Computer Forums

Member Login

Remember Me? Sign Up! | Forgot Password
 
Slogan
 
Computer Forums > Miscellaneous > Off Topic Discussion » I Password Recovery Software!
Closed Thread
Old 04-25-2006, 12:09 PM   #1 (permalink)
ulater6000's Avatar
 
Ultra Techie

Join Date: Jan 2006

Location: Alaska

Posts: 744

ulater6000 is on a distinguished road

Send a message via AIM to ulater6000 Send a message via Yahoo to ulater6000
Default I Password Recovery Software!

I recently read somewhere that you could get bootable software that overides a computers password and resets it to what you want.

So naturaly I and wanted to download try this. (I was at school while reading this) So I download it and put it on a floppy.

Boot up one of my school pc's, and now I have full administrative rights to install anything with that pc.

I love this type of software because of its skeleton key ability.

However I dont know if its a good thing that all I do in class now is play Halo and CS.

__________________
http://i72.photobucket.com/albums/i175/ulater6000/3.jpg
ulater6000 is offline  
Old 04-25-2006, 03:41 PM   #2 (permalink)
 
Monster Techie

Join Date: Sep 2004

Posts: 1,447

Alex81388

Send a message via AIM to Alex81388
Default

Sooo... what kind of response do you want?


You know, the only password reset CD's that do that are linux based. And if you cleared it with one of these through command prompts (I'm sure you did), you probably screwed up a bunch of network rights. It's only a matter of time they figure that the rights for that specific computer have been altered. Then, they match the time of the deletion with who sits at that computer during that period... And guess what?
__________________
Sig removed due to foul language. Please read the rules regarding the allowable content of sigs before reposting your COMPLIANT sig.
~Trotter
4/21/06
Alex81388 is offline  
Old 04-25-2006, 03:54 PM   #3 (permalink)
ulater6000's Avatar
 
Ultra Techie

Join Date: Jan 2006

Location: Alaska

Posts: 744

ulater6000 is on a distinguished road

Send a message via AIM to ulater6000 Send a message via Yahoo to ulater6000
Default

Well, I guess I can not change the password back to what it was, because I dont know what it was.

Oh, well. Ill probably just get told thats bad and dont do that again. Or at worst be given an interaction.

So far, I dont think it has messed with the networking functions. Everyone else can log into the server and use the computer like they always have.
__________________
http://i72.photobucket.com/albums/i175/ulater6000/3.jpg
ulater6000 is offline  
Old 04-25-2006, 04:23 PM   #4 (permalink)
 
Lord Techie

Join Date: Jan 2005

Posts: 8,025

DJ-CHRIS is on a distinguished road

Send a message via AIM to DJ-CHRIS
Default

Quote:
Originally posted by ulater6000
Well, I guess I can not change the password back to what it was, because I dont know what it was.

Oh, well. Ill probably just get told thats bad and dont do that again. Or at worst be given an interaction.

So far, I dont think it has messed with the networking functions. Everyone else can log into the server and use the computer like they always have.
From your penalty you could get a slap on your wrist to a possible expulsion.

If you read what I have done and what penalties I got, you should think twice about doing this stuff. And by think twice, i mean be smart about it.

And resetting admin passwords WILL NOT mess up network stuff, these are local accounts and dont really matter at all.

It's easy as **** to reset passwords on windows based machinnes. I do it with Emergency Boot CD all the time *I do NOT use it for illegal purposes*
DJ-CHRIS is offline  
Old 04-25-2006, 05:22 PM   #5 (permalink)
ulater6000's Avatar
 
Ultra Techie

Join Date: Jan 2006

Location: Alaska

Posts: 744

ulater6000 is on a distinguished road

Send a message via AIM to ulater6000 Send a message via Yahoo to ulater6000
Default

Quote:
From your penalty you could get a slap on your wrist to a possible expulsion.
Wow! I dont know where you go to school, but its obviously stricter than my school.

The worst they would do to me is take a way my ability to log onto my school computer account. (Which if they do, I just make another or share with a friend) But most likely just write me up.


