Re: Local Sam

From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 04/08/05


Date: Thu, 7 Apr 2005 20:50:08 -0700

True that weakly choosen passwords can be obtained with
such tools. True that well choosen passwords/passphrases
cannot. This does not change fact that passwords are not
stored, and that the hash is one-way, irreversible.

-- 
Roger
"Phillip Windell" <@.> wrote in message
news:uvubGe4OFHA.164@TK2MSFTNGP12.phx.gbl...
> I used L0phtCrack on the SAM file and it got nearly all the passwords.
That
> is how I built the password list when I first started working here because
> the list the had was incomplete and no one new what they were.
>
> -- 
>
> Phillip Windell [MCP, MVP, CCNA]
> www.wandtv.com
>
>
> "Roger Abell" <mvpNOSpam@asu.edu> wrote in message
> news:e$wCoY4OFHA.3880@tk2msftngp13.phx.gbl...
> > Passwords are not stored in the SAM.
> > A hash of the passwords, from which the passwords are not
> > recoverable (non-reversible, as implied by saying "hash")
> > is stored.
> >
> > -- 
> > Roger Abell
> > Microsoft MVP (Windows  Security)
> > MCSE (W2k3,W2k,Nt4)  MCDBA
> > "Hpmoore29" <Hpmoore29@discussions.microsoft.com> wrote in message
> > news:4186F98C-134C-4C9A-9517-CAEB849A6B11@microsoft.com...
> > > How are Passwords Stored within the Local Security Accounts Manager
> > Database?
> > > Encrypted ? clear text?
> > >
> > > Thanks.
> >
> >
>
>


Relevant Pages

  • Re: Unauthorized use of Server 2003
    ... Roger Abell wrote: ... failure to patch the operating system and any network-active ... flatten the server immediately and scan any workstations that were ... and good security practices (including strong passwords); ...
    (microsoft.public.security)
  • Re: How to get full access to all contents?
    ... I know all passwords used at my computer. ... "Roger Abell" wrote in message ... > While logged in as an admin schedule a cmd prompt ... > When the cmd prompt opens, ...
    (microsoft.public.windowsxp.security_admin)
  • Re: All Administrators Equal?
    ... group members, i.e. strong passwords on all of them. ... Roger Abell ... "Alan P. Biddle" wrote in message ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Local Sam
    ... I used L0phtCrack on the SAM file and it got nearly all the passwords. ... > A hash of the passwords, from which the passwords are not ... >> How are Passwords Stored within the Local Security Accounts Manager ...
    (microsoft.public.security)
  • Re: Local Sam
    ... Passwords are not stored in the SAM. ... A hash of the passwords, from which the passwords are not ... as implied by saying "hash") ... > How are Passwords Stored within the Local Security Accounts Manager ...
    (microsoft.public.security)