Login Register






Tutorial How To Get Windows Passwords filter_list
Author
Message
How To Get Windows Passwords #1
Programs needed:

SAMInside (doesn't matter which version or if demo)
LC4 or LC5 (official name LophtCrack, must be full version)
NTFSPro (doesn't matter if demo)
Any bootdisk maker.

Cracked or full version software can be found on any wares site. If you don't know what that is or where to get the programs, post a message and I'll tell you or give them to you.

Depending on the strength of the password, this process' time period can range from a few minutes to a year. All in all, have a lot of patience.



This works for Windows 2000, Windows XP, Windows XP SP1/SP2, or Windows server 2003.

This also works even if syskey encryption is employed.

If it is FAT filesystem:

Just copy the sam file like stated in the first post to an empty floppy disk and take it home. I'll tell you what to do with it later. DON'T DELETE THE ORIGINAL SAM FILE - just remove its attributes. The sam file is a file called SAM with no extension. You must also get a file called SYSTEM which is in the same folder as SAM. Both files have no extensions.


If it's NTFS:

You have to download a program called NTFSPro, which allows you to read from NTFS drives. The demo version allows read only, while the full version is read-write. You will use the program to create an unbootable disk (so you will still need another bootable disk and an empty disk) that has the required files to access NTFS.

Use the boot disk to get into dos, then use the disks created with MTFSpro to be able to access the filesystem, and afterwards copy the SAM and SYSTEM files to another empty disk to take home.


When you reach home:

You have to get a program called SAMInside (it doesn't matter if it's the demo version). SAMInside will open the SAM file and extract all the user account information and their passwords, including administrator. The program will ask for the SYSTEM file too, if the computer you took the SAM file from has syskey enabled. syskey encrypts the SAM file. SAMInside uses SYSTEM file to decrypt the SAM file.

After SAMInside finishes, you will see user accounts and hashes beside them: the hashes are the encoded passwords. Use SAMInside to export the accounts and their hashes as a password dump file into another program, called LophtCrack.

The latest version 5 is named LC5. However, the previous version, LC4, is just as good. You need the full or cracked version of the program. LC5 uses a brute force method by trying all possible combinations of letters numbers, and unprintable characters to find the correct password from the hashes in the pwdump file imported into it from SAMInside.

This process of trying all passwords might take 5 minutes if the password is easy, up to a year if the password is long and hard.

LC5 however, unlike LC4, is almost 100 times faster. Both can be configured to try dictionary and common words before using all possible combinations of everything. Once the correct password is found, it will display the passwords in clear beside each account, including administrator.

I have used this method many times. I've compromised the whole school computer infrastructure. LC4 usually took between 1 second and 10 minutes to find the passwords because they were common words found in any english dictionary. I haven't used LC5 yet.

If there is anything unclear, anything I overlooked, please tell me so that I can turn this into a very easy to follow tutorial to help anybody crack any Windows password.


MAKE SURE TO READ THIS FULLY, OR DON'T COMPLAIN LATER THAT THIS DIDN'T WORK ON SOMETHING LIKE WINDOWS 8.

Reply

RE: HOW TO GET WINDOWS PASSWORD #2
The tutorial is a little hard to understand, but I can see you're trying. Next time try to improve your structuring and grammar.

Reply

RE: HOW TO GET WINDOWS PASSWORD #3
(07-18-2014, 05:33 PM)Aurora Wrote: The tutorial is a little hard to understand, but I can see you're trying. Next time try to improve your structuring and grammar.
next time iam gonna highlight some main parts Smile anyways thanks Smile

Reply

RE: HOW TO GET WINDOWS PASSWORD #4
Spoiler:
Programs needed:

SAMInside (doesn't matter which version or if demo)
LC4 or LC5 (official name LophtCrack, must be full version)
NTFSPro (doesn't matter if demo)
Any bootdisk maker.

Cracked or full version software can be found on any wares site. If you don't know what that is or where to get the programs, post a message and I'll tell you or give them to you.

Depending on the strength of the password, this process' time period can range from a few minutes to a year. All in all, have a lot of patience.



This works for Windows 2000, Windows XP, Windows XP SP1/SP2, or Windows server 2003.

This also works even if syskey encryption is employed.

If it is FAT filesystem:

Just copy the sam file like stated in the first post to an empty floppy disk and take it home. I'll tell you what to do with it later. DON'T DELETE THE ORIGINAL SAM FILE - just remove its attributes. The sam file is a file called SAM with no extension. You must also get a file called SYSTEM which is in the same folder as SAM. Both files have no extensions.


