Best Malware Analysis Tools | Learn Malware Analysis

  Рет қаралды 88,885

PC Security Channel

PC Security Channel

Күн бұрын

Пікірлер: 100
@abdlerhmanmohamed438
@abdlerhmanmohamed438 4 жыл бұрын
i was waiting for this video, some people mentioned that in ur videos, glad u listened bro
@TDawgS117
@TDawgS117 4 жыл бұрын
This is a fantastic rundown of tools to start with in metadata and malware analysis. Thank you so much for making a video about these, this will help me in my studies!!
@Dmwntkp99
@Dmwntkp99 4 жыл бұрын
One of the most useful channels with a pleasant voice👍
@erwynnipegerwynnipeg8455
@erwynnipegerwynnipeg8455 4 жыл бұрын
Agreed, his voice is cute lmao.
@dxfvgyhjh
@dxfvgyhjh 4 жыл бұрын
And last but not least he speaks real ENGLISH
@ajorge_yul
@ajorge_yul Жыл бұрын
Thanks!
@JohnAtkinson-ww8qe
@JohnAtkinson-ww8qe 2 жыл бұрын
Hello brother. I have been watching alot of your videos here lately after being a victem of a really bad malware attack. I ended up having to reset my laptop back to factory settings. I wish I would have found your content sooner. I am learning alot from your videos for tips on how to prevent it from happening again. Dropped you a sub. Keep the content coming.
@metehangunaydn6295
@metehangunaydn6295 4 жыл бұрын
Thanks for suggestions, Leo. After watching this video, i noticed that i had used most of them (1 or 2 tools missing which i didn't use beforehand)(I even used Ghidra :) ). I can also recommend comodo cleaning essentials' kiill switch and autorun analyzer tools, and also quick repair tool. Thanks for your videos, again.. :)
@wezelesworth
@wezelesworth 4 жыл бұрын
Hey Leo, have you ever seen a piece of sophisticated malware attempt to evade virtualization software and infect the host system?
@pcsecuritychannel
@pcsecuritychannel 4 жыл бұрын
Yes. They are rare though.
@Sonic-ww6wm
@Sonic-ww6wm 4 жыл бұрын
@@pcsecuritychannel try pchunter and do a review if you find it good
@justnaturalcake1
@justnaturalcake1 Жыл бұрын
@what lol or raspberry pi
@MrBrianSchumacher
@MrBrianSchumacher 4 жыл бұрын
Excellent review. Thank you.
@TanaseLiviu
@TanaseLiviu 4 жыл бұрын
Extraordinary ! Thanks guys - I enjoyed .
@elviraeloramilosic9813
@elviraeloramilosic9813 4 жыл бұрын
Perfect. 👌🏻👍🏻 Thanks.
@hrishikeshkshirsagar6738
@hrishikeshkshirsagar6738 2 жыл бұрын
Awesome video, you are a champ.. Cheers
@lolcorporation7308
@lolcorporation7308 4 жыл бұрын
Any reason why you still use ollydbg over x64dbg.
@Wshocker
@Wshocker 4 жыл бұрын
In addition to Sysinternals tools. I use WinDbg, APIMonitor and even Windows Performance Recorder and Analyzer to understand what an application is doing.
@aaandag9688
@aaandag9688 4 жыл бұрын
Is Windows 10 Pro's Hyper-V good/secure enough for malware testing? Is VirtualBox or Vmware safer?
@xuriajiva
@xuriajiva 4 жыл бұрын
Both are hypervisors, so a virtual machine is created that is independent of the main system. your decision is only whom do you want to trust more? who has fewer bugs in their program that could be exploited by malware? but in general both are equally good.
@malwaretestingfan
@malwaretestingfan 4 жыл бұрын
VMWare and VirtualBox are safer.
@encrypt3d587
@encrypt3d587 4 жыл бұрын
@Lukasz That's terrible for performance, and that's if you ignore that nested virtualization support isn't always present or practical. Also, if you're using the same program for both VMs, then any VM escape bugs would still allow it to work its way into your system.
@redeyes057
@redeyes057 4 жыл бұрын
thankyou sir. helps a lot and learn a lot
@viniciusnoyoutube
@viniciusnoyoutube 4 жыл бұрын
Great video. Thanks.
@ultralaggerREV1
@ultralaggerREV1 4 жыл бұрын
Ok, but how are we gonna know which file is a malware? Like SVCHOST skyrockets to 100% Disk for no apparent reason and I don’t want to erase SVCHOST because it’s crucial for my Windows 10 and SVCHOST is made by Microsoft and I don’t know how can I determine if there is a malware inside SVCHOST. It’s what I want to know... Now recently I PAUSED windows 10 updates (I PAUSED them temporarily) but why am I seen a process called “Windows modules installer worker” next to “Windows Update” and “Edge Installer” (note that I already have the new Edge installed and I don’t know why is there such process of “edge installer” when I already have it, what is it installing? Malware?!) and these skyrocket for NO REASON. I have updates paused but these processes are consuming high Disk usage when it’s strange, nothing is updating and nothing is being installed!!! Are these viruses?!
@malwaretestingfan
@malwaretestingfan 4 жыл бұрын
Pretty cool video, i will check some.
@kx500cc
@kx500cc 4 жыл бұрын
Mucjas gracias por el aporte !!!!
@augusto3045
@augusto3045 4 жыл бұрын
726/5000 Hi Leo, I was a user for 4 years practically of Emsisoft Antimalware and I loved it all the time but currently the price of it has gone up a lot and I will not renew with them unfortunately I intend to migrate to Kaspersky Security Cloud Free, in fact I have even removed it (Emsisoft) of my PCs but my Emsisoft license has not yet expired, I was wondering if before the date expires they send me an email to be able to cancel the subscription since I haven't seen anything on the website on how to do it even in my account? ! Could you tell me about it? Otherwise, I will have to send an email to Emsisoft. Their support is really good, but recently I realized that Emsisoft is bad at detecting viruses in memory. Kaspersky catches on time.
@alexandermoev9395
@alexandermoev9395 4 жыл бұрын
I love your youtube channel
@Windows11Official
@Windows11Official 4 жыл бұрын
To be honest, I kind of prefer any.run more
@user-xw6fg5pi8q
@user-xw6fg5pi8q 4 жыл бұрын
Pretty bad if you dont want to get your sample on the wild.
@KurtisQu
@KurtisQu 3 жыл бұрын
problem is it doesn’t support windows 10, 11 for free
@nhanNguyen-wo8fy
@nhanNguyen-wo8fy 3 жыл бұрын
3:45 process monitor
@uppblissed
@uppblissed 3 жыл бұрын
im curious bout where you finding these wallpapers
@rraygen
@rraygen 4 жыл бұрын
Hey I was thinking recently, what are your thoughts about the integrated Windows 10 Sandbox VM? Worth the comfort or better stick to the classic VMs?
@35Darkstorm
@35Darkstorm 4 жыл бұрын
Hey leo, can you do a vid on spyhunter vs malware please?
@tudor6766
@tudor6766 4 жыл бұрын
Hello Leo, can you tell me what vpn you are using or if you are using one Also, were can I get a automation tool similar to malex? Thanks in advance and I want to let you know that I love your content!
@weso-ht3sy
@weso-ht3sy 4 жыл бұрын
Quick question. What's the best antivirus for rate of protection?
@crepituss9381
@crepituss9381 4 жыл бұрын
I know this is 6 mos old, but I would be interested in a video of what you think about Cuckoo automated malware analysis sandbox.
@yes-vl7gh
@yes-vl7gh 4 жыл бұрын
make more videos pls
@pcsecuritychannel
@pcsecuritychannel 4 жыл бұрын
Sure.
@MrRaja
@MrRaja 2 жыл бұрын
So can i use PEstudio and just throw in a trojan without it running on my system?
@daywithislam9219
@daywithislam9219 4 жыл бұрын
brother...make a video with avast vs malwar
@donaldduck6198
@donaldduck6198 4 жыл бұрын
MS Office: some crooks can put VBA into a xlsx. How to detect? It is "purged", i.e. the P-Code is deleted/never included. Do you have a hint or link?
@saif-pm6eh
@saif-pm6eh 4 жыл бұрын
Nice video ,could you please make a video about shadow defender I'm using it only when I try to install any suspicious software ,tool,etc I found something like bug or vulnerability with it , some tool like kmspico can activate windows even if shadow defender is on active mode can you please explain why this happen Thank you
@Martin-ot7xj
@Martin-ot7xj 4 жыл бұрын
Hi there,how we can find the port we got attacked, for example we have one pc and we got virus or attack from Internet, how we can to know from which port we got attacked?? From which Specific port we received virus or attack?? Thnx
@trythatinasmalltown-d7h
@trythatinasmalltown-d7h Жыл бұрын
do you still use this today or is there a new one
@goufbam
@goufbam 4 жыл бұрын
i forgot the program name but you could record opening a exe file and then record what it does and where it injects into another exe for example running a exe and that exe having a RAT and then injecting into svchost.exe, if anyone could help me find it that be great!
@BarafuAlbino
@BarafuAlbino 4 жыл бұрын
@Kaden any.run: 90$/month or all 64bit malware ignored.
@goufbam
@goufbam 4 жыл бұрын
Used to be a program that did that hmm
@davet5223
@davet5223 4 жыл бұрын
Cuckoo Sandbox?
@IEnjoyCreatingVideos
@IEnjoyCreatingVideos 4 жыл бұрын
Great video Leo! Thanks for sharing it with us💖🐤👍👌😎JP
@firasbe3866
@firasbe3866 2 жыл бұрын
Hi, sometimes i use virustotal and it detects malware but it says no sandboxes flagged this file, what that means?
@tiagomarante7720
@tiagomarante7720 4 жыл бұрын
Hey, do you know any tool for virus analysis using terminal? If so can you say the name I need to automate some stuff and that would be good .
@satheshname8983
@satheshname8983 4 жыл бұрын
My laptop and mobile is infected with malware how can i do analyis to catch the hacker and clean them
@Sva010
@Sva010 2 жыл бұрын
process hacker gpu usage are works only on windows 7
@augusto3045
@augusto3045 4 жыл бұрын
Hi Léo, can you test 360 Total Security Essentials, i Know is chinese and i dont like products chinese but just for see if hes good in test please test the Essential just not the other have a lot of things... Thanks
@ethimself5064
@ethimself5064 4 жыл бұрын
The first program looks quite scary for me, I go places where I should not go and my System Restore no longer works. Hahaha, think I will pass on the first one.
@david3994
@david3994 4 жыл бұрын
The tools are for virtual machines as you don’t infect your main host.
@mksuenone
@mksuenone 3 жыл бұрын
Hi i have problem on my pc. It was penetrated by .URNB file ransomware. Can you help me with this?
@adventkloud4571
@adventkloud4571 3 жыл бұрын
Is the discord link broken?
@mauriciorodriguez67
@mauriciorodriguez67 4 жыл бұрын
could be nice to show these tools in a malware case
@glassware
@glassware 4 жыл бұрын
I only use Process Hacker to cheat in csgo because it haves option to inject dll But nice video
@ROHITNB100
@ROHITNB100 3 жыл бұрын
Great 👍
@darkestknightishere
@darkestknightishere 3 жыл бұрын
👍ed , subscribed, 🔔
@sci-figeek9192
@sci-figeek9192 4 жыл бұрын
Hello PC Security Channel new member to your channel is process hacker safe to use the reason i am asking is norton say its not safe and delete it
@sci-figeek9192
@sci-figeek9192 4 жыл бұрын
ok good to know you rely to your new subscribe that made up my mind then
@AmusedBeaver-vq2hw
@AmusedBeaver-vq2hw 9 ай бұрын
can you help me with .looy decrypter
@bantymech8242
@bantymech8242 4 жыл бұрын
These many days I missed your channel, where have you gone mate?????????? 😄 Thanks for your amazing videos, I am learning much from you. Recently I have started using Autoruns and process explorer
@SkyFly19853
@SkyFly19853 4 жыл бұрын
Is it only for Windows? Or there is a Linux version as well?
@rraygen
@rraygen 4 жыл бұрын
Windows. But if you google " linux" you can find alternatives
@SkyFly19853
@SkyFly19853 4 жыл бұрын
@@rraygen That's why I asked before I ever research...
@Menalix
@Menalix 4 жыл бұрын
Ollydbg lawl? haven't you heared of x64dbg?
@beatzbye
@beatzbye 2 жыл бұрын
It sounds all complicated I need some help
@countdracowo
@countdracowo 4 жыл бұрын
Hey leo. Can you give me an example on a virus that tries to attack the host system whilst running on a virtual machine? And they do it through the shared folder right?
@countdracowo
@countdracowo 4 жыл бұрын
And btw thank you for this video!
@haroldvonhelms8304
@haroldvonhelms8304 4 жыл бұрын
who stops hacker best for pc security
@dunelson1824
@dunelson1824 4 жыл бұрын
InstallWatch, something like regshot in this video.
@lokelaufeyson9931
@lokelaufeyson9931 3 жыл бұрын
Opened the video to find good tools to track traffic but "owned by microsoft" made me sad. If i want to track microsoft communication and if they own the program they will hide that communication in their program.. we all know they will do that, we all know microsoft and how they work
@ivanguerra1260
@ivanguerra1260 4 жыл бұрын
I didn´t understand, this video says how you can see the maleware in your system, but, How to remove it automaticlly ?
@erwynnipegerwynnipeg8455
@erwynnipegerwynnipeg8455 4 жыл бұрын
This isnt about how to remove malware. This is how to look at malware. You will be best looking somewhere else if you want to remove it.
@TheKillerZmile
@TheKillerZmile 4 жыл бұрын
So i figured out that *HITMAN PRO removal tool* gave me malware or something its weird asf A malware removal tool giving me malware how ironic lmao the malware deleted my kaspersky and zemana antimalware and disabled my windows defender (the only left was Security at glance screen) and windows update gives error then i just clean install windows 10 and installed kaspersky and zemana and hitmanpro and then i got the same fcking malware all over again!! so you know what fck this im going to clean install windows 10 again and only install Kaspersky and as of today i dont have any malware. *NEVER GONNA INSTALL HITMAN PRO* PS. i dont have any pirated softwares,games etc. i have genuine legit windows 10 pro legit games.
@vendybirdsvadl7472
@vendybirdsvadl7472 4 жыл бұрын
not first, not last, not middle and noone should care
@barkingmad7407
@barkingmad7407 2 жыл бұрын
With much more than a bunch of Uh-Huh, and a whole lotta' Oh-Yeah: Brilliant. 10/10.
@michelvilleneuve
@michelvilleneuve 4 жыл бұрын
the best malware protection is to get the malware creator to stop doing the malware. People that can not live in an honest society.
They tried to hack me with UNDETECTED Malware
20:19
Eric Parker
Рет қаралды 68 М.
What Enterprise-Grade malware looks like
20:09
Eric Parker
Рет қаралды 74 М.
Thank you mommy 😊💝 #shorts
0:24
5-Minute Crafts HOUSE
Рет қаралды 33 МЛН
Dynamic Malware Analysis
30:12
LetsDefend
Рет қаралды 30 М.
Analyzing the Zeus Banking Trojan - Malware Analysis Project 101
1:41:16
Windows Defender Sandbox Test vs Malware
19:55
PC Security Channel
Рет қаралды 376 М.
Malware Development: Processes, Threads, and Handles
31:29
Can Firewall save you from being Hacked?
9:38
PC Security Channel
Рет қаралды 10 М.
Is your PC hacked? RAM Forensics with Volatility
14:29
PC Security Channel
Рет қаралды 923 М.
Malware Analysis Bootcamp - Analyzing The PE Header
20:21
HackerSploit
Рет қаралды 59 М.
Strange File in Downloads Folder? Gootloader Malware Analysis
30:20
John Hammond
Рет қаралды 830 М.
Practical Malware Analysis Essentials for Incident Responders
50:49
RSA Conference
Рет қаралды 152 М.