Hackers Are Waiting For You to Open This Image

Поділитися
Вставка
  • Опубліковано 5 чер 2024
  • This video will show you how hackers can control your device using a trojan via discord!
    🔴 Get $100 FREE credit on Linode to create your own cloud server (Valid for 60 days)👇
    www.linode.com/zsecurity
    ------------------------------------------------------------------------------------
    Maythom personal UA-cam channel: / @maythom
    Patreon: / maythom
    Instagram: / mayth0m
    Twitter: / mayth0m
    zSecurity Company - zsecurity.com/
    Community - zsecurity.org/
    zSecurity social media here ##
    zSecurity Company - zsecurity.com/
    Community - zsecurity.org/
    Facebook - / zsecurity-145325078145...
    Twitter - / _zsecurity_
    Instagram - / zsecurity_org
    Linkedin - / zsecurity-org
    TikTok - / zsecurity_org
    -------------------------------------------------------------------------------------
    Resources:
    Icon convert website: icoconvert.com/
    Github Tool: moom825/Discord-RAT-2.0
    WinRar: www.win-rar.com/download.html
    ------------------------------------------------------------------------------------
    Timestamps:
    0:00 - Intro
    00:45 - Thanks to Linode!
    01:33 - Installing the tool
    02:35 - Clarification
    03:29 - Creating a Discord Bot
    04:32 - Creating a Discord Server
    05:28 - Building the backdoor
    07:55 - Building the trojan
    10:50 - Trojan in Action!
    13:56 - Securing Yourself from this
    15:06 - Thank you!
    -------------------------------------------------------------------------------------
    ⚠️ Please be advised that this video is made for educational security purposes only. Also note that you shouldn't test on devices that you don't have permissions to test. We always have the permissions granted to test the accounts/devices used on this channel.
    I hereby affirm that the devices employed in this video are under my exclusive ownership, and the primary purpose of this content is strictly educational. It is of great importance to emphasize that this video does not, in any way, endorse or encourage any unethical activities.⚠️

КОМЕНТАРІ • 360

  • @mrdirect4053
    @mrdirect4053 2 місяці тому +330

    The LEGENDARY line "For educational purposes only"....💀😎🥃

    • @rakiburshuvo09
      @rakiburshuvo09 2 місяці тому +10

      and we use it to spy unknown by saying educational purposes only 💀💀

    • @opinysamuelleo3457
      @opinysamuelleo3457 Місяць тому +2

      @@rakiburshuvo09 of course they will tell you to the main purposes, but we must agree that is really cool.

    • @walakiraismail3907
      @walakiraismail3907 Місяць тому +1

      Very legendary

    • @Cheez_and_crackers
      @Cheez_and_crackers Місяць тому +2

      How to negate all liability

    • @Noone-ml1me
      @Noone-ml1me Місяць тому +1

      People who did not heard the epik line: "oh yeahhhh baby its hecking time "

  • @sasTRproabi
    @sasTRproabi Місяць тому +74

    I was scanning the image files with my antivirus and my friend was laughing, now I am gonna send him that video :D

    • @hollycow8171
      @hollycow8171 Місяць тому +5

      only jpg can hold data. not other extension.

    • @jasp402
      @jasp402 Місяць тому +2

      I'm afraid it won't detect it anyway. Until you double click it is a compressed file.

    • @dangerous_tumor3
      @dangerous_tumor3 24 дні тому

      just turn on show file extensions

  • @gtr8741
    @gtr8741 Місяць тому +88

    When they say "educational purposes only" you know they ain't gon bs around 💯🔥

  • @officialabandonedcrack
    @officialabandonedcrack Місяць тому +28

    How to identify: if you don't have file extensions enabled, do not open ones that appear with an extension, also scrs and com files are basically executable but com is old.

    • @Naxxami
      @Naxxami 22 дні тому +1

      The file type whould be show as Application

  • @flash_gang
    @flash_gang 2 місяці тому +81

    This is cool but nobody would actually fall for this because windows will have that pop up saying that it’s an untrusted executable

    • @eyezikandexploits
      @eyezikandexploits 2 місяці тому +9

      Man youd be surprised, someone young would and with social engineering too its game over. SWIM used to go into minecraft servers have a friend who (didnt know me) but would "downlod" my rat and vouch for it to have worked(some minecraft mod or a hack for it, even went as far as to make them in java) and thats all itd take for people to be trucked

    • @sysk3y-prod771
      @sysk3y-prod771 2 місяці тому +4

      Simple fix… obfuscation

    • @flash_gang
      @flash_gang 2 місяці тому

      @@sysk3y-prod771How would obfuscation fix that? It would still give you a popup before it runs telling you its an executable not an image.

