W
Will
I'm trying to bring together information about how to recover an
administrator login to a member server and to a domain controller, for
Windows 2000 and Windows 2003 / XP. I see at least three problem
conditions I want to understand if there is a way to recover from:
1) Built-In Administrator Account Password Forgotten
This can be fixed by booting the Windows installation CD and using a special
device driver that is written by Mirider http://www.mirider.com named NT
Access.
Sunbelt Software sells it for $70
http://www.sunbelt-software.com/NTAccess.cfm
Plan on spending a few days though to build a bootable CD that uses it.
2) Administrator in Deny Login Locally Privilege
What if the Built In Administrator account has been placed into the Deny
Login Locally group. This prevents you from logging in for that account
even when you know the password!!
For this case you would need the NTRIGHTS program that comes with the NT
Resource Toolkit. However you would need to find a way to run this in the
SYSTEM context since the local admin is locked out.
Anyone have ideas on how to do that?
3) Administrator Account Permanently Disabled
Microsoft recommends disabling the built-in Administrator account on a
Windows 2003 DC, so finding a way to recover from that state is what I want.
This assumes some emergency that makes the Domain Admins in AD not
available.
I imagine 2) and 3) above could be solved by a program similar to the one I
describe for 1) above. Probably hackers have such tools, but I don't want
to be downloading questionable software written by hackers. Is there a
commercial solution?
Are there other lockout situations I should be aware of?
administrator login to a member server and to a domain controller, for
Windows 2000 and Windows 2003 / XP. I see at least three problem
conditions I want to understand if there is a way to recover from:
1) Built-In Administrator Account Password Forgotten
This can be fixed by booting the Windows installation CD and using a special
device driver that is written by Mirider http://www.mirider.com named NT
Access.
Sunbelt Software sells it for $70
http://www.sunbelt-software.com/NTAccess.cfm
Plan on spending a few days though to build a bootable CD that uses it.
2) Administrator in Deny Login Locally Privilege
What if the Built In Administrator account has been placed into the Deny
Login Locally group. This prevents you from logging in for that account
even when you know the password!!
For this case you would need the NTRIGHTS program that comes with the NT
Resource Toolkit. However you would need to find a way to run this in the
SYSTEM context since the local admin is locked out.
Anyone have ideas on how to do that?
3) Administrator Account Permanently Disabled
Microsoft recommends disabling the built-in Administrator account on a
Windows 2003 DC, so finding a way to recover from that state is what I want.
This assumes some emergency that makes the Domain Admins in AD not
available.
I imagine 2) and 3) above could be solved by a program similar to the one I
describe for 1) above. Probably hackers have such tools, but I don't want
to be downloading questionable software written by hackers. Is there a
commercial solution?
Are there other lockout situations I should be aware of?