Penetration Testing mailing list archives

Re: DEP on XP


From: "George Tsarouxas" <tsarouxas () gmail com>
Date: Mon, 26 Jun 2006 00:48:37 +0300

Hey,

Disabling DEP system-wide using boot.ini

1. Click Start, and then click ControlPanel.

2. Under Pickacategory, click PerformanceandMaintenance.

3. Under or Pick a Control Panel icon, click System.

4. Click the Advanced tab, and in the Startup and Recovery area, click Settings.

5. In the SystemStartup area, click Edit.

6. In Notepad, click Edit and then click Find.

7. In the Findwhat field, type /noexecute and then click FindNext.

8. In the Find dialog box click Cancel.

9. Replace the policy_level (for example, "OptIn" default) with
"AlwaysOff" (without the quotes).

WARNING: Be sure to enter the text carefully.

Note: Your boot.ini file switch should now read:

/noexecute=AlwaysOff

10. In Notepad, click File and then click Save.

11. Click OK to close StartupandRecovery.

12. Click OK to close SystemProperties and then restart your computer.


On 6/25/06, me <deros68 () yahoo com> wrote:
I am trying to remember if I was dreaming or googling
when I saw a registry key that turned off XP SP2 DEP
(software) protection.

I think that the key was something like

HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\LSA

the value was MemoryProtection   reg_sz  Off

I tried running regmon while checking the DEP off
button and could not find a key that resembled this.

Maybe I saw this in my google dreams?  I just did my
10th google for it and found nothing !!

I am writing a variant on hooking a thread and want to
confirm that I need\or do not need DEP off for this to
work.  I can manipulate this value quicker with a reg
bat file than a GUI tool.

thanks for any help


__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around
http://mail.yahoo.com

------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security?
Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
Choice Award from eWeek. As attacks through web applications continue to rise,
you need to proactively protect your applications from hackers. Cenzic has the
most comprehensive solutions to meet your application security penetration
testing and vulnerability management needs. You have an option to go with a
managed service (Cenzic ClickToSecure) or an enterprise software
(Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
help you: http://www.cenzic.com/news_events/wpappsec.php
And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request () cenzic com for details.
------------------------------------------------------------------------------




--
George Tsarouhas
+306976990131, +302117504699
http://www.1st.gr

------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details.
------------------------------------------------------------------------------


Current thread: