The LEGENDARY line "For educational purposes only"....💀😎🥃
@rakiburshuvo098 ай бұрын
and we use it to spy unknown by saying educational purposes only 💀💀
@decracker7 ай бұрын
@@rakiburshuvo09 of course they will tell you to the main purposes, but we must agree that is really cool.
@walakiraismail39077 ай бұрын
Very legendary
@Cheez_and_crackers7 ай бұрын
How to negate all liability
@Noone-ml1me7 ай бұрын
People who did not heard the epik line: "oh yeahhhh baby its hecking time "
@gtr87417 ай бұрын
When they say "educational purposes only" you know they ain't gon bs around 💯🔥
@Observer5527 ай бұрын
I was scanning the image files with my antivirus and my friend was laughing, now I am gonna send him that video :D
@hollycow81717 ай бұрын
only jpg can hold data. not other extension.
@jasp4027 ай бұрын
I'm afraid it won't detect it anyway. Until you double click it is a compressed file.
@dangerous_tumor36 ай бұрын
just turn on show file extensions
@ShellCode-oo2cu5 ай бұрын
@@hollycow8171 An extension is part of a filename and is often used to identify the file format and associate it with the correct application. The meaning is to identify, an extension such as *.jpg says nothing about the actual file format. A file format is identified beyond doubt on the basis of other characteristics, such as signatures, also known as magic bytes. Every file format can hold data, how else would the whole construct work? To say "only jpg can hold data. not other extension." is completely wrong in every respect.
@RotatingLocomotive5 ай бұрын
@@Observer552 By default I think most antiviruses don't scan images. Remember, the sample file in the video is still an executable, not a jpeg
@Cxrruptwd7 ай бұрын
How to identify: if you don't have file extensions enabled, do not open ones that appear with an extension, also scrs and com files are basically executable but com is old.
@Naxxami6 ай бұрын
The file type whould be show as Application
@linuxtuxvolds59175 ай бұрын
.scr is old as hell and it's Windows screensavers since they had to package them as executables. It is redundant as nobody uses screensavers anymore; The whole system could use a revamp and get rid of this vulnerable file extension.
@mythbasters31198 ай бұрын
I love Z security for this reason . Their video is well explained and organized and so easy to understand the process ❤
@OGmolton17 ай бұрын
its scary how insecure windows is, thanks for sharing
@menreikichan82917 ай бұрын
Won’t this be detected by windows defender?
@timmmm50126 ай бұрын
@@menreikichan8291it should be but sometimes people turn it off for some reason
@softwaremkxvii6 ай бұрын
@@menreikichan8291not allways
@kaveeshathilakarathna80636 ай бұрын
@@menreikichan8291 yes this will detect by windows defender that is why we should not disable windows defender in any case.
@Viylne6 ай бұрын
Not insecure man if you know how to handle the OS. differently people with less knowledge with system will use computer just like gaming or working. but I am experiencing about OS and a bit more about coding. so I have a programs and some Un official tweaks for my windows. so my system so far so good and virus always detected even the services virus background 😁
@Klebedose957 ай бұрын
I always look for the extension to be not ".exe" ... but the reverse character is new to me. So now I'll always also pay attention to filenames like "[filename] exe. [fileending]" So this would also work if you send .pdf files to other people...
@Fevirre7 ай бұрын
What's funny if you scan the virus on triage, it can log the bot's token the attacker is using and it can be used to login with a discord bot client and screw up their current operation Basically sending a good dose of karma to the attacker
@Muziek374149 ай бұрын
Instead of turning off windows defender, you could add a exclusive folder or zone where the AV Wil not scan. I know some infostealers use this method
@Compute_and_Hack8 ай бұрын
do you mean the victims PC defender must be turned off so that the connection can pass?
@Muziek374148 ай бұрын
@@Compute_and_Hack no defender can still be on and active. If you add an exclution zone you can run code without it being scanned by defender and I think even amsi
@Compute_and_Hack8 ай бұрын
@@Muziek37414 Thanks
@similiciousprogrammer11097 ай бұрын
I want to target android Is it same for android ?
@robertsteve51757 ай бұрын
@@Muziek37414 how please
@hithammelhem26568 ай бұрын
thank you as a user how to identify such manipulated image
@stanislavsmetanin13079 ай бұрын
Wait!! After the user opening you should close the picture, not going to discord, as user will not stare at the BMW forever. :)
@-zarex-68477 ай бұрын
can u only Control if the picture is open? then Its useless lol
@-zarex-68476 ай бұрын
@chattf is that possible on mobile too, like whne u install apk? I never openes photos on mobile but with anything else like the base Game apk is actually this Virus?
