0% found this document useful (0 votes)
348 views3 pages

Windows-XP Password Cracking:-: Brute-Force

The document describes two techniques for cracking Windows XP passwords using the Cain and Abel tool: brute force and cryptanalysis. Brute force involves guessing passwords of varying lengths and character combinations, while cryptanalysis uses pre-computed rainbow tables to crack passwords based on their encrypted hashes. The steps provided explain how to import password hashes from a local system, select the cracking technique, and start the attack using either brute force guessing or rainbow tables.

Uploaded by

Athirams
Copyright
© Attribution Non-Commercial (BY-NC)
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOC, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
348 views3 pages

Windows-XP Password Cracking:-: Brute-Force

The document describes two techniques for cracking Windows XP passwords using the Cain and Abel tool: brute force and cryptanalysis. Brute force involves guessing passwords of varying lengths and character combinations, while cryptanalysis uses pre-computed rainbow tables to crack passwords based on their encrypted hashes. The steps provided explain how to import password hashes from a local system, select the cracking technique, and start the attack using either brute force guessing or rainbow tables.

Uploaded by

Athirams
Copyright
© Attribution Non-Commercial (BY-NC)
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOC, PDF, TXT or read online on Scribd
You are on page 1/ 3

-: Windows-XP Password Cracking :-

Here we use the tool "Cain and Abel" for cracking passwords of any local user/administrator. First download cain and abel from "http://www.oxid.it/cain.html" and install it on your system. Make sure that you have disabled the antivirus/firewall running on your system before installing and throughout this process. Two most effective techniques used here are "Brute-Force" and "Cryptanalysis".

Brute-Force:- As this techniques takes more time to complete, the attacker prefer this
technique only when there is a hope that the password contain same type of characters or may be two. i.e only loweralpha, only alpha, only numeric or may be loweralpha-numeric, also it should contain less than 7 characters. Otherwise it takes more time to crack password, which may be the mixture of all types of characters along with special symbols. The step-by-step explaination for this technique is given below1) Open the tool "Cain and Abel"

2) Go into the category "Cracker" "Cracker" in left panel.

it displays all sub-categories under

-: Windows-XP Password Cracking :Cryptanalisys :- Basically, Cryptanalisys means Operations performed in converting
encrypted messages to plain text without initial knowledge of the crypto-algorithm and/or key employed in the encryption. This is the fastest technique of password cracking possible due to "Rainbow Tables". A rainbow table is a file that is used to lookup an unknown plaintext from a known hash for an algorithm that does not usually permit this operation. Steps 1 to 4 i.e upto importing hashes from local system, are similar to previous technique (i.e brute-force). The steps coming after that are as follows3) Select "LM & NTLM Hashes" from left panel and then click on symbol, you will be 5) Here, select "cryptanalisys attack" then "NTLM hashes" and then select "via rainbow tables". greeted by a window as shown. Here we can choose either OphCrack or RainbowCrack formats of tables. The rainbow tables are available free to download on internet. Due to large file size of rainbow tables (350MB - 3GB); instead of downloading we can also create at own just by downloading rainbow table generator (winrtgen.zip of 181KB) free download at "http://www.oxid.it/downloads/winrtgen.zip"

4) Check "import hashes from local system" and then click "Next". This shows all the active accounts on local system like administrator, guest, etc. along with LM and NT hashed values of their respective passwords, as shown below. 6) Click on "Add Table"

5) Right clicking on any username shows all available options using which we can crack it's password. 7) Browse for the location of rainbow table on your system, select proper table and click "open".

6) Here we select "Brute-Force Attack" and then "NTLM Hashes", since windows uses NTLM hashes to store local users' passwords. 8) Select the loaded table and then click on "Start" button. 7) You will be greeted by a window where you can modify properties for brute-force attack such as password length, character set, etc.

You might also like