Lost and recovered XP administrator password five methods

  
In the process of using Windows XP/2000 operating system, we may lose the administrator password for some reasons, but there is a lot of work to do under the administrator account. How should I recover? Here are a few ways to effectively recover the administrator password.

delete the SAM file



As we all know, Windows 2000 passwords stored in the system where the WinNT \\ System 32 \\ CONFIG (if it is Windows XP, you directory In the SAM file under Windows\\System 32\\Config) (as shown in Figure 1), the SAM file is the account password database file. When we log in to the system, the system will automatically check with the SAM in the Config. If you find that the password and the username and the encrypted data in the SAM file are all consistent, you will log in successfully; if you make a mistake, you cannot log in. In this case, our first method was created - delete the SAM file to recover the password. After

If you are using a FAT32 partition format, you can use the Windows 98 boot disk computer, and then delete the SAM file, restart, this time administrator administrator account has no password, and then you can Log in to the system with the administrator account, and then reset your administrator account password after entering the system.

If NTFS format, then a little more trouble. If you have two operating systems, you can use another operating system that accesses NTFS to boot the computer, or attach the hard disk from disk mode to other computers that recognize NTFS file systems (such as Windows 2000 or Windows XP). Delete the SAM file and restart it.

Using software to find passwords from SAM files

LC4 is a super password cracking tool that can perform password spying cracking from SAM files. For the case where SAM files can be obtained, Choosing it will help us recover the administrator password.


As shown in Figure 2, run LC4 to open a new task, and then click "Import" "Import from SAM file" to open the SAM file to be cracked. At this time, LC4 will automatically analyze This file, and display the user name in the file; then click on "Session" "Begin Audit", you can start cracking the password. If the password is not very complicated, the result will be obtained in a short time.

LC4 is a powerful software, some of its advanced features allow users to customize the strategy and breakpoints break, but has not within the scope of this article, the specific use small talk. However, this method also has its shortcomings. If the password is more complicated, it may take a long time, and this method is no longer effective at this time.

Use screen saver to crack password

We can replace "%systemroot%\\system32logon.scr" with "cmd.exe" or "explorer.exe", and then wait at the system login, After a while, the system will run the "logon.scr" screen saver, because you replaced the screen saver file, so it actually runs "cmd.exe" or "explorer.exe", and is "localsystem" permission, now You can crack the password. The easiest way is to run "net user administrator" in "cmd.exe". After successful, the administrator password is also cleared. If you close "cmd" or "explorer", you can log in with a blank password.

Use software to change password


Passware Kit Enterprise can automatically change the administrator password to 12345, restart the system, log in with this account, and then in the "Control Panel" "Users, then re-edit the administrator password.

Passware Kit Enterprise can retrieve lost or forgotten passwords for various office application files, including Excel, Word
, Windows 2003/XP/2K/NT, Lotus Notes, RAR, WinZip Access, Outlook, Acrobat, Quicken, QuickBooks, Word
Perfect, and VB
A, we only need to use the Windows KEY function here.

After the Windows KEY is running, the main interface is as shown in Figure 3. Put a blank floppy disk in the floppy disk drive (Note: it must be a blank floppy disk, otherwise it can not continue), generate a password to restore the system administrator. Disk, which has a total of 3 files, respectively Txtsetup.oem, Winkey.sys and Winkey.inf, a total of 417KB. Now start the computer with the Windows XP installation CD. Press F6 during the boot process to make the system use a third-party driver. At this point, putting the floppy disk will automatically jump to the Windows KEY interface. At this time, it will forcibly change the password of the administrator to "12345". When you reboot, you will be asked to change your password again.

Using a script to recover Windows XP user passwords

Windows XP startup scripts are batch files that are run before the computer appears on the login screen. It functions like Windows 9x and DOS
. With this feature, you can write a batch file to reset the user password and add it to the startup script, thus achieving the purpose of recovering the password. The following are the specific steps (assuming the system directory is C:\\Windows):

Start the computer with the Windows 98 boot disk, write a batch file a.bat that can recover the password, the content only needs a "net user" The command is fine. For example, "Net user guozy 123456", this command means to set the password of user guozy to "123456". Then save the file a.bat to "C:\\Windows\\system32\\GroupPolicy\\Machine\\Scripts\\Startup". Write a startup/shutdown script configuration file scripts.ini. This file name is fixed and cannot be changed. The content is as follows:

[Startup]

0CmdLine=a.bat

0Parameters=

Save the file scripts.ini to "C:\\winnt\\ Under system32\\GroupPolicy\\Machine\\Scripts". The scripts.ini holds the setup data for the computer startup/shutdown script. The file content usually contains two data segments: [Startup] and [Shutdown]. The [Startup] data segment is the startup script configuration, and the [Shutdown] data segment is the shutdown script configuration. Each script entry is divided into two parts: the script name and the script parameter. The script name is saved under the XCmdLine keyword, and the parameter is saved under the XParameters keyword. Here, X represents the script sequence number starting from 0 to distinguish multiple script entries and flags. The order in which each script entry runs.

Remove the Windows 98 startup disk, restart the computer, wait for startup scripts to run. After the startup script finishes running, the user guozy password is restored to "123456". After the merge login is successful, delete the two files created in the above steps.

Copyright © Windows knowledge All Rights Reserved