3ys of cyber security at univetsity, no practical labs except advanced cryptography, 3 months internship in a SOC with no guidance, inability to do a Thesis because interesting projects are "too practical, just engineering problem, no real research advancment", inability to land a job in the fields for missing practical experience and back to my developer job (which luckily I love)... And here I am learning from a YT channel. I think there is something terribly wrong with University education system if they manage to kill the interests in a super challanging and hot topic, closing behind doors of a library...
@ТоварищКамрадовСоциалистКоммун8 ай бұрын
I just recently replied that cyber security should be studied at school. This would be some starting ground for a further education. Then more people would know the topic, understand its importance, and studies in uni would be more advanced and practical
@giblin918 ай бұрын
@@ТоварищКамрадовСоциалистКоммун I am not saying university is useless. I learned a lot of interesting theory, which was definitely needed. But god, I was unlucky, I hope, that there was no practical part except the internship which was useless and a blind shot as the only practical part in the curriculum. The mindset was just for research and if a University is so shortsighted that most students would like to then land a job, rather than pursuing a PhD (and positions are few), well, in my opinion you failed as an educational institution.
@ТоварищКамрадовСоциалистКоммун8 ай бұрын
@@giblin91 many unis would be glad to accept PhD students with their own financial support/grant program. Uni and research groups have typically very limited finances to support a lot of researchers, or the applicant should fit their expectations, experience etc. So it's not an easy job, unless you are lucky to make it quick )
@SchrodingersLife8 ай бұрын
Thanks for sharing your opinion, I have dilemas for which skills should I pursue first before the others are following from behinds. The technical skills I wanna choose first are between Cyber Security, Machine Learning, Software Engineer... or should I choose computer science because it seems as the "Jack of all trades"...? Anyway, sorry for my bad english, it's not my native language. Edit : as a bonus, I recently interested in mechatronic engineering as my career path.
@giblin918 ай бұрын
@@SchrodingersLife hi, hope you see this message. They are three different path wich of course can and will intercept each other. Cyber security can be a lot scientific if it is about crypto and protocols, but also a lot nonscientific when it comes to analysis and risk management. MI will always be very useful nowadays. Never went in that direction myself, I am missing the math and statistical basis to do it (bad teachers at uni). Software engineering is about code and sw architecture. Personally I think CS is nearer to SW engineering, but will give you a basis to then proceed with the other anyways. There are however universities that offer a cyber security or MI learning course path right from the BSc. Nevertheless, uni will give the theoretical basis. For the practical skills look what kind of lab they have or you have to work them yourself though work or personal projects out of passion
@ichbineddie8 ай бұрын
4:40 I used Malwarebytes way back in the day.... like maybe 2008 or so then antivir. Both honestly are a good choice.
@ruvanefriebus-cv6td9 ай бұрын
Never open random links
@pcsecuritychannel9 ай бұрын
good advice, except, malware links don't typically look like: 783g2fh4th3th.hr (random)
@kingofmontechristo9 ай бұрын
It is easier said than done, defining the line between random and not is not always easy unless you decide to only open known links which to me seems a little bit extreme. I think the strategy mentioned in the video is certainly valid and does not require too much time if you have a bookmark of a few of these websites.
@CULTSMITH2479 ай бұрын
Nah bruh. Tou see yt ads page fly arounding there . That like 100 links i accidently click man. I have no curious why people alway make yt ads block apps all thr times
@SgtRamen699 ай бұрын
Most malware sites will try to look legit, coming across one isn't too uncommon if you actually browse the internet beyond the 5-10 sites you regularely use. Ad- and Scriptblock extensions are becoming necessary because of this, but putting them in Virustotal and Scamadvisor is a quick and easy way to be extra safe.
@yasashii_koe9 ай бұрын
That's not really the case anymore. Malware is much more often distributed using social engineering because links being blacklisted takes very little time. Even the link he provided as an example is already dead. The point of this video was to educate people on how you can prevent giving your information away by doubting if something is secure. So even if you fail the first part and download something from an email or a webpage (and trust me, you will eventually fail this part), you can still stop getting infected by using the tools shown in the video.
