pen-test
[Top] [All Lists]

Re: Windows 2003 - Dumping Service Passwords

To: pen-test@securityfocus.com
Subject: Re: Windows 2003 - Dumping Service Passwords
From: one2@onetwo.com
Date: 22 Nov 2006 22:36:26 -0000
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Resent-date: Fri, 24 Nov 2006 01:01:46 -0700 (MST)
Resent-from: pen-test-return-1078483030@securityfocus.com
Resent-message-id: <20061124080146.0A2841C16C6@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Hi,

If you have an account on the server then you can use Cain on your local 
Windows machine to install the backdoor service Abel onto the server via SMB, 
which will then let you dump the LSA Secrets and NT Hashes.

Ciao,
One2


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>