Friday 18 January 2013

Bypass & Change Windows Account Password On Logon Screen Using Command Prompt

This is basically well known as "sethc hack". Ya you can say this. It is very common and easy trick to bypass Windows Account Security By the way I am writing this post because many people often find difficulties during this trick. Let check this out I hope they will not have any problem regarding this in future.(And for MICROSOFT buddies this is educational purpose only).
1. Firstly you should know What is sethc.exe?
Ans: Not technically it could be defined as If 'swetty' presses shift key for the 5 times repeatedly she will see a pop up that is sethc execution.

2. Now we know when Windows logon screen comes all utilities, cmd are available but if you want to execute anything you have to know the account's passwords.
OK wanna check this out?? Check..........

Press shift key on the logon screen you will see the pop up as--------



3. So here it comes if you replace sethc.exe with command prompt i.e. cmd.exe you can easily bypass the security. In this process you will not be able to know the password but you can set up a blank password or a password then your friend can't access his/her own computer or people can use this as password recovery technique. How can you do this I will explain later in this post.

4. First copy cmd.exe.(It can be found in c:\windows\system32) into any other location.

5. Now rename it to sethc.exe.

6. Here comes the part where many people using Windows 7 finds "Not Working Process/Fake Process OR bla bla bla". So here it is..... In Microsoft XP there is no UAC Control but In Windows 7 Microsoft included a feature UAC. Firstly you should disable UAC.
How To Disable UAC?
Ans: Go to control panel, view by large/small icon look left corner open action centre again look left side third point 'change UAC settings' low down the METER and Hit OK. You are done. Restart your PC.

7. Now back to work. Go to c:\windows\system32 (Here c:\ means system drive) find sethc.exe. Right click on it Select Properties Goto Security Tab then click Advanced. Select owner TAB click EDIT select your account hit OK. Then in same Dialogue box you will find permission TAB. There select your account change permission to FULL CONTROL hit OK OK OK... Now its ok..
.
8. Move sethc.exe to any folder for future use.

9. Copy the renamed cmd.exe as sethc.exe to c:\windows\system32 and will be through the preparation process.

10. Now comes the technical thing how will you change user account?
Ans: Press shift key 5 times cmd window will open with administrators.

Firstly type NET USER command in the command prompt. It will show you the user accounts in your computer. As I did.(See the picture)


11. Now, Which account you wanna access use the name.. i.e. Type NET USER name * and hit enter(here is a space between name and *). Then type a password will open. Simplly ENTER ENTER to set a blank password or type a password and again confirm that(But you can't see what you are typing). You are done (The command completed successfully).

12. Practice this thing first. Then you try on Windows Logon Screen. It will be done if you did the right way.

By the way there are more process to crack, bypass, hack Windows Security. Will tell you later. :)