LCF-AT Posted August 6, 2015 Share Posted August 6, 2015 Hi guys, so I need again some help.I have a friend who is using Windows 7 on Laptop and now after some weeks my friend did forgot the logon password and can't come to desktop anymore to work with the Laptop. The problem is the missing password and the Nag keeps poping up.Now I tried to google a little bit to find any solution to bypass this Nag or change the password and found something to start the Laptop in safemode with command prompt. http://www.isunshare.com/windows-7-password/bypass-windows-7-logon-screen-and-admin-password.html http://www.filesriver.com/read/how-to-start-windows-in-safe-mode-with-command-prompt/18 So I thought that would be the right solution and sound also very simple to handle and tell this my friend on telephone but wonder oh wonder it didn't work so the problem starts already after choosing the start method "safe mode with command prompt" so it dosen't stop at any command prompt and loads again the normal windows with mouse + password Nag!?!What now?How to handle that problem and how to get the command prompt? Has anyone of you any idea what to do and how to handle that problems now?Without command prompt my friend can't change the password and without password = no access to windows. No idea why this startup with command prompt isn't working on that Laptop. So if you got any ideas what my friend can do now then post it please. Thank you 1 Link to comment Share on other sites More sharing options...
simple Posted August 6, 2015 Share Posted August 6, 2015 just make a linux live cd and use a program called chntpw to reset it offline, its easy (assuming disk isn't encrypted) or u can boot from windows disk & open recovery console from there to get a cmd prompt, but no admin pw's will be changed from limited user acct w/out some tricks. tricks non techs won't be able to pull over the phone. offline backup + refortmat may be the best bet though Link to comment Share on other sites More sharing options...
Derberux Posted August 6, 2015 Share Posted August 6, 2015 (edited) I did that a while ago, using this tutorial https://www.youtube.com/watch?v=SAS3IlUupqk'>>https://www.youtube.com/watch?v=SAS3IlUupqk Works just fine. Edited August 6, 2015 by Alcatraz3222 Link to comment Share on other sites More sharing options...
Zulu Posted August 6, 2015 Share Posted August 6, 2015 (edited) Hi LCF-AT,I had the same problem about forgetting (due to the automatic logon feature) my/my friend's/etc. Windows password in the past a couple of times.I have some solutions for you :-)But first: There is no reason to panic. No need to format the hard-drive and lose all your data.The general procedure is to start the computer from a CD or USB drive and then accessing/modifying the file where the Windows password hash is stored)For this to work, the computer needs to be able to boot from CD/USB. Here are the instructions for all the major BIOS models:https://webcache.googleusercontent.com/search?q=cache:e-KnOBVQPv8J:https://craftedflash.com/info/how-boot-computer-from-usb-flash-driveYou have to press a certain key before Windows starts, and the key differs from BIOS to BIOS.Now the possibilities:1. The first one was already mentioned, here is the link to that website:http://pogostick.net/~pnh/ntpasswd/bootdisk.htmlThe download link is at the bottom of the website.2. My favorite: Kon-boothttp://thelead82.com/products-win.htmlKon-Boot also starts from CD/DVD or USB and can directly bypass the logon password temporarily. This works by tampering with the windows boot-process and is completely transparent and the changes are only in the memory. Nothing is written to the disk. To me this is the easiest and most convenient option.Once you bypassed the login once, you can change the password to anything you want.Unfortunately, you would need to find the full version (latest is V2.4) on google, because the free version doesn't support Windows 7.(Not endorsing piracy here, Teddy :-) ) 3. The reverse engineering option:https://astr0baby.wordpress.com/2012/09/18/fun-with-msv1_0-dll-in-windows-7-sp1-64bit/You could write a dup2 patcher with this method and send the patcher to your friend. After he's done, he can replace the patched file with the backup. 4. The “sticky keys” option.If you are using Windows right now, you can press the SHIFT key five times and a window will appear. This window also appear on the lock/logon-screen before signing into windows. By replacing a file in the system32 folder named “sethc.exe” with “cmd.exe” (and renaming the cmd.exe to sethc.exe) you can pop-up a command window on the logon screen before signing in. Then you can reset you windows password from the console (with the “net user USERNAME *” or “control userpasswords2” command)This option requires some time, as you need to download a Linux/etc. live-CD system to access the windows hard-drive.I hope it works!Feel free to ask me any question about it, if you have one.Kind regards edit: Saw alcatraz's post after writing this, the video uses option 4 and explains it in "only" 20 minutes (No offense to the creator of the video, but that is ridiculous.) Edited August 6, 2015 by Zulu Link to comment Share on other sites More sharing options...
