How To: Hack Deep Freeze and Vision

12.10.2005

POSTED IN Exploits, Hacking, How To, Software

Another resent question I have received from my fellow students is “How do I get around Deep Freeze?�? It isn’t something that I can just tell a person while running around the track at school during PE class. So, Eric comes to your rescue again and explains it all, but first, if you are on a school computer and your teacher has Vision installed, you may want to do some stuff before reading this article so he/she can’t see what you’re doing. ;)

There is a couple ways of stopping Vision. First, go to C:\Program Files\Master Solution you should see a folder inside called Vision, open it and see a program called MEUCONF, open it and hit “Run Manually�?, and that should solve that problem.

Another way is by simple unplugging the RJ45 connector from the NIC (Or in English, disconnect the wire coming from the networking card.)

FOR WINDOWS 95/98/ME:
Deep Freeze is a VxD (Virtual Device Driver) found in C:\Windows\System\Iosubsys\persifrz.vxd.
So the only way for hacking it is using a boot-disk and deleting the file. Yes…there is more files in C:\program~1\hypert~1\deepfre~1 but those are obsolete to us. They have nothing to do with what we are doing.

Note: persifrz.vxd IS Deep Freeze. Hence, deleting it will kill it completely ;)

If you can’t boot from the floppy because your boot order is not setup that way, and your teacher has password-protected the bios, you can always 1-pull the battery out of the motherboard 2- move the “reset jumper�? by the bios to reset it.

FOR WINDOWS 2K/XP:

You need to delete 2 drivers and 1 service (I’m sure you can figure out the the paths)

DepFrzLo.sys (kernel driver)
DepFrzHi.sys (filesystem driver)
dfserv.exe (service)
frzstate.exe (password dialog)
persis00.sys (password file and “on/off switch”)

You should be good to go.

You should take Questions/Comments to the “Comments�? section of this post.

57 Responses to “How To: Hack Deep Freeze and Vision”

  1. jun says:

    Another way to disable DF is replace deepfrz.sys [C:\windows\system32\drivers\deepfrz.sys] with a dummy file. This will put DF in a thaw mode. Restoring the original deepfrz.sys will activate DF. This method is great if you forget the password. If you need that dummy file. Let me know.

    hello, where can i get the dummy file of that kernel file? TNX

  2. hunter_kill says:

    Eric,
    I’m trying to hack/uninstall Deep Freeze on an iMac running OSX 10.5.3 Can you help me get around it?

  3. Sam-VDC says:

    To uninstall DF…
    The only best way to uninstall DF cleanly is to use its installation module to uninstall it.

    First you need to enter your password to unlock/unfreeze DF
    Restart computer
    Then RUN the DF installation module to uninstall DF.

  4. robin says:

    I know a bunch of cyber cafes with DF Standard Edition with a bunch of online games. Each online game requires patch updates every few weeks. Of course DF wipes these out each time.

    How can I enable these regular patches to pass the DF re-installation process? Any hack will do. I can get admin rights to set something up, but it would be too much work to do this for every game/patch and machine. Maybe there is a way to add the temporary disabling of DF just for the patch and then restart DF (with the new files accepted?)?

    Help please

  5. kunny says:

    Hi,i can’t disable Deep freeze 6.30.20.1818. when i press Ctrl+Alt+Shift+F6, no happened event( i did not see any thing) and i did not see DF icon on the taskbar. when i used DeepUnfreezer1.6 it show that, no detected Deep freeze.

  6. kunny says:

    Hi,i can’t disable Deep freeze 6.30.20.1818. when i press Ctrl+Alt+Shift+F6, no happened event( i did not see any thing) and i did not see DF icon on the taskbar. when i used DeepUnfreezer1.6 it show that, no detected Deep freeze.
    In the process, i see DF5Serv.exe still running and DF5Serv is still running at msconfig->Service.