@aaron-damonkassner47158 ай бұрын
I am in my 2/3 yearish and still haven’t done actual SOC or check sny advance or beginner testing for malware. But this makes me wanna start somewhere and be ahead of the game once I graduate
@claytonwells84259 ай бұрын
This channel is an incredible resource for all levels of understanding, I always learn something new with your content and it’s very short and digestible. Thank you for all you do!
@Markyroson8 ай бұрын
But what I don’t think was mentioned that really should have been is: please, for the love of whatever deity you hold holy, DO NOT run software you suspect to be malware just to see what processes it starts. That’s very, very bad advice outside of perhaps in a VM (and even then…only if you know what you’re doing).
@kanikia8 ай бұрын
Those were my exact thoughts.
@ТоварищКамрадовСоциалистКоммун8 ай бұрын
well someone should make the job done ) but don't repeat this at home )
@tomrkba4685Ай бұрын
It seems obvious to me that one should have a separate “victim” computer that is not on the network for this sort of thing.
@dezmondwhitney12089 ай бұрын
An interesting ,Well explained and helpful video. Thank You Leo. After Windows 7, I, as a non business user, have used Linux which is enough for my requirements. I have been aware for some time that Linux has its own set of security threats and I am starting to learn more about this. Thanks again.
@robertb8748 ай бұрын
Wooow! You made my interest grow bigger in cyber-security! :O
@bibinraj20009 ай бұрын
It seems hybrid analysis is more likely to give false positives like the set up exe for sharex is shown as malicious on it (both crowdstrike and metadefender is green but falcon sandbox is red)
@bibinraj20008 ай бұрын
The same for xnview and irfanview
@billyguthrie31769 ай бұрын
Wow the malwarebytes UI has changed alot. think it mauy be time to test it again. Thanks for the informative video Leo.
@Corteum9 ай бұрын
Nice advertisement
@any_one_else9 ай бұрын
i will never use dat thing again it got stuck in my pc refusing to fully uninstall and stopping other antivirus install i finally deleted it by a special uninstall program
@ТоварищКамрадовСоциалистКоммун9 ай бұрын
these days the difficulties associated with AV removal shouldn't be considered as a stop sign or any kind of disadvantage of AV. Take this as a feature. AV makes a lot to stop it from stopping, uninstalling, file removal etc. It's a part of self defense. You might have to use a special removal program from developer
@billyguthrie31769 ай бұрын
well there has to be some reason he had that problem an we didn't. I'm sure he can't be the only to have had that problem either but it's pretty obvious by the rave reviews that that is not the experince most users have with malwarebytes. I've never had a problem installing or uninstalling it.@@ТоварищКамрадовСоциалистКоммун
@ShakirMohamad-we6xs9 ай бұрын
wait u got wrong av lol the one that cant uninstall is avg not malwarebyte@@any_one_else
@pretoriouskalawangoma68428 ай бұрын
Thank you for the Information
@unyielding_wager9 ай бұрын
Thank you for this video! This is very helpful!
@MFmyk38 ай бұрын
stopping half way through the video to comment how good this info is. I've been studying IT and cyber sec for a few months and all these are fantastic adds to my book marks tool set. Thank you and sub'd!
@mamneo28 ай бұрын
Incroyable.
@MichaelAmen3169 ай бұрын
Leo, love your videos; even thought I am not a newbie and did learn something I kinda felt the video was a bit rushed and wished that you spent a little bit more time on each "basic skill" and listed the websites used in the video in the description. Thank you again for your work.
@Triny-i5t3 ай бұрын
thanks for providing the malware bytes link. Also thank you to the malware bytes team for the free download
@amigazo39728 ай бұрын
Thanks for the video. A good procedure as well is to check the hash value of the file to see if it matches known malware signatures.
@gemox32255 ай бұрын
Thank you very much. I'm an absolute beginner, so I do not wish to comment further. I just appreciate the help.
