PaulSpoerry.com

You found me… insights on technology, philosophy, Windows, hacking and more.
  • Home
  • Archive
  • Contact
  • Categories
  • Search
  • About

L0phtCrack – Windows password cracker is back!

PaulSpoerry | May 29, 2009

The legendary L0phtcrack password cracker is returning and in the form of a new version 6. L0phtCrack disappeared from the market after @stake, a company which was formed by L0pht Heavy Industries and others, was taken over by Symantec. At the beginning of this year the original L0phtCrack team bought back the software rights from Symantec and have now upgraded the tool.

L0phtCrack 6 is packed with powerful features such as scheduling, hash extraction from 64 bit Windows versions, multiprocessor algorithms, and networks monitoring and decoding. Yet it is still the easiest to use password auditing and recovery software available. Available in in L0phtcrack 6 is:

Password Scoring
L0phtCrack 6 provides a scoring metric to quickly assess password quality. Passwords are measured against current industry best practices, and are rated as Strong, Medium, Weak, or Fail.

Pre-computed Dictionary Support
Pre-computed password files is a must have feature in password auditing. L0phtCrack 6 supports pre-computed password hashes. Password audits now take minutes instead of hours or days.

Windows & Unix Password Support
L0phtCrack 6 imports and cracks Unix password files. Perform network audits from a single interface.

Remote password retrieval
L0phtCrack 6 has a built-in ability to import passwords from remote Windows, including 64-bit versions of Vista, Windows 7, and Unix machines, without requiring a third-party utility.

Scheduled Scans
System administrators can schedule routine audits with L0phtCrack 6. Audits can be performed daily, weekly, monthly, or just once, depending on the organization’s auditing requirements.

Remediation
L0phtCrack 6 offers remediation assistance to system administrators on how to take action against accounts that have poor passwords. Accounts can be disabled, or the passwords can be set to expire from within the L0phtCrack 6 interface. Remediation works for Windows user accounts only.

Updated Vista/Windows 7 Style UI
The user interface is improved and updated. More information is available about each user account, including password age, lock-out status, and whether the account is disabled, expired, or never expires. Information on L0phtCrack 6’s current session is provided in an “immediate window” with a reporting tab providing up-to-the-minute status of the current auditing session.

Executive Level Reporting
L0phtCrack 6 has real-time reporting that is displayed in a separate, tabbed interface. Auditing results are displayed based on auditing method, risk severity, and password character sets.

Password Risk Status
Displays risk status in four different categories: Empty, High Risk, Medium Risk, and Low Risk.

Password Audit Method
Displays the completion of all four methods L0phtCrack 6 uses: Dictionary, Hybrid, Precomputed, and Brute Force.

Password Character Sets
Reports the completion of the various character sets being audited, including, Alpha, Alphanumeric, Alphanumeric/Symbol, Alphanumeric/Symbol/International.

Password Length Distribution
Reports the overall length of the discovered password by account.

Summary Report
Password Statistics as Locked, Disabled, Expired, or if the password is older than 180 days. Audit Summary
Number of Accounts cracked and the number of Domains audited.

Foreign Password Cracking
L0phtCrack 6 supports foreign character sets for Brute Force, as well as foreign dictionary files. Pull down menus change for language and character set. L0phtCrack 6 ships with several foreign dictionaries.

Visit L0phtcrack to read more or download the latest version. You can also read my previous article “Ophcrack Live CD – Crack Windows passwords in minutes“.

Comments
No Comments »
Categories
Hacking, Linux, Tech, Windows, Windows 7
Tags
64 bit windows, crack windows password, crack windows passwords, hack vista, hack windows passwords, l0pht heavy industries, l0phtcrack, network audits, password retrieval, password support, poor passwords, recovery software, system administrators, user accounts
Comments rss Comments rss
Trackback Trackback

Ophcrack Live CD – Crack Windows passwords in minutes

PaulSpoerry | January 9, 2007

The free, open source Ophcrack Live CD is a Windows account password cracking tool designed to help you recover lost Windows passwords.

After you download the 462mb .iso and burn it to a CD, just restart your computer and boot up the Live CD. Once the CD boots, blamo… Ophcrack automatically loads and is on its way to cracking your password.

(screenshot of ophcrack on Linux cracking Windows passwords)

Features:

  • Runs on Windows, Linux and Mac OS X (intel).
  • Cracks LM and NTLM hashes.
  • Free tables available for alphanumeric LM hashes.
  • Loads hashes from local SAM, remote SAM.
  • Loads hashes from encrypted SAM recovered from a Windows partition, Vista included.

I’ve yet to try this live bootable version, but I used l0phtcrack (now LC5 and no longer produced since the company that made it was bought by Symantec) a few years ago and retrieved 99% of the passwords off a backup domain controller in something like 12 hours (using a not-so-powerful desktop to do the cracking).

Get ophcrack Live CD. FYI – you can still get l0phtcrack (aka LC5) from mirrors like sectools.org.

STUMBLEUPON UPDATE:

A couple people have asked if this really works. I just want to re-iterate that this DOES work. It requires physical access to the machine, but if you have physical access you can literally crack every password on a machine in a very short time. As I said above, I used it on a backup domain controller and in about 12 hours cracked every single password on the BDC.

Why crack passwords when you can just create a new Admin account?

Most people tell me they simply “lost” their password. If that’s the case you can use some free tools to create a new Administrator account. With this account you can simply change the existing accounts password, use the new Admin account, or… well… do anything you want. Read more in my article: Hack Vista – Create a new admin account

Comments
11 Comments »
Categories
Privacy, Tech, Windows
Tags
backup domain controller, boots, crack windows password, free open source, lc5, Linux, Live CD, mac os x, open source, ophcrack, Password, Password cracking, Password Recovery, sectools.org, symantec, Windows, windows passwords
Comments rss Comments rss
Trackback Trackback

Recent Posts

  • FCC releases Internet speed test tool
  • Microsoft shows games on Mobile, PC, and Xbox
  • Google Voice Explained
  • Windows Mobile 7 to be announced, 6.x to become free
  • Microsoft finally patches 17-year-old bug

Popular Posts

  • µTorrent 1.8.3 Final (uTorrent 1.8.3)
  • Google Chrome’s JavaScript Engine Is CRAZY FAST
  • Google Chrome’s JavaScript Engine Is CRAZY FAST
  • 20 Classic Hip Hop Album Covers Redone With Legos
  • Windows 7 Benchmarks – XP vs Vista vs 7

Recommended Hosting

rss Comments rss valid xhtml 1.1 design by jide powered by Wordpress get firefox