5 Signs Your Computer Has Been Hacked

  Рет қаралды 1,676,700

Loi Liang Yang

Loi Liang Yang

Күн бұрын

// Membership //
Want to learn all about cyber-security and become an ethical hacker? Join this channel now to gain access into exclusive ethical hacking videos by clicking this link: / @loiliangyang
// Courses //
Full Ethical Hacking Course: www.udemy.com/course/full-web...
Full Web Ethical Hacking Course: www.udemy.com/course/full-web...
Full Mobile Hacking Course: www.udemy.com/course/full-mob...
// Books //
Kali Linux Hacking: amzn.to/3IUXaJv
Linux Basics for Hackers: amzn.to/3EzRPV6
The Ultimate Kali Linux Book: amzn.to/3m7cutD
// Social Links //
Website: www.loiliangyang.com
Facebook: / loiliangyang
Instagram: / loiliangyang
LinkedIn: / loiliangyang
// Disclaimer //
Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing so that we can protect ourselves against the real hackers.

Пікірлер: 1 900
@LoiLiangYang
@LoiLiangYang 4 жыл бұрын
Task manager, netstat, wireshark, firewall and antivirus.
@flamess007
@flamess007 4 жыл бұрын
Thank you master ♡♡
@skunkhead2007
@skunkhead2007 4 жыл бұрын
So ok then how as im still relativly new to Linux how do i detect if any one is hacking my Linux Os? i use as the norm Parrot sec or Kali Linux?
@skunkhead2007
@skunkhead2007 4 жыл бұрын
do i run top or htop from aa terminal then dissconect any unwated traffic
@kivisaur
@kivisaur 4 жыл бұрын
How can i open closed videos? Thanks!
@areaofeffect100
@areaofeffect100 3 жыл бұрын
@@notamongyou huh?
@bryanalexander4176
@bryanalexander4176 3 жыл бұрын
The hacker who are visually remote access my computer watching me watching this video : *Nerveously sweating*
@knifulaifu
@knifulaifu 3 жыл бұрын
Lmaoo
@majeedmx7016
@majeedmx7016 3 жыл бұрын
do you mean to saay FBI?
@jeffsmith6340
@jeffsmith6340 3 жыл бұрын
I'm
@spline5243
@spline5243 3 жыл бұрын
@@majeedmx7016 fbi cant "visually remote access" your screen....
@slomow-1540
@slomow-1540 3 жыл бұрын
I can feel FBI is coming
@dreimar1796
@dreimar1796 3 жыл бұрын
"open task Manager and look for potentially malicious program running..." - Cortana spotted!!
@shadowlord0162
@shadowlord0162 3 жыл бұрын
so true
@0623kaboom
@0623kaboom 3 жыл бұрын
@SaimonSSL um try windows is the virus ... who needs the bloatware ... 90% of the junk running on windows 10 is not needed but windows forces it anyway ...
@Timic83tc
@Timic83tc 3 жыл бұрын
halo ai cia
@stuffandthangs3953
@stuffandthangs3953 3 жыл бұрын
@SaimonSSL You cant even spell Cortana right after it was spelt in front of you. Incompetence.
@merhusdagon
@merhusdagon 3 жыл бұрын
@@stuffandthangs3953 Clown comment. He is clearly trying to joke around.
@edeak1645
@edeak1645 3 жыл бұрын
The hacker watching me watching this video : *Interesting*
@philipjfry4465
@philipjfry4465 3 жыл бұрын
@Amano Kun Interesting
@LuizZignani
@LuizZignani 3 жыл бұрын
Why i think your comment will get 1k likes
@edeak1645
@edeak1645 3 жыл бұрын
@@LuizZignani same
@TLMX722
@TLMX722 3 жыл бұрын
Oh hello there i have been watching u
@Kawaii-Chino
@Kawaii-Chino 3 жыл бұрын
Very interesting
@alejosandu
@alejosandu 3 жыл бұрын
how to become paranoid in 10 minutes
@BastianTheGreatestCreatorEver
@BastianTheGreatestCreatorEver 3 жыл бұрын
true lol
@Praneeth_-
@Praneeth_- 3 жыл бұрын
Fr
@daelaenor
@daelaenor 3 жыл бұрын
@@laflame3460 Nah, you're fucked. Everything's already infected with malware by the time you read this. Jk, I don't know what I'm talking about.
@laflame3460
@laflame3460 3 жыл бұрын
@Cityscapes It downloaded folder normal folder I didnt even open it
@doufmech4323
@doufmech4323 3 жыл бұрын
@@laflame3460 you can never be sure but it is not unlikely that you have a virus. I would say 70% you got infected.
@ytawesomegaming3216
@ytawesomegaming3216 3 жыл бұрын
Had to watch this on my phone because my computer would close the tab for no reason.
@ihaveagoddamnplanarthur
@ihaveagoddamnplanarthur 3 жыл бұрын
hmmm
@firecorex994
@firecorex994 3 жыл бұрын
Well...
@cabbagememes2852
@cabbagememes2852 3 жыл бұрын
Hmmm 🧐
@mrstarfish
@mrstarfish 3 жыл бұрын
thats one of the signs that you got hacked
@tib1281
@tib1281 3 жыл бұрын
@@mrstarfish thats one of the signs that you missed the joke
@JimmyJohnJahames
@JimmyJohnJahames 3 жыл бұрын
when you try to un-hack your pc but you end up hacking the hacker
@leg4985
@leg4985 3 жыл бұрын
thats just exagerated swaggers
@bigchungus14hvh12
@bigchungus14hvh12 3 жыл бұрын
@@leg4985 the exxaggerated swagger of a blck teen
@JimmyJohnJahames
@JimmyJohnJahames 3 жыл бұрын
@Zrobilive lol
@DarthVaston
@DarthVaston 3 жыл бұрын
@Zrobilive most of the time the attacker's IP you see, it's not his real one.