@david657689 ай бұрын
Seus vídeos que me inspiraram a trabalhar na área de segurança! Obrigado mesmo!
@mamneo28 ай бұрын
Blz manito
@anthonyyu27229 ай бұрын
So much useful info condensed into a short video.
@calcore.7 ай бұрын
Bro fuck yeah you nailed this. How haven't I run into these tools in all my time on the internet. . . Every pc gamer in the world could benefit from learning to use something like sysinternal! Let alone how vital scam success could be reduced if we taught people to check if websites are legit in multiple stages. Loved how direct and clear this was, please keep doing what you're doing! I'll be sticking around!
@AnomalousURL9 ай бұрын
This was good. As a SOC analyst 1 im impressed about the tools you mentioned. Most people are clueless and I was expecting something like firewall rules for windows. Wazuh is a great free soho siem by the way.
@veooquenodaa9 ай бұрын
Thanks, great video! I didn't know this type of tools existed. I thought that in order to test a file, the best option was running it on a VM. I will make sure to run hybrid-analysis as the first time saver.
@ashystyle8 ай бұрын
Sir, 4:10 how do you get a VirusTotal tab on the lower pane in Process Explorere?
@renxcidplus11442 ай бұрын
Where do you see that , I don't see virus total
@crucific075 ай бұрын
Thanks man, I'm looking into choosing Network Operation and Cyber Security as my major and I wanna research it all.
@cchits6 ай бұрын
Stay informed and stay ahead in the ever-changing world of cybercrime. Traditional educational institutions may not provide the cutting-edge knowledge needed to navigate this rapidly evolving landscape. To stay protected, you will need to be proactive in your approach to cybersecurity. This requires continuously educating yourself on the latest threats, vulnerabilities, and mitigation strategies. Relying solely on what is taught in a classroom setting is no longer sufficient. The onus is on individual users and businesses to take ownership of their cybersecurity posture. This means actively seeking out the most up-to-date information, tools, and best practices to safeguard against ever-morphing cyber threats. By adopting a proactive mindset, you can position yourself and your organization to be more resilient and responsive in the face of emerging cybercrime trends. The alternative - falling behind the curve - can have severe consequences in today's hyperconnected, digital-first world. Stay vigilant, stay informed, and stay ahead of the curve. Your cybersecurity future depends on it.
@John.Doe.X19 ай бұрын
Please sir, slow it down. First explain how do I even turn on the PC.
@thedantetaviantz6 ай бұрын
😂😂😂
@anthonygh11266 ай бұрын
😂
@honeyyydip875 ай бұрын
😭🤣🤣🤣
@bontle41572 ай бұрын
😂😂
@BK_Schulz3 күн бұрын
What is a Microsoft?
@RICK_MCN8 ай бұрын
If it seems fishy dont download it.
@tvviewer4500Ай бұрын
What if you are downloading a fish application?
@jbsvault9 ай бұрын
Thanks for the, once again, great video. Quick question: is there a reason for not including URLs of programs or websites in the description, ones that were presented or discussed in video(s)?
@TheDeadStyx8 ай бұрын
The thing with the current state of win10, and, of course, win 11 is the fact that even the system alone is "network active"(don't know how to phrase it better). I have been running PipeWire just to spot new activity, hoping to catch if something crappy has been triggered. Well... For the time being, the only wtf activity I've been getting is stuff like Windows, connecting to some GameService junk. Have I scanned my system with numerous av software? - Yes. Have I found something besides "boohoo, it's a torrent client"? - no. Do I know why the hell ms stuff like that is running? - No. And I'm pretty sure the Internet will tell me it's ok. Do I see Windows as my number one head ache? - Yup, I do. I didn't trigger it, nor I actually know what is, and most likely I don't use it. And yes, I am well aware of Linux. But, sadly, win and mac have a strong hold on the software when it comes to manufacturers to develop software.
