> For the complete documentation index, see [llms.txt](https://n3r.gitbook.io/6e3372/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://n3r.gitbook.io/6e3372/ctf-writeups/junior-crypt-ctf-2024/forensics/admin-rights.md).

# Admin Rights

<figure><img src="https://3637584725-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fvd4Xli3FqNh4SrZDWim8%2Fuploads%2FrhgT6vX3lDcGckX1UuuC%2Fimage.png?alt=media&amp;token=33bfb620-6cda-4350-9d8d-5c6db75515be" alt=""><figcaption></figcaption></figure>

***

### Solution

File given is a windows registry file

<figure><img src="https://3637584725-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fvd4Xli3FqNh4SrZDWim8%2Fuploads%2Fg871ucZ2gdvAzi8fztcF%2Fimage.png?alt=media&amp;token=aee96a42-4812-4edd-91b3-b07e6cf93132" alt=""><figcaption></figcaption></figure>

For this challenge, i use `chntpw` to list out all the user and its role with command `chntpw -l <filename>`&#x20;

We can see that user\_7565 has the role admin.

<figure><img src="https://3637584725-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fvd4Xli3FqNh4SrZDWim8%2Fuploads%2FQTjnR9oHZiF0Ynws349o%2Fimage.png?alt=media&amp;token=058ee939-eeef-442c-857c-b269224a2dbf" alt=""><figcaption></figcaption></figure>

***

### Flag

grodno{user\_7565}
