Ritesh’s Technical Blog

Archive for the ‘Hacking Articles’ Category

Before I begin this Tutorial a small introduction of System User for those who don’t know what is a system user. In windows XP there are basically 4 users, differntiated based on their privilegs, they are

  • System
  • Administrator
  • Limited User, and
  • Guest

System user has got the top privileges in all the users.

 

Whenever you open taskmanager (CTRL+ALT+DEL) you get a long list of processes running on it.

As you can see that a lot of processses are running with user name System.

Most System processes are required by the operating system, and cannot be closed, even by an Administrator account. Attempting to close them will result in a error message, and even a forceful attempt to close ant System User run process may even let your system to shutdown.

So here is the tutorial showing how you can get privilegs of System user (Under normal condition You can not log into system account).

 

Before doing any hting please make sure that you are logged in as Administrator

  •  Go to command prompt and type this command

                 C:\> at “time” /interactive “cmd.exe”
                 Eg :          C:\> at 13:11 /interactive “cmd.exe”

                This will open a new command prompt at 13:11.

  •  When the system clock reaches the time you set, then a new command prompt will run. The difference is that this one is running with system privileges (because it was started by the task scheduler service, which runs under the Local System account).
  • In this command prompt You’ll notice that the title bar has changed from cmd.exe to svchost.exe 
  • Now go to task manager and end the process titled “explorer.exe”
  • Close the old command prompt…
  • At the system command prompt, enter in the following: explorer.exe and hit enter
  • Now its done, Go to Start and check whether you are logged in as Administrator or System user.

FIX: Open the services control panel (Start > Run > services.msc) and disable the Task Scheduler service.

Download our free tools bar to get latest update without even visiting our website.

untitled

Download it from here

Advertisements

C. My Computer

1. Remove Shared Documents and My Documents Folder
both

2. Prevent access to certain drive
3. Remove Shared Folder
4. Add Recycle Bin in My computer
5. Hide drives in my Computer
6. Remove properties option from my computer
7. Invisible Folder and Drive
8. Remove Compression Option In Disk Cleanup


Answers


1. Remove Shared Documents and My Documents Folder
both

Want to remove Shared Documents and My Documents folder from My Computer here is the way how you can get rid of it.
1. Open Regedit. (type Regedit in RUN dialog box)
2. Navigate to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVe
rsion\Explorer\MyComputer\NameSpace\DelegateFolders

3. And delete the subkey
{59031a47-3f72-44a7-89c5-5595fe6b30ee}

Hate editing Registry so here’s a simple and clean way
1. Open Group Policy Editor. (Type gpedit.msc in RUN dialog box)
2. Navigate to User Configuration>Administrative Templates>Windows
Components> Windows Explorer.

3. On the right pane double click on option Remove Shared Documents folder
from My Computer and Enable it.


2. Prevent access to certain drive

This is an ultimate restriction if you want that no one access you’re hard drives accept you than it is what you are looking for. This tweak will disable access to your drives even their contents are not visible by using dir command or by using search.
Navigate to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Polici es\Explorer
And to
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\
Policies \Explorer

Here create a new DWORD named NoViewOnDrive and set its value to 4(in dec) if you want to restrict your C drive.

For restricting other drives set the value accordingly

A 1
B 2
C 4
D 8
E 16
F 32
G 64
H 128
I 256
J 512
K 1024
L 2048
M 4096
N 8192
0 16384
P 32768
Q 65536
R 131072
S 262144
T 524288
U 1048576
V 2097152
W 4194304
X 8388608
Y 16777216
Z 33554432
ALL DRIVES 67108863

FOR EG: To hide drive C and D, you would add 4(for C) and 8(for D) which would be 12 and then set the value of NoViewOnDrive to 12 in order to restrict drives C and D.

