How to run an application running SYSTEM?

Without using a windows service? Is it possible?

+4
source share
2 answers

This is possible as follows:

1) Use any existing interface for the Windows service that runs under the SYSTEM account to start a new service process. For example, you can use the Task Scheduler API .

2) You can install a new Windows service, start the process using the service, stop the service, delete the service. This is the way you use the PsExec utility from SysInternals .

3) You can enable Debug Privilege and use the DLL injection to enter your custom DLL in the process running under the SYSTEM account, start a new process with the DLL, and then unload the embedded DLL.

+6
source

See how the Windows kernel is part of the window on the right ... that means YOU CANNOT DO ANYTHING ON WINDOWS WITHOUT USING A PART OF WINDOWS (you at least need a kernel).

In any case, you can write your own system code .. ie OS to try something big, which obviously will take you a year and a half or so, too, if you are a very good programmer .: D

And yes, if you are interested in spending this year and a half, let me know that I AM, and I mean.

-7
source

Source: https://habr.com/ru/post/1339786/


All Articles