I feel sorry for you.
__________________
http://i72.photobucket.com/albums/i175/ulater6000/3.jpg
ulater6000 is offline  
Old 04-25-2006, 05:59 PM   #6 (permalink)
Law
Law's Avatar
 
Wizard Techie

Join Date: Aug 2005

Location: the data closet

Posts: 4,172

Law is on a distinguished road

Default

The administrators are noobs at your school, they can prevent this from happening if they configured the BIOS to boot the Harddrive first before the CD-ROM and floppy then password protect the BIOS. Even though that won't stop people from trying to clear the BIOS, they can put a lock on the computer making it harder for people to open up the case. Even though that won't stop people from breaking or picking the lock, it kind of slow them down. A security flaw was found in XP Pro and 2000 Pro, a user can use XP computer manangement over the network to change 2000 pro administrator password. Bring in a laptop with XP Pro, join the workgroup or domain, you can executes this. Not really a flaw but a default setting that Microsoft never wanted to fix it.
Law is offline  
Old 04-25-2006, 06:01 PM   #7 (permalink)
 
Lord Techie

Join Date: Jan 2005

Posts: 8,025

DJ-CHRIS is on a distinguished road

Send a message via AIM to DJ-CHRIS
Default

Quote:
Originally posted by Law
The administrators are noobs at your school, they can prevent this from happening if they configured the BIOS to boot the Harddrive first before the CD-ROM and floppy then password protect the BIOS. Even though that won't stop people from trying to clear the BIOS, they can put a lock on the computer making it harder for people to open up the case. Even though that won't stop people from breaking or picking the lock, it kind of slow them down. A security flaw was found in XP Pro and 2000 Pro, a user can use XP computer manangement over the network to change 2000 pro administrator password. Bring in a laptop with XP Pro, join the workgroup or domain, you can executes this. Not really a flaw but a default setting that Microsoft never wanted to fix it.
Heh if you could elaborate, as we run 95% windows 2000 and I would like to correct this.

Anyways to get around the BIOS lock you just have to use a BIOS password reset program that you can run from windows.

EDIT: Don't you need a password to join the domain in windows enviroments? This makes this exploit kinda pointless.
DJ-CHRIS is offline  
Old 04-25-2006, 06:13 PM   #8 (permalink)
HAVOC's Avatar
 

Join Date: Feb 2005

Location: Milford, Connecticut

Posts: 4,137

HAVOC is just really niceHAVOC is just really niceHAVOC is just really niceHAVOC is just really nice

Send a message via AIM to HAVOC Send a message via Yahoo to HAVOC
Default

Do you guys really think the school administration gives a crap what you "think" you can do with those computers? Technically they are "your" computers, since your mom & dad "taxpayers" are paying for them. Or if it's private school... your tution probably more then paid for them... do whatever you want with them... keep the IT guy busy so he's not hittin' on the nurse or the librarian.
__________________
New signature coming soon.
HAVOC is offline  
Old 04-25-2006, 06:27 PM   #9 (permalink)
Law
Law's Avatar
 
Wizard Techie

Join Date: Aug 2005

Location: the data closet

Posts: 4,172

Law is on a distinguished road

Default

Yea you need the administrative account that is part of the enterprise group. But you can still use computer management to browse computers as long as the workgroup name matches the domain name. Like for example if the domain was school.edu the workgroup would be school. I have verify this at home, I run Win2003 server and I can log into the win2003 computer management with XP and 2000 that are on a workgroup while the 2003 is a domain controller. But that flaw was fix in server 2003 and XP. However only 2000 pro remains, so if you can see any computer in computer managment that might be running 2000 pro, you can definitely do things to it. At school I have done this to 2000 server and it worked.
Law is offline  
Old 04-25-2006, 06:48 PM   #10 (permalink)
Law
Law's Avatar
 
Wizard Techie

Join Date: Aug 2005

Location: the data closet

Posts: 4,172

Law is on a distinguished road

Default

Give me a few minute and I post screen shots of what I am talking about.
Law is offline  
 
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On