.exe cmd.exe.bak" and "cp utilman.exe utilman.exe.bak"
-Then we will overwrite utilman.exe to cmd.exe by using this command "mv cmd.exe utilman.exe"
-Our job is done here, utilman.exe is actually a command prompt.

Restart and boot normally to your windows, press the Ease of Access button, a command promt will show out.
With a command promt with system privilege, you can do anything.

Changing/Resetting of password:
"net user <yourusernamehere> *"

Please post any question here if you met any problem. Use/Try at your own risk =)

Lesson of the day, never leave your notebook/laptop unattended, all this can be done in less than 10 minutes =)

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Mon Mar 08, 2010 5:21 pm
by Armageddon
Haha, the lesson of the day appeared in digital life for the straits times a couple of weeks ago.

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Mon Mar 08, 2010 5:53 pm
by guyz92
wizme wrote:Hi, for this tutorial, we will talk about ways to reset/change windows password.
This is just one of the many methods for changing/resetting your windows password.

As most of us know, there is a ease of access button in the vista login screen as shown below:
Image

This is a nice hole for us to dig in.
What do you need to use this backdoor:
-physical access ( i personally think physical security is the most important )
-any unix based live boot CD ( backtrack, suse, ubuntu and many more )

Steps:
-First boot the computer you wish to change/reset your password with the live boot CD
-Depends on the OS of the live boot, some will auto mount your harddisk, some wont.
-To mount your hard disk and windows partition, use the command "mount -t ntfs /dev/hda1 /mnt". some will be sda1 depends whether your HDD is SATA or IDE.
-Now your windows partition is mounted on the folder /mnt, go to the system32 folder by using this command "cd /mnt/Windows/System32"
-Now there are 4 programs in the Ease of Access, which are
magnify.exe - magnify function
narrator.exe - narrator function
osk.exe - show on screenkeyboard
utilman.exe - this will show ease of access menu

-Now we need to backup cmd.exe and any one of the above program you wish to use, i will be using utilman.exe
issue this command "cp cmd.exe cmd.exe.bak" and "cp utilman.exe utilman.exe.bak"
-Then we will overwrite utilman.exe to cmd.exe by using this command "mv cmd.exe utilman.exe"
-Our job is done here, utilman.exe is actually a command prompt.

Restart and boot normally to your windows, press the Ease of Access button, a command promt will show out.
With a command promt with system privilege, you can do anything.

Changing/Resetting of password:
"net user <yourusernamehere> *"

Please post any question here if you met any problem. Use/Try at your own risk =)

Lesson of the day, never leave your notebook/laptop unattended, all this can be done in less than 10 minutes =)
i can use ophcrack to bullet force the password out.
=X

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Mon Mar 08, 2010 6:38 pm
by wizme
yap, if you know where to download the 50+GB of rainbow table, you can crack any password =)

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Tue Mar 09, 2010 4:05 pm
by RavenOfDeath
o.O 50+gb? rainbow table?

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Wed Mar 10, 2010 10:50 am
by wizme
RavenOfDeath wrote:o.O 50+gb? rainbow table?
rainbow tables are used to brute force password.

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Wed Mar 10, 2010 5:51 pm
by RavenOfDeath
cool, didn't know all this

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Mon Mar 22, 2010 9:32 pm
by HoorayForBoobs
OPHCRACK FTW

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Fri Mar 26, 2010 10:48 pm
by RavenOfDeath
HoorayForBoobs wrote:OPHCRACK FTW
why suddenly so off

Re: [OS Password]Nice "Backdoor" in All Vista =)

Posted: Sun Apr 11, 2010 6:44 pm
by HoorayForBoobs
RavenOfDeath wrote:
HoorayForBoobs wrote:OPHCRACK FTW
why suddenly so off
?_?