If you do a dynamic analysis on the file, you can see its not making network connections, the URLs you provided is not related. When they ask if the file was quarantined, you can see the processes on the host and that it was running , so the host was infected before the containment.
@ssboxer Жыл бұрын
Just started Letsdefend (Soc Analyst) . I found this highly valuable. 👍🏾
@clintonhoward8518 Жыл бұрын
Thanks for the rundown of a LetsDefend alert. I just purchased a year subscription so I'm glad to see it's has a decent UI and structure.
@Micahs0day Жыл бұрын
Glad to help!
@2kslimey7 ай бұрын
I learned more from this than most certification courses 😅
@okanceliker77472 жыл бұрын
Great hands-on practice, Thank you for sharing!
@isaiahrouse4173 Жыл бұрын
I THINK for the if the malware was quarantined part, it means did you quarantine, flag, or block the file or other IOC's from being allowed in the future. The initial alert should show it was allowed since there was no control in place stopping it before. Good explanation and content.
@karthikb5732 жыл бұрын
Great analysing plz do more videos it will be helpful
@tedlessor388713 күн бұрын
Thanks bro i was looking for hands on training. Good looking out.
@Sir_Zick3 ай бұрын
The URL is not related to this ransomware attack incident. You can see in those log of that contains the URL are different date and time with this incident. From threat intelligence, there is no network communication by the ransomware
@cybercey Жыл бұрын
Great job man, i really liked to follow you through the process and learned a lot!
@boulilanourelhak9638 Жыл бұрын
this is very informative keep up the good work
@fireleather17072 жыл бұрын
Very helpful, just started on letsdefend
@matthewsharkey56858 ай бұрын
What are you using to copy and paste youre notes on? That looks like great help wile analysing. I could do with using that my self.
@rakeshnachar5702 жыл бұрын
can u share the links to malware analysis bookmark you created
@opeyemibalogun64862 жыл бұрын
nice, can you share comptia CySA+ practice exam 😄😄?
@Micahs0day2 жыл бұрын
Message me on twitter.
@Listen2Dansoff4 ай бұрын
GUY IS FULLY COKED OUT
@productsbylizzie2 жыл бұрын
cool stuff!
@johnvardy9559 Жыл бұрын
I play with try hack me, recommend also letsdedend worth it?