in

myITforum.com

Chris Hayes at myITforum.com

IT Powered Blog

Reason #101 to change all local Administrator passwords every 3-6 months

You DL and create a floppy disk and power on the computer, upload the results and you can get the info for free in about 2 days :scared:  This is just getting crazy!  My favorite tool on the LAN is DCPC although I'm not sure if they are still giving it away.

“Login Recovery is a service to reveal user names and recover passwords for Windows NT, 2000, XP, 2003 and Longhorn. As long as you have physical access to the computer, your passwords can be recovered

By following three simple steps, over 98.5% of passwords can be recovered within less than ten minutes. This service does not overwrite passwords, it does not write anything to the hard drive, it does not alter the computer in any way. It simply reads the encrypted passwords for processing through our servers.

A free low priority service is provided which can take upto two working days to process passwords. If you wish immediate access to the passwords, a priority service is available for a fee of GBP 10.00 + VAT (approx USD 20.81 or EUR 17.15). (Fee introduced to cover costs of the dedicated server farm)“

http://www.loginrecovery.com/index.html

 

EDIT: someone just told me this;  BTW they used the free service.

it recovered by pw that was 15 characters, upper and lower case, numbers, special characters and no real words in less than 5 minutes!

Comments

 

randomthoughts said:

That's scary! It makes sense that they are able to do this, since access to the hash does greatly simplify password cracking.
I just tested this under a limited user account and since no install is required it does work under any type of user account.
Hmm, more ammo for blocking the download of exe files through the web filter. It also makes an excellent reason for keeping local admin passwords separate from domain admin passwords, if one is not already doing so.
Thanks for the heads up.
February 8, 2006 5:04 PM
 

Chris Hayes said:

I've gone through my share of working w/ rainbow tables and what not but this is just sooo easy, so fast it is pretty scary.
February 8, 2006 5:16 PM
Copyright - www.myITforum.com, Inc. - 2010 All Rights reserved.
Powered by Community Server (Commercial Edition), by Telligent Systems