If it's NTFS:

You have to download a program called NTFSPro, which allows you to read from NTFS drives. The demo version allows read only, while the full version is read-write. You will use the program to create an unbootable disk (so you will still need another bootable disk and an empty disk) that has the required files to access NTFS.

Use the boot disk to get into dos, then use the disks created with MTFSpro to be able to access the filesystem, and afterwards copy the SAM and SYSTEM files to another empty disk to take home.


When you reach home:

You have to get a program called SAMInside (it doesn't matter if it's the demo version). SAMInside will open the SAM file and extract all the user account information and their passwords, including administrator. The program will ask for the SYSTEM file too, if the computer you took the SAM file from has syskey enabled. syskey encrypts the SAM file. SAMInside uses SYSTEM file to decrypt the SAM file.

After SAMInside finishes, you will see user accounts and hashes beside them: the hashes are the encoded passwords. Use SAMInside to export the accounts and their hashes as a password dump file into another program, called LophtCrack.

The latest version 5 is named LC5. However, the previous version, LC4, is just as good. You need the full or cracked version of the program. LC5 uses a brute force method by trying all possible combinations of letters numbers, and unprintable characters to find the correct password from the hashes in the pwdump file imported into it from SAMInside.

This process of trying all passwords might take 5 minutes if the password is easy, up to a year if the password is long and hard.

LC5 however, unlike LC4, is almost 100 times faster. Both can be configured to try dictionary and common words before using all possible combinations of everything. Once the correct password is found, it will display the passwords in clear beside each account, including administrator.

I have used this method many times. I've compromised the whole school computer infrastructure. LC4 usually took between 1 second and 10 minutes to find the passwords because they were common words found in any english dictionary. I haven't used LC5 yet.

If there is anything unclear, anything I overlooked, please tell me so that I can turn this into a very easy to follow tutorial to help anybody crack any Windows password.


MAKE SURE TO READ THIS FULLY, OR DON'T COMPLAIN LATER THAT THIS DIDN'T WORK ON SOMETHING LIKE WINDOWS 8.


I've tried doing some slight edits to your tutorial in terms of grammar, spacing out some bloat, and rearranging some areas. If you have any qualms, tell me and I'll remove this post ASAP.
[Image: miNuqGq.png]

Reply

RE: HOW TO GET WINDOWS PASSWORD #5
(07-18-2014, 08:13 PM)MiS Wrote:
Spoiler:
Programs needed:

SAMInside (doesn't matter which version or if demo)
LC4 or LC5 (official name LophtCrack, must be full version)
NTFSPro (doesn't matter if demo)
Any bootdisk maker.

Cracked or full version software can be found on any wares site. If you don't know what that is or where to get the programs, post a message and I'll tell you or give them to you.

Depending on the strength of the password, this process' time period can range from a few minutes to a year. All in all, have a lot of patience.



This works for Windows 2000, Windows XP, Windows XP SP1/SP2, or Windows server 2003.

This also works even if syskey encryption is employed.

If it is FAT filesystem:

Just copy the sam file like stated in the first post to an empty floppy disk and take it home. I'll tell you what to do with it later. DON'T DELETE THE ORIGINAL SAM FILE - just remove its attributes. The sam file is a file called SAM with no extension. You must also get a file called SYSTEM which is in the same folder as SAM. Both files have no extensions.


If it's NTFS:

You have to download a program called NTFSPro, which allows you to read from NTFS drives. The demo version allows read only, while the full version is read-write. You will use the program to create an unbootable disk (so you will still need another bootable disk and an empty disk) that has the required files to access NTFS.

Use the boot disk to get into dos, then use the disks created with MTFSpro to be able to access the filesystem, and afterwards copy the SAM and SYSTEM files to another empty disk to take home.


When you reach home:

You have to get a program called SAMInside (it doesn't matter if it's the demo version). SAMInside will open the SAM file and extract all the user account information and their passwords, including administrator. The program will ask for the SYSTEM file too, if the computer you took the SAM file from has syskey enabled. syskey encrypts the SAM file. SAMInside uses SYSTEM file to decrypt the SAM file.

After SAMInside finishes, you will see user accounts and hashes beside them: the hashes are the encoded passwords. Use SAMInside to export the accounts and their hashes as a password dump file into another program, called LophtCrack.

The latest version 5 is named LC5. However, the previous version, LC4, is just as good. You need the full or cracked version of the program. LC5 uses a brute force method by trying all possible combinations of letters numbers, and unprintable characters to find the correct password from the hashes in the pwdump file imported into it from SAMInside.

This process of trying all passwords might take 5 minutes if the password is easy, up to a year if the password is long and hard.

LC5 however, unlike LC4, is almost 100 times faster. Both can be configured to try dictionary and common words before using all possible combinations of everything. Once the correct password is found, it will display the passwords in clear beside each account, including administrator.