Or

Go to
User Configuration> Administrative Template> Windows Component> WindowsExplorer

And double click on Prevent access to drives from My Computer and Enable it and select the drives you want to prevent


3. Remove Shared Folder

To remove the Shared Documents folder follow the given steps
1. Open Regedit. (Type Regedit in RUN dialog box)
2. Navigate to
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\E
xplorer

3. On right pane create a Binary value named NoSharedDocuments and set its
value to 1, to revert back just delete the key


4. Add Recycle Bin in My computer

To add recycle bin in My Computer go to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\MyComputer\NameSpace

Create a subkey named {645FF040-5081-101B-9F08-00AA002F954E} under NameSpace

Complete path would like this

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\MyComputer\NameSpace\ {645FF040-5081-101B-9F08-
00AA002F954E}

And you will have Recycle Bin in you’re my Computer


5. Hide drives in my Computer

To hide drives in My Computer navigate through

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer

And create a DWORD and name it NoDrives and give it value 03ffffff (in hex)

To revert back, just delete the following DWORD created.


6. Remove properties option from my
computer

This tweak hides the system properties screen and remove the properties option from my computer.
Navigate to

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
And to
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer

Create a new DWORD value in both locations called NoPropertiesMyComputer.
Set its value to 1 to hide the properties option.


7. Invisible Folder and Drive

Yes, it is possible to create invisible drives that remain there only but nobody can see it.

The idea of creating this invisible drive struck my mind when I came to knew how to create an invisible folder. So I must first tell you how to create an invisible folder. To create invisible folders first create a folder say “Ritesh”. Now right click on the folder and select Rename.

Now while pressing ALT click 0160 (ALT+0+1+6+0) and hit enter. You will get a folder with no name. So our half process is done now you need to hide the folder to hide it right click the folder and click on

Properties > customize > change icon

Now look for an empty space in the change icon dialog box and click on it and then click ok.
Now you are done!

You will have an invisible folder.

So you have created an invisible folder. Now, after creating invisible folder the idea of making
invisible hard drive is quite simple
The only 2 problem are that
1. How to change drive icons.
2. How to remove drive letters.

First, rename the drive that you want to hide by the method given above for folders. Then follow
these steps
1. To change drive icons navigate to
HKLM > Software > Microsoft > Windows > CurrentVersion > Explorer
Create a new key DriveIcons

In this key again create a key named C (Drive letter of the drive which you want to hide)
In this key again create a key name it DefaultIcon

Now the path will be

HKLM > Software > Microsoft > Windows > CurrentVersion > Explorer> DriveIcons > C> DefaultIcon

On the right pane you will find a string named Default double click the string and enter the full path of the blank icon in it which is
%SystemRoot%\system32\SHELL32.dll,50
This is the path of blank icon.

2. Now we have hided the drive icon now to hide drive letter from appearing navigate to

HKLM > Software > Microsoft > Windows > CurrentVersion > Explorer

Now on the right pane create a DWORD name it ShowDriveLettersFirst and give it the value 2
in DECIMAL

Now Logoff/Logon your system to see the changes you have made.


8. Remove Compression Option In Disk Cleanup

Go to-
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Compress old files

Delete the Default Value Key and the next time you start Disk Cleanup, it will skip
the compression analysis


NOTE:

Download our free tools bar to get latest update without even visiting our website.

untitled

Download it from here

B. Folders

1. Add Command Prompt Option to Every
Folder

2. Folder Pictures in Thunbnail View
3. Thumbnail size and Quality
4. Customize “New Folder” and “New Shortcut” Text
5. Locking every Folder
6. Disable the Folder Option menu
7. Windows forgets your Folder settings
8. Add copy to/Move to at right click
9. Disable Thumbnail caching
10. Locking a particular folder
11. Invisible Folder
12. ZIP files are not Folders
13. Applying Background to any folder
14. Remove shortcut arrow
15. WIN+E single pane
16. Add copy to/Move to at right click
17. Disable Thumbnail caching


Answers


1. Add Command Prompt Option to Every
Folder

To add Command Prompt Option to every folder right click menu do the following
1. Open Regedit. (type Regedit in RUN dialog box)
2. Navigate to HKEY_CLASSES_ROOT\Directory\shell
3. Create a key named Command under shell
4. So that the path would be
HKEY_CLASSES_ROOT\Directory\shell\Command
5. On the right pane double click on default and set its value to Command
Prompt
6. Now create a key named command under Command
7. So that the path would be
HKEY_CLASSES_ROOT\Directory\shell\Command\command
8. On the right pane double click on default and set its value to cmd.exe /k cd%1
Or
just copy paste the following code In notepad and save it as cmd.reg
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Directory\shell\Command]
“”=”Command Prompt”
[HKEY_CLASSES_ROOT\Directory\shell\Command\command]
“”=”cmd.exe /k cd %1”


2. Folder Pictures in Thunbnail View

We all know that images within a folder show up in Thumbnail view of the folder.
You can manually set only one picture to show up by going to
Properties>Customize>Choose Picture.
You can do this by another way also, let say you have a Folder having a lot of
picture to show a picture in thumbnail view just RENAME the PICTURE to
FOLDER.JPG
and you are Done!!!


3. Thumbnail size and Quality

To increase/decrease the thumbnail size and quality just open Regedit and
navigate to
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer
Now create two DWORD value named
ThumbnailSize and ThumbnailQuality and give their value as you wants. I
recommend ThumbnailSize=225 (decimal) and ThumbnailQuality=100 (decimal)


4. Rename New Folder

Whenever you create a new folder or a new shortcut the default name of that folder is “New Folder” or a “New shortcut” in case you created a shortcut.
In this tutorial i will show that how you can change the name of these two entries permanently, so that whenever you create a new folder you will can see your desired text.

What you need?
1. For this tutorial we need a software called Resource hacker which is freely available. Just download the software from here
2. After tweaking your system file you need to replace your system file with your modded file for that download Replacer

How to do?
1. Open “%windir%\System32\Shell32.dll” file in Resource Hacker and go to:
String Table -> 1896

res

2. Now in the right-side pane, you will see default “New Folder” and “New Shortcut” strings.

reso

3. All you need to do is to replace the default string with your desired string and click Compile script at the end.

sd

4. Then save the file as Shell32.dxx on desktop

5. Now open replacer >

6. Drag the original shell32.dll on it and press enter

7. when it ask for replcement file drag the file Shell32.dxx which you saved and hit enter

8. you need to restart your system to see changes.


5. Locking every Folder

To lock every folder so that no one can navigate in any of your computer open
Regedit and go to
HCR\Folder\Shell
And rename the subkey Shell to Shell._


6. Disable the Folder Option menu

To disable Folder Options navigate to
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer
And to
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer
Here, create the DWORD named NoFolderOptions
And set its value to 1(decimal) to hide the Folder Options. Reset it to 0(decimal) to enable Folder Options.


7. Windows forgets your Folder settings

Windows sometimes forgets your folder customizations i.e. whether folders are in thumbnail view, list view or in any other view their positions etc. This happens because windows by default can remember settings of 400 (in some cases it is 5000) folders only and as the 400 mark is reached it forgets the older settings.

Here’s how you can increase folder no
Navigate to
HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell
And to
HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam
And edit the value of DWORD value named BagMRU Size to any no maximum is 8000 (in decimal)


8. Add copy to/Move to at right click

Navigate to
HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers
Create a new key here called Copy To
So the path would look like this
HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\
Copy To

and set its default value to
{C2FBB630-2971-11D1-A18C-00C04FD75D13}
Similarly, Create a new key called Move To under ContextMenuHandlers
So the path would look like this
HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\
Move To

And set its value to
{C2FBB630-2971-11D1-A18C-00C04FD75D13}


9. Disable Thumbnail caching

Navigate to
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
Set the DWORD value names DisableThumbnailCache to 1
Or
ClassicViewState to 1


10. Locking a particular folder

Let suppose you have a folder named Secret to lock this folder renames this folder
to Secret. {645FF040-5081-101B-9F08-00AA002F954E} this will convert the folder
into Recycle bin now if someone tries to open this folder he will see the contents of
recycle bin.
Similarly you can convert any folder into the following special folder by just
renaming the folder
Media Clip {00022602-0000-0000-C000-000000000046}
Cabinet File {0CD7A5C0-9F37-11CE-AE65-08002B2E1262}
Taskbar and Start Menu {0DF44EAA-FF21-4412-828E-260A8728E7F1}
My Network Places {208D2C60-3AEA-1069-A2D7-08002B30309D}
My Computer {20D04FE0-3AEA-1069-A2D8-08002B30309D}
Recycle Bin {645FF040-5081-101B-9F08-00AA002F954E}
Folder Option {6DFD7C5C-2451-11d3-A299-00C04F8EF6AF}
Network Connection {7007ACC7-3202-11D1-AAD2-00805FC1270E}

To unlock
Open Notepad and type the following as it is and save the file as unlock.bat
Ren Secret. {645FF040-5081-101B-9F08-00AA002F954E} Secret
And that’s it your folder will be unlocked.


