Re: Hack Attempt on Windows 2003 AD Native

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: stuartm (stuart.maxwell_at_gmail.com)
Date: 11/25/04


Date: Thu, 25 Nov 2004 15:02:00 +1300

The admin account's SID always ends with 500 so it's easy to spot. There
is also a registry key which can be set which prevents enumerating the
SID, but I can't find it at the moment - perhaps someone else could post it?

S.

on 25/11/2004 6:18 a.m. Herb Martin said the following:
> The Admin account is a well-known SID and so the renaming
> (which we all do anyway) is not really a significant security
> step (except against the naive hacker who depends on the name.)
>



Relevant Pages

  • Re: Hack Attempt on Windows 2003 AD Native
    ... > The admin account's SID always ends with 500 so it's easy to spot. ... There> is also a registry key which can be set which prevents enumerating the> SID, but I can't find it at the moment - perhaps someone else could post it? ...
    (microsoft.public.win2000.active_directory)
  • Re: Hack Attempt on Windows 2003 AD Native
    ... > The admin account's SID always ends with 500 so it's easy to spot. ... There> is also a registry key which can be set which prevents enumerating the> SID, but I can't find it at the moment - perhaps someone else could post it? ...
    (microsoft.public.windows.server.active_directory)
  • Re: Administrator umbenennen
    ... Der vordefinierte Admin lässt sich nicht ernsthaft ... SID, denn der SID des Admin endet immer auf -500. ... komplexe Passwörter ...
    (microsoft.public.de.german.win2000.gruppen_richtlinien)
  • Re: stop "about:blank" from opening a new window.
    ... MS MVP-Windows (IE, OE, Security, Shell/User) ... AumHa VSOP & Admin; DTS-L.org ... sid wrote: ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: Check SID for GROUP membership
    ... client SID is direct match - no problem. ... group or admin stated allowed ... the client SID to get its _direct_ group memberships only ...
    (microsoft.public.win2000.security)