@yaboiothman984
@yaboiothman984 3 жыл бұрын
Actual fucking gigachad
@kirjian
@kirjian 3 жыл бұрын
"huh, let's see the task manager..." *finds powershell running* *SWEATING PROFUSELY*
@Mr.Wayne.1
@Mr.Wayne.1 3 жыл бұрын
Same. Is that a normale one or is every powershell a virus/tracker???
@maxime1768
@maxime1768 3 жыл бұрын
@@Mr.Wayne.1 if you don't have a powershell window open, i guess it's a virus
@axellor9836
@axellor9836 3 жыл бұрын
@@Mr.Wayne.1 if you didn't download it or don't have it opened then it is very likely a virus
@Iqbal1808
@Iqbal1808 3 жыл бұрын
well i have windows defender notification icon running, frick
@axellor9836
@axellor9836 3 жыл бұрын
@@Iqbal1808 uh oh, seems like you're screwed
@Wiki1184
@Wiki1184 3 жыл бұрын
Wasn't even thinking about the possibility I got hacked until I saw this recommended, now I'm paranoid for no reason.
@aeptacon
@aeptacon 3 жыл бұрын
LOL
@gowororigejunua439
@gowororigejunua439 2 жыл бұрын
Lol
@modern8925
@modern8925 3 жыл бұрын
Me: *gets this video reccomended after downloading 40+ Minecraft mods* also me: "Im in danger"
@imoutofnameideas5601
@imoutofnameideas5601 3 жыл бұрын
*chuckles* "I'm in danger"
@XZ1.
@XZ1. 3 жыл бұрын
@yupyipit fabric is usually safe, but forge has many breaches
@XZ1.
@XZ1. 3 жыл бұрын
@yupyipit neither did I. It sounds very fishy and I think he got the virus from something else, but he told me it was after he used the client with the mod
@XZ1.
@XZ1. 3 жыл бұрын
@yupyipit yeah
@Zysperro
@Zysperro 3 жыл бұрын
40? Das a rookie number. I've been rocking 2 shady launchers with hundreds of manually installed mods on them back in 2015 XD Never got a virus afaik.
@ducodarling
@ducodarling 3 жыл бұрын
Signs you've been hacked: 1) You're using windows 2) It's connected to the internet 3) You've installed something on it
@wladfan
@wladfan 3 жыл бұрын
stfu apple user
@wladfan
@wladfan 3 жыл бұрын
@@YousefSadiq then "stfu non-windows user"
@wladfan
@wladfan 3 жыл бұрын
@@YousefSadiq then "stfu Duco Darling" is appropriate
@u1richh
@u1richh 3 жыл бұрын
Signs you've been hacked: 1) Own a computer 2) It's connected to the internet
@wladfan
@wladfan 3 жыл бұрын
@@u1richh ever heard about the Mirai botnet? Literally anything that can connect to internet can get hacked
@sethadkins546
@sethadkins546 3 жыл бұрын
A few things: If you notice a remote shell is running on your system, don't just kill it and be done with it. Always check for backdoors and the like, persistence is an important step in the attack process. You won't always see the shell pop up in the task manager, especially if it's a meterpreter shell. Meterpreter can migrate to other processes (and usually will because windows defender will often automatically kill remote shells if they don't), so you have to look for other things such as abnormal resource usage or unusual calls if you have Sysinternals tools. Just because you have your firewall up does not mean you are safe. A hacker might be able to bypass his way around it, and most will know that disabling it altogether is an easy way to get spotted. Always check for suspicious permissions when it comes to the firewall, and use a router based firewall whenever possible since a system based firewall can be easily disabled or bypassed.
@JatinBhuyan
@JatinBhuyan 3 жыл бұрын
What you just said, gone above my head bro, a video would have been useful for it i think.
@joeyhensley9199
@joeyhensley9199 3 жыл бұрын
Taskkill /F /T /PID NNN
@gowororigejunua439
@gowororigejunua439 2 жыл бұрын
Lol
@craigheard2504
@craigheard2504 2 жыл бұрын
Those are great points. Thanks for bringing it up. Persistence is the goal, you’re right. That’s a jackpot for malicious actors. Thanks for the router based firewall information too.
@ease2sleep940
@ease2sleep940 2 жыл бұрын
I don't know my elbow from my bum hole when it comes to this stuff so anything said sounded like alien lingo to myself and anyone with a basic knowledge of pc functions lol.
@usernamequaalquerr
@usernamequaalquerr 3 жыл бұрын
**tries to open task manager** Task manager has been disabled by your administrator. *this is fine*
@drishalballaney6590
@drishalballaney6590 3 жыл бұрын
aah we need some defense for this now :D
@whyamiherelol4616
@whyamiherelol4616 3 жыл бұрын
man get to like the support and call the support system for help
@semicolumnn
@semicolumnn 3 жыл бұрын
sudo.. oh wait shit
@Skullkid16945
@Skullkid16945 3 жыл бұрын
@@godric443 Was just fixing to say, always good to have alternatives in case one is compromised. Task Manager, ProcessHacker, Process Explorer, etc. Even better if you have them on DVD-R which can't be modified. That way you can still run the software and not worry about it being deleted or modified in a way that disables it. Although would be funny if they noticed and kept ejecting your CD Drive XD
@toyb-chan7849
@toyb-chan7849 3 жыл бұрын
You can activate it again in the group policy editor
@emperornero1932
@emperornero1932 3 жыл бұрын
A big sign is when a Indian guy is asking you to buy gift cards to fix the issue
@rabidbeaver167
@rabidbeaver167 3 жыл бұрын
Or any support for that matter.
@AI-zd4yb
@AI-zd4yb 3 жыл бұрын
"hello your computer has virus" ~not an India guy but has deep indian accent
@uncovidvaxxforthestrongand3582
@uncovidvaxxforthestrongand3582 3 жыл бұрын
@@rabidbeaver167 lol okay then
@xxxzz8413
@xxxzz8413 3 жыл бұрын
Cut off the internet wire
@EIRE55
@EIRE55 3 жыл бұрын
Jim Browning is an expert on that..............he knows them all...;-D
@KoltPenny
@KoltPenny 3 жыл бұрын
My first suspicion would be that "hacker" file in the desktop.
@hbarchromeE
@hbarchromeE 3 жыл бұрын
Me: opening never gonna give you up on youtube My FBI agent and the guy hacking my pc: fuck
@ildefonsogiron4034
@ildefonsogiron4034 3 жыл бұрын
Sign no. 1: at startup, it greets you with a "welcome to windows" screen.
@Skullkid16945
@Skullkid16945 3 жыл бұрын
@S T Ξ Λ L T H Windows is quite the bloated and chatty OS built to mine the user for data. Constantly sending "anonymous" analytics data to Microsoft and etc. Average American citizen's data is usually worth around 5 - 6 ish USD I think, not fully sure though. Either way, they can collect that data from millions and they make quick bucks selling it to advertising companies. Ever wondered why when you do most things on the internet, you see ads related to that, or suggesting things you only just recently looked at or searched on google?
@noclip_st
@noclip_st 3 жыл бұрын
@@Skullkid16945 yes, Microsoft collects the user data. So does Apple, Google, Facebook, you name it. If you are that paranoid over Microsoft's data collection, what if I tell you that every android phone with google assistant enabled is listening to your conversations ALL THE TIME? Probably even when assistant is disabled, though I have no proof for that. This in fact is most likely why you're seeing ads related to stuff you've spoken about, it's because google is listening to you more than anyone else. Microsoft began as a software company/operating system maker, but Google began their operation as a serach engine developer and their primary profits come from ads. You're trying to portray Microsoft as an ultimate bad guy but it's far from truth
@hhhhhh-vi6sq
@hhhhhh-vi6sq 3 жыл бұрын
@@Skullkid16945 but if you get ads on google related to what you just looked up on fucking google wouldnt it be google who sells the data?
@tranhanna7524
@tranhanna7524 3 жыл бұрын
@@Skullkid16945 Good god your name broke youtube. It crosses the right panel of youtube going all the way to the right edge of the screen.
@Cursor_point234
@Cursor_point234 3 жыл бұрын
@@Skullkid16945 Is there's youtube link on ur name?
@hans-gg7tr
@hans-gg7tr 3 жыл бұрын
The best Anti Virus is most of the times common sense.
@Aoi-lol
@Aoi-lol 3 жыл бұрын
cute pfp
@gowororigejunua439
@gowororigejunua439 2 жыл бұрын
Nope
@AnshuOP69
@AnshuOP69 2 жыл бұрын
Antivirus is a virus itself
@System64MC
@System64MC 3 жыл бұрын
"First thing you wanna do is right click the taskbar and select task manager" me on linux: _sad tux noises_
@System64MC
@System64MC 3 жыл бұрын
@Jay Rozes I get better performance on Linux, plus I like the distro I use, it's very stable and fast
@auricom242
@auricom242 3 жыл бұрын
top
@sirrobertwalpole1754
@sirrobertwalpole1754 3 жыл бұрын
@@System64MC based?
@System64MC
@System64MC 3 жыл бұрын
@@sirrobertwalpole1754 I'm on Zorin, based on Ubuntu
@System64MC
@System64MC 3 жыл бұрын
@@sirrobertwalpole1754 I'll take a look at it, thank you
@cpatz1000
@cpatz1000 3 жыл бұрын
You can always do netstat -b in an elevated cmd and it will show the executable file with that connection.
@theconfusedpenguin4612
@theconfusedpenguin4612 3 жыл бұрын
Thank you so much
@leemichael2883
@leemichael2883 3 жыл бұрын
could do yea
@reported7274
@reported7274 2 жыл бұрын
@@amateruss command prompt with admin rights.
@Avadonia
@Avadonia Жыл бұрын
"The requested operation requires elevation."
@namaanda5349
@namaanda5349 3 жыл бұрын
I'm a regular windows user, and I'm using task manager since windows 7 era to monitor my whole system. Thanks for the additional tips.
@gowororigejunua439
@gowororigejunua439 2 жыл бұрын
Nope
@dumarserittard7289
@dumarserittard7289 2 жыл бұрын
@@gowororigejunua439 wth dude you're everywhere
@danielgilbert4570
@danielgilbert4570 3 жыл бұрын
Dude, solid video! Thanks for sharing. I like that you show both sides of the hack! Good work man! At work, I usually reboot the workstation if I think a customer opened a phishing payload. Because I have some offensive experience, it makes me realize that unless they’ve established persistence, they’ll need to exploit again :). Obviously if you have physical access to network interface you can also disconnect that too. Anyway, great video!
@BlackieNuff
@BlackieNuff 2 жыл бұрын
For the Task Manager tip to be of any use, the user must already be familiar with all the normal processes that should consistently or can occasionally appear there. I keep a Notepad with the complete list of everything in the Services list, the Startup list (from the msconfig dialog) as well as the task Manager list. Anytime I remove/disable or add/enable software, I update the list. Studying those lists and getting a general familiarity with them is crucial. Do I have everything memorized that I can recite every item for memory? Of course not. But upon looking at the list, I can recognize what should or should not be there. And if I am not sure, my Notepad list/record helps me make a distinction as to whether I'm merely not recognizing something that's always been there, or if it's something "new" that I did not authorize.
@smokescreen2146
@smokescreen2146 Жыл бұрын
You made the list after you got hacked, then what?
