OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[Full-Disclosure] Re: Re: getting administrator rights on win2003 machine?

From: Nick Eoannidis (nikonxillioncomputers.com)
Date: Fri Oct 29 2004 - 04:05:18 CDT


if u have physicall access to the box
grab the sam using linux nt password utility which spawns shells on tty3
and 4
and allows you to mount ntfs partitions

so take the sam then remove syskey (bkhive, bkreg, pwdump2)

then l0pht it with lc5

this is on the proviso you have PHYSICAL access to the box

if remotley id be footprinting to find an account with high rights then
doing either brute force or privlege escalation

hope that helps a bit

nikon
Xillion Computers
"Trust your Technolust"
http://www.xillioncomputers.com
nikonxillioncomputers.com

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html