11. Invisible Folder

To hide a folder select the folder and press F2 now press SPACE BAR and type [ALT]
+ 0160 and then press Enter.
Now, Go to Folder Properties >Customize and click on change icon
In the change Icon dialog box scroll for a blank space, select it and click Ok.
You are done!


12. ZIP files are not Folders

When you search for folders using windows search Zip files also comes in it. To make windows not to treat zip files as folder
Open RUN
Type regsvr32 /u zipfldr.dll


13. Applying Background to any folder

1. You need to first make your folder a system folder for that open Command Prompt and set folder attribute to “system”. For e.g. there is a folder “Ritesh” in “D:” drive, in which you want to set a wallpaper as background image. To do that open Command Prompt and type:

attrib +s D:\Ritesh

It’ll change the attribute to “system”.

2. Now open Notepad and paste following code:

[ExtShellFolderViews]
{BE098140-A513-11D0-A3A4-00C04FD706EC} = {BE098140-A513-11D0-A3A4-00C04FD706EC}

[{BE098140-A513-11D0-A3A4-00C04FD706EC}]
Attributes=1
IconArea_Image=Actualpathof_the_wallpaper
IconArea_Text=0x00000000

Now change “Actualpathof_the_wallpaper” to the exact path of the wallpaper which you want to set as background. Suppose the wallpaper is located in “E:\Images\Ganesh.jpg”, then the above code will be set to:

[ExtShellFolderViews]
{BE098140-A513-11D0-A3A4-00C04FD706EC} = {BE098140-A513-11D0-A3A4-00C04FD706EC}

[{BE098140-A513-11D0-A3A4-00C04FD706EC}]
Attributes=1
IconArea_Image=E:\Images\Ganesh.jpg
IconArea_Text=0x00000000

“IconArea_Text” is the text color, you can also change the text color for a particular folder (default is Black). You just need to place the code in “IconArea_Text” section. Some of the color codes are as follows:

Black – 0x00000000
White – 0x00FFFFFF
Green – 0x0000FF00
Blue – 0x00FF0000
Purple – 0x00C000C0
Red – 0x000000FF
Yellow – 0x0000FFFF
Indigo – 0x00FFFF00

3. Now save the file with name “Desktop.ini” (including quotes) in “D:\Ritesh” as in our e.g.

4. Now when you open your folder you will see backround in your folder


14. Remove shortcut arrow

For removing shortcut arrow from icons, folder and drives go to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIcons
In the right pane create a new string value named 29. Double click on 29 and set
its value to
C:\Windows\System32\Shell32.dll,50
Now, right click on the desktop & click Properties>Appearance>Advanced from
drop down menu choose icon. Set its size to 31 and press OK.
NOTE: If default size of icon is 31 then change it to 32


15. WIN+E single pane

What happens when you press WIN+E?
Yes explorer opens but it has a two pane layout
You can tweak registry to make explorer open in single pane layout for that
navigate to
HKEY_CLASSES_ROOT\Folder\shell\explore\ddeexec
Here modify the default key and change its value to [ViewFolder(“%l”, %I, %S)]
with brackets.
To revert back the setting change the value to [ExploreFolder(“%l”, %I, %S)]


NOTE:

Download our free tools bar to get latest update without even visiting our website.

untitled

Download it from here

TOPICS

A. Mouse and Keyboard

1. Turn ON Your PC on mouse or Keyboard 1 click
2. Know your BIOS
3. Disable Windows Shortcut Key
4. Swap Ctrl + Alt + Del functioning
5. Change the Default NumLock State
6. Define keys on your Keyboard different functions
7. Windows key combination
8. Cursor’s Blink Rate
9. Swap Mouse Buttons


ANSWERS


1. Turn ON Your PC on mouse or Keyboard 1 click

If you want to start up PC by just 1 right click of your mouse or 1 touch of Keyboard do the following-

1. Start your computer
2. Press DEL button to enter BIOS
3. Click on Power Management Setup
4. Then Enable the option which says Mouse Power On and Keyboard Power On
5. For Enabling just click on the desired option and press PageUP button
6. Then press F10 and hit enter

NOTE: Only for USB PS 2 Mouse and Keyboard. Also, you need to first start your PC manually after then for starting your PC this TWEAK will work.


