How to Change a Windows User Password Using Backtrack

Boot Backtrack 4 in your computer., Once Backtrack is done loading and the select menu is visible, pick "Start Backtrack Frame Buffer (1024X768)". , Once you're allowed to type in commands, type in "startx". , Once the GUI is visible, go to...

21 Steps 1 min read Advanced

Step-by-Step Guide

  1. Step 1: Boot Backtrack 4 in your computer.

    (If it shows error "No such files or directory" check correct path to Chntpw executable in File manager). , We will first mount the windows partition first, so that we can access windows directory. ,, (Note:
    Windows path should be case sensitive).

    This will load SAM in chntpw. , "Edit user data and passwords".

    It will display all username of Windows partition. ,, You can also type in 2 to edit it. , "To unlock account" and press Enter.

    This will unlock the account and enable it for using. , and press Enter to return to main menu of chntpw. ,, Type "y" and press Enter to Write hive files. , Logout and Close Backtrack 4 and restart Windows!
  2. Step 2: Once Backtrack is done loading and the select menu is visible

  3. Step 3: pick "Start Backtrack Frame Buffer (1024X768)".

  4. Step 4: Once you're allowed to type in commands

  5. Step 5: type in "startx".

  6. Step 6: Once the GUI is visible

  7. Step 7: go to start(Lower-left corner) Backtrack >> Privilege Escalation >> PasswordAttacks >> Chntpw

  8. Step 8: opening the Chntpw terminal.

  9. Step 9: Now inside backtrack

  10. Step 10: you need to find the file path to a file called SAM

  11. Step 11: usually under 'Windows/System32/config/SAM'.

  12. Step 12: Type in the following commands in shell console "mkdir /mnt/sda1" and press Enter Type again "mount -t ntfs /dev/sda1 /mnt/sda1" and press Enter.

  13. Step 13: Now in the shell console type in "/pentest/passwords" Example in this case: "/pentest/passwords//chntpw/chntpw -i /Windows/System32/config/SAM".

  14. Step 14: Type in 1.

  15. Step 15: Type in the username of the Windows account you want to change the password in.

  16. Step 16: Type in 1 to clear the password and press Enter.

  17. Step 17: Once done

  18. Step 18: type in the username of the Windows account you changed or cleared the password on and Type in 4.

  19. Step 19: Type in "!"

  20. Step 20: Type in"q" and press Enter to quit chntpw.

  21. Step 21: Chntpw will confirm about the changes you made to SAM.

Detailed Guide

(If it shows error "No such files or directory" check correct path to Chntpw executable in File manager). , We will first mount the windows partition first, so that we can access windows directory. ,, (Note:
Windows path should be case sensitive).

This will load SAM in chntpw. , "Edit user data and passwords".

It will display all username of Windows partition. ,, You can also type in 2 to edit it. , "To unlock account" and press Enter.

This will unlock the account and enable it for using. , and press Enter to return to main menu of chntpw. ,, Type "y" and press Enter to Write hive files. , Logout and Close Backtrack 4 and restart Windows!

About the Author

J

Judy Vasquez

Specializes in breaking down complex home improvement topics into simple steps.

45 articles
View all articles

Rate This Guide

--
Loading...
5
0
4
0
3
0
2
0
1
0

How helpful was this guide? Click to rate: