hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Shang Tsung
Hi, sometimes when using L0phtCrack it says *empty* under LM and NTLM Password. Does anyone know what that means and if there is another method of cracking it? Thanks in advanced.
night^man
whats the problme ? ph34r.gif
Shang Tsung
Well I got the password hashes from a sam file off a W2K machine, and now I am trying to crack it however L0phtCrack says *empty*. Does that mean there's no password? Or maybe it's encrypted differently?
Progressor
It means that there is no password. LOL
AgentOrange
Hmm are you logged in as a super user? Some large comptuer labs don't use the SAM file they do it all via the network. If thats the case then you *could* sniff for it.
Shang Tsung
Yep, I have super user rights. I don't know what you mean by not using the SAM file, but I think it's not case here since L0phtCrack was able to crack all the other accounts on that box.

Thanks for the help fellas.

aapje
there is no password....
dont-staY
Note that Windows 2000 passwords longer than 14 characters will have "*empty*" LM passwords, because the LM hash does not support passwords of this length.
predx
ever think of trying a diffrent password cracker? saminside? Proactive Windows Security Explorer?
qcred11
QUOTE
ever think of trying a diffrent password cracker? saminside? Proactive Windows Security Explorer?

Yeap try to use something else than LC.
I got some info about Saminside:

Maximal length of the password for the LMHash brute force attack and mask attack - 14 characters.
Maximal length of the password for the NTHash brute force attack and mask attack - 32 characters.
Maximal length of the password for the dictionary attack is 128 characters.
Maximal length of the password in the "Password:" field is 128 characters.
Maximal quantity of users to work on is 8192.

Actually if the password longer than 14 characters it'll gonna take you forever to open it. Try to use sniffer or maybe install keylogger, or social engeneering... smile.gif

Dinos
Could you please post also the version of LC that you are using ?
MadMaddy
QUOTE (qcred11 @ Apr 20 2004, 09:46 PM)
QUOTE
ever think of trying a diffrent password cracker? saminside? Proactive Windows Security Explorer?

Yeap try to use something else than LC.
I got some info about Saminside:

Maximal length of the password for the LMHash brute force attack and mask attack - 14 characters.
Maximal length of the password for the NTHash brute force attack and mask attack - 32 characters.
Maximal length of the password for the dictionary attack is 128 characters.
Maximal length of the password in the "Password:" field is 128 characters.
Maximal quantity of users to work on is 8192.

Actually if the password longer than 14 characters it'll gonna take you forever to open it. Try to use sniffer or maybe install keylogger, or social engeneering... smile.gif

yeah in this case I'd suggest a keylogger or sniffer. Ever if under 14 characters, toss in a special character and you're pretty much out of luck. Work of caution on the keyloggers though, most "commercially" available ones are detected by AV so depending on the setup, try to find a nice homebrew one or give the sniffer methode a try.
qcred11
I used to use LC version 4, but lately I'm using Saminside(much faster).
But in your case I suggest to use a keylogger, like MadMaddy said....
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.