Also, I just realised that you can reduce email spam by around 70-80% by scrolling back up to SMASH the like button
@ΝΜΟ3 ай бұрын
Hello. I eat rats. Are you a rat?
@TheDragoPenguin3 ай бұрын
bet
@mand4lex3 ай бұрын
💯
@soggybicycle3 ай бұрын
real!!
@llliiimmmeee3 ай бұрын
It worked
@M249-z2s3 ай бұрын
This turned from a video about viruses to an virtual box ad.
@vaakdemandante87723 ай бұрын
more like a Windows installation tutorial, which is crazy because the OS installer should not require one
@sspnlgaming78443 ай бұрын
thats the point
@JmKrokY3 ай бұрын
🗿
@Manny732113 ай бұрын
they deserve the promo
@laupoke3 ай бұрын
That's not the type of tool that would make any sense being advertised on youtube
@TerraGreen13 ай бұрын
A couple years ago I fell for one of these emails on an old channel from some one pretending to be from a mobile game. After opening it, within a few hours my channel had been converted into some fake scam uploading videos about cracked editing softwares trying to spread the trojan to my audience. It was a pain to get the channel back as pretty much all my emails had been hacked and I had no proof of even owning the channel 😂. I had to completely wipe my computer and go through tons of email recovery steps. It's crazy how they're still around, and it's a good thing you made a video about this as you probably saved at least a couple youtubers from falling for it.
@pestznyk3 ай бұрын
Huge fan of your channel! Hope this never happens again
@SillyStarCat24 күн бұрын
I remember this happened to an artist named sonadrawsstuffyt
@zallax-0713 күн бұрын
Can you gimme a shout-out?
@AmartyaAnand3 ай бұрын
Plot twist: this whole video was a virtual box promo 🗿
@ElishaPervezORG3 ай бұрын
bruhhh :-:
@sauliusvitkauskas87413 ай бұрын
VMware is better
@ElishaPervezORG3 ай бұрын
@@sauliusvitkauskas8741 Both are pretty good but still not 100% safe
@Russian95_3 ай бұрын
@@sauliusvitkauskas8741 true
@TheosTechTips3 ай бұрын
@@sauliusvitkauskas8741 No way lol. Broadcom sucks. Open-source FTW!
@Spectrulight3 ай бұрын
3:39 my bad for reading your folder names
@pizzaman17203 ай бұрын
Lol
@JosGeerink2 ай бұрын
I don't get it?
@pumkin6102 ай бұрын
@@JosGeerink3:41
@ZRIstruck2 ай бұрын
My bad, too.
@its_air72 ай бұрын
why is the pfp a pic of someone on the moon
@RishabhBohra133 ай бұрын
I live in india, Zomato is a legit company, and really big like doordash, this person is definitely pretending to be them.
@HaryanviKashmiri3 ай бұрын
same here, zomato doesn’t even work in europe.
@zerokun26553 ай бұрын
I mean, definitely. He even showed the stock value of the company in the video, so it's real. Just like Sony Vegas is
@flipflops993 ай бұрын
ya dont say?
@Rusty013 ай бұрын
@@flipflops99 fr like bro saying it like it wasnt obvious they are prentended
@asadfarraj3 ай бұрын
It is a multinational company if I remember correctly
@billyjhamlin3 ай бұрын
Congratulations on getting me to watch a 14 minute long ad for VirtualBox!
@falxie_3 ай бұрын
Running suspicious software in a VM helps but doesn't completely remove any risk. The virus could steal any credentials present in the VM and potentially probe at your home network if you don't have it isolated.
@randomgamingin144p3 ай бұрын
also often the software can detect a VM so you have to use qemu-kvm and trick it into thinking its not running on a VM, or hyper-v might work
@phr3ui5593 ай бұрын
are there any tutorials on this
@phr3ui5593 ай бұрын
@@randomgamingin144pcan you link a tutorial
@zakariya2011_3 ай бұрын
Uhh if you run VMware the vm's network connection will be isolated
@redlionstudio27503 ай бұрын
@@randomgamingin144p or sandbox
@DomenLo3 ай бұрын
This part {something|something else} is actually spintax, not personalization. It randomly picks one of the options inside the squiggly brackets (separated by a pipe), making the text unique enough that it doesn't trigger spam filters. Btw - in virtualbox you could also create snapshots and revert back to one pre-test, this way you dont need to delete and re-clone the installation.
@CrimesAnatomy3 ай бұрын
Hey Bog, this is hilarious, I got a recent email just like this. You did well turning this into a video to educate people. Because I installed it and now everyone know my true identity and Gotham will never be safe again.
@kwe_3 ай бұрын
😭
@MrBIizzard3 ай бұрын
Pack it up bruce wayne
@TimeisoutT3 ай бұрын
@@MrBIizzard MY NAME IS THE HULK!
@marekvojta96483 ай бұрын
Well i hoped for some analysis of the virus like what it steal how it works etc.
@Mr.MessOpixels3 ай бұрын
Gotta engage knightfall protocol now Edit: don’t forget about the 243 riddler trophies
@Abukek1333 ай бұрын
"theres a .pl" Ok so its Polish "Its from the netherlands"
@vGermanK2 ай бұрын
i was thinking the same think lol
@vGermanK2 ай бұрын
thing*
@synvie-x2 ай бұрын
as a polish person, i agree 😭
@uzzybuzzy-t5h2 ай бұрын
probably used a vpn
@agateophobiaaa2 ай бұрын
@@uzzybuzzy-t5h Polish domain (.pl) doesn't require you to have a polish citizenship. Also the information provided by WHOIS is supplied by the owner of the domain (it's whatever was used on domain's purchase), VPN has nothing to do with that.
@gFamWeb3 ай бұрын
Clarification on virtual machines: some clever viruses can detect and potentially even escape virtual machines (although the latter is rare)
@siphovundla50573 ай бұрын
That is what wacatac is doing, it first scans to see if its on a VM and if it is then it wont run any further malware
@woodcrafte_r3 ай бұрын
I mean 6 out of 100 malware can do this. Your just better off playing the unlucky jackpot if that happens. But some people use web virtual machines
@thmUNIX3 ай бұрын
QEMU/KVM is rarely detected, because VirtualBox and VMware are the most popular VMs out there. btw, even in VBox & VMware you can via Registry Editor, I believe, edit sys info so that it would look like to malware that it's a real PC
@ZarakKhan-h3j3 ай бұрын
@@siphovundla5057 wacatac isnt even a malware lol. its the ai scanned malware.
@dvorakgigachad14443 ай бұрын
@@woodcrafte_r VM escapes are very very rare and haven't happened in many years
@JohnJacobson555Ай бұрын
I want you to know that this happened to my mother and I had to restart the PC from scratch and look for the programs and office keys to get it working again.
@MarkUSAfreedomАй бұрын
where did you get them?
@JohnJacobson555Ай бұрын
I checked many sites and in the end I leaned towards BNH Software and in the end everything turned out well.
@MarkUSAfreedomАй бұрын
I asked you because lately I'm very distrustful of download sites
@JohnJacobson555Ай бұрын
I think that's normal
@LocksDE3 ай бұрын
Hey Bog if you see this, in the future DO NOT connect a ethernet cable or Wi-Fi they can infect your router.
