User Password Recovery

I'm sure this has been covered before BUT

if you're usiing those programs make sure the user hasn't got his files encrypted.

If password is reset on users that have EFS encrypted files, and the system is XP or newer, all encrypted files for that user will be UNREADABLE and cannot be recovered unless you remember the old password again“.

Also, UBCD4WIN has another password editor available on it.

You could also try OphCrack which will try and find the users password.

Then there's also KonBoot which bypasses the login for you.

Take your pick.


Regards,
 
apart from the usual suspects of L0phtcrack, jjohn the ripper, cain with rainbow tables and a few online password crackers like md5decrypter.co.uk to find users system password I have use many of the free tools & utils from nirsoft http://www.nirsoft.net/ to recover browser & mail aplication passwords.
 
I use OPHCrack, but I copy the NTLM hash and google it. It is amazing how many hash sites are out there, and how many strange hashes they have.

As far as legality goes, I take a picture, write down the SN and get the business card of the owner. (I have only had to do this for business clients)
 
I use SIW, it seems to grab most of the passwords but can also grab keys for software which is handy of you have to do a restore and need to reinstall the software.
 
I get hesitant with legal reasons on request to reset password on PC?

Thoughts? Has anyone looked into this?

Any time I get a call about password removal I inform them that I require a copy of a state issued photo ID, and a picture of the system serial number.

I explain that I also require a photo ID if they are using a credit card and the signature doesn't match or is missing, it's for the same reason. Most people seem to be legit and have no problem with this.

As for the few that never show up? I think we know why! :mad:
 
I get hesitant with legal reasons on request to reset password on PC?

Thoughts? Has anyone looked into this?

Anyone that makes a password request to me has to legally demonstrate that they own the system.

In a few cases I have had a widow/widower wanting access to the dead spouses system. I had them bring me a copy of the death certificate before I would access the system.

In other cases I've had business owners fire an employee who locked down the system but the ownership of that was obvious.
 
Back
Top