📌 Use code "CROW10" for 10% off your order when you checkout at Maldev Academy FOR A LIMITED TIME! ---> maldevacademy.com/?ref=crow I better see you dorks in kernel-land soon >:) 🫠 ERRATA: - 51:43 I meant the opposite. You're copying data from your SOURCE into your DESTINATION. Y'KNOW, LIKE A NORMAL PERSON WOULD SAY.
@peppidesu Жыл бұрын
CROOOOOOOOOOOOOOOOOOOW
@DaxSudo Жыл бұрын
Ahhh this is only for the lifetime subscription. Dang
@PlanetComputer Жыл бұрын
YES
@crckrbrrs Жыл бұрын
see you next year on your next upload
@_JohnHammond Жыл бұрын
YEAHH!!!!!
@sinatra02 Жыл бұрын
CROW'S FIRST SPONSER???? LETS GOOOOOOOOOOOO
@real2late Жыл бұрын
This is one of the few Tutorials I know that actually are fun to watch, love the way you make the videos
@danomaly8943 Жыл бұрын
2:37 I mentioned this in a seminar and everyone including the professor talked about me like I was crazy or I’m a bad guy or that ethical hackers wouldn’t dream of doing such a thing. We just run nmap and metasploit…don’t mean to vent but it’s good to know I’m not crazy for thinking that way
@captdev Жыл бұрын
I love the shear joy CROW shares when everything comes together at the end 😁
@omerfaruksonmez5668 Жыл бұрын
i mean, watching this at like literally 3 am and so inspired that im gonna try it out my self instead of sleeping. amazing content bro keep it up
@PeteClean Жыл бұрын
This is the only channel i know where sponsors doesn't feel like garbage, my lifetime subscription to MDA is going BRRRRRRR
@danielolayinka8739 Жыл бұрын
Can you do persisting next. @crow
@bollamebendrikb1923 Жыл бұрын
Bro I literally thought of this and was trying to make it yesterday how tf am I this lucky that crow is covering it
@danomaly8943 Жыл бұрын
Another masterpiece. I have learned SO much from these videos and what I have read from the discord.
@detective5253 Жыл бұрын
Ohhh yeaaaaa we need lots of videos like this about modern red team and malware development please
@animeshshukla6758 Жыл бұрын
Sorry for asking, but the file that is still being viewed, it can not delete itself in the middle right? the deletion is only possible after the executable is done running. but this is a problem, if a file is being gives a command for self deletion, it is technically still running, and running file can not be deleted. Is it some sort of extrafile buffer? like, windows gets the command to delete and it does after the file is done running?
@D3ltaLabs Жыл бұрын
I'm itching for the 4th video in this series. Thanks for the videos crow.
@lesnaq Жыл бұрын
never have i clicked on an hour long youtube video faster than i have with this. I'm in a for a treat!
@cryptohoagie963 Жыл бұрын
This is f*cking awesome, never knew this was even possible lol, was literally creating a new process to delete my malware for self deletion 🙃 keep it up crow best mal dev on youtube for sure
@Sizzlik Жыл бұрын
A wise man once said "With great power, comes great electricity-bill"
So, intead of self deletion I had an idea once of a program that would embed some data inside the executable file. I wonder if it is possible to do with alternate data streams, would be cool to have a single exe that saves all the data it generated traveling between different machines.
@black_wolf365 Жыл бұрын
Just yesterday, I was wondering when's your next video coming ... And today I get this notification! 😊 Thank you crow! 🍻 😊
@goobertnelius Жыл бұрын
I cant believe I watched a 1 hour video involving a language I don't even code in on a daily basis (I do code in C++ rarely for a variety of reasons so don't go all: "C++ is superior" on me)
@jvmgang Жыл бұрын
C++ is superior
@v01d_r34l1ty Жыл бұрын
C++ is superior
@lavender0666 Жыл бұрын
C++ is superior
@user-bg1xh3yl5o Жыл бұрын
Great video and congrats on the sponsor man keep it up!
@cjsmax7510 ай бұрын
Hello, thanks for the video, When getting a handle to the file, from where did we find that we can give the CreateFileW the values (delete | sync) for the dwDesiredAccess field, since I haven't found that documented anywhere !!!
@mohammedzaid6634 Жыл бұрын
What a interesting stuff!!!!!! I learned a TON!!!!!!!! CAN'T WAIT TO SEE YOUR NEXT VIDEO
@TreeloPlays Жыл бұрын
Babe wake up new crow just dropped!
@Gobillion160 Жыл бұрын
oh my god mom cancel my plans new crow video just dropped!!
@bsherman8236 Жыл бұрын
Crazy production, information and comedy
@animeshshukla6758 Жыл бұрын
I saw a one hour video with A language i dont use A field i am not in terms i have no clue about OS i dont know much about 10/10 will watch again.
