Register
Results 1 to 6 of 6
  1. #1
    Administrator
    Devilfish's Avatar
    Join Date
    Feb 2008
    Location
    /cdk
    Posts
    7,845
    Thanks Thanks Given 
    71
    Thanks Thanks Received 
    2,573
    Thanked in
    204 Posts

    Default How to get SYSTEM privilages in Windows

    If you open your task manager (ctrl + alt + del) and look at the processes, you will notice that different processes are being run by different users. Some of these processes will be the user you are logged in as, some are local services, network services, and some are run by the system. Now try ending a process run by the system? You will get an error saying access denied. What does this mean? It means that even though you may be admin, you are not the most privileged user on your computer, the system is. Once we become the system, we will be able to access ANY folder, registry entry, etc, but you will be also be able to kill any system task which can be antivirus, VNC, deepfreeze, etc.

    How do we do it?
    Alright, the windows task manager ends programs and processes, but what most people don?t know is that it can also start them. It starts the new processes under the user who it is being run by. You can see this by looking at the taskmgr.exe process; it is being run by you. So in order to start processes as system we must start the task manager as system, and once we do that we can start a new explorer.exe process which will give us full access to ANYTHING. In order to start the task manager under system we must use the windows scheduler. The scheduler is a built in windows program that allows you to run any program at any time.

    1. Hit Start -> Run
    2. Type ?at XX:XX /interactive taskmgr? in the box (without the quotes) where XX:XX is the time one minute ahead of the clock, but in military time. So lets say that it is 4:15 pm. You would type 16:16
    3. When 4:16 comes around the task manager will open. What is different? it is now being run by the system, you can check this in the process tab.
    4. Kill the explorer process
    5. Click File -> New Task and in the box type explorer.exe
    6. Your windows should now start loading up again
    7. Once it does, look at the user who is logged in at the start menu? SYSTEM? look at explorer.exe in the task manager.. SYSTEM

    You now have full access to the computer to do whatever the hell you want.
    Get Digital Kaos on your Apple or Android device with Tapatalk

  2. #2
    Newbie
    Join Date
    Apr 2008
    Posts
    10
    Thanks Thanks Given 
    0
    Thanks Thanks Received 
    0
    Thanked in
    0 Posts

    Default good job

    work well with xp..tried and tested

  3. #3
    Newbie
    Join Date
    Apr 2008
    Posts
    4
    Thanks Thanks Given 
    0
    Thanks Thanks Received 
    0
    Thanked in
    0 Posts

    Default

    hmm, you learn something new everyday. cheers for that.

  4. #4
    V.I.P. Member
    violentj's Avatar
    Join Date
    Mar 2008
    Location
    in a house
    Posts
    134
    Thanks Thanks Given 
    16
    Thanks Thanks Received 
    1
    Thanked in
    1 Post

    Default

    thanks kaos,ive finally managed to delete the last dregs of a previous install with this cheers

  5. #5
    Newbie
    Join Date
    May 2008
    Posts
    16
    Thanks Thanks Given 
    0
    Thanks Thanks Received 
    0
    Thanked in
    0 Posts

    Default very good

    very good just tried and worked thanks

  6. #6
    V.I.P. Member gizmo.1484's Avatar
    Join Date
    Apr 2008
    Location
    WestYorkshire
    Posts
    873
    Thanks Thanks Given 
    5
    Thanks Thanks Received 
    1
    Thanked in
    1 Post

    Post

    Quote Originally Posted by Devilfish View Post
    If you open your task manager (ctrl + alt + del) and look at the processes, you will notice that different processes are being run by different users. Some of these processes will be the user you are logged in as, some are local services, network services, and some are run by the system. Now try ending a process run by the system? You will get an error saying access denied. What does this mean? It means that even though you may be admin, you are not the most privileged user on your computer, the system is. Once we become the system, we will be able to access ANY folder, registry entry, etc, but you will be also be able to kill any system task which can be antivirus, VNC, deepfreeze, etc.

    How do we do it?
    Alright, the windows task manager ends programs and processes, but what most people don?t know is that it can also start them. It starts the new processes under the user who it is being run by. You can see this by looking at the taskmgr.exe process; it is being run by you. So in order to start processes as system we must start the task manager as system, and once we do that we can start a new explorer.exe process which will give us full access to ANYTHING. In order to start the task manager under system we must use the windows scheduler. The scheduler is a built in windows program that allows you to run any program at any time.

    1. Hit Start -> Run
    2. Type ?at XX:XX /interactive taskmgr? in the box (without the quotes) where XX:XX is the time one minute ahead of the clock, but in military time. So lets say that it is 4:15 pm. You would type 16:16
    3. When 4:16 comes around the task manager will open. What is different? it is now being run by the system, you can check this in the process tab.
    4. Kill the explorer process
    5. Click File -> New Task and in the box type explorer.exe
    6. Your windows should now start loading up again
    7. Once it does, look at the user who is logged in at the start menu? SYSTEM? look at explorer.exe in the task manager.. SYSTEM

    You now have full access to the computer to do whatever the hell you want.
    Just tried this as i needed to delete something but now my pc is running really slow when i start it up. Would this cause my pc to run slow on start up or could it be something else?

 

 

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
This website uses cookies
We use cookies to store session information to facilitate remembering your login information, to allow you to save website preferences, to personalise content and ads, to provide social media features and to analyse our traffic. We also share information about your use of our site with our social media, advertising and analytics partners.