Steps

  1. Change a Windows User Password Using Backtrack 4 Step 1.jpg
    1
    Boot Backtrack 4 in your computer.
    Ad
  2. Change a Windows User Password Using Backtrack 4 Step 2.jpg
    2
    Once Backtrack is done loading and the select menu is visible, pick "Start Backtrack Frame Buffer (1024X768)".
  3. Change a Windows User Password Using Backtrack 4 Step 3.jpg
    3
    Once you're allowed to type in commands, type in "startx".
  4. Change a Windows User Password Using Backtrack 4 Step 4.jpg
    4
    Once the GUI is visible, go to start(Lower-left corner) Backtrack >> Privilege Escalation >> PasswordAttacks >> Chntpw, opening the Chntpw terminal. (If it shows error "No such files or directory" check correct path to Chntpw executable in File manager).
  5. Change a Windows User Password Using Backtrack 4 Step 5.jpg
    5
    Now inside backtrack, you need to find the file path to a file called SAM, usually under 'Windows/System32/config/SAM'. We will first mount the windows partition first, so that we can access windows directory.
  6. Change a Windows User Password Using Backtrack 4 Step 6.jpg
    6
    Type in the following commands in shell console
    "mkdir /mnt/sda1" and press Enter
    Type again "mount -t ntfs /dev/sda1 /mnt/sda1" and press Enter.
  7. Change a Windows User Password Using Backtrack 4 Step 7.jpg
    7
    Now in the shell console type in "/pentest/passwords//chntpw/chntpw -i <SAMFILEPATH>"
    Example in this case:
    "/pentest/passwords//chntpw/chntpw -i /Windows/System32/config/SAM". (Note: Windows path should be case sensitive). This will load SAM in chntpw.
  8. Change a Windows User Password Using Backtrack 4 Step 8.jpg
    8
    Type in 1. "Edit user data and passwords". It will display all username of Windows partition.
  9. Change a Windows User Password Using Backtrack 4 Step 9.jpg
    9
    Type in the username of the Windows account you want to change the password in.
  10. Change a Windows User Password Using Backtrack 4 Step 10.jpg
    10
    Type in 1 to clear the password and press Enter. You can also type in 2 to edit it.
  11. Change a Windows User Password Using Backtrack 4 Step 11.jpg
    11
    Once done, type in the username of the Windows account you changed or cleared the password on and Type in 4. "To unlock account" and press Enter. This will unlock the account and enable it for using.
  12. Change a Windows User Password Using Backtrack 4 Step 12.jpg
    12
    Type in "!" and press Enter to return to main menu of chntpw.
  13. Change a Windows User Password Using Backtrack 4 Step 13.jpg
    13
    Type in"q" and press Enter to quit chntpw.
  14. Change a Windows User Password Using Backtrack 4 Step 14.jpg
    14
    Chntpw will confirm about the changes you made to SAM. Type "y" and press Enter to Write hive files.
  15. Change a Windows User Password Using Backtrack 4 Step 15.jpg
    15
    Done! Logout and Close Backtrack 4 and restart Windows! 
From wiki how

Post a Comment

 
Top