@BlackieNuff
@BlackieNuff Жыл бұрын
@@smokescreen2146 What do you mean "then what?" ?? I am pretty sure the answer is in what I said : memorize/familiarize yourself with the items, know at a glance what should and should not appear in that list. If you have something specific in mind, you're gonna have to use your words and explain it. I am not a mind-reader and I am not fluent in dumbed-down Textinese.
@BlackieNuff
@BlackieNuff Жыл бұрын
@@smokescreen2146 It just occurred to me what you meant : The answer still should be obvious... Google it.
@BlackieNuff
@BlackieNuff Жыл бұрын
Seems I have to spell this out .... TO MAKE TASK MANAGER REFERENCE LIST : 1. Open Task Manager. 2. Select "Processes" tab. 3. Look over all items. If you do not know/recognize a process, or cannot deduce with certainty what it is : a. Do a local computer Search for that process to determine its location - sometimes just knowing where it is can verify its legitimacy. b. If finding it on the computer, the location still does not clear anything up for you as to what it is or if it is safe, GOOGLE IT.
@smokescreen2146
@smokescreen2146 Жыл бұрын
@@BlackieNuff There are over 120 processes running on my machine right now with just Firefox opened, and they keep changing and re-ordering themselves, so good luck memorizing and spotting them. Like I said you made your list after you already got hacked, and not before so it is useless. Some Trojans can also pretend to be legitimate processes (e.g. scvhost) and can even hide themselves from appearing on Task Manager. Anyway why are you listening to someone who teaches hacking for advice on how to stop hackz?
@BreadMaster-rz7ub
@BreadMaster-rz7ub 3 жыл бұрын
Easier way to stop them from stealing your info: Unplug your Ethernet cable
@dyna6448
@dyna6448 3 жыл бұрын
Best solution here
@BreadMaster-rz7ub
@BreadMaster-rz7ub 3 жыл бұрын
They hacked into your router? Unplug it.
@somerandomperson7
@somerandomperson7 2 жыл бұрын
They hacked into your grandmas life support? Unplug it.
@SAMURAIoriginal
@SAMURAIoriginal 2 жыл бұрын
im on wireless
@balala7567
@balala7567 Жыл бұрын
@@SAMURAIoriginal unplug your router
@MD-ki7qw
@MD-ki7qw 3 жыл бұрын
I’ve been looking for videos like this when I was young! I’m glad to have found these years later! I hope to probably get into networking and coding again it has always interested me and I went to college for it before they shut down on me twice But if I can learn now for a hobby that would be cool! Maybe someday I can make it a career again
@urest
@urest 3 жыл бұрын
Hey can u hack someone for me
@Shigbeard
@Shigbeard 3 жыл бұрын
I will add just one thing: Be careful with just willy nilly ending tasks. Some tools are able to do some techno-sorcery and tie themselves to a critical windows process, meaning that if you kill it you'll trigger a bluescreen of death. The malware would remain running once you reboot as it'll likely also be configured to set itself up on startup. I wont name any tools that I know possess this ability, but I will assure you they exist and it's best to rely on an antivirus to do the cleanup for you if you don't know what you are doing.
@FingerprintGamer
@FingerprintGamer 2 жыл бұрын
just paste the shortcut to startuup folder andd every sftware hs that ability
@ThePower1037
@ThePower1037 2 жыл бұрын
I just got a malicious clone of syscruntime140.dll, and it lived through a complete cloud reinstall of windows 11.
@SciK.
@SciK. Жыл бұрын
@@ThePower1037 keyword is cloud
@bf6081
@bf6081 3 жыл бұрын
Good video. New subscriber here, I've already gone threw a few of your video's and find them interesting. I'm new to learning IT, and trying to learn on my own but I find your video's really helpful.
@akairink2170
@akairink2170 3 жыл бұрын
Hackers will be very dissapointing after looking at my balance
@0623kaboom
@0623kaboom 3 жыл бұрын
they look at my balance and send me money ...
@davidtolle9533
@davidtolle9533 3 жыл бұрын
This is a lot to take in but it seems very in depth so thank you!
@NikoNemo
@NikoNemo 4 жыл бұрын
It will be great to show the same for Linux too! I would like to ask You as a Wordpress websites creator if You can create some videos for Wordpress vulnerability...
@devinries2512
@devinries2512 3 жыл бұрын
Just came across your channel. Your content is engaging and insightful! Thank you for putting in the effort on these video I appreciate it!
@Barafu
@Barafu 3 жыл бұрын
There are 117 back doors into Windows 10 and only a handful are closable without crashing internet access. If you close too many doors, Windows 10 will detect it and shut off your internet access. One of the back doors that are well known is the INTELME back door. Most of them are telemetry ports, update ports, location tracing ports, meta data ports and webpage remote viewing ports.
@gopalethical
@gopalethical 3 жыл бұрын
Great video, very informative and straight forward. Keep it up
@abhigoswami3812
@abhigoswami3812 4 жыл бұрын
This video is really helpful for me. Thank you, Sir. :)
@SerandibBroadcast
@SerandibBroadcast 3 жыл бұрын
I really learned this today. Thank you for the video, Sir.
@steampunklimbo
@steampunklimbo 3 жыл бұрын
ello, yu computeh has viros
@user-vi3pi9rf7w
@user-vi3pi9rf7w 3 жыл бұрын
I'm *"Stephen Jordan"* from Microsoft
@advinhon
@advinhon 3 жыл бұрын
ello sir, your computeh has viros
@simulping4371
@simulping4371 3 жыл бұрын
**discord crashes**
@IndellableHatesHandles
@IndellableHatesHandles 3 жыл бұрын
"zir, you have a wirus on your dextop."
@tonzku.
@tonzku. 3 жыл бұрын
Ma'em i em Jonh smith from moocresooft. Please doonleed GoTwo Assist pleas.
@Kate-qw9er
@Kate-qw9er Жыл бұрын
I am doing Loi'c course on Udemy and have got to say that he is a really good teacher. You guys are so lucky that he had this really important video up on KZbin for free...I am too as I am fending off an attacker...Thanks Loi, your awesome! 😊
@norbeekash2699
@norbeekash2699 2 жыл бұрын
919 highly skilled hacker disliked the video. Honestly I don't know how somebody can dislike something this informative
@ease2sleep940
@ease2sleep940 2 жыл бұрын
I can see why there is dislikes. People who know nothing come here trying to learn how to find out if they got hacked and get bombarded with crap loads of very tech lingo and get lost in the first 2 minutes or less lol. You see? A person would already have to have learned some technical stuff to even begin to comprehend any of this info. :-s. You see now?
@MrCybiz
@MrCybiz 3 жыл бұрын
Imagine disabling a hacker's connection after watching this video xD
@IndellableHatesHandles
@IndellableHatesHandles 3 жыл бұрын
I wonder if they could restart it again.
@whamer100
@whamer100 3 жыл бұрын
well i certainly feel better about my system now, nothing looked out of the ordinary
@lemonacidrounds7293
@lemonacidrounds7293 3 жыл бұрын
Me too, although I don't have an antivirus program cause its often screwing up my games
@riseandshinemrfriman5925
@riseandshinemrfriman5925 3 жыл бұрын
Everything looking "in order" doesn't mean much. Read up on rootkits. Malware designed to remain hidden.
@zioxei
@zioxei 3 жыл бұрын
not even the homework folder?
@arminhorvath-
@arminhorvath- 3 жыл бұрын
me who has just reinstalled windows 2 days ago: *interesting*
@chilledramen8241
@chilledramen8241 2 жыл бұрын
so my dad has a laptop from 2018 or something and the fans on it run at max for long periods of time throughout the day even when it's closed, should that be anything to worry about?
@yyyy-ml9pr
@yyyy-ml9pr 3 жыл бұрын
I dont have power shell on processes but i have some shell thingy in windows processes do windows processed count or are windows processes safe?
@errorlevel1113
@errorlevel1113 3 жыл бұрын
This is the first actually good video about detecting when you get hacked.
@char7035
@char7035 3 жыл бұрын
I'm confused about the netstat -ano part. How do I tell what's normal and what isn't?
@rogueanuerz
@rogueanuerz Жыл бұрын
look at the incoming port
@Dddsasul
@Dddsasul 3 жыл бұрын
This is cool but I think the netstat -b would help more. It's almost impossible to identify anything based on numbers so if you know the exe you can at least make educated guesses or google them
@anon618
@anon618 3 жыл бұрын
Is there anyway to harden powershell via firewall rules / limiting rights or by blocking System.Management.Automation.dll?
@brunodosreis
@brunodosreis 2 жыл бұрын
This is a good start, but you should also research how they gained access in the first place
@MarkDunn
@MarkDunn 3 жыл бұрын
Who else checked to see if PowerShell was running on your computer right now.
@IndellableHatesHandles
@IndellableHatesHandles 3 жыл бұрын
Yeah, mostly because I found GTA V was slower than usual.
@AndrewYouTube866
@AndrewYouTube866 3 жыл бұрын
Good video....makes you want to look at your system and see if anyone is trying on you.
@brianwest2775
@brianwest2775 3 жыл бұрын
In the IP list from "netstat -ano", how do you recognize a hacker's IP address? Could they be anywhere or you're only looking for one with the local network 192.168.1.xx that you can't recognize as one of your network's computers/devices? Any lists of apps to be expected in those task manager and allowed app lists? I took a look and individually Googled several unrecognized ones but they were all standard windows components, but I didn't check all.
@henryzhuo79
@henryzhuo79 3 жыл бұрын
Local network is any computer that connects from your local network, at home it isn't likely to be a hacker unless someone on your internet is trying to hack you Not sure how to recognize a hackers IP address myself, maybe try to have few programs running to make the list shorter?
@brianwest2775
@brianwest2775 3 жыл бұрын
@@henryzhuo79 My recollection is that in the video he identified hackers at a local 192.168.1.xx address, presumably because they are somehow disguising themselves or tunneling in somehow, which is why I asked how to identify when the hacker looks local.
@bxnni2927
@bxnni2927 4 жыл бұрын
This video came up so early, im still sleepy but i need to watch
@springw3546
@springw3546 3 жыл бұрын
One obsessive stalker/ hacker has been inside my computer for many years. When I typed “netstat”, the data came out fine. After that, I typed “netstat/?”, the information came out fine. When I typed “netstat-ano”, nothing came out. This hacker did some program on the script. He tried to block me to delete his hacking IP address in task manager. Please help. Besides that, he has been using manipulating Bank of America(BAC) for several years, without his manipulation, BAC stock price would be over $70/share before Covid-19 market dropping last year. After I bought Wells Fargo(WFC), Li auto limited(Li), NIO Limited (NIO), Pfizer Inc. (PFE) several months ago, he has been manipulating their price and frequently dragged their price down and controlling their price. Trying to ban my voice, he disabled all reviews functions on my several laptop computers Google, Yahoo and other major sites.
@Anequit
@Anequit 3 жыл бұрын
@@springw3546 netstat-ano don't exist.. do netstat -ano
@alishanawar4872
@alishanawar4872 3 жыл бұрын
@@springw3546 r u a boomer?
@dubyag4124
@dubyag4124 3 жыл бұрын
Pro tip: if you know the hacker's IP, this will help you find the hacker.
@conservadont
@conservadont 3 жыл бұрын
this is exactly what I was gonna comment lol, but how would you actually know? like if you don't have their IP
@0623kaboom
@0623kaboom 3 жыл бұрын
or you will find the machine they are spoofing or doing a remote access from ... and get the wrong person ... you need to strip the header packet to find the final destination to get the ultimate end user of the process ... most tools DONT do this ... so they stop at the first IP and call it a day ... but the packet can then be rerouted from the remote machine to the hacker or yet another remote machine and so on ... .
@lawsofhumannature2049
@lawsofhumannature2049 2 жыл бұрын
Is there any other way to distinguish if you computer is hacked on command prompt besides pod 8443? All my pods say 443 only
@builderman_syn
@builderman_syn 3 жыл бұрын
hi sir, could i please contact you and can you help me if i have a rat on my pc? because i had a rat and i restarted my whole pc it deleted everything and i thought everything is normal. but i dont know if its really gone :/
@Kitulous
@Kitulous 3 жыл бұрын
2:22 him: executables captions: execute the bolts me: execute the BALLS
@GGGG-ro9sd
@GGGG-ro9sd 3 жыл бұрын
For the netstat -ano, how should I know which one is suspicious process when there are many connections with your so called funny IPs ongoing? Thank you.
@toggledfire4148
@toggledfire4148 3 жыл бұрын
To know is simply finding a non 443 and 80 in foreign address
@toggledfire4148
@toggledfire4148 3 жыл бұрын
Look closely at 4:34
@Hyxtryx
@Hyxtryx 3 жыл бұрын
@@toggledfire4148 Wrong. Hackers could use port 443 also. If you have a NAS storage drive, you might see 445 connected to another IP address within your network. If you use Steam, you might see 27039. Any of the ones that say "LISTENING" could be malware waiting for a hacker to connect. A better way is to use whois to lookup all the foreign IP addresses you see in netstat and see if any of them are from China or Russia or something you don't recognize. They will usually be something you recognize like Microsoft or a website you've visited recently. If your router is set up correctly, nobody on the internet should be able to make unsolicited connections to your PC, unless your router has been hacked and ports are being forwarded. If you do see a legitimate hacker connection in netstat, you most likely already have malware on your PC and it is initiating outbound connections. This video is a bad example, since the hacking was done from within the local network. If you ever see that happening you have worse things to worry about, since not only is your PC hacked, but another device on your network is also. He also failed to mention that a root kit can hide itself from Task Manager so you wouldn't see it in there.
@clickbaitpolice9792
@clickbaitpolice9792 3 жыл бұрын
4:33 why was that a key highlight? like im seeing a lot of information on my cmd but have no idea what it means
@saracox7977
@saracox7977 2 жыл бұрын
Hey any chance you could post a video on how to handle ransomware? I got hit with it (not a huge loss as all my pictures were backed up and there was nothing else on there that was important, trying to keep the comp as impersonal as possible as I'm starting to learn ethical hacking.) I've been searching the internet but it's not very informative on steps you need to take to isolate and quarantine it manually as it disabled my anti-virus and is preventing me from installing another one or even factory reseting my computer. I was kind of excited when this happened as I looked at it as real world experience but there isn't much to help me learn how to deal with it. It's just frustrating now and of course my install disk to manually reset my comp is no where to be found. I'm months into this now. My comp has been sitting there off disconnected from the network to try and keep it from spreading any further but at some point it had been reconnected the last time I went to try and beat this thing it had spread pretty far. I guess my partner not realizing had been using it. So any advice or if u did a tutorial I'd be ecstatic! Thanks for your time!
@ColoqueNombreAqui
@ColoqueNombreAqui 3 жыл бұрын
FBI spying us all: So funny son 😂
@AndyHerbert254
@AndyHerbert254 Жыл бұрын
One interesting thing I once noticed: if you want to have remote RDP access, you can open ports on your PC and network. However, with a program like Glasswire I observed tons of external IPs from other countries attempting to access that remote port. Of course the PC on the remote end was password protected (no stupid 4 digit PINs either) so it's quite unlikely that the password would be cracked and access granted (assuming RDP forcibly disconnects after so many attempts). However, this did increase the total incoming traffic into the PC and network (adding to xfinity's data cap). So with this in mind, one way to ensure hackers can't gain access over remote shell or RDP is by using a local VPN and only allowing outgoing traffic over the VPN (except for public servers). A good router firewall like pf/opnsense will make it easy to create a secure and encrypted firewall which is far easier and more secure than opening ports on the router.
@ezekieloruven
@ezekieloruven Жыл бұрын
RDP is well known to not have a fail 2 ban system (it allows unlimited attempts to access) and, further, the Administrator users are always automatically added to the allowed list of users to connect by RDP (unless you explicitly remove them). Just never, ever open an RDP port to the internet. If you need remote access, connect to your network by VPN and then use RDP with local IPs tunneled over the VPN.
@Syrno
@Syrno Жыл бұрын
Ive got a weird problem thats been around for a few months, since I think may 17th 2022, where windows security immediately closes, along with some other security things, and some software from my computer(armorycrate which is for ASUS computers) and the taskbar does not work but apps can still be clicked on, and search bars never finish searching anything(in file explorer as its all I can open, and settings) Ive tried a dozen things and theyve never worked, Ive checked files in task manager and I cant find anything, my dad always jumps straight to scorched earth with "just restart the computer, you can save docs but otherwise you're letting hackers steal your credit card info and other things" but nothing has happened, I feel it in my gut that its some absurd bug or error cause by hardware issues(my battery had a bulge but I havent been able to check so I feel like it could have ruptured or messed with the boards I really dont know) or just some setting that I dug 12 layers deep and toggled but wont ever remember where I went to get to it. Its frustrating and I dont want to just torch my laptop.
@jsc3417
@jsc3417 3 жыл бұрын
How do you filter out the known good connections and services and processes? Is there any good software that can help you either filter out good services, or take a screenshot of existing services, connections, and compare on a daily or weekly basis to highlight new processes/services/connections?
@504octo
@504octo 3 жыл бұрын
I skip most of the steps by searching for the source file and then deleting from the registry with admin rights anything related to it. Reboot and you'll be ok. No need to go through all the networking stuff. Unless you got into the deepweb unprotected and had to format c:/>. Good video though 👌
@bunakkaptan
@bunakkaptan 3 жыл бұрын
Good to know... thanks dude..... I am enlightened
@paulussantosowidjaja93
@paulussantosowidjaja93 3 жыл бұрын
Thank you for the learning. Cool channel. Cheers!
@BANIAAAAK
@BANIAAAAK 2 жыл бұрын
My BITDEFENDER antiviruse has a firewall inside the app that blocks my windows Firewall I cannot change the settings tho on the Windows one. How can i put it back to have bitdefender and windows firewall working together?
@niohyork
@niohyork 3 жыл бұрын
Yes but you missed the most important tactic, just f pull the dam network plug. 😑
@tukangbobo
@tukangbobo 3 жыл бұрын
Correct, I waste time TB the windows the hacker already encrypt all my data.
@angelinasouren
@angelinasouren 3 жыл бұрын
And make sure that the locks on your door take 8 hours to pick.
@deedewald1707
@deedewald1707 3 жыл бұрын
@@angelinasouren That back door is unlocked !
@MishalKamal
@MishalKamal 4 жыл бұрын
Yang Make a video about linux and unix risk factors
@Metal_Tao
@Metal_Tao 3 жыл бұрын
Thank you! This video is... Amazing??? Really demystify CMD too!
@theguidinglight7218
@theguidinglight7218 Жыл бұрын
i have used that command prompt thing before, because last year i had some major issues, and suspected my pc of being compromised. how do i know which one is bad, becuase it doesnt outright say any of them are suspicious.
@Tunex084
@Tunex084 3 жыл бұрын
Thank you for these information. However, you haven’t explained in detail how we can stop our systems being hacked. You mention an app, but I would like to know if the app can block hackers. Thank you.
@phobics9498
@phobics9498 3 жыл бұрын
Have an antivirus, dont bypass warnings antivirus gives you, have common sense, dont download anything sketchy and even if you do you'll probably be fine if your antivirus isnt itself a virus but dont do it anyways. Beware of phishing. The only time your system is going to be "hacked" is if you have a virus, the computer isnt like facebook that can just be hacked as it only exists in your machine.
@Tunex084
@Tunex084 3 жыл бұрын
@@phobics9498 thanks very much.
@___-ih4ty
@___-ih4ty 3 жыл бұрын
Just use common sense and don’t download random things. I recommend Malwarebytes to scan from time to time and a windows defender offline full scan which is already on your computer. Remember to read links carefully because grabifies can look like real links and double check sites you type in before going to them.
@miguelservetus9534
@miguelservetus9534 3 жыл бұрын
@@___-ih4ty Could you explain how to double check a site? Thanks.
@___-ih4ty
@___-ih4ty 2 жыл бұрын
@@miguelservetus9534 Sorry I’m a week late didn’t notice the comment. You can paste links and downloads on VirusTotal and it’ll scan it.
@BladeOfLight16
@BladeOfLight16 2 жыл бұрын
If you think you've been hacked, the only real thing to do is to nuke the system from orbit: reinstall everything back to factory default (or at least from clean installation media). Trying to detect or root out every single back door is a fool's errand.
@chillyman7340
@chillyman7340 3 жыл бұрын
Thank you so much man, really helpful , great video 😁.
@alinobunaga
@alinobunaga 3 жыл бұрын
quick question,how am i supposed to identify the hacker's foreign establised connexion?
@GuyWhoChad
@GuyWhoChad 3 жыл бұрын
I left my wireless keyboard in my sister's room and she started smashing it and it was connected to my pc so i fricking thought i was hacked 😂😂
@abdelhakimehan6209
@abdelhakimehan6209 4 жыл бұрын
thanks for this content, really nice to have some knowledge of security
@Fwmatl
@Fwmatl 2 жыл бұрын
Assume Mac is commandeered by hacker…can that be seen/proved by app or in terminal mode (commands)? Thanks.
@SlvmberParty
@SlvmberParty 2 жыл бұрын
The hacker watching how I try to kill the process named "WidnowsCrytycalProkess": *nervously sweating*
@monkey5174
@monkey5174 3 жыл бұрын
why did this appear in my recommended lol
@sweetmelon3365
@sweetmelon3365 3 жыл бұрын
4:45 how do i tell that's a hacker listening and not a normal connection?
@Ormgryd
@Ormgryd 3 жыл бұрын
Would alot of this be mitegated if you run Windows as a regular user and not a administrator? I can see if you have admin right and install stuff and enter your admin pass dissregarding the warning it makes no difference, But it must be a lot harder for attackers to actaully get a foothold on your system i imagine? when and if you get a password promt when trying to install junk you get a sence of a "humm"-feeling and atleast look into what you are trying to install.
@sunshinecloud3097
@sunshinecloud3097 11 ай бұрын
hi, teacher, can I check if you happen to know about the following exe software/files that is hidden within my images? It seems that someone has stored malicious things within my photos. like "68K BCS executable" , "CLIPPER COFF executable C2 R1 - version 1288", "apollo a88k COFF executable - version 1028", "SVR2 pure executable (USS/370) not stripped - version 65793", "PGP Secret Sub-key" ? been experiencing weird issues on my phone and laptop devices.
@bsddl7774
@bsddl7774 4 жыл бұрын
希望能有中文字幕,hope to have chinese subtitles,thank you!
@GnomeEU
@GnomeEU 3 жыл бұрын
No normal user can do anything with this information. At least recommend some tools that send process hashes to virustotal or something. Seeing running processes or networking traffic doesn't tell you anything about it being malicious or not. You can replace system files, hide files from task manager, hide connections from netstat etc. And no normal user would even know 50% of the harmless system connections and system processes running.
@conceptofeverything8793
@conceptofeverything8793 2 жыл бұрын
True. The latter part. Even at this point I realise my OS had been hacked, but there's not much to do about it since they can always go deeper into the layers.
