RE: AD password Auditing

From: Distler, Dennis (DistlerDennis_at_PRAIntl.COM)
Date: 08/11/05

  • Next message: Ashley Vandiver: "RE: Application Assessment"
    Date: Thu, 11 Aug 2005 11:06:11 -0500
    To: "yfs us" <yfs_168us@yahoo.com>, <pen-test@securityfocus.com>
    
    

     
    SAMInside works great for winxp, never tried it against a DC but would
    assume that it would work. Its pretty fast as well. Goolge for the link.

    Thanks,
    Dennis

    -----Original Message-----
    From: yfs us [mailto:yfs_168us@yahoo.com]
    Sent: Wednesday, August 10, 2005 10:11 PM
    To: pen-test@securityfocus.com
    Subject: Re: AD password Auditing

    Hi All,

        How does one crack WinXP password by using John The Ripper ?
    I used pwdump2 to dump the password hash and used John The Ripper to
    brute force it but John The Ripper only give the LM hash password which
    is not correct. How can I used John The Ripper to crack the NT hash ?

    Cheers

    ----- Original Message -----
    From: <Cedric.Baechler@vtg.admin.ch>
    To: <pen-test@securityfocus.com>
    Sent: Monday, August 08, 2005 4:42 PM
    Subject: RE: AD password Auditing

    >
    > I have all pwdump versions (1->5) here:
    http://jav.ch/tools.html
    >
    > Bye, Cedric
    >
    > -----Original Message-----
    > From: Lohan Spies [mailto:lohan.spies@ifs-sa.co.za]
    > Sent: 05 August 2005 01:43 PM
    > To: 'pen-test@securityfocus.com'
    > Subject: AD password Auditing
    >
    > Hi there,
    >
    > I want to know how can I copy the AD (Active
    Directory) database so that
    > I can run a password cracking tool against the
    accounts?
    >
    > Could someone please point me in the right direction
    regarding the tools
    > to use and how to copy the db?
    >
    > Thanks
    >
    >
    ------------------------------------------------------------------------

    --
    ----
    > FREE WHITE PAPER - Wireless LAN Security: What
    Hackers Know That You Don't
    >
    > Learn the hacker's secrets that compromise wireless
    LANs. Secure your
    > WLAN by understanding these threats, available
    hacking tools and proven
    > countermeasures. Defend your WLAN against
    man-in-the-Middle attacks and
    > session hijacking, denial-of-service, rogue access
    points, identity
    > thefts and MAC spoofing. Request your complimentary
    white paper at:
    >
    >
    http://www.securityfocus.com/sponsor/AirDefense_pen-test_050801
    >
    ------------------------------------------------------------------------
    --
    -----
    >
    >
    __________________________________________________
    Do You Yahoo!?
    Tired of spam?  Yahoo! Mail has the best spam protection around 
    http://mail.yahoo.com 
    ------------------------------------------------------------------------
    ------
    FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You
    Don't
    Learn the hacker's secrets that compromise wireless LANs. Secure your
    WLAN by understanding these threats, available hacking tools and proven
    countermeasures. Defend your WLAN against man-in-the-Middle attacks and
    session hijacking, denial-of-service, rogue access points, identity
    thefts and MAC spoofing. Request your complimentary white paper at:
    http://www.securityfocus.com/sponsor/AirDefense_pen-test_050801
    ------------------------------------------------------------------------
    -------
    ------------------------------------------------------------------------------
    FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't
    Learn the hacker's secrets that compromise wireless LANs. Secure your
    WLAN by understanding these threats, available hacking tools and proven
    countermeasures. Defend your WLAN against man-in-the-Middle attacks and
    session hijacking, denial-of-service, rogue access points, identity
    thefts and MAC spoofing. Request your complimentary white paper at:
    http://www.securityfocus.com/sponsor/AirDefense_pen-test_050801
    -------------------------------------------------------------------------------
    

  • Next message: Ashley Vandiver: "RE: Application Assessment"

    Relevant Pages

    • RE: All of the things you need to learn to be a pen-tester (Re: Pen t est basic needs)
      ... U will probably need to "morphine" your evil apps before you run them on an AV protected machine - download morphine from hxdef.org; might as well pick up a copy of hf's rootkit while your there... ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, ...
      (Pen-Test)
    • RE: AD password Auditing
      ... Subject: AD password Auditing ... FREE WHITE PAPER - Wireless LAN Security: ... WLAN by understanding these threats, ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ...
      (Pen-Test)
    • RE: AD password Auditing
      ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, available hacking tools and proven ...
      (Pen-Test)
    • Re: Handling Sysads resignation/termination
      ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, ... Switch to Netscape Internet Service. ...
      (Pen-Test)
    • FW: AD password Auditing
      ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, available hacking tools and proven ...
      (Pen-Test)