Apuromafo Posted August 7, 2015 Share Posted August 7, 2015 Hirens boot , -> NTPWEdit (reset Xp/vista/7 user password) is the better NON invasive programhttps://www.youtube.com/results?search_query=hirens+boot+NTPWEditfor windows 95/98/98se/millenium/xp sp1/sp2 can use datapool cia commander from a floopyhttps://nohya.wordpress.com/2007/10/22/cambiar-claves-de-usuarios-en-windows-xp2000nt-ntfs/Best Regards Apuromafo Link to comment Share on other sites More sharing options...
LCF-AT Posted August 7, 2015 Author Share Posted August 7, 2015 Hi again, thanks for your answers so far.So the solutions you did postet seems to be more complex as I thought before.Hhmmm.So it looks that my friend has just to re-install Windows and never using a stupid logon password again. I also can't explain these steps on phone so my friend would just understand railway station you know.Oh boy,such a BS! On the other hand I have installed Windows 7 32 bit on my VM so there I could maybe test & check some hints out etc. Ok guys,thanks again and I will see....if got another ideas "something like for dummies" then post them too ok. greetz Link to comment Share on other sites More sharing options...
Nemo Posted August 7, 2015 Share Posted August 7, 2015 (edited) use konboot.. this way you boot without needing password.... Edited August 7, 2015 by Nemo Link to comment Share on other sites More sharing options...
GIV Posted August 8, 2015 Share Posted August 8, 2015 My answer.Hirens boot CD - in 1 minute the password is resetted. Link to comment Share on other sites More sharing options...
rhythm Posted August 8, 2015 Share Posted August 8, 2015 I use Passware Password Recovery Kit.It can reset all Windows Versions Admin Password (including Windows 8.1). http://www.lostpassword.com/windows.htmhttp://www.lostpassword.com/kit-professional.htm Link to comment Share on other sites More sharing options...
zadow Posted August 8, 2015 Share Posted August 8, 2015 I use same as @GIVHirens boot cd works every time. Link to comment Share on other sites More sharing options...
Alzri2 Posted August 8, 2015 Share Posted August 8, 2015 I used most of the mentioned ways, but kon-boot is ideal because u gain access without re-setting the password Link to comment Share on other sites More sharing options...
LCF-AT Posted August 8, 2015 Author Share Posted August 8, 2015 Hi again, ok sounds good to try & create a Hirens boot CD.I did read the descriptions now about the password reset and I think that way could be easy enough for my friend.I hope that this method will work. Thanks again guys and I do later send feedback about success or failure. greetz 1 Link to comment Share on other sites More sharing options...
Lostin Posted August 9, 2015 Share Posted August 9, 2015 (edited) I would suggest you to follow the easiest way You could change the password by using a bootable windows CD. Use the CMD prompt from windows setup and replace utilman.exe with cmd.exe by doing copy c:\windows\system32\utilman.exe c:\copy c:\windows\system32\cmd.exe c:\windows\system32\utilman.exe note that you need to change C:\ to wherever your windows is installed at. This can be verified with the dir command. after that you reboot and click the accessibility icon at the bottom of windows logon screen. This will bring the cmd and then you can use the net user command to change your password. Personally i tried it few days ago to help a friend and it did work just fine. Edited August 9, 2015 by Lostin Link to comment Share on other sites More sharing options...
NeWOT Posted August 9, 2015 Share Posted August 9, 2015 (edited) https://youtu.be/xrpqoYMhCPo Edited August 9, 2015 by NeWOT Link to comment Share on other sites More sharing options...
H_C Posted October 12, 2016 Share Posted October 12, 2016 (edited) To decrypt windows 7 password just use mimikatz!!! But how can run this remotly?? any hint? or using a bat file? For example on windows 7 embedded ?? here the aplication runs external as terminal rerver. But I have the IP of this pc or HDD.. to can connect to other pc by USB (not to chnage hdd to other pc and boot from this.. never works) As you we know the password its on memory of lsass process. https://cyberarms.wordpress.com/2015/03/16/grabbing-passwords-from-memory-using-procdump-and-mimikatz/ thank you. Edited October 12, 2016 by H_C Link to comment Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now