Penetration Testing mailing list archives

Re: Sam File via IIS flaw


From: skill2die4 () secguru com
Date: Thu, 30 Jun 2005 09:22:26 -0500 (CDT)


I'm able to browse to the /winnt/repair/sam file, but it obviously
is unusable in the format that's presented in the browser.

You can import SAM file using CAIN & ABEL :

   http://www.oxid.it/ca_um/topics/password_crackers.htm


Any way to get this file in a format that can be used in L0pht?

CAIN & ABEL allows user to "export" the output to l0pht format.

More details on SAM available on :

    http://www.wikisecure.com/index.php/Sam_File

Also, Try out LMCRACK

    http://www.infosecwriters.com/hhworld/hh9/lmcrack.htm


HTH,

-=skillz=-



.


Current thread: