RE: Access to a win NT box

From: Marlon Jabbur (mjabbur@terra.com.br)
Date: 06/26/02


From: "Marlon Jabbur" <mjabbur@terra.com.br>
To: "Pedro Miranda" <rpmiranda@sonae.pt>, <pen-test@securityfocus.com>
Date: Wed, 26 Jun 2002 13:50:07 -0300

Hi Pedro,

There is no rdisk in win2k. If the machine is a win2k and you have the admin
passwd you can use pwdump to dump the sam database or use sysinternals's
psexec to execute commands on the server
You can find psexec here:
http://www.sysinternals.com/ntw2k/freeware/pstools.shtml .

Marlon

-----Original Message-----
From: Pedro Miranda [mailto:rpmiranda@sonae.pt]
Sent: Tuesday, June 25, 2002 1:43 PM
To: pen-test@securityfocus.com
Subject: Access to a win NT box

Hi, I've got remote access to a wNT box using the command

\\machinename\c$ /user:machinename\administrator

So i've got administrator privileges but i want to access to the SAM
database.

I've tried to get \\winnt\repair\sam._ but i couldn't find the rdisk
comand.

Can anybody help tell me where can i find this software, or if there is
another way to get access to the sam file.

Thanks in advance

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • Re: faster scans? (nmap)
    ... one host using nmap for syn scans in burst mode with the ... >>>This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: pen test help please asap
    ... > Machine A on client site makes a configurable encrypted OUTBOUND ... > This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Re: ettercap help
    ... Anyways have never tried Ettercap for VNC. ... > This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Re: ettercap help
    ... > I can get it to sniff telnet, ftp, pop, smb, but no vnc. ... > This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Wardialing
    ... >>> achieving the connection with the modem. ... >>This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)