I have used this method many times. I've compromised the whole school computer infrastructure. LC4 usually took between 1 second and 10 minutes to find the passwords because they were common words found in any english dictionary. I haven't used LC5 yet.

If there is anything unclear, anything I overlooked, please tell me so that I can turn this into a very easy to follow tutorial to help anybody crack any Windows password.


MAKE SURE TO READ THIS FULLY, OR DON'T COMPLAIN LATER THAT THIS DIDN'T WORK ON SOMETHING LIKE WINDOWS 8.


I've tried doing some slight edits to your tutorial in terms of grammar, spacing out some bloat, and rearranging some areas. If you have any qualms, tell me and I'll remove this post ASAP.

I edited his post and put your edits in it. If I hadn't, it would have been deleted for being LQ.
[Image: 7ajmN5P.jpg]

Telegram: Oni_SL (Link)

Reply

RE: How To Get Windows Passwords #6
(07-18-2014, 08:13 PM)MiS Wrote:
Spoiler:
Programs needed:

SAMInside (doesn't matter which version or if demo)
LC4 or LC5 (official name LophtCrack, must be full version)
NTFSPro (doesn't matter if demo)
Any bootdisk maker.

Cracked or full version software can be found on any wares site. If you don't know what that is or where to get the programs, post a message and I'll tell you or give them to you.

Depending on the strength of the password, this process' time period can range from a few minutes to a year. All in all, have a lot of patience.



This works for Windows 2000, Windows XP, Windows XP SP1/SP2, or Windows server 2003.

This also works even if syskey encryption is employed.

If it is FAT filesystem:

Just copy the sam file like stated in the first post to an empty floppy disk and take it home. I'll tell you what to do with it later. DON'T DELETE THE ORIGINAL SAM FILE - just remove its attributes. The sam file is a file called SAM with no extension. You must also get a file called SYSTEM which is in the same folder as SAM. Both files have no extensions.


If it's NTFS:

You have to download a program called NTFSPro, which allows you to read from NTFS drives. The demo version allows read only, while the full version is read-write. You will use the program to create an unbootable disk (so you will still need another bootable disk and an empty disk) that has the required files to access NTFS.

Use the boot disk to get into dos, then use the disks created with MTFSpro to be able to access the filesystem, and afterwards copy the SAM and SYSTEM files to another empty disk to take home.


When you reach home:

You have to get a program called SAMInside (it doesn't matter if it's the demo version). SAMInside will open the SAM file and extract all the user account information and their passwords, including administrator. The program will ask for the SYSTEM file too, if the computer you took the SAM file from has syskey enabled. syskey encrypts the SAM file. SAMInside uses SYSTEM file to decrypt the SAM file.

After SAMInside finishes, you will see user accounts and hashes beside them: the hashes are the encoded passwords. Use SAMInside to export the accounts and their hashes as a password dump file into another program, called LophtCrack.

The latest version 5 is named LC5. However, the previous version, LC4, is just as good. You need the full or cracked version of the program. LC5 uses a brute force method by trying all possible combinations of letters numbers, and unprintable characters to find the correct password from the hashes in the pwdump file imported into it from SAMInside.

This process of trying all passwords might take 5 minutes if the password is easy, up to a year if the password is long and hard.

LC5 however, unlike LC4, is almost 100 times faster. Both can be configured to try dictionary and common words before using all possible combinations of everything. Once the correct password is found, it will display the passwords in clear beside each account, including administrator.

I have used this method many times. I've compromised the whole school computer infrastructure. LC4 usually took between 1 second and 10 minutes to find the passwords because they were common words found in any english dictionary. I haven't used LC5 yet.

If there is anything unclear, anything I overlooked, please tell me so that I can turn this into a very easy to follow tutorial to help anybody crack any Windows password.


MAKE SURE TO READ THIS FULLY, OR DON'T COMPLAIN LATER THAT THIS DIDN'T WORK ON SOMETHING LIKE WINDOWS 8.


I've tried doing some slight edits to your tutorial in terms of grammar, spacing out some bloat, and rearranging some areas. If you have any qualms, tell me and I'll remove this post ASAP.

(07-18-2014, 08:33 PM)Oni Wrote: I edited his post and put your edits in it. If I hadn't, it would have been deleted for being LQ.

Thanks both of you for doing it Smile
iam sorry anyways

Reply

RE: How To Get Windows Passwords #7
The only thing that bothers me is there's no title/sub-titles and no description of what this is for besides "here's how you do it, BOOM done".

EDIT: Ahh fuck it.
[Image: Ov15OiO.png]

Reply