@Matt-pi9jo9 ай бұрын
I love System Informer as an AIO tool
@bravepart7 ай бұрын
Nice! Could I suggest you please consider making videos for people on how to help their parents or elderly relatives understand cyber attacks and scams, perhaps a super simple animated video for elderly people too? It's such a real vulnerability in society and we'll all experience it in one way or another! Cheers
@mikengtw9 ай бұрын
Great video I like it does help me to protect my pc and laptops..😊👍🏻
@ТоварищКамрадовСоциалистКоммун9 ай бұрын
that was helpful. would be good to watch an advance skill course
@maracuyaaa9 ай бұрын
Very interesting, thank you!
@BobbyDotNet14 күн бұрын
Couple problems with this. 1. Dozen or more of service host processes, can't easily tell what they are doing, even when you can see how many are running. 2. Once there is a few years worth of applications and updates, I suspect it is very unlikely a user will be able to recall what the running process list looked like yesterday much less "normally".
@rexaca18264 ай бұрын
Thanks for sharing knowledge mate.
@ayazakhter27968 ай бұрын
this deserves the Likes and Subscribe
@Ash-pn1gj8 ай бұрын
Appropriate advice if you want to gate yourself into a technical SOC Analyst job which is the role that everyone thinks is super sexy. Its actually just the whipping boy for the SOC manager and will be 95% of the time just looking at a phishing email and wondering why people are so dumb. If you want to go far in the industry then learn about business and how to translate technical analysis like this into business language, learn about the CIA triad and learn about how to secure systems against attacks.
@getoppos8 ай бұрын
Very useful information! Thank you for sharing!
@liameyles14509 ай бұрын
thank you so much for this i don't like just relying on my AV its nice to have some other skills slash options and methods to keep your system safe thanks again
@Il_panda5 ай бұрын
I started learning re just because of this
@jackmio9 ай бұрын
no mention of intezer; do you not like them anymore?
@lowkeybttd8 ай бұрын
If I download a pirated software, and there's a malware, does it affect my computer immediately or after I install the software?
@JJFlores1978 ай бұрын
That's a fun question as it depends entirely on how the malware is designed. Some will start working immediately. Others will remain dormant for a pre-determined time or until certain conditions are met. That's just the inherent risk of pirating stuff. You never know what you're going to get.
@lowkeybttd8 ай бұрын
@@JJFlores197 I'm really torn between pirating adobe and buying the plan because I don't want my pc get affected by viruses
@ActualWonton7 ай бұрын
Can someone elaborate a little further on 3:48 where the application is suspected to be a trojan? Is it because it established a connection while showing no UI? Just wanna make sure I understand it because if I were to install TCPView I think I would get confused about what would be considered suspicious behavior between other applications that were already running.
@OrioMaldo25 күн бұрын
"Why does it need to communicate with a remote server?" is a good question to ask. It could be checking for updates, downloading additional malware, stealing data, sending telemetry.. this is where investigation comes in
@anton337795 ай бұрын
What's the difference between the system suite and normal task manager?
@peterwassmuth40149 ай бұрын
Awesome Thank you for Sharing! 💯✴
@user-eh9jo9ep5r8 ай бұрын
What can be done to incrase cyber security planetary in few good steps
@ТоварищКамрадовСоциалистКоммун8 ай бұрын
teach it in school. School programs are typically crap in many countries around the world
@sureyoucan16136 ай бұрын
Man, thanks for this video.
@DailyCyberSecurity5 ай бұрын
Thanks for the video❤
@shinigamirenegade8 ай бұрын
Subscribed. You and myfdir are my go tos
@annaesposito9299 ай бұрын
I truly like this channel, this video is so educational. Thanks
@SorinPricop9 ай бұрын
Very useful information Leo. I trust you more then Kaspersky 😉
@Corteum9 ай бұрын
What did Kaspersky do that made you feel like you couldnt trust them anymore
@Corteum9 ай бұрын
@cuddles1767 How do you know that? You mean like that Intel cpu backdoors specter and meltdown?
