Tuesday, July 8, 2008

Make a "backdoor" logon in Vista !!!

Make a "backdoor" logon in Vista
[Vista tips]
* This back door hack uses the "ease of access" menu which anyone can access from the logon screen. The exploit is to replace the magnifier, "magnify.exe" with "cmd.exe". First, you need to take ownership of the file "magnify.exe", which is in your system32 folder. Next, rename magnify.exe to "magnifyold.exe". Now, create a new folder called "ease", and copy CMD.exe into this folder. Now, rename \Ease\cmd.exe to "magnify.exe", and copy that folder into system32 so that you have the path Windows\systems32\magnify.exe, whereas magnify.exe is really \ease\cmd.exe. Reboot, and at the Vista logon screen click on "ease of access". Check "make items on the screen larger", and you should find yourself at the Cmd prompt. You now have pretty much limitless control from here, and you can then exploit regedit to change your password, in case you ever forget it. Also, because explorer.exe doesn't load, you can use this to help solve explorer.exe corruption or "death loop" problems, as described several sections down.

0 comments: