How To Use FireEye RedLine For Incident Response P1 | TryHackMe RedLine

  Рет қаралды 23,612

Motasem Hamdan | Cyber Security & Tech

Motasem Hamdan | Cyber Security & Tech

Күн бұрын

Пікірлер: 22
@Saganis
@Saganis 3 жыл бұрын
Did you see the comment about the Task6? Just finished Task 6 after fumbling around for 3 days... I think the instruction is not clear -- It should say that you have to apply the created IOC to the existing analysis in C:\Users\Administrator\Documents\Analysis
@MotasemHamdan
@MotasemHamdan 3 жыл бұрын
Yeah I heard that too. I will give it a try today. Thank you.
@Saganis
@Saganis 3 жыл бұрын
@@picardftw1313 Bring some time... This took me 60 Minutes to investigate (just idle loading time).
@ian230187
@ian230187 3 жыл бұрын
@@Saganis What was the condition you used? As in the IoC condition while creating the collector?
@Saganis
@Saganis 3 жыл бұрын
@@ian230187 You do not generate a collector. You simply open the existing analyse in the folder above. Then you create the IoC based on the Task6 details and you apply this IoC within the analyse as a IoC Search.
@ian230187
@ian230187 3 жыл бұрын
@@Saganis thanks a ton ....completed this an hour after i posted this
@stevenchan4074
@stevenchan4074 2 жыл бұрын
Would like to ask how to overcome the error of unable to capture the information like - Events Logs, Driver Modules, Device Tree, Hooks, System Restore and System Information? From my initial finding, it appears "Directory does not exist" for the "Location for Acquisitions from this Session".
@Maccanarchy
@Maccanarchy 7 ай бұрын
Hey mate, mind if I ask what you do for work? Because you're extremely knowledgeable and create great videos and I'm just curious what specifically you do? If you'd rather not answer all good. Take care
@MotasemHamdan
@MotasemHamdan 7 ай бұрын
Beside KZbin ? I just swim :)
@Maccanarchy
@Maccanarchy 7 ай бұрын
@@MotasemHamdan Hectic man, you're a fucking legend. Take care
@pravinsingh4690
@pravinsingh4690 2 жыл бұрын
will this redline works if machine is disconnected from the network? suppose in case ransomware attack, system got compromised and we have isolated the affected machine from the network. So after that can we run redline tool to collect the evidence becasue system is not live and its disconnected from the network
@Saganis
@Saganis 3 жыл бұрын
Hope you get well soon!
@mochagawd
@mochagawd Жыл бұрын
Anybody else have a totally different Bios version? I get AMAZON - 1. System info says Amazon EC2 1.0, 10/16/2017. The Machine Name and Windows Product Number are the same and other questions have the correct answer
@fotenks
@fotenks Жыл бұрын
this whole lesson seems to be broken.
@mochagawd
@mochagawd Жыл бұрын
@@fotenks I think the next day I started over and tried again and it worked?
@othmanh
@othmanh 3 жыл бұрын
مبدع يا باشا لاكن لو تشرح بالعربي أو تترجم الفيديو احسن لأن أكثر متابعينك عرب
@embuscadeconhecimento1710
@embuscadeconhecimento1710 Жыл бұрын
esssa plataforma de ensino e jpgar dinheiro fora nem funciona direito se depender disso pra aumentar o numero de profissionais como dizem que esta faltando no mercado. ai que vai falta profissional mesmo.
@Macj707
@Macj707 8 ай бұрын
CHEF CRISP WUZ HERE!
@سيّن-ز1ف
@سيّن-ز1ف 3 жыл бұрын
Hello, I have a simple work on this tool, is there a way to contact you
@MotasemHamdan
@MotasemHamdan 3 жыл бұрын
consultation@motasem-notes.net
@سيّن-ز1ف
@سيّن-ز1ف 3 жыл бұрын
@@MotasemHamdan ok ✅
@سيّن-ز1ف
@سيّن-ز1ف 3 жыл бұрын
@@MotasemHamdan
Investigating Ransomware with FireEye RedLine P2 | TryHackMe RedLine
16:56
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 10 М.
Introduction to Redline
25:19
13Cubed
Рет қаралды 40 М.
Ozoda - Alamlar (Official Video 2023)
6:22
Ozoda Official
Рет қаралды 10 МЛН
요즘유행 찍는법
0:34
오마이비키 OMV
Рет қаралды 12 МЛН
I Sent a Subscriber to Disneyland
0:27
MrBeast
Рет қаралды 104 МЛН
How to use TheHive | Security Incident Response Platform | TyrHackMe TheHive Project
27:49
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 22 М.
Malware Analysis Tools YOU COULD USE
7:19
PC Security Channel
Рет қаралды 70 М.
Is your PC hacked? RAM Forensics with Volatility
14:29
PC Security Channel
Рет қаралды 923 М.
How to tell if your PC is Hacked? Process Forensics
8:57
PC Security Channel
Рет қаралды 512 М.
Analyzing the Zeus Banking Trojan - Malware Analysis Project 101
1:41:16
How to Use Volatility to Investigate Infected Windows | TryHackMe | Memory Forensics
27:36
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 9 М.
This Simple File Management System Changed My Life!
9:27
Jeff Su
Рет қаралды 1,6 МЛН
Detect Hackers & Malware on your Computer (literally for free)
16:38
How to know if your PC is hacked? Suspicious Network Activity 101
10:19
PC Security Channel
Рет қаралды 1,3 МЛН
Strange File in Downloads Folder? Gootloader Malware Analysis
30:20
John Hammond
Рет қаралды 830 М.