@SorinPricop9 ай бұрын
@@Corteum It was a joke, forget to mention, I use Kasperksy Premium ;)
@rc22768 ай бұрын
Thank you for teaching basic analysis and showing how to do it.
@JosephHerreraLeon8 ай бұрын
Thank you for the information!
@rjeption8 ай бұрын
Very insightful video thank u
@ashystyle8 ай бұрын
How do I analyze a 811MB ISO file which is suppose to be "AOMEI Partition Assistant 10.3.1" By opening it in HX editor, what else except for the dots which fills out the space, should I be looking for?
@RonG_NYC9 ай бұрын
Very helpful for noobs like me. Thanks 👍
@soskom2 ай бұрын
I need advance skills video🙏🏻 Let’s stop all malware
@Nathan21679Ай бұрын
Sadly we can’t stop malware as there will be hackers and a lot of hackers who commit malware attacks are from Russia North Korea or china and the fbi don’t have international arrest warrants for these countries.
@IakobusAtreides9 ай бұрын
Awesome content, thank you!🙏
@Eysc8 ай бұрын
thanks learned something new please do a next level video
@felipemartinez98649 ай бұрын
Hallo! Thx so much for this video. I have a problem (adware i guess). When my pc starts it opens my browser with some random page. I tried with various antivirus and it detects nothing. I would really aprecciate any help. Thanks!
@alimirqasimov30335 ай бұрын
Hello I love your channel and I wanted to know if sysinternals suite is safe. Thank you
@CharlieKelly-ub5qw4 күн бұрын
I had something like a job interview; they called me, asked me a few questions, and now I start my training on Thursday and Friday. I'm only temporary for two weeks. Is that normal for an IT position?
@shadow65432 күн бұрын
What questions did they ask? Whats your background? Is this a W-2 position? Legitimate business?
@CharlieKelly-ub5qw2 күн бұрын
@shadow6543 if I knew how to repair computers and if I knew this. Then they said I start this Thursday and Friday for hands on training. I told my professor he said it sound fishy.
@weir-doe32059 ай бұрын
Wow, very informative for a people with very basic computer knowledge, thank you
@user-pp3dl8id7r8 ай бұрын
Excellent content
@Khual9 ай бұрын
I really love your video and especially I love this one so much because it teaches me a lot of stuff. I love cybersecurity and learning from you is a treasure!
@kezza30194 ай бұрын
Does anyone know if Malwarebytes will clash with other AV's? I have F-secure but I do like how affective Malwarebytes is.
@safetime1002 күн бұрын
Thanks ❤
@smaracxx8 ай бұрын
btw windows sandbox is it good for testing potentially bad stuff? like if i run something to test and it happends to be ransomware will it spred to main system i know sandbox is ment to be isolated but knowing it shares network and who knows what, been wondering would it be safe? i like it more then vm's because i just ran it like any other app its fast up and can check/do stuff quick
@ТоварищКамрадовСоциалистКоммун8 ай бұрын
some ransomware may detect they run in isolated environment, sometimes called sandbox evading malware. So they may PRETEND they are safe to run, but instead just lay down. Alternatively if they have an access to network they may steal some data and send it over network, and pretend like nothing bad happened. Many different bad scenarios, so if nothing bad happened during sandbox session, it doesn't mean the software is completely safe
@mahdihasan4220 күн бұрын
loved the content
@SenseiSilence8 ай бұрын
This is an amazing video. Thankyou for this. I am new to the space. I look forward to learning more.
@francishubertovasquez21392 ай бұрын
Does the machine and the heart have interactive understanding or misunderstanding categorically, Theres the SA and AV like the brain neurons, why verdict, for money making circus, I think I dont need that Abaddon type thing, I need a lunch for the launch for 2, thing. Yknow modern Space tourism with the front desk attract.
@darnellhamer88318 ай бұрын
Great video
@Johnny-re7dm5 ай бұрын
im curious: does any of these showcased tools to detect viruses detect a virus that can hide itself in bios or other firmware?