@tentimesful7 ай бұрын
if an image is hacker thing and your image opener makes them hack you get rid of it as a image program reads out the image colors at their positions and voila no hacking on to you, and this goes also for your videos,,,
@flash_gang8 ай бұрын
This is cool but nobody would actually fall for this because windows will have that pop up saying that it’s an untrusted executable
@eyezikandexploits8 ай бұрын
Man youd be surprised, someone young would and with social engineering too its game over. SWIM used to go into minecraft servers have a friend who (didnt know me) but would "downlod" my rat and vouch for it to have worked(some minecraft mod or a hack for it, even went as far as to make them in java) and thats all itd take for people to be trucked
@sysk3y-prod7718 ай бұрын
Simple fix… obfuscation
@flash_gang8 ай бұрын
@@sysk3y-prod771How would obfuscation fix that? It would still give you a popup before it runs telling you its an executable not an image.
@giftmoyo99578 ай бұрын
I got hack with this same trick three days ago it made me erase all data from my PC. Thank God I realised quickly that I was being hacked otherwise the attacker could have gone with my credentials. The attacker embedded the code in unsuspicious link under a video tutorial which I clicked and that was all it disabled everything on my computer.
@flash_gang8 ай бұрын
@@sysk3y-prod771I thought I had responded to this, I think my other comment got auto flagged for some reason. Obfuscation would not fix the issue of a gui popping up before you run the executable that tells you its an executable not an image.
@NikolaTomic8 ай бұрын
Will it execute if I right-click on file to go to properties but I already have XNView MP with shell extension to show me image preview in explorer?
@keto4life1977 ай бұрын
With a keygen so You got all the virus You need
@Charan472819 ай бұрын
Many youtubers says it's an educational vdieo but it's educating and updating an hacker for more features 😂😂 like here if you like it😂😂
@sarowarhosen0039 ай бұрын
if your know you know
@stephenluttrell89588 ай бұрын
This little trick has been around for years. It’s not teaching anyone anything new and there are plenty of ways to defend it. But that sword swings both ways. It may teach some new hackers something, but it also teaches everyone else what to look out for.
@gokulmahesh57577 ай бұрын
brilliant steganography technique
@donjohnson60637 ай бұрын
I love these , I like to open the exe in ida pro get the token and take control over the bot/ channel it is. Noticing people use either discord or telegrams as a command and control center , the biggest mistake is hard coding api or keys in the exe
@TrippyMango8 ай бұрын
It might work until you have file extensions enabled or download it from a internet browser, there it will say "image.jpg.exe"
@LeftoverAtoms7 ай бұрын
Why aren't file extensions enabled by default? It just makes sense...
@IamLookingforWoody_________7867 ай бұрын
Thanks for guiding us for using VMware machine before practicing this work.
@hollycow81717 ай бұрын
how old are you tbh. 😮
@मृगदामिनी7 ай бұрын
Its not working right now , fixed by discord. Right?
@ც9კ6 ай бұрын
@@मृगदामिनीis it working now
@bransensible18292 ай бұрын
Won't this be detected by windows defender when I run it? I'm really scared of that virus now. I have never turned on the "Hide extension for known file types" but I still scared.
@RotatingLocomotive6 ай бұрын
The fact that the name of these malicious files always end with "exe" can be helpful to spot them
@QuintonPearce6 ай бұрын
Ty
@RotatingLocomotive6 ай бұрын
@@QuintonPearce You're welcome bro
@chug_jug2005 ай бұрын
@@RotatingLocomotive that literally doesnt help. + they dont always end with .exe bud
@RotatingLocomotive5 ай бұрын
@@chug_jug200They do bro. The trick is using a character so that the name will be written in reverse, so an exe file will always have "exe" at end before the fake extension
@chug_jug2005 ай бұрын
@@RotatingLocomotive but its not always exe at the end bud.
@octopilius4 ай бұрын
i write !help but nothing works
@craigdaniels14927 ай бұрын
Won't Windows defender catch this if they click on the image??
