*note* You do not need to get poweriso, or ophcrack. They are useful utilities to check if accounts have passwords. Though they do not play a role in enabling the account, I put them into the tutorial to show you a way of getting password info, and or passwords. The only necessity is the vista installation disk.
This video (for the most part) is for home use, or to help someone else you know. Generally you wont have 10 minutes to perform a hack, especially if you need to be at the physical computer.
To prevent this hack- Use alphanumeric passwords at least 8-10 characters long. Always password protect your account (including administrative and guest users). Also, have strong access control
Links to items used:
power iso- used to burn the OPHcrack CD. Though its not freeware, it will install, and it will burn iso images just fine
link- http://www.poweriso.com/download.htm
OPHcrack- this is an iso image file (there is an install version, but I believe you need administrative privileges to install it.) Once you burn this with power iso, you need to boot your computer from it. *note* this step is not necessary, but it can find unsecured passwords and tell you if the administrator has a password. You would be surprised how many passwords this live CD can find.
link- http://ophcrack.sourceforge.net/download.php?type=livecd
Other necessities- windows installation CD. You can use any version of the CD (it does not matter if you use a home premium CD if you have an ultimate installation, but it does matter if you use a 32 bit CD on a 64 bit OS, and Vise verse.
If you do not have an installation CD, give Microsoft a call, and they will sell you one for a low price(if you have the key code for your OS), or puchase a copy
Alternativily you could get creative and Google it (please do your own research on the legalities of everything you do that you want to reference to this tutorial)
How to burn the OPHcrack iso- Make sure power iso is installed. When you located the OPHcrack iso file, it should look like a yellow CD. When you click it, it will open power iso, click the burn icon and your good to go.
Booting from the OPHcrack CD-this is pretty self explanatory. configure you bios (or hit a certain key at start up, but that various from computer to computer) to boot from the CD drive first. If you have multiple CD drives, make sure you select the right one.
*note* If the computer your hacking into has an external media password, and or a bios password, open up the computer and locate the CMOS battery on the motherboard. If you remove the battery(I leave it out for about 30 seconds), all BIOS passwords will earased. Remember unplug all power, and electronics are very sensitive to static electricity, GROUND YOURSELF
once booted select option 1(if the GUI is blurry when you start it, restart and select option 2) The OPHcrack GUI should start up and it will do its thing. If you wanna see what passwords it finds, wait, if not take note if the administrator account has a password, if it does not, awesome!
Restart your computer with the windows installation disk, then boot from that CD the same way you did with the OPHcrack CD.
Click next, repair your computer, select OS(usually only one), command prompt
then type
regedit
then hit enter.
click, but do not expand, the HKEY_LOCAL_MACHINE. It should turn blue. then go to file, load hive.
navigate to this file path (first click the computer symbol to the left)
C:/windows/system32/config/SAM
a target name box will appear, make sure you type this
Target SAM
then expand the HKEY_LOCAL_MACHINE, the Target SAM name will appear as a folder, expand it
expand the following
SAM
Domains
Account
Users
click on 000001f4 (administrator account)
click in front of the 11 , it should look something like this
11 |
then hit backspace and type 10
close everything and restart your computer without any CDs and the administrator account will be there.
things to remember:
1. to reverse this change the 10 to an 11
2. do not randomly mess around with the registry
3. I do not mind constructive criticism, but do not tell me that this is not practical enough to hack the pentagon
4. The video quality is not the best, but it is good enough of an aid
5. if you have any questions, give me a comment or pm
6. I am not a camera man
7. I could care less if you subscribe
8. If you need help with computers, PM me and I’ll make a tutorial for you.
9. Never go to bed angry
Duration : 0:9:56
Read the rest of this entry »