@scarytuberАй бұрын
no these tools only interact with the operating system but you might be able to see TCP and UDP connections made by the maleware using wireshark or another software. you can dump and hash your firmware and compare it to a hash of the actual firmware to see if its been tampered with, but this can lead to false positives sometimes if you dont do it right
@Johnny-re7dmАй бұрын
@@scarytuber thx scarytuber
@7Im8O668 ай бұрын
Thx for the lessons 😎 My malwarebytes won't even load the website or let me download the exe file? why does yours load it ? when you have the paid version? The browser guard wont allow it (says it is a trojan)
@bumberClart10004 ай бұрын
Give Malwarebytes permission to allow the files
@ElectroCurmudgeon9 ай бұрын
great suggestions
@tumato55644 ай бұрын
I am a freshmen in college going into cyber security. I have seen videos talking about the importance of getting an internship freshmen year but I am just starting out and wondering if it would be better to build up my skills or look for internship opportunity.
@user-nd7rg5er5g8 ай бұрын
Can I ask for a link to pestudio?
@TehDrunkenMonkey9 ай бұрын
I have been trying to run Malwarebytes regardless the scan it'll stop scanning say 300,000 items but the time will still keep going up, any idea?
@MasterBamarah8 ай бұрын
You have to pay for it!
@ClaudeVanguard8 ай бұрын
i gotta ask though, is mbam really enough to remove malware that is already in someone's pc? i remember having a client complaining about his laptop running slow or that his fans are active even though idle so i installed malwarebytes and another av, ran them and updated drivers, etc(the basics) and found nothing, i decided to install spyhunter and it detected miners (best guess is that its from the cracked games) and removed it which fixed the issues
@bassamel-ashkar40052 ай бұрын
your process explore looks much prettier and understandable. i just downloaded mine and its no where as organized as yours. How to make it look like yours, like to show all the process in a list, also virus total, i couldn't find it at all inside the options.
@Armmani20009 ай бұрын
As always very informative and useful.. Thanks!
@zeeshanaftab32159 ай бұрын
What if Malwarebytes and hitmanpro can't detect the crypto miner malware?? I got 3 unnamed processes in taskbar using high CPU and disk.
@ТоварищКамрадовСоциалистКоммун9 ай бұрын
You probably installed some shady program which does not directly harm your data, so AV didn't recognize it as a threat, and let it go
@thechillmaster58368 ай бұрын
Malware analysis and forensics are not basic cybersecurity
@nirajshetty66406 ай бұрын
Which is the web browser that is used in this video
@MrMarbles9 ай бұрын
I can't believe it. Microsoft Defender flagged a file today as malware.
@ТоварищКамрадовСоциалистКоммун9 ай бұрын
surprised that MS defender works? recent ratings show that it works, and not bad at all
@Abdullahniazi-nj7fy8 ай бұрын
USE Linux instead of wasting time on Buggy, Slow OS WINDOWS
@-Devy-8 ай бұрын
@@Abdullahniazi-nj7fy Right, I forgot Linux has never had the most insane security holes ever... Oh wait! Keep being a delusional fanboy.
@ТоварищКамрадовСоциалистКоммун8 ай бұрын
Linux workstation requires even higher user skills. Normally only those skillful enough would be ready to move to Linux, or to use both OS
@Abdullahniazi-nj7fy8 ай бұрын
@@ТоварищКамрадовСоциалистКоммун no brother everybody can easily use Linux if he/she wants too. 15 years ago I've same thinking like you. But once I tried to start Linux Mint. Things get easier day by day. I know there are so many distros but if you want to Go from Windows to Linux. Try Linux Mint or Deep-in Linux at the start . You will definitely love them . But if you are already a user of any Linux distro U can easily understand what I am saying. Even Dual core System or Pentium 4 with 2 Ram . U won't find Linux Buggy Or slower but with windows 10 or win 7 ...2 GB Ram and Dual core System system gets heavier on every update. That's the reason I'm saying it.
@Mrbbassi3 ай бұрын
i think using sandbox could be more secure for such things!
