<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-15591336.post6093469572428187680..comments</id><updated>2011-09-02T16:31:43.409+01:00</updated><category term='Personal'/><category term='Vista'/><category term='Windows 2003'/><category term='Webspace'/><category term='Common Questions'/><category term='Microsoft'/><category term='DNS'/><category term='Powershell'/><category term='Email'/><category term='DST Issue'/><category term='Exchange'/><category term='Idle Ramblings'/><category term='NTP'/><category term='Windows 2000'/><category term='Amazon'/><category term='Objectives'/><category term='Cisco'/><category term='Windows'/><category term='TCP/IP'/><category term='Security'/><category term='DR'/><category term='1 and 1'/><category term='Processes'/><category term='Politics'/><category term='Hosting'/><category term='Blackberry'/><category term='War Stories'/><category term='Projects'/><category term='hiberfil.sys'/><category term='gradwell'/><category term='Networking'/><category term='Links'/><category term='DRM'/><category term='Administrivia'/><category term='Change Control'/><category term='Friday Rants'/><category term='Windows 2008'/><category term='Storage'/><category term='EC2'/><category term='Document Management'/><category term='E61'/><category term='Automation'/><category term='Cloud computing'/><category term='Technical'/><category term='VMWare'/><category term='Sharepoint 2007'/><category term='Project Management'/><category term='rackspace'/><category term='Office'/><category term='Windows Mobile SDK'/><category term='Troubleshooting'/><category term='NetApp'/><category term='Photography'/><category term='Lock Picking'/><category term='Tips'/><category term='2007'/><category term='commentary'/><category term='Symbian'/><category term='Desktops'/><category term='MMMUG'/><category term='NT4'/><category term='Openfiler'/><category term='ITIL'/><category term='DST Patch'/><category term='Knowledge'/><category term='Infosec'/><category term='Active Directory'/><category term='Technet'/><category term='Linux'/><category term='GPO'/><category term='Anti-Virus'/><category term='search'/><category term='Tools'/><category term='Process'/><category term='Friday Fun'/><category term='Hardening'/><category term='Disaster Recovery'/><category term='Training'/><category term='DHCP'/><category term='MBR'/><title type='text'>Comments on Ramblings of a Sysadmin: Renaming local administrator accounts - good or ba...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://blog.gdwnet.com/feeds/6093469572428187680/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15591336/6093469572428187680/comments/default'/><link rel='alternate' type='text/html' href='http://blog.gdwnet.com/2011/04/renaming-local-administrator-accounts.html'/><author><name>Gary Williams</name><uri>http://www.blogger.com/profile/10034475611283036532</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='28' height='32' src='http://2.bp.blogspot.com/-d9Mwvx48dgc/TvEEoqUg41I/AAAAAAAAAEM/pHFNFa1DZKU/s1600/gary.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-15591336.post-2118941765826037685</id><published>2011-04-20T13:46:05.460+01:00</published><updated>2011-04-20T13:46:05.460+01:00</updated><title type='text'>This is true when you have physical access to the ...</title><summary type='text'>This is true when you have physical access to the target machine, or access with enough privileges to read the usernames/SAM file. If you don&amp;#39;t and you&amp;#39;re just trying to bruteforce the admin account without any knowledge of it, then knowing the admin account name is a starting point. If you don&amp;#39;t know this and can&amp;#39;t find it out, then a renamed admin account does provide a bit </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15591336/6093469572428187680/comments/default/2118941765826037685'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15591336/6093469572428187680/comments/default/2118941765826037685'/><link rel='alternate' type='text/html' href='http://blog.gdwnet.com/2011/04/renaming-local-administrator-accounts.html?showComment=1303303565460#c2118941765826037685' title=''/><author><name>agentgonzo</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.gdwnet.com/2011/04/renaming-local-administrator-accounts.html' ref='tag:blogger.com,1999:blog-15591336.post-6093469572428187680' source='http://www.blogger.com/feeds/15591336/posts/default/6093469572428187680' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-836040723'/></entry><entry><id>tag:blogger.com,1999:blog-15591336.post-8027696071751540296</id><published>2011-04-20T13:43:27.024+01:00</published><updated>2011-04-20T13:43:27.024+01:00</updated><title type='text'>Yes, but all this assumes that you have physical a...</title><summary type='text'>Yes, but all this assumes that you have physical access to the machine or are logged on to it and have sufficient privileges to read the SAM file. If you don&amp;#39;t and you&amp;#39;re just trying to brute-force the admin account over the network or logging on, then the default name &amp;quot;Administrator&amp;quot; will give them a head-start as opposed to a renamed one. It doesn&amp;#39;t provide much security, </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15591336/6093469572428187680/comments/default/8027696071751540296'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15591336/6093469572428187680/comments/default/8027696071751540296'/><link rel='alternate' type='text/html' href='http://blog.gdwnet.com/2011/04/renaming-local-administrator-accounts.html?showComment=1303303407024#c8027696071751540296' title=''/><author><name>agentgonzo</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.gdwnet.com/2011/04/renaming-local-administrator-accounts.html' ref='tag:blogger.com,1999:blog-15591336.post-6093469572428187680' source='http://www.blogger.com/feeds/15591336/posts/default/6093469572428187680' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-836040723'/></entry></feed>
