HiveMinds Forum Index HiveMinds
We've arrived. Please notify the admins of any problems.
 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

'Hacking' a server

 
Post new topic   Reply to topic    HiveMinds Forum Index -> Security
View previous topic :: View next topic  
Author Message
Richard C.
Senior Royalty


Joined: 09 Nov 2002
Posts: 2346

PostPosted: Mon Dec 16, 2002 7:12 am    Post subject: 'Hacking' a server Reply with quote

Hi guys

I'm here at my new job trying to sort out a tricky problem: the partner who left the company took the server passwords with him, and Bjørn (who's left) doesn't have admin access. It's a win2k network.

What to do?
Back to top
View user's profile Send private message
ToddK
Royalty


Joined: 09 Nov 2002
Posts: 1177
Location: Ottawa, Canada

PostPosted: Mon Dec 16, 2002 8:45 am    Post subject: Reply with quote

I haven't tried this, but it's a possibility....

http://www.darknet.org.uk/content/docs/ntremote2.txt
Back to top
View user's profile Send private message MSN Messenger
Cshark
Helper Bee


Joined: 13 Dec 2002
Posts: 499
Location: Shawnee, KS

PostPosted: Mon Dec 16, 2002 11:53 am    Post subject: Reply with quote

Had this situation pop up about a year ago at a company I was working for. We ended up re-installing windows and resetting the admin passwords that way. Probably the safest way to go.
_________________
This signature has super cow powers.
Back to top
View user's profile Send private message Send e-mail Visit poster's website Yahoo Messenger MSN Messenger
single
[Fun Title Goes Here]


Joined: 08 Nov 2002
Posts: 928
Location: St. Paul, MN (native of Poland)

PostPosted: Mon Dec 16, 2002 12:39 pm    Post subject: Reply with quote

you can't ask the guy who left for it?
Back to top
View user's profile Send private message Yahoo Messenger MSN Messenger
Richard C.
Senior Royalty


Joined: 09 Nov 2002
Posts: 2346

PostPosted: Mon Dec 16, 2002 1:01 pm    Post subject: Reply with quote

single wrote:
you can't ask the guy who left for it?


We did but he'd 'forgotten'. He's a former partner, where they went their separate ways.

It probably means nuking the server but I'd prefer not to, as there's very little documentation and reinstalling everything will be a laborious process...
Back to top
View user's profile Send private message
Brad
Helper Bee


Joined: 12 Nov 2002
Posts: 326
Location: Atlanta, GA

PostPosted: Mon Dec 16, 2002 1:02 pm    Post subject: Reply with quote

There are generally three ways of going about this, assuming there are no backdoors or built-in password recovery mechanisms:

1.) Boot into a mini-OS from floppy or stick the drives in another machine, and make whatever changes are needed to gain administrative privileges back. (Hint: Google for LinNT.zip)

2.) Run a brute-force password guesser (l0phtcrack, John The Ripper) against the admin/root account.

3.) Find an unpatched vulnerability and exploit it.
_________________
Grumpy UNIX Guy
"Don't tell my momma I'm a sysadmin, she thinks I play piano in a whorehouse."
Back to top
View user's profile Send private message
SoopahMan
Can do ANYTHING with JavaScript, pigs, and ice


Joined: 09 Nov 2002
Posts: 4747
Location: Boston, MA

PostPosted: Mon Dec 16, 2002 1:15 pm    Post subject: Wow Reply with quote

Wow, smooth trick. That's smart stuff.
Back to top
View user's profile Send private message Send e-mail
single
[Fun Title Goes Here]


Joined: 08 Nov 2002
Posts: 928
Location: St. Paul, MN (native of Poland)

PostPosted: Mon Dec 16, 2002 1:23 pm    Post subject: Reply with quote

My suggestion is you stare at the machine for long enough until it gets intimidated and makes a mistake....
Back to top
View user's profile Send private message Yahoo Messenger MSN Messenger
Richard C.
Senior Royalty


Joined: 09 Nov 2002
Posts: 2346

PostPosted: Mon Dec 16, 2002 1:38 pm    Post subject: Reply with quote

Thanks Brad, suggestions noted.

l0pht was my first idea, but you need admin privileges to run it in brute-force mode...and if I had admin, I wouldn't need it...???
Back to top
View user's profile Send private message
ToddK
Royalty


Joined: 09 Nov 2002
Posts: 1177
Location: Ottawa, Canada

PostPosted: Mon Dec 16, 2002 1:47 pm    Post subject: Reply with quote

You could probably run it over the network from another machine where you are the admin.
Back to top
View user's profile Send private message MSN Messenger
Richard C.
Senior Royalty


Joined: 09 Nov 2002
Posts: 2346

PostPosted: Tue Dec 17, 2002 9:59 am    Post subject: Reply with quote

I did what you suggested, Brad - it worked a treat once I'd got the latest version. This was very cool as the former sysadm was being an @-hole about all that stuff, and now all his passwords have been reset, hehe Laughing
Back to top
View user's profile Send private message
Mike Parent
Helper Bee


Joined: 09 Nov 2002
Posts: 362
Location: East Coast Canada

PostPosted: Tue Dec 17, 2002 5:14 pm    Post subject: Reply with quote

Assuming it is in a windows 2000 domain, you could create a group policy that affects that computer (domain group policy) that adds some other accoutn to the local admins group. Reboot the machine and voila!
_________________
"Some people say that I must be a horrible person, but that's not true. I have the heart of a young boy
-- in a jar on my desk." Steven King, 3/8/90
Back to top
View user's profile Send private message Visit poster's website MSN Messenger
Richard C.
Senior Royalty


Joined: 09 Nov 2002
Posts: 2346

PostPosted: Tue Dec 17, 2002 5:57 pm    Post subject: Reply with quote

It wasn't on a domain, and you have to be an admin to do that anyway...
Back to top
View user's profile Send private message
martinscott
New Bee


Joined: 18 Sep 2009
Posts: 2

PostPosted: Tue Sep 22, 2009 2:26 am    Post subject: Reply with quote

I need some help from someone. All of my spyware programs have stopped working. I cannot load Spybot, Malwarebytes, HiJackThis and AVG will not work. Everytime I try to run these they blink back and say something about path and "You do not have appropriate permission" to access this. My AVG did run one time originally and detected a trojan and gave me the name but I didn't write it down and now will not run to show me again. Apparently this little sucker has disabled all of my programs to recognize it. Also when i tried to search through google it redirects me to other sites instead of the one I chose. Anyone got any ideas on how to fix this?
Back to top
View user's profile Send private message
Display posts from previous:   
Post new topic   Reply to topic    HiveMinds Forum Index -> Security All times are GMT - 5 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB © 2001, 2005 phpBB Group