@AndrewDawson-c4u4 ай бұрын
yes and noooooooooooooooooooooo fuck
@attageledek68366 ай бұрын
This technique is actually very old, I knew about it in the 2000s, but before that no one discussed this matter
@hilariousmems1436Ай бұрын
Bro what is the New technique ??
@mudassarmuhammad7767 ай бұрын
How to remove it from the machine ???? this should also be told in the video....
@jonda_mc7 ай бұрын
Just make new one
@Gaming_Squad4856 ай бұрын
im using clinet built and it keeps telling me windows cant fijd this it opens the image but dosent make it execute
@shawnmendrek3544Ай бұрын
I used to do this with a binder, it lets hyou select the file icon(jpeg/jpg icon), but the file extension is really an executable(.exe). Most folk have file extension off by default and fall for this, we used to go to chat rooms, pose as a woman, infect a lot of guys who were horny, caught a lot of child predators this way too, we usually wiped their hard drives. Moral of the story, google how to turn on file extensions, if the icon is a photo but shows .exe at the end of the file, never run it. You can even bind a .exe and .jpeg together, we had one time, where it showed a photo when you opened it but still ran the .exe. This was about 20 years ago, things were a bit different then. I explained this to show you an easy example how this trick is used in a real scenario.
@arjun.t12t8 ай бұрын
super i like it thanks for the valuable information.
@Raze26662Ай бұрын
Not work, only works on Host own internet connection, vm dont pick it up
@mihaelkYeah7 ай бұрын
This hugely complex security exploit can be easily avoided in any operating system if you just DON'T HIDE EXTENSIONS FOR KNOWN FILE TYPES
@SuperNickid7 ай бұрын
@zSecurity: What about emulator does are application.exe but the majority of them are not virus and the reason they are is to make sure the game work when you used the emulation since you need executable file to run the game.
@technicalmaster-mind7 ай бұрын
Thank you
@spinnerlive7 ай бұрын
Bro it took me few seconds to realize that it’s you. Looking great in beard.
@pranaymunj67612 ай бұрын
Wht should be do if we want more sessions
@Soth0w767 ай бұрын
When I clicked it then: "Oh no! You have no power here" Operating System: Arch Linux BTW
@Compute_and_Hack8 ай бұрын
Wow! This has been insightful to me about the trojan. Thanks a lot lot more, very thankful sir... Any way i have a question, will the victim PC always be connected to the server immediately when the victim is connected to the internet, or it will require the user to open the trojan file.
@mebolaw23226 ай бұрын
Any ideas/comments on the above question?
@RotatingLocomotive5 ай бұрын
Immediately, it starts with windows
@frezerfiseha15539 ай бұрын
It's been ages men😢
@108mohanbhole95 ай бұрын
Is it works now or not
@Cloud67TR3 ай бұрын
so this is what ntts (no text to speech) showed as an example of a discord rat
@zamal76118 ай бұрын
yeah, it's working but windows firewall detected (can u make video for win firewall to avoid malware in image)
@RMX-BEATZ3 ай бұрын
can we use it for educational purpose on in mobile phones....??
@EdmarkTalingting8 ай бұрын
during my intern i was victim on this , the usb is encrypted
@cocococodrilo9 ай бұрын
As usual this kind of video don't make sense as Windows defender will stop the program before executing ....
@lolononojay90109 ай бұрын
Use a crypter
@choco-yt9 ай бұрын
@@lolononojay9010how
@naseertarar73099 ай бұрын
which crypter should we use? @@lolononojay9010
@BillyDalkes5 ай бұрын
i reconment bitdefender for antivirus and zone alarm for windows mac and maybe lenix
@Gaming_And_Creativity7 ай бұрын
Once the hack is done, I have the information about the victim machine so now my question is will the firewall be closed on the victim machine or is there nothing to do with it...?
@bilal_4046 ай бұрын
does it work on smartphones also?
@FurtzTvWer5 ай бұрын
The bit starts and creates the session but no commands works
@political63874 ай бұрын
Dicord doesnot replay me when i write help or any other command in new session
@240hzDEME4 ай бұрын
same (i think its fixed)
@berkaytuunc3 ай бұрын
If you find how to solve it please tell me too
@political63873 ай бұрын
@@berkaytuunc the solution was i just created the file and didnt compressed it with a photo and directly sent it to the client. it did worked for me.