@seelenschnitterr8 ай бұрын
Little confused so many are watching this Video and nobody scans pestudio on Virus Total or hybrid analysis and ask anything? Task failed successfully?
@adrianlouis21088 ай бұрын
Whole hartedly.. I find this as something valuable... Thank you so much..
@gideonbennett41878 ай бұрын
Thank you !!
@x9v8k8 ай бұрын
Can you update your bio with the official links to the softwares used in video? I know I can find on my own, but would be nice to have that incase. Also, is it normal for windows warning message to pop up for Pestudio when trying to run the exe?
@James-ff5yq2 ай бұрын
Thanks
@drac.968 ай бұрын
Have some COMMON SENSE and dont open random links especially those from shady ad websites and emails and text messages. Always verify the sender. Do not trust their word blindly.
@randallvargas44579 ай бұрын
Short and sweet! Good to see you, as well.
@BoothTheGrey2 ай бұрын
This is clearly not for beginners. I am Web Supporter for small business customers and we have thousands of companies where real beginners sit as accountants in front of PCs. Those are beginners. Probably you mean "security beginners" which means they should already have rather well PC knowledge. You should have mentioned it in the beginning of the video and in the description. This is by the way the most biggest problem with too many IT folks. They are completely incapable of understand what it means to be a "beginner" or someone who is struggling with PC systems. Which is million over million people. Maybe I check out other videos from this channel. But please... think a bit more about who it is you wanna adress and target. I repeat: This is not a video for "beginners".
@layannmadeleine35932 ай бұрын
Hello is there anything you might recommend to someone who wants to learn the basics of PC knowledge to start in Cybersecurity?
@scarytuberАй бұрын
He opens the HTML of the website, which is the markup language (code) used to display elements on a webpage, such as input boxes, text, and buttons. By using a hotkey to inspect the HTML, he can view the structure of the webpage. Instead of understanding the HTML directly, you can use an analysis website, as he demonstrated, by simply typing in the website link. When he mentions that the site has a valid SSL certificate, he is referring to the use of HTTPS instead of HTTP. When a site uses HTTP, any information you enter is not encrypted, making it vulnerable to hackers who can access the raw data. In contrast, HTTPS encrypts the data, providing a secure connection. (just because a website uses HTTPS doesn't mean its not malicious, it just means the data being sent between your computer and the websites is encrypted) When he downloads the executable file (EXE), which starts the program, he notes that in the past, people had to read assembly language or bytecode to detect malware. Assembly language is the last human-readable form of code before it is converted to binary (1s and 0s). All programs on a computer-whether they are games, utilities, or malware-are ultimately represented in binary code. If someone knows how to read assembly language, they can understand the instructions the program or virus follows to operate on the computer. However, he prefers using websites and downloadable software for quick assessments of whether a program is malicious. Asfor the forensics section, he explains the first part well, but for the TCP window, it’s important to note that TCP (Transmission Control Protocol) is a method for communicating data between computers. The main protocols are TCP and UDP (User Datagram Protocol), with TCP being more reliable. He shows the established connection between his IP address (an identifier for his internet connection) and another IP address, which was achieved using the TCP protocol. When he mentions that a program loading many DLLs (Dynamic Link Libraries) is suspicious, it is because DLLs are files that contain executable code shared across the system. Most legitimate applications typically use a small number of DLLs for processing, but malicious applications might load many DLLs to execute various malicious actions. i hope this helps to understand it a bit better
@kam83178 ай бұрын
my malwarebytes dont look like yours any there isnt an update available for me? ive got premium any help
@ClaudeVanguard8 ай бұрын
open the settings then go to display
@kam83178 ай бұрын
@@ClaudeVanguard still cannot see it, i only get the option to: change theme to windows default, light or dark; choose backround image and hardware acceleration
@OleksandrSe8 ай бұрын
Appreciate it☺️
@Mujoujinsoku4 ай бұрын
Why does pestudio come up as suspicious on Hybrid Analysis?