To offline enable the built-in administrator account, follow these steps:
- Load the SAM Registry hive with regedit as described in my post about the offline Registry editor.
- Navigate to HKLM\%your_key_name%\SAM\Domains\Accounts\Users\Names\.
- Click “Administrator” and note the value in the type column.
- Navigate to HKLM\%your_key_name%\SAM\Domains\Accounts\Users\.
- Use the type value you noted before to locate the Registry key of the administrator account (see screenshot).
- Edit the F entry of the administrator key and navigate to the 0038 position.
- If the built-in administrator account is disabled, the value of this position is “11″; replace it with “10″. NOTE: Make sure to edit the correct position because editing binary values in the Registry is a bit tricky: Move the cursor to the beginning of position 0038, press “DEL,” and then type “10″.
- Click %your_key_name% and then unload the hive through the corresponding menu point in the File menu.
Note that you can also use this procedure to offline enable other accounts with administrator privileges. In this case, the value at position 0038 will be “15″ if the account is disabled; replace it with”14″ to enable the account.
Pass your Comments
No comments:
Post a Comment