Re: Windows 2K/XP/2K3 password question

From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 03/30/05

  • Next message: Roger Abell: "Re: adsi problem (0x800704C3)"
    Date: Wed, 30 Mar 2005 08:34:27 -0700
    
    

    "Matt Gibson" <mattg@blueedgetech.ca> wrote in message
    news:O2QBH1KNFHA.1884@TK2MSFTNGP15.phx.gbl...
    > One way hash.
    >
    > You can use tools like dumpsec to dump the SAM.
    >
    > Matt Gibson - GSEC
    >

    While that is so of accounts and their passwords, I am not
    so sure that is also true for the service acct/pwd information
    about which the poster asks.

    -- 
    Roger
    >
    > "Shangwu" <sqi@nospam.net> wrote in message
    > news:ulLh91JNFHA.3784@TK2MSFTNGP12.phx.gbl...
    > > Hello,
    > >
    > > Is it possible to retrieve the password of a service's logon account in
    > > user mode program or kernel mode driver?
    > > How does Windows save a password? I know it is saved in SAM registry?
    Does
    > > Windows encrypt a password in one way (hash, non-decryptable) or two
    ways
    > > (decryptable) approach?
    > >
    > > Thanks,
    > > Shangwu
    > >
    >
    >
    

  • Next message: Roger Abell: "Re: adsi problem (0x800704C3)"

    Relevant Pages

    • Re: Windows 2K/XP/2K3 password question
      ... One way hash. ... You can use tools like dumpsec to dump the SAM. ... > user mode program or kernel mode driver? ... > Windows encrypt a password in one way ...
      (microsoft.public.windows.server.security)
    • Re: WinNT and previously used passwords
      ... going to go through the hashes to get the history, ... It just brute forces the hash until it can ... > 10 passwords are achived in the SAM or registry maybe? ... If I remember correctly l0pht crack grabs ...
      (Vuln-Dev)
    • Re: Adding a unique user name in a file
      ... Jürgen Exner wrote in comp.lang.perl.misc: ... > sam wrote: ... >> to speed up the search rather than using linear search. ... existing users into a hash looks reasonable. ...
      (comp.lang.perl.misc)
    • Re: Now that SHA-1 is cracked...
      ... Matt Gibson - GSEC ... >> to hash to the same value. ... > SHA-1 as a more basic building block of their security. ... > matches the hash in the xml file. ...
      (microsoft.public.exchange2000.connectivity)
    • Re: Now that SHA-1 is cracked...
      ... Matt Gibson - GSEC ... >> to hash to the same value. ... > SHA-1 as a more basic building block of their security. ... > matches the hash in the xml file. ...
      (microsoft.public.inetserver.iis)