@torphedo6286 Жыл бұрын
Why write in assembly instead of implementing it in C like the kernel does? It's way more readable, you don't need to deal with linking in an assembly file, and there's no "extern"s required in your headers. Also, it's kinda overkill, but another fun approach to anti-anti-debugging would be to hook the program's anti-debugging function and force it to always return false (or just patch the binary). Anyway, loved the video! This was super informative. I've had a lot of issues with my non-malicious process injection getting flagged by Defender. I never even thought to re-implement suspicious imports myself.
@nutbowl3459 Жыл бұрын
Amazing video, keep up the good work
@nightlockhayze Жыл бұрын
YAYY!! NEW CROW VIDEOO WE MISSED YOUUU
@donadoamed Жыл бұрын
you're my hero.
@uirwi9142 Жыл бұрын
it is illegal to delete this video! Crow=Legend!
@grandjagon31908 ай бұрын
All your videos are amazing dude thanks ! Keep it up ! However here I don’t get why we need ADS, can’t the malware goes to deletion phase directly ?
@rozer466011 ай бұрын
Let's go man this channel is amazing keep on the good work fr best channel on KZbin damn
@trintlermint Жыл бұрын
I am crying from happiness at the moment, I am truly happy that you got your video out which you worked hard on crow. I hope you take a break and dont suffer from burnout my brother :)
@snk-js Жыл бұрын
these are the best of the whole yt prove me wrong
@_____666______ Жыл бұрын
is it possible to patch memory that is protected by vmprotect ?
@kernelpanics Жыл бұрын
It's just remembering me of 29a VX group in 2000's 😃
@icoudntfindaname Жыл бұрын
Your's is the only hour long video i'd watch
@999_jah Жыл бұрын
This video is amazing man, keep it up :)
@RandomDude_404 Жыл бұрын
Like always awesome vid! btw what IDE do you use?, and also, can you do a video on how to setup windows 10 for malware development? cuz downloading the C++ compiler (gcc) is making me want to "self delete" if u know what I mean
@nocnoc146 Жыл бұрын
i love the maplestory music
@dead-wi2el Жыл бұрын
HYPEEEE NEW CROW VIDEO
@lavender0666 Жыл бұрын
LET'S GOO C:
@crr0ww Жыл бұрын
:D
@dvxv4016 Жыл бұрын
28:07 there actually was a 1337 process on my pc, i was wondering why it didn't and i was getting a handle wtf
@lavender0666 Жыл бұрын
The process is different for everyone, they're not hardcoded in but given on runtime (process creation)
@vackor Жыл бұрын
ur vids are great! i feel violated by the stream of information that we have access too in this day and age :^)
@emileberteloot6546 Жыл бұрын
Why renaming the default datastream before deleting it ? Can't you just delete the default one ?
@moylababa8196 Жыл бұрын
kindly give us a roadmap "how to learn cyber security from scratch to advance"
@0123bar Жыл бұрын
Hi crow great content!! I really enjoy your videos,Can you do a video about how memory works, virtual memory, pages and memory protections?
@martin_nav Жыл бұрын
You forgot to tickle Mr. Rat. He will not be happy. I hear 22kHz here. (Only people from discord server understand)
@crckrbrrs Жыл бұрын
holy shit holy shit holy shit holy shit CONGRATS ON YOUR FIRST SPONSOR DUDE
@Local_microwave Жыл бұрын
Woke up to a new video let’s go
@nickmullen9510 Жыл бұрын
the pricing is absolutely insane
@lavender0666 Жыл бұрын
Been on the platform for a month now and can say that it's completely worth it, there are cheaper options though (Sektor 7 for example) though they're not as in-depth/up to date as maldev academy
@petevenuti7355 Жыл бұрын
So is there any defensive software you would recommend? That primarily uses behavioral heuristics without having to be online...‽
@lavender0666 Жыл бұрын
EDRs, XDRs and AVs rely on being online to update their signatures and whatnot, having them offline can make it harder for them to pick up newer malware strains
@petevenuti7355 Жыл бұрын
@@lavender0666 automatic updates feel like a good attack vector, heck if that were my thing that would be one of the first ways I'd try and get in, by emulating the antivirus vendors servers, even if I failed I'd be able to figure out what I was up against.
@lavender0666 Жыл бұрын
@@petevenuti7355 that's not a new thing, they're called Trojans and they've been around for decades
@bam6693 Жыл бұрын
Make a video how malware can tell if the OS is updated using windows update.
@lowHP_ Жыл бұрын
great video, thanks a lot 👍
@pbnjdev Жыл бұрын
Me compiling a hello world program and executing only for the executable to get blocked by Windows Defender as malware. Also me: IAM MALWARE DEVLOPER \o/
@principleshipcoleoid8095 Жыл бұрын
2:45 can malware be a form of self defence?
@lavender0666 Жыл бұрын
you're gonna have to expand on that, if you're attacking someone without explicit permission then that's a crime
@principleshipcoleoid8095 Жыл бұрын
@@lavender0666 Russia. Well it's military. Didn't want to get attacked? Then should had not started a war in 2014 or escalated it.
