OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Tool for removing LANMAN hashes from registry

From: Per Øyvind Thorsheim (putiluttonline.no)
Date: Mon Oct 04 2004 - 07:33:06 CDT


I'm in the process of finishing a paper on auditing Windows user accounts
and passwords (available before christmas), and i'm looking for some
investigative help:

Sometime earlier i think i read about someone who had made a tool enabling
an administrator to delete single LANMAN hash values from the registry
without having to change the password for every account after implementing
MSKB 299656 "How to prevent Windows from storing a LAN manager hash of your
password in Active Directory and local SAM databases".

Any ideas to the existence and URL of such a tool would be greatly
appreciated.

Regards,

Per Thorsheim
CISA - CISM - CISSP
Putilutt (at) online.no

---------------------------------------------------------------------------
---------------------------------------------------------------------------