Hello
Based on the scenario you described, there is unfortunately no supported Microsoft method to directly unlock a local account offline while Windows is not running. If the account lockout policy is configured with a lockout duration, the account should automatically become available once that duration expires; however, if the policy is configured to require an administrator to unlock the account, access becomes difficult when no other administrative account exists.
Regarding the command net user administrator /active:yes, this command can enable the built-in Administrator account, but it must be executed from an operating system environment that has access to the local Security Accounts Manager (SAM) database. In practice, whether this helps depends on the current state of the built-in Administrator account and the recovery options available to you.
Since there are no additional administrator accounts, no usable backups, and no snapshots, the recommended approach is to first verify the local account lockout policy settings and determine whether the built-in Administrator account can be accessed through supported recovery procedures. This offers the best chance of regaining administrative access while preserving the server's existing applications, data, and configuration.
Before making any recovery changes, I strongly recommend creating a full backup or a copy of the virtual machine files at the VMware level to ensure the current state can be preserved if further recovery steps are required.
. If you find this answer helpful, please click "Accept Answer" so that other administrators facing a similar situation can benefit from it as well.
Jason