@norav693 ай бұрын
More than infecting your router they can take the public IP from the internet connection of the pc, taking public informations. Most "routers" that we use in our houses do not have any computation power and decision making capabilities, everything is done by the ISP. In general yes tho, it's better to disconnect the internet connection from a virus testing virtual machine
@Follina.3 ай бұрын
@@norav69 The greatest risk I see is if you have a router with the default password the malware might be able to log into it and turn on port forwarding on your devices, then send your IP to an attacker, so if you then ran a service thinking it'd only be accessible locally, you might end up exposing yourself to the internet
@fabienso58893 ай бұрын
@@norav69 Oh no they can take my PUBLIC ip whatever are they gonna do Yeah nothing that's right Network access might start becoming dangerous if you have fully unprotected devices like a camera or a washing machine on your network But let's be honnest most viruses you get are just interested in grabbing your passwords and access token
@somedude87283 ай бұрын
@@fabienso5889 Can't wait for a virus to overtake random unprotected printeris
@dvorakgigachad14443 ай бұрын
anyrun is a good way to do that stuff safely
@nanomachines29542 ай бұрын
9:04 it's not "HTML". H here stands for 'heuristic' and ML means machine learning. Means this virus was detected not by checking it's signature but by scanning its behavior using machine learning (AI).
@thelastdirewolf3587Ай бұрын
What it was detected with ml because it said that was the detected file
@biscottimuncher3 ай бұрын
Running Procdot to capture all system changes in a network isolated environment, or even better, running it in a cloud SAAS like joesandbox could be a really cool follow up video! Following the exfiltration of whatever the bad actor/hacker wanted in a safe environment is always a blast, plus seeing what happens as a granular level is super cool! Awesome video!
@CLOYO3 ай бұрын
6:23 If there's spelling and grammar mistakes then there's definitely something wrong in my opinion.
@cat_umbrella4 күн бұрын
yeah
@karmapawsnplay97013 ай бұрын
good thing you oppened the trojan in a virtual machine. BUT I don think you have properly isolated virtualbox! You might have to check your main desktop! it might have leaked! Be safe!
@toreopp3 ай бұрын
He didn't run the file. He's fine.
@redlionstudio27503 ай бұрын
i think it's just some cheap stealer, so nothing to worry about
@RealMol3 ай бұрын
@toreopp this is true, he ran the file on his vm. But he didn't completely isolate his vm from his host machine by disabling all network connections. Most viruses can escape the vm by hopping to the host machine through the network.
@pancak33 ай бұрын
@@RealMol this is false.
@somedude87283 ай бұрын
@@RealMol They aren't able to escape, they can however gain access to unprotected devices on the network.
@XJ9LoL2 ай бұрын
0:29 nope, broken english = its a phish.
@johnsilvrrАй бұрын
God I had such a crush on that pfp when I was a kid
@efficiencyvi83693 ай бұрын
As long as it is a cookie cutter trojan and windows defender is on it is no big deal. It gets dangerous when it is tailored for your device and antivirus doesn't detect it.
@rustlr3 ай бұрын
"Now imagine if I opened this on my actual computer, not a virtual machine." Your Windows Defender on your actual computer would have blocked and quarantined it as well.
@Lucy-bx7siАй бұрын
but windows defender will not 100% protect you from these viruses.
@tylerebowers3 ай бұрын
Booting in a VM is sure safer EXCEPT WHEN THAT VM IS CONNECTED TO THE INTERNET!
@jan_harald2 ай бұрын
protip: don't keep cloning the machines, use snapshots! you take a base snapshot, then do shady stuff, and revert back to previous snapshot, it's pretty simple
@JmKrokY3 ай бұрын
7:57 Polish domain
@KRZYSZTOFMANIA2 ай бұрын
Chciałem napisać 😅
@Maciurella2 ай бұрын
nie wiem dlaczego, ale byłem przekonany, że oglądam Polski film a nie angielski, więc mnie to nie zdziwiło, czy ja już naprawdę nie odróżniam Polskiego od Angielskiego?! 😂 POLSKA GUROM 🇵🇱
Nice folder called "STOP READING MY FOLDER NAMES". Gotta love that!
@abhishek_patra_3 ай бұрын
Bro I'm from India 🇮🇳 and Zomato is an Indian food company.... It doesn't work outside of India .... Why Zomato would promote anything outside India 😂😂 .....
@sebastianbauer47683 ай бұрын
So why are they trying to trick people into installing malware on their machines? Even worse why don’t they support Linux? /jk
@GOLDEN-z7x3 ай бұрын
It has many services outside India
@ashishjadhao1153 ай бұрын
They are outside India aswell...atleast in usa and use since like 2016
@charmingotter976rr3 ай бұрын
so its kinda like just eat/grubhub/uber eats but in india
@vikaspoddar0013 ай бұрын
@@ashishjadhao115 they have stopped operating outside india
@zerrrp3 ай бұрын
3:40 love the "STOP READING MY FILE NAMES" folder 🤣🤣🤣🤣
@FanixeyReam22 күн бұрын
9:38 this gives "I always come back" vibes
@Lampe20203 ай бұрын
5:46 You can also create a snapshot of the VM in VirtualBox and restore it after you're done, that way you don't have to have multiple VMs.
@Doctor_Ks3 ай бұрын
4:33 insert vsauce music
@aniekanabasiumoh1703 ай бұрын
Hahaha
@tineypersonАй бұрын
DOCTOR WHOOOOOOOOOOOO
@Ryusakiiii3 ай бұрын
Just realised Zomato doesn't exist in other countries. Basically it's like doordash
@rfr3fr3fr3fr3f3 ай бұрын
7:30 POLAAAANDDDDDD RAAAAAAAAAAAAHHHHHHHHH!!!!
@yagoonek3 ай бұрын
yea
@TheRealOderless635gnat3 ай бұрын
10:03 Fun fact: if u have windows pro version, u can use windows sandbox too
@Trisks3 ай бұрын
Bog when he discovers some viruses are capable of escaping Virtual Machines
@AndRei-yc3ti3 ай бұрын
How?
@pastaya3 ай бұрын
@@AndRei-yc3ti exploiting the networking
@WindowsDestroyer3 ай бұрын
Or some one could do just exploits with the hypervisor
@Follina.3 ай бұрын
@@WindowsDestroyerIf you're thinking of exploits capable of escaping a network isolated VM, yea, no, those exploits go for millions, they ARE NOT going to be used on a YTber
@polarrbtw3 ай бұрын
no one is risking a 0day for a 110k youtuber
@solofdragons64463 ай бұрын
I was not expecting the spy jumpscare lmao. Great video!
@Humtog3 ай бұрын
Hi, I also got exact same Zomato impersonating email. Same text. And same second reply. At approx same time as you. I also realized something is off, when I saw the email itself. Then after downloading and seeing the exe file, I became sure. I did not even extract it. I think the ploy here is to get the login/password details of youtubers. Maybe possible to copy a Chrome session that has the user already logged in? I had put a hidden mailtracker in my reply to their last email. And they did not even open the mail to check what it is about!
@smittywerbenjj13 ай бұрын
Windows has a optional feature called "Windows Sandbox". It does exactly what you did with your clone of a clone of a virtual machine, where it gives you a disposable virtual Windows Machine. Its pretty good & safe and doesn't use as much space as VirtualBox.
@johnandericadventures3 ай бұрын
"it's pretty good & safe" someone has never encountered a piece of malware not coded by a 7 year old
@speedstyle.3 ай бұрын
@@johnandericadventures Please do show me this malware that can escape from an airgapped Hyper-V sandbox. Would be handy for taking down Azure
@xsayo3 ай бұрын
7:41 poland mentioned!!!!!!!!
@forcemanis2 ай бұрын
NETHERLANDS MENTIONED ASWELL!!! :D
@forcemanis2 ай бұрын
I just realized it wasn't exactly a good thing... :(
2 ай бұрын
"woo, trojan virus ladies and mentalgen" 🤣🤣🤣🤣
@natjoe47633 ай бұрын
this stuff is fascinating, seeing how security is exploited in different ways across different operating systems. particularly in windows and how its able to regen itself. so interesting
@KaiCross-l5i3 ай бұрын
OH MY GOSH. THE TWO ERRORS HE JUST GOT WHEN HE MADE THE VM WERE THE EXACT 2 THAT I GOT AND SPENT OVER A MONTH TROUBLESHOOTING AND RESEARCHING THINGS. THEN THIS ISN'T EVEN RELATED TO IT AND FIXES BOTH ERRORS IN THE SIMPLEST WAY POSSIBLE!
@jobo_o3 ай бұрын
W video, really smart to open the file in a virtual box :)
@mokumoki3 ай бұрын
Regarding the unattended file, it’s a cool feature for most people as it will setup Windows for you automatically without any user interaction (hence, unattended). The reason you get the license key error is when you are adding new VM you did not add a license key. You can use KMS Generic key which you can get from Microsoft documentation and put it in during VM creation. On the other hand, if you want to set it up manually, just check “Skip unattended installation” when creating VM. *Unattended installation is quite common in most type 2 hypervisors (Virtual Machine software) like VMware Workstation and Parallels, and for most major OS, so it’s quite easy to setup a VM with minimal effort. Another few things I would like to mention is you can learn more about snapshotting in VM, so you can avoid the part where you delete and clone your VM. Also you don’t have to remove floppy to solve the mount error, it is complaining no bootable device found is because you didn’t press any key when booting from the ISO.
@27legend313 ай бұрын
Instead of cloning, you can use a snapshot to clone a vm at a point in time, so you can restore it back after running sketchy stuff
@joytech233 ай бұрын
When playing with viruses in a virtual machine, it's better to do it from a machine you don't care about like a home lab. Some viruses can and do escape containers. Please turn off your network adapter on the VM and any sharing features between the VM/Host. Snapshots also work better than cloning and are way faster - just make sure you restore to the snapshot every time you boot the VM. A good test box would be a linux host virtualizing Windows, and if you can nest your machines that'll also work but just remember - work like each layer you try to contain can be breached.
@Follina.3 ай бұрын
@@joytech23 Containers such as docker? Sure, VMs? Unless you're the target of a highly sophisticated government actor, not really.
@joytech233 ай бұрын
@@Follina. Escaping a container (VM or otherwise) in an environment that isn't well prepared is actually pretty easy.
@Follina.3 ай бұрын
@@joytech23 Unless it's connected to your home network there is really not much you can do
@qingxinn_3 ай бұрын
I'm curious about this, but I can't find any reputable sources online. Do you mind sharing any sources/how you got this information? ^^
@genetalavera42562 ай бұрын
Yup I saw this happen once forgot what youtuber it was.
@barnknee78473 ай бұрын
Man keep doing these,really loving your work so far
@bogxd3 ай бұрын
Cheers!
@that_guy12113 ай бұрын
you can also do this with Triage, it's what NTTS uses, and it's a website that gives you a x/10 score on how bad the malware actually is, virustotal is also a pretty good scanner
@its_air72 ай бұрын
Btw NTTS Means "No Text To Speech"
@elbert52083 ай бұрын
Try opening it without windows defender turned on
@AmartyaAnand3 ай бұрын
💀💀
@zerokun26553 ай бұрын
Virtual machines are for cowards!
@mayoraeryn3 ай бұрын
Could be a cool video idea if he gets some really old laptop for super cheap
@Milkguy333 ай бұрын
he would get a trojan virus, nothing interesting
@This775772 ай бұрын
Someone: sending an email to sponsor a company Bog: ends up sponsoring/recommending oracle virtualbox😊
@nithinsvarrier6703 ай бұрын
From windows 11, You can use Windows Sandbox, which is essentially a VM for these files, It under the hood uses HyperV and is usually more performant than virtualbox
@machieu3 ай бұрын
Yeah it's just a random window that when you close it goes like bye bye
@CLOYO3 ай бұрын
I will never stop reading your folders BOGGGGG
@alba4k3 ай бұрын
I almost lost my steam account to a similar scam a few days ago. Only realised there was something fishy going on before typing in the sms verification code
@bindogaming79122 күн бұрын
I almost lost my steam account by some person pretending to be a steam admin and that I was about to get banned. I didn’t fall for it I only gave him my email and he wanted verification code, but when I checked email to change password. Which made me suspicious. He has my email though and is that a problem?