@berkaytuunc3 ай бұрын
@@political6387i alteady tried it and its still not working
@Jaafar--063 ай бұрын
@@political6387 what do you mean bro please explain
@andrekriegmanUTTP3 ай бұрын
why is the gernerated URL not there
@WaxyFN66 ай бұрын
When i open up the script with the foto its says windows cannot find backdoor.exe make sure you typed the name correctly And then try again
@Induwara-Perera6 ай бұрын
you have to add the correct name of the exe file created with builder app or rename that to backdoor.exe. when u creating zip file use the correct name of it not the name in the video.
@Induwara-Perera6 ай бұрын
btw i tried the whole steps correctly unfortunately it says this app dosent support on my pc and i don't have any other device to test it😒, please let me know if it works for u.
@endremurti7 ай бұрын
Any idea for android target setup?
@KeanuReeves-n6s2 ай бұрын
Nice but not all the command works , any solution ?
@didyouknowamazingfacts27907 ай бұрын
I'm pretty sure most email providers will pick this up as malicious.
@Karmik_bhavya7 ай бұрын
Yea easily, you need to learn by-passing AV and reverse engineering to make it undetectable.
@ComposewithAi8 ай бұрын
Will it work if I have firewall to block new connection
@kazgaming65717 ай бұрын
5:43
@lowspender1476 ай бұрын
I always change the settings to show the files extension and show the hidden and protected windows files since the age of windows XP, so clickbait won't work , why don't they make these setting default? Hiding files extension will just prevent people from learning some simple thing
@sdafasfF5 ай бұрын
When will this guy actually teach some valuable information, I am actually surprised on how he is this well known in the security field.
@virtualheadless47648 ай бұрын
Hey what happen if user is offline and then open the file and deleted in offline mode by finding nothing on file Can still we have access
@shadowsalah14848 ай бұрын
the backdoor wouldn't be activated at that moment since the file couldn't establish a connection to the attacker's server or execute any malicious code while offline.but once the friend goes back online, if the backdoored image contains executable code or a script that initiates a connection to the attacker's server, the backdoor could potentially execute its malicious payload.
@AbubakerMahmoudshangab7 ай бұрын
Perfect zsecurity guys
@Muziek374149 ай бұрын
Maybe show to add some persistence? With powershell add on startup
@similiciousprogrammer11097 ай бұрын
I want to target android Is it same for android ?
@alialagori509311 күн бұрын
is it work on indroed phone or just windows?
@chrismutuma2858Ай бұрын
This is awesome 🎉add more like this,,, amazing
@Overawayy4 ай бұрын
It does not work no more?
@Tsu1.8 ай бұрын
when someone opens it i can only do 2 commands before it just stops working can i have help?
@DeeperSoul6 ай бұрын
Many softwares like Telegram has auto download what I hate cause so many strangers/scammers messaging you with image messages. You have to disable downloads settings after setup or every installation but for the safety that settings must be disabled as default!
@AnonymousVv37 ай бұрын
Know the difference between steganography and evasion
@lancemarchetti86737 ай бұрын
Just embed the reversed Base64 of your payload after the 2nd byte in any jpg file. Image parsers will ignore it as Metadata. And your image won't look suspicious. No need for exe renaming tricks.
@Hello-eg8er7 ай бұрын
How does this work?
@afjelidfjssaf6 ай бұрын
@@Hello-eg8er i think he means instead of storing the payload inside the exe, just have the code in the exe read the images metadata and parse it
@mmtaqi84486 ай бұрын
how you can bypass the windows defender or antivirus when the user click on it ?
@afjelidfjssaf6 ай бұрын
@@mmtaqi8448 you can't. All files automatically get mark of the web (except ISOs and such)
@Oracule-bh5vy8 ай бұрын
injected PIC, its new for you?
@kolawoleoyedokun72509 ай бұрын
🎉. This is cool. But, how do we bypass windows defender and antivirus being installed on windows target
@lolononojay90109 ай бұрын
Use a crypter
@fifidurand74219 ай бұрын
@@lolononojay9010 and where can i find good crypter??
@jainayrogeorge29249 ай бұрын
@@lolononojay9010any free recommendations???
@winwininnovation85288 ай бұрын
can you please suggest one or share with me one@@lolononojay9010
@BM-wl2sn7 ай бұрын
Type of file WEBP (.webp) what this?
@owASTA7 ай бұрын
i think the cons are the space of the file , it can be spotted
@mohmedkamar83855 ай бұрын
Is is possible to do the same for an android?
@BlueSpirit_YT8 ай бұрын
is it undetectable by defender?
@rimofficialYT7 ай бұрын
No
@sgct897 ай бұрын
Please ask them to keep waiting? I have dial up and it said I've got 8 months left until the image is completely downloaded!
@Beast_grt4 ай бұрын
For window 7 not working
@ranjitkumargouda89708 ай бұрын
The biggest lie "This Video is for Educational Purpose Only"!
@gamingassassin67367 ай бұрын
if you have window defender on will it still download and execute?
@sachsaseil567023 күн бұрын
What about MacOS, is it more safe?
@cily-AdoptMe5 ай бұрын
that generated url does NOT appear
@dev_lani7 ай бұрын
Will Anti Virus on windows PC detect the backdoor when the user try to download and view it?
@himelahmed79788 ай бұрын
Windows Defender deletes it easily, share other ways to hide the file from Defender.
@Karmik_bhavya7 ай бұрын
Learn by-passing AVs and reverse engineering yourself
@ParthShethia7 ай бұрын
@@Karmik_bhavyacan you help me bypass defender and make that file sharable over whatsapp
@DirkArnez7 ай бұрын
.exe is too beginner that i automatically ignore when i enable extension in Windows Explorer. I prefer to have virus in an image file that i cannot complain
@guili-p7mАй бұрын
What kind of Trojan can you make
@DirkArnezАй бұрын
@@guili-p7m I cannot make any. "It is about how hard you can get hit" hahahahahaha
@True-upper-narratives2 ай бұрын
me watching this after downloading hundreds of memes from discord
@uniqueinsanvlog9 ай бұрын
It's work on mobile as well??
@sangepuvinod33336 ай бұрын
Is this executable is detected by Av??
@barskarakas49276 ай бұрын
new fear unlocked Amazing video thanks a lot
@sgzcw5 ай бұрын
How can i bypass antivirus
@Conecte_Aqui9 ай бұрын
How are you managing to keep your KZbin channel covering hacker issues? I had a channel with several hacker-related topics and KZbin, after I had 200 videos, deleted my channel. How can you keep the videos?
@SoniaAngel-j3e9 ай бұрын
You forgot to add for educational purposes 😂
@Conecte_Aqui9 ай бұрын
@@SoniaAngel-j3e I put it in the video description that it was for educational purposes and even then it didn't allow it until a warning at the beginning of the video
@FurqanHun8 ай бұрын
You're not supposed to show everything in video, you shouldn't be showing malicious code on the screen and there shouldn't be a real victim 🚶 there's a grey area in the education section and it's pretty easy to cross over it 🚶 btw you can still send a takeout request to google for that channel even if it's terminated and you'll get permission to download your videos
@archerthepitbull8837 ай бұрын
Hii bro can u teach me how to start hacking...
@nightwing09x8 ай бұрын
Taking your course on udemy, thanks!
@easylearning44748 ай бұрын
can you give it to me for free?
@abdbout8 ай бұрын
hi ser is it working on phones
@thefilmorigin17047 ай бұрын
@AnshumanAtrey10 күн бұрын
can we perform this on mac os too ??
@firebolt36263 ай бұрын
is there a way to mask the extension from .exe to jpg or something else? i tried `mv example.exe example.jpg`. but it didn't work as it opens with image viewer on windows.
@YTPakistan7034 ай бұрын
Is it samely works to target mobile phone?
@templlk20 сағат бұрын
its a trojan when u download release file
@ProfChemeng39 ай бұрын
Ill try this on you😂
@xenovery6 ай бұрын
ahora si me aseguro que mi novia virtual sea mia
@onlineworks-e2s2 ай бұрын
Can i using that one Zaid coustm kali machine....
@rithikr53103 ай бұрын
That bot was working for me but now it is not idk why
@chudchadanstud7 ай бұрын
Downloading a tool that will do all the work is kinda pointless. I thought you where gonna go through the theory.
@chug_jug2005 ай бұрын
pointless?
@chudchadanstud5 ай бұрын
@@chug_jug200 Yes pointless. It's just script kiddy stuff. You won't even know if that script will backfire on you. Remember to teach a man how to fish, don't give him one.
@chug_jug2005 ай бұрын
@@chudchadanstud I agree with everything, but its not pointless. It's teaching basics of "hacking", and we all start somewhere.