@lavender0666 Жыл бұрын
@@principleshipcoleoid8095 Look up cyber warfware. If a country is attacking another country's assets as soldiers/military personnel then that's okay but if you're doing vigilante stuff that's a legal gray
@gojo18253 ай бұрын
I love your videos! Please don't stop 🙏
@danomaly8943 Жыл бұрын
Gotta take another crack at this from the beginning. Somehow my smart dumbass got the program to work but in reverse. I’ve played around with it and even tried some else statements but still a great video. I learned a lot…just gotta rest my eyes…
@danomaly8943 Жыл бұрын
I’m an idiot lol. The joys and pain of coding. Smh
@NopeNotThatGuy Жыл бұрын
Lord Have Mercy on My Analyst Soul 😧
@principleshipcoleoid8095 Жыл бұрын
Tbf, in a war malware can be handy. Like let's say hypothetically Russia starts a war with another country, but all their electronics suddenly show a ransomware message
@lavender0666 Жыл бұрын
Cyber Warfare is a real thing already, there are state sponsored hackers in all governments (see NSA/CIA for US)
@hydradragonantivirus10 ай бұрын
Heuristics is most power come from at antivruses.
@PlanetComputer Жыл бұрын
YES CROW
@meatdawizardpat Жыл бұрын
4:40 what is that obsidian theme tho 🔥
@meatdawizardpat Жыл бұрын
@@mathis5281 Thanks thats exactly it!
@amirakmel123 Жыл бұрын
why do I think of you as my personal mentor😊
@repairstudio4940 Жыл бұрын
How'd you learn C and Assembly? MalDev Academy or TCM. DeWalt, Alex and the crew at TCM are awesome.
@Jcb-pt2qn Жыл бұрын
is there any financial in malware dev (this is for educational purpose)
@lavender0666 Жыл бұрын
red team developer
@kipsangjacob270 Жыл бұрын
Awesome content 🎉🎉🎉🎉
@jonbikaku6133 Жыл бұрын
Bro do you also have courses?
@bv1495 Жыл бұрын
Hey awesome tutorial ! is the source code available? i couldn't find it in GH
@AtomicBl453 Жыл бұрын
Their AI needs to train on a protection less computer so it can best serve both sides.
@PratyakshaBeri Жыл бұрын
This is amazing content! I wish I found you sooner...
@-uz Жыл бұрын
Another banger!
@nathanezra1 Жыл бұрын
This gonna last me for the next month
@phantompuma228 Жыл бұрын
A SPONSOR AND CROWS RAT VOICE REVEAL. TODAY'S A GOOD DAY.
@ellescer7 ай бұрын
I’ve used these techniques and am now in jail.
@sinatra02 Жыл бұрын
crow can you make a video on how to hack into the hexagon >:)
@crr0ww Жыл бұрын
hacking is 4 nerdz and ill eagle no tanks (they're in my walls listening to me)
@mnageh-bo1mm Жыл бұрын
this vid is god tier.
@0xRAND0M Жыл бұрын
Is the Discord broken???
@Zetty Жыл бұрын
very cool very pog very based
@crr0ww Жыл бұрын
I LOVE YOU, CRYPTID
@piolix0004 Жыл бұрын
HOLY MOLY 1 ENTIRE HOUR NOW I GET WHY YOU'RE BEEN GONE SO MUCH GET THAT BREAD BRO
@principleshipcoleoid8095 Жыл бұрын
1:38 can malware be used to arrest Putin? Can it? Can it be used for that?
@justin7oo994 Жыл бұрын
Rule number 0.5: disconnect yourself from the internet ( the best solution )
@lavender0666 Жыл бұрын
Stuxnet :^)
@justin7oo994 Жыл бұрын
@@lavender0666fucking hell lmao
@thomasslone196411 ай бұрын
stop defending your self from non programmers just ignore them their dislikes don't matter
@blockatelobby10 ай бұрын
Jit you not black
@lavender0666 Жыл бұрын
can we have a video on how to heck Roblox please 🥺
@Karanveer-hf4gu Жыл бұрын
I'd really suggest you to upload videos to somewhere else other than KZbin, Until and unless they delete this gem like content.
@icon0clast274 Жыл бұрын
funny enough I had a PID of 1337 on my machine so I was getting an error code of 0x5... changed it to 4, got the same error code and then changed it to 2481289 and 0x57 popped up..
@URdfkfe_Hodapej-cv9zo Жыл бұрын
Where are you?
@Mauzy0x00 Жыл бұрын
I shall become a rat amongst men
@lcizzlelc Жыл бұрын
Thanks for the tutorial and infecting me with AdWare at the same time. Great! = D
@lcizzlelc Жыл бұрын
I'm trolling. You do you boo boo. Videos are very entertaining even though I don't know wtf you are talking about. (I do, again trolling) You owe me a motherboard.
@HTWwpzIuqaObMt Жыл бұрын
777 like btw. I use arch btw. Wonderful video btw. U got hr ass ur first sponsor congratulations 🎉🎉🎉🎉🎉🎉🎉❤❤❤ btw. (I use arch)