@SianWinstanley
@SianWinstanley 3 жыл бұрын
Good info for intermediate Windows users, not too easy for beginners. But am liking and commenting for the YT algo.
@Tyokok
@Tyokok 3 жыл бұрын
find this really nice channel! Thanks! One Q: win defender could be turned off by Anti-virus software (e.g. norton), right?
@igorthelight
@igorthelight 3 жыл бұрын
Yes they could. Most other antiviruses are better than WinDefender anyways. But if you don't have other antiviruses - don't disable Firewall and Defender!
@BlueRice
@BlueRice 3 жыл бұрын
the fact window 10 is easier to hacked into than previous window...
@TechnMetal
@TechnMetal 3 жыл бұрын
Nice England
@naoaquieopatrickpatrick8565
@naoaquieopatrickpatrick8565 3 жыл бұрын
@@TechnMetal Nice Epanishe
@lsudo
@lsudo 3 жыл бұрын
WoW english you good teach can ? Don't take this seriously it's just a joke 😂
@Otto_Heiskanen
@Otto_Heiskanen 3 жыл бұрын
Well, no shit sherlock, u can just disable taskmanager and apps and u have full control
@recode8453
@recode8453 3 жыл бұрын
well it has ten windows
@onevastanus
@onevastanus 3 жыл бұрын
If you have Windows 10 your computer comes pre-hacked. Signs of hacking: The software is very difficult to remove. The software takes control of your computer so you cannot use it. The software steals all your info. The software makes your computer slow and hard to use. The software fills your computer with junk that you don't want or need.
@robert-raked
@robert-raked Жыл бұрын
literally everything microsoft installs by default
@arminviktor4979
@arminviktor4979 3 жыл бұрын
Nice, I kind of kind went about it the same. This is great confirmation
@Terminatedaccount953
@Terminatedaccount953 2 жыл бұрын
is wmi reversal performance adapter something to worry about?
@okwepullup
@okwepullup 3 жыл бұрын
one of the signs was that i got this in my recommended
@sandstormxfishingtv3596
@sandstormxfishingtv3596 4 жыл бұрын
Very informative. :D
@WB-gd4df
@WB-gd4df 3 жыл бұрын
So what happens when a suspicious ip connects to svchost.exe instead of powershell?
@lindamora7
@lindamora7 3 жыл бұрын
Hello, thank you for this very educational video. I was recently hacked, How you you protect oneself from a hacker whose hacked the laptop and hopefully not the phone or security cameras? So far I did a manual factory reset having called Samsung but I'm now so paranoid about this despite not having much to hack the fact that I was hacked has been very traumatizing. Just want to know how to make sure I have saved the hard Disc and have no root kits and everything else I need to do.... kindly appreciate it in advance
@tarunsharma1428
@tarunsharma1428 4 жыл бұрын
Thankyou very much for making this.. But you didnt show how to remove it completly😑😥
@persona5hacked574
@persona5hacked574 3 жыл бұрын
Well.. Good Hackers do not let you know that you are hacked and even tho you understand it in some how, they leave no traces.. so
@___-ih4ty
@___-ih4ty 3 жыл бұрын
Right click go to the source and remove completely dont end task it will just restart
@muhammadikhsan3547
@muhammadikhsan3547 3 жыл бұрын
no one : baljeet : *Hello Your Computer Has Virus*
@anthonyharrow3891
@anthonyharrow3891 3 жыл бұрын
connections can be obfuscated so the first part is just discovery but yea you really do need something like wireshark to do analysis at the packet level. now, what are you supposed to do when the hacker also encrypts their connection?
@reanitkhmer3325
@reanitkhmer3325 2 жыл бұрын
I really appreciated your Content Mr. Loi Liang Yang. I have learnt a lot. Thanks
@sebastiansmal4423
@sebastiansmal4423 3 жыл бұрын
Let be honest, everybody is checking now task manager
@lemonacidrounds7293
@lemonacidrounds7293 3 жыл бұрын
I did, power shell's running but its an important program that needs to run.
How To Know Who Is Using My WiFi from a Hacker
3:15
Loi Liang Yang
Рет қаралды 38 М.
Remotely Control Any Phone and PC with this Free tool!
17:15
Loi Liang Yang
Рет қаралды 822 М.
Пранк пошел не по плану…🥲
00:59
Саша Квашеная
Рет қаралды 6 МЛН
Heartwarming Unity at School Event #shorts
00:19
Fabiosa Stories
Рет қаралды 23 МЛН
DEFINITELY NOT HAPPENING ON MY WATCH! 😒
00:12
Laro Benz
Рет қаралды 63 МЛН
Signs Your PC Has Been Hacked
14:49
Britec09
Рет қаралды 73 М.
Why Cybersecurity Training is a SCAM
10:37
Technical Institute of America
Рет қаралды 90 М.
DO THIS before using your new Laptop !
5:27
Bracer Jack
Рет қаралды 6 МЛН
Remotely Control Any PC with an image?!
12:42
Loi Liang Yang
Рет қаралды 150 М.
How to know if your PC is hacked? Suspicious Network Activity 101
10:19
The PC Security Channel
Рет қаралды 1,2 МЛН
3 Levels of WiFi Hacking
22:12
NetworkChuck
Рет қаралды 1,7 МЛН
how hackers bypass windows login screen!
7:36
Loi Liang Yang
Рет қаралды 1,1 МЛН
How to not get hacked: real example
13:55
The PC Security Channel
Рет қаралды 393 М.
Detect Hackers & Malware on your Computer (literally for free)
16:38
Xiaomi SU-7 Max 2024 - Самый быстрый мобильник
32:11
Клубный сервис
Рет қаралды 522 М.
Копия iPhone с WildBerries
1:00
Wylsacom
Рет қаралды 8 МЛН
Я купил первый в своей жизни VR! 🤯
1:00
Вэйми
Рет қаралды 3,3 МЛН