2. Know your BIOS

If you want to know your Bios Version, Video Bios Date, and System Bios Date then navigate to
HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System
And on the right pane you will find all these information’s.


3. Disable Windows Shortcut Key

If you want to prevent users from using shortcuts like [Windows + R] and so on
1. Open Group Policy Editor. (Type gpedit.msc in RUN dialog box)
2. Navigate to User Configuration>Administrative Templates>Windows Components> Windows Explorer.
3. On the right pane double click on option turn off windows + X hot keys and Enable it.


4. Swap Ctrl + Alt + Del functioning

What happen when you press Ctrl + Alt + Del? Yeah, Task manager pop ups have you ever think what’s the reaction of your friend when he presses Ctrl + Alt + Del and Calculator pop ups or nay other application. Here is the way to open any application by using Ctrl + Alt + Del

1. Open Regedit. (type Regedit in RUN dialog box)
2. Navigate to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Image File Execution Options\taskmgr.exe
3. On the right pane double click or create a string named Debugger and set its value to C:\\WINDOWS\\system32\\calc.exe
Now, whenever you press Ctrl + Alt + Del calculator program will pop up.


5. Change the Default NumLock State

Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Control Panel\Keyboard]
“InitialKeyboardIndicators”=”2”
[HKEY_USERS\.DEFAULT\Control Panel\Keyboard]
“InitialKeyboardIndicators”=”0”


6. Define keys on your Keyboard different functions

If you have a multimedia keyboard then you can change the functionality of your application keys like play, pause, mute etc key to something of your choice

In my keyboard (Logitech clavier media) I have a app key which opens calculator which I am going to change. You can use this trick to change any key you want; here I am changing the functionality of key 18 which opens calculator on pressing so that it would open task manger.

Navigate to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AppKey\18

Here create or modify the string named ShellExecute and set its value to the actual path of the program which you want to open. In my case I have set the path
to C:\WINDOWS\system32\taskmgr.exe


7. Windows key combination

The Windows logo key, located in the bottom row of most computer keyboards is not only a shortcut for opening start menu but a amalgamation key of lot shortcuts have a look below-

1. Windows: Display the Start menu
2. Windows + D: Minimize or restore all windows
3. Windows + E: Display Windows Explorer
4. Windows + F: Display Search for files
5. Windows + Ctrl + F: Display Search for computer
6. Windows + F1: Display Help and Support Center
7. Windows + R: Display Run dialog box
8. Windows + break: Display System Properties dialog box
9. Windows + shift + M: Undo minimize all windows
10. Windows + L: Lock the workstation
11. Windows + U: Open Utility Manager
12. Windows + Q: Quick switching of users (Power toys only)
13. Windows + Q: Hold Windows Key, then tap Q to scroll thru the different users on your pc.


8. Cursor’s Blink Rate

To control how fast the cursor blinks, navigate to
HKCU\Control Panel\Desktop
And change the value of string named CursorBlinkRate to anything between 1200 (slowest) to 200 (fastest) in milliseconds.


9. Swap Mouse Buttons

Navigate to
HKCU\Control Panel\Mouse
On the right pane change the value of String named SwapMouseButtons to 1.

Or

Scared from regedit, no problem open RUN (WIN+R) and type
RUNDLL32 USER32.DLL SwapMouseButton

and press enter. Read the rest of this entry »

A ultimate site which provide email for only 10 minutes and after that your email expires.

You will be given a temporary e-mail address. Any e-mails sent to that address will show up automatically on the web page. You can read them, click on links, and even reply to them. The e-mail address will expire after 10 minutes.

Why would you use this? Maybe you want to sign up for a site which requires that you provide an e-mail address to send a validation e-mail to. And maybe you don’t want to give up your real e-mail address and end up on a bunch of spam lists. This is nice and disposable. And it’s free. Enjoy!

Get my 10 Minute Mail e-mail address.

Sign by Danasoft – Get Your Free Sign

It is just a one line procedure

open >start > Run

and type

net stop wuauserv

Sign by Danasoft – Get Your Free Sign


Archives

Blog Stats

  • 55,046 hits