Tuesday, July 22, 2008

Password Cracking

Sometimes you want to know the log-in password for someone's Windows user account. You do not want to reset it, you want to know THE password.

Passwords of Windows users are stored in the SAM file (Security Access Management, maybe). Let me digress, 'I am Sam' is a very good movie. Also, I am SAM, Super as Master, if ever you ask Gugu. I am Gugu's Super Master, so I am SAM and GSM.

Now, back to the topic. The SAM file is located in Windows/System32/Config, and is named as SAM, of course. No file extension, just SAM. Passwords stored in the SAM are encrypted, or 'hashed', and are referred to as NT Hashes. While Windows is running, the SAM file cannot be copied, it is locked by the OS.

There is another location of the password hashes, in the Registry under HKEY_LOCAL_MACHINESAM, but this is also locked. A third possible location is on Windows/repair, but the passwords here may already have been replaced by new ones.

The process of getting the password from the hashes is called 'password cracking'. Like when you break something, it usually cracks. Cocaine is also called crack. The sexy part of human anatomy is also called crack. Gugu is interested in crack. That is why I like crack. I digressed again.


Again, to the topic. The more difficult part in password cracking is getting the SAM file which contains the NT hashes of the user passwords. The easiest way to get the SAM file is to boot the machine using a different OS, from the floppy drive, the USB drive, or the CD drive. Issues to be addressed in booting is the file system of the HD (most probably NTFS), and the size of the file.

After booting (using another OS), copy the SAM and SYSTEM files to another location (floppy, another folder in the HD, or another computer in the network). The SYSTEM file is another file located in the same folder with SAM (Windows/System32/config), and we will need it to crack SAM.

The SAM and SYSTEM files may then be read by a password cracker. We have used SAMINSIDE and PPA (Proactive Password Auditor).

Friday, July 4, 2008

Happy Birthday, Bro Jo!

You're my jounin, my Gugu, my lola. You're also my friend, my ally, my comrade. Thank you for standing with me, bro! Yoh! Happy Birthday, dude.

Thursday, July 3, 2008

Two Today for Your Twentieth

Will be posting two greetings today coz i was not able to post the daily card last night. The weather was cold and I slept early.

Here's to your strength, Gugu!


HAPPY


And here's another one, you're a strong child of God. In my next life, i want to be your only child. Hehehe!

Wednesday, July 2, 2008

EmO B´dAy



Boinks! Don´t worry. In my book, biting is for food, and kisses are chocolates. I just like the eMo pic.

I rely on your strength to help me get through these events in my life. Please remain strong. All things will pass. All my thanks to Gugu! A million merry birthdays to you.