@thmUNIX3 ай бұрын
you know what, I was more interested in the Mac version of virus in the last email as it's a bit unusual. I downloaded it, and quick check of strings showed that it's definitely a stealer. Will try to reverse it later
@_invencible_3 ай бұрын
yeah i thought he was going to show that one but he just showed the same windows virus twice 😒
@thmUNIX3 ай бұрын
Ok, I digged a bit deeper, it's something reeeally interesting. Will completely reverse it and I guess upload a video on what it is
@thmUNIX3 ай бұрын
well, just an upload to VT showed it's AMOS stealer (not 100% sure, maybe wrong detection & could be something different). So it seems that it's nothing incredibly new, but still interesting
@kylek293 ай бұрын
If you create a Linked Clone (this a snapshot that appears like a unique VM referencing the other) or a snapshot fork (checkpoint via the snapshot manager) you can reduce the VM's footprint by a lot. Utilizing checkpoints allows you to roll back the changes you made for the purpose of testing. Alternatively, if you enable the Hyper-V / Windows Sandbox in Windows Features, you gain access to a temporary VM clone built into Windows, it's a tad quicker to spin-up / get into, and can perform better.
@downinohioswaglikeohio123Ай бұрын
"stop reading my folder names" bro was determined💀
@Zeben843 ай бұрын
Reading the domain of the emails should have been where this video ended !
@n0rbert793 ай бұрын
Thank you, was on my mind since seeing the first email.
@leafve3 ай бұрын
I would recommend always turning off network connection from the virtual machine. As this way the malicious codes can infect your wifi and other devices connected in real-time.
@malti_official3 ай бұрын
Interesting Video. Btw you can also use the Windows Sandbox. It automatically resets after you close the window.
@alijallАй бұрын
I love that your videos don't have music. Very satisfying!
@Nick12_453 ай бұрын
14:00 AHH I ALWAYS FALL FOR IT
@trioOFmischiefАй бұрын
lol
@kopes283 ай бұрын
This is actually something ive thought about over the last like 4 years, when I was getting into streaming and doing YT on another channel I started to wonder how KZbinrs/streamers/people on social media keep their accounts safe when companies or people email them for promo or to collab, or even just send a link to a YT video that might redirect them if they dont know better to check the link. Some of the people I follow on IG have posted "Email this email videos or a written statement to why you should" and so on, and I thought what if someone just hates that person and sends a fake word document and they just open it on their PC or phone and they just start stealing their shit?
@Activation1233 ай бұрын
vegas is NOT an editing software. it's a bad attempt at one. it was good before magix bought it 💀💀💀. Also yeah, you would have gotten an email from Magix, not ... Sony Vegas PR or whatever.
@SenseiYasir3 ай бұрын
You're right... It's the best one.
@Activation1233 ай бұрын
@@SenseiYasir uhhh no
@FlushDesert223 ай бұрын
At least Vegas doesn't require a subscription to use, and a fee to unsubscribe.
@Activation1233 ай бұрын
@@FlushDesert22 yeah fair, I use resolve lmao. But in all seriousness, at least other softwares are stable most of the time... And dont require you pay an obscene amount every time you upgrade. Also Vegas just... Doesn't have much support anymore
@justinhamilton86473 ай бұрын
It used to be great until whatever they screwed up. Anything I render on vegas either is littered with black frames or extremely pixely. Sticking with pirated premiere that runs on any machine post 2013 lol
@GoofyRoblox_YTАй бұрын
Why did I Read the "Stop Reading My folder names" at 5:04 lol
@2ryansadventures898Ай бұрын
Same
@BlurryGTVR3 ай бұрын
Once someone dmed me on Discord, tried to get me to go on a SCAM Roblox website and join their group for “free robux” (they didn’t have any group funds.) And I knew it was a scam, because 1. I was logged out. 2. The Roblox logo was swapped with the charts button.
@unnamed_fruit82 ай бұрын
Free robux in general is already a huge red flag
@BlurryGTVR2 ай бұрын
@@unnamed_fruit8 nah group funds is real
@guxaluАй бұрын
"Que gameplay incrível do novo EA FC 25, mano! 👏🔥 A forma como você controla o time é impressionante, parece até que o jogo fica mais fácil nas suas mãos! Adorei as jogadas e as finalizações, tá jogando como um profissional! Bora ver mais dessas partidas insanas! 🚀⚽
@m241m3 ай бұрын
This video basically shows that Windows Defender works great and why it should be on at least sometimes 😁😁
@rossberget17 күн бұрын
5:36 whoo trojan virus ladies and mentelgen got me cracked up 😂
@RZ3023 ай бұрын
You can also just use Windows Sandbox if you got Windows 11 Pro. Maybe set up a read-only shared folder and disable vgpu and networking before messing with malware.
@undefinedCat3 ай бұрын
it exists on windows 10 too
@RaviPaudel693 ай бұрын
too much hidden humours!! i loved it!! *chef kiss*
@hboyd20033 ай бұрын
This looks to be the same thing that got Linus Tech Tips' channel hacked a while back. I can definitely see this working on those less tech savvy (and a virus windows defender has not seen before)
@IG7799-c4u2 ай бұрын
The use of the word “kindly” should have been the first red flag.
@onlywolf99813 ай бұрын
Windows: We have a sandbox preconfigured, optimsed and ready to use at any moments Bog: I rather use a 3rd party software with all the disadvantages 😭😭😭😭
@blahblahgdp2 ай бұрын
the immediate redflag is the sender not having zomato in the email
@yumeyamamoto3 ай бұрын
5:37 "ladies and mental gen" ??
@AlexanderTzalumen3 ай бұрын
_Mentalgen_
@Zakariaazzaim3 ай бұрын
😂😂😂😂😂😂😂thankfully im not the only one who heard that
@Superohno3 ай бұрын
01010010 01010101 01001110
@kedirabdu69133 ай бұрын
Probably a reference to an old TF2 meme. Where spy's famous catch-phrase is reversed.
@bekbekovv1113 ай бұрын
mentlegen. *proceeds to smoke guaranteed-lung-cancer-worth amount of cigarettes*
@TensaZanota3 ай бұрын
even if it was an ad it is the best ad , i already use this application from time to time , but instead of some simulating montage you gived us a big lesson
@lockheedelectra3 ай бұрын
12:28 yeeeesssss please!
@DerpScoutGaming2 ай бұрын
5:38 TF2 Mentlegen reference!
@lu2000luk3 ай бұрын
Btw if you think something is a virus you should not run it in a local VM but on some online VM like Triage/AnyRun
@lu2000luk3 ай бұрын
Those also give you a lot of info about the file
@Streiyfer2 ай бұрын
First off, this is a super awesome video. And second, I truly believe that vigilance against social engineering and phishing needs to be higher than it ever has, and this video highlights exactly the reason why.
@caisemxd3 ай бұрын
Thanks for letting us know. Yes we are sending spam emails to you! We will do it better next time thanks for pointing out the red flags! not joke!
@skyhАй бұрын
You admitted it's spam ,right to the spam folder never to be seen again.
@BlitzinMackGaming26 күн бұрын
When I heard you say "I noticed it was a exe file so I went to my windows computer open it" I almost had a heart attack haha. Glad your brained kicked in. I will say though, never rely 100 percent on a VM to be foolproof, as there are scenarios were the malware can escape the VM to your host machine. I would recommend uploading it to something like virustotal, which will not only let you know which antivirus' detect it as malware, but also run it in their sandbox and give you all the details about the files behavior. That way is as close to foolproof as there is.
@arghya_3333 ай бұрын
These can sometime just install a powershell script and add it to your Task Scheduler. Which makes the powershell script run every time you restart. I was affected and had to delete the task from the task scheduler.
@KX363 ай бұрын
Thank you for the very useful information. I will password protect my zip files from now on.
@Einzigartigitsme3 ай бұрын
there is inbuild windows virtual machine, which cleans everything as soon as you shut it down it is in "turn windows features on or off" and virtual machines hope it helps!!
@teggolT3 ай бұрын
isn't that a pro feature or sth
@sunsetsonwheels3 ай бұрын
Isn't it called Windows Sandbox?
@somedude87283 ай бұрын
@@sunsetsonwheels I think sandbox is for Windows 11 only
@shitpostinggang19 күн бұрын
Bro gave us a VM tutorial for a video about addressing a scam, props to you man 🗣
@PCsAddictionZ3 ай бұрын
Nice informative video. I didn't know influencers get this much malicious activity in their mailbox. Interesting to see. Just a few notes regarding the video: 1) As others said, simply running a malware on a VM (although typically safe) it can bypass it or tamper with ur network. Best practice is to do it on a complete "dirty" machine and in isolated VLAN (although there is also vlan hopping as an issue but hard to do) 2) Checking the URL when clicking a link is also a good practice but not 100% safe as they can use cyrillic or greek alphabet letters which are similar to latin alphabet. 3) Mail address domains can be spoofed so even if you receive an email from a legit looking domain it probably has a different "Reply To" address (something that cannot be seen with the average email client
@itsTyrion3 ай бұрын
3) I'd say Thunderbird is pretty average and it shows it
@PCsAddictionZ3 ай бұрын
@@itsTyrion I mean depends on the type of organisation u are. Most of the ones I know use outlook which it doesn't show without modifications. And outside of professional environments Gmail, yahoo etc are the average clients which also don't show it
@JeanIngersoll3 ай бұрын
When you begin to touch your heart or let your heart be touched, you begin to discover that it's bottomless.
@RealCenti3 ай бұрын
How bro gets sponsored 😭 I never get
@SusAmongud3 ай бұрын
Verified jump scare💀
@TheSlimeKilling_Minecart3 ай бұрын
This is pure torcher to watch on WIndows 11 with the default sounds
@Violetstarclouds2 ай бұрын
5:04 "STOP READING MY FOLDER NAMES" is literally the funniest thing ive seen-
@Riscei3 ай бұрын
always hit up the original company and ask about the email address that you had gotten to see if its in the system :)
@HaryanviKashmiri3 ай бұрын
I am an Indian who has been to your country of Switzerland, Zomato doesn’t even work outside of India, checked while I was in Switzerland and it didn’t work. It’s undoubtedly fake.
@AnymMusicАй бұрын
inb4 "thank you Virtual Box for sponsoring this video"
@Kitsune_Dev3 ай бұрын
i would love it for you to review a Framework 16 laptop!
@MWCMan103 ай бұрын
i love the folder called "STOP READING MY FOLDER NAMES"
@Rustydakitty3 ай бұрын
"STOP READING MY FOLDER NAMES" lmao
@Volstx2 ай бұрын
"Kindly" is scammer's favourite word
@TrizziEhgan3 ай бұрын
4:40 you could have used 7-zip
@GoatedYoungThug3 ай бұрын
Boo fucking hoo Nanazip better
@PicconeYT3 ай бұрын
Cap@@GoatedYoungThug
@deltaBTW3 ай бұрын
@@GoatedYoungThug what the fuck is "nanazip"???
@Gelatin843 ай бұрын
@@GoatedYoungThugmeh i use whatever
@noww4463 ай бұрын
@@GoatedYoungThug bro calm down I didn't know the freaking Nanazip police was here 💀💀💀
@kernel0verflow9193 ай бұрын
You could collaborate with Eric Parker to disassemble the trojan. Could be very interesting :)
@onepiecebarca3 ай бұрын
you know so little it's a crime you are allowed to 'explain' things to other people