Penetration Testing mailing list archives

RE: Access to a win NT box


From: "Marlon Jabbur" <mjabbur () terra com br>
Date: Wed, 26 Jun 2002 13:50:07 -0300

Hi Pedro,

There is no rdisk in win2k. If the machine is a win2k and you have the admin
passwd you can use pwdump to dump the sam database or use sysinternals's
psexec to execute commands on the server
You can find psexec here:
http://www.sysinternals.com/ntw2k/freeware/pstools.shtml .

Marlon

-----Original Message-----
From: Pedro Miranda [mailto:rpmiranda () sonae pt]
Sent: Tuesday, June 25, 2002 1:43 PM
To: pen-test () securityfocus com
Subject: Access to a win NT box




Hi, I've got remote access to a wNT box using the command

\\machinename\c$ /user:machinename\administrator

So i've got administrator privileges but i want to access to the SAM
database.

I've tried to get \\winnt\repair\sam._ but i couldn't find the rdisk
comand.

Can anybody help tell me where can i find this software, or if there is
another way to get access to the sam file.

Thanks in advance

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/


Current thread: