In this article, learn how to:
-Change windows password without logging in.
-Byepass windows security
-Login if you forget your password
-Change windows password without logging in.
-Byepass windows security
-Login if you forget your password
Toughness level: Medium
Prerequisites:
Links at the end of the article.
-Pendrive with 512 MB space
-USB Disk Image of PartedMagic Linux OS
-Universal USB Installer software.
-A spare windows pc to prepare the USB Disk (Pen Drive)
Prerequisites:
Links at the end of the article.
-Pendrive with 512 MB space
-USB Disk Image of PartedMagic Linux OS
-Universal USB Installer software.
-A spare windows pc to prepare the USB Disk (Pen Drive)
Some basic info:
In this tutorial, we will attempt to login past the password screen of a windows pc ( works for XP, vista, 7 and 8) without knowing the actual password. We will utilise the live usb to gain access to our windows system files and modify them so as to use a few other tricks to walk past the windows login screen with ease.
Steps:
Step 1: Prepare a live linux USB drive or a live cd depending on your taste. (Which one we use doesn’t really matter since we will use the live OS to change a few files in our windows OS.)
1.1: Install and run Universal USB Installer on a spare windows machine
1.2: Choose the linux distribution you want to use, depending on the one you have downloaded. In our case we will be using parted magic lite.
1.3: Choose the pen drive you want to utilise in the process. Make sure to click “Format as FAT32”.
1.4: Let the process complete, do not remove the pen drive till the process is complete.
Step 2: Now that you have a bootable Linux OS installed on your USB Stick, we will run the linux OS from this USB.
[On the pc where the password is to be changed, plug in the USB and boot. If your pc is set to boot from USB, you will see a boot options menu. Just click “Enter” and wait for the OS to load.
If your pc is not set to boot from a USB , just go into the BIOS options(check your specific manufacturer for how to do this. Usually you need to hit F1,F2 or F9) and look for BOOT ORDER. Make sure USB Disk has the top priority.
Now restart.]
Step 3: By now you should be on the desktop of Parted OS. Look for the file manager on desktop. And in the left pane click on the partitions till you find the one that has a WINDOWS folder. Make sure this is your root folder. Go to Windows>System32
Now comes the main step. Find a file named: sethc.exe . Move it from this folder to any other folder. Really any other. Doesn’t matter where. You harldly use this file! Done? Ok next step!
Step 4: Find a file named: cmd.exe , this is the windows dos prompt. Rename it to sethc.exe.
Done? Well then shut the live os! You don’t need it anymore!
Step 5: Remove the pen drive and start your pc. You will boot into your windows PC.
Step 6: At your login screen press the “SHIFT” five times. This will open a black window. Don’t fret!! Its all part of the plan. Type in the following:
Net user “your windows username” *
[use your windows username in the quotes, no quotes though! ]
e.g: If my username is xyx, I would type in: net user xyz *
Done? Great! Your black window should now say: enter password:
That’s it! Just enter anything in here. This will be your new password! Type it in. It wont show anything you type but trust me it is actually typing! Hit “enter”
Type it in again.. Hit “Enter”.
In this tutorial, we will attempt to login past the password screen of a windows pc ( works for XP, vista, 7 and 8) without knowing the actual password. We will utilise the live usb to gain access to our windows system files and modify them so as to use a few other tricks to walk past the windows login screen with ease.
Steps:
Step 1: Prepare a live linux USB drive or a live cd depending on your taste. (Which one we use doesn’t really matter since we will use the live OS to change a few files in our windows OS.)
1.1: Install and run Universal USB Installer on a spare windows machine
1.2: Choose the linux distribution you want to use, depending on the one you have downloaded. In our case we will be using parted magic lite.
1.3: Choose the pen drive you want to utilise in the process. Make sure to click “Format as FAT32”.
1.4: Let the process complete, do not remove the pen drive till the process is complete.
Step 2: Now that you have a bootable Linux OS installed on your USB Stick, we will run the linux OS from this USB.
[On the pc where the password is to be changed, plug in the USB and boot. If your pc is set to boot from USB, you will see a boot options menu. Just click “Enter” and wait for the OS to load.
If your pc is not set to boot from a USB , just go into the BIOS options(check your specific manufacturer for how to do this. Usually you need to hit F1,F2 or F9) and look for BOOT ORDER. Make sure USB Disk has the top priority.
Now restart.]
Step 3: By now you should be on the desktop of Parted OS. Look for the file manager on desktop. And in the left pane click on the partitions till you find the one that has a WINDOWS folder. Make sure this is your root folder. Go to Windows>System32
Now comes the main step. Find a file named: sethc.exe . Move it from this folder to any other folder. Really any other. Doesn’t matter where. You harldly use this file! Done? Ok next step!
Step 4: Find a file named: cmd.exe , this is the windows dos prompt. Rename it to sethc.exe.
Done? Well then shut the live os! You don’t need it anymore!
Step 5: Remove the pen drive and start your pc. You will boot into your windows PC.
Step 6: At your login screen press the “SHIFT” five times. This will open a black window. Don’t fret!! Its all part of the plan. Type in the following:
Net user “your windows username” *
[use your windows username in the quotes, no quotes though! ]
e.g: If my username is xyx, I would type in: net user xyz *
Done? Great! Your black window should now say: enter password:
That’s it! Just enter anything in here. This will be your new password! Type it in. It wont show anything you type but trust me it is actually typing! Hit “enter”
Type it in again.. Hit “Enter”.
Done! Expected more? Sorry to disappoint! Close the black window! Click on your user and type the newly created password..
This method leaves your system vulnerable till you rename the current “sethc.exe” back to “cmd.exe”. You can do it from within windows this time by changing the file permissions for it.
Cheers!
This method leaves your system vulnerable till you rename the current “sethc.exe” back to “cmd.exe”. You can do it from within windows this time by changing the file permissions for it.
Cheers!