Solved

Copy cached Xp password from one PC to another

Posted on 2010-09-15
7
503 Views
Last Modified: 2012-05-10
Hi folks

I have two Windows Xp machines. My account on both machines used to have identical passwords, connected to a domain. I access the network via VPN.

I changed the password on one of the machines (and this change has obviously rolled through Active Directory). Now the other can't connect correctly to the domain. I can still log in to the machine, but when I VPN in it appears to connect but I get messages to lock and unlock the computer. I've done this several times but no luck.

How do I copy the cached password from the one to the other?
0
Comment
Question by:RogerIvy
7 Comments
 
LVL 10

Expert Comment

by:jorlando66
Comment Utility
You can't copy cached passwords.  You may be able to copy the security reg hive from one machine to the other but you would still need to access the registry on the machine you are locked out of.  Try downloading one of the many XP password reset disks out there so you can get into the locked machine.  Then log onto the vpn with your new password.
0
 

Author Comment

by:RogerIvy
Comment Utility
I can access the registry on both machines, does this help?
0
 
LVL 31

Assisted Solution

by:DrUltima
DrUltima earned 166 total points
Comment Utility
No... It is hashed.  You just cannot copy cached passwords...  To sync your password, you have to physically connect to the domain BEFORE you log in.  Set your VPN to authenticate before your AD does, if you can do that, or take your machine to a place where you can physically connect.

Justin
0
IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

 
LVL 22

Assisted Solution

by:Adam Leinss
Adam Leinss earned 166 total points
Comment Utility
You can try exporting HKLM\Security\Cache from one laptop to another.  You will need to run regedit under the account SYSTEM since the SYSTEM account is the owner of this key.  You can do this by using psexec from the Sysinternals PSTOOLS suite:
psexec -s -i regedit.exe
But I wouldn't recommend it...Microsoft goes out of their way to lock you out of this specific registry branch.  You can't just log in as an Administrator and open the key...you have to impersonate yourself as SYSTEM.
0
 
LVL 10

Accepted Solution

by:
jorlando66 earned 168 total points
Comment Utility
You can log into the vpn before logon by selecting "logon using dial up networking"  Log into the vpn with your correct password and it will auth you into the domain. Or bring the machine into the office and log in there.  I have copied security hives in old versions of windows (98, original XP and 2000 server with some success but have also hosed a machine or two along the way.  Best bet is the vpn or physically bringing the box into the office.
0
 
LVL 31

Expert Comment

by:DrUltima
Comment Utility
I have no objections to that resolution.
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
Never store passwords in plain text or just their hash: it seems a no-brainier, but there are still plenty of people doing that. I present the why and how on this subject, offering my own real life solution that you can implement right away, bringin…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

14 Experts available now in Live!

Get 1:1 Help Now