    • @giftmoyo9957
      @giftmoyo9957 2 місяці тому +9

      I got hack with this same trick three days ago it made me erase all data from my PC. Thank God I realised quickly that I was being hacked otherwise the attacker could have gone with my credentials. The attacker embedded the code in unsuspicious link under a video tutorial which I clicked and that was all it disabled everything on my computer.

    • @flash_gang
      @flash_gang 2 місяці тому +3

      @@sysk3y-prod771I thought I had responded to this, I think my other comment got auto flagged for some reason. Obfuscation would not fix the issue of a gui popping up before you run the executable that tells you its an executable not an image.

  • @OGmolton1
    @OGmolton1 Місяць тому +13

    its scary how insecure windows is, thanks for sharing

    • @menreikichan8291
      @menreikichan8291 29 днів тому +1

      Won’t this be detected by windows defender?

    • @timmmm5012
      @timmmm5012 27 днів тому

      @@menreikichan8291it should be but sometimes people turn it off for some reason

    • @softwaremkxvii
      @softwaremkxvii 27 днів тому

      ​@@menreikichan8291not allways

    • @kaveeshathilakarathna8063
      @kaveeshathilakarathna8063 24 дні тому +5

      ​@@menreikichan8291 yes this will detect by windows defender that is why we should not disable windows defender in any case.

    • @Viylne
      @Viylne 20 днів тому

      Not insecure man if you know how to handle the OS. differently people with less knowledge with system will use computer just like gaming or working. but I am experiencing about OS and a bit more about coding. so I have a programs and some Un official tweaks for my windows. so my system so far so good and virus always detected even the services virus background 😁

  • @mythbasters3119
    @mythbasters3119 2 місяці тому +11

    I love Z security for this reason . Their video is well explained and organized and so easy to understand the process ❤

  • @COMMENTBOX788
    @COMMENTBOX788 3 місяці тому +14

    Many youtubers says it's an educational vdieo but it's educating and updating an hacker for more features 😂😂 like here if you like it😂😂

    • @sarowarhosen003
      @sarowarhosen003 3 місяці тому

      if your know you know

    • @stephenluttrell8958
      @stephenluttrell8958 2 місяці тому

      This little trick has been around for years. It’s not teaching anyone anything new and there are plenty of ways to defend it. But that sword swings both ways. It may teach some new hackers something, but it also teaches everyone else what to look out for.

  • @Klebedose95
    @Klebedose95 Місяць тому +5

    I always look for the extension to be not ".exe" ... but the reverse character is new to me.
    So now I'll always also pay attention to filenames like "[filename] exe. [fileending]"
    So this would also work if you send .pdf files to other people...

  • @RotatingLocomotive
    @RotatingLocomotive 17 днів тому +1

    The fact that the name of these malicious files always end with "exe" can be helpful to spot them

  • @hithammelhem2656
    @hithammelhem2656 2 місяці тому +2

    thank you as a user how to identify such manipulated image

  • @donjohnson6063
    @donjohnson6063 28 днів тому +1

    I love these , I like to open the exe in ida pro get the token and take control over the bot/ channel it is. Noticing people use either discord or telegrams as a command and control center , the biggest mistake is hard coding api or keys in the exe

  • @painandsuffer
    @painandsuffer Місяць тому

    For one trillion years I've been trapped in my own decaying dimension, waiting for a new universe to call my own.

  • @spinnerlive
    @spinnerlive Місяць тому

    Bro it took me few seconds to realize that it’s you. Looking great in beard.

  • @Compute_and_Hack
    @Compute_and_Hack 2 місяці тому +7

    Wow! This has been insightful to me about the trojan. Thanks a lot lot more, very thankful sir... Any way i have a question, will the victim PC always be connected to the server immediately when the victim is connected to the internet, or it will require the user to open the trojan file.

    • @mebolaw2322
      @mebolaw2322 18 днів тому

      Any ideas/comments on the above question?

  • @attageledek6836
    @attageledek6836 20 днів тому

    This technique is actually very old, I knew about it in the 2000s, but before that no one discussed this matter

  • @gokulmahesh5757
    @gokulmahesh5757 Місяць тому +3

    brilliant steganography technique

  • @Muziek37414
    @Muziek37414 2 місяці тому +11

    Instead of turning off windows defender, you could add a exclusive folder or zone where the AV Wil not scan. I know some infostealers use this method

    • @Compute_and_Hack
      @Compute_and_Hack 2 місяці тому

      do you mean the victims PC defender must be turned off so that the connection can pass?

    • @Muziek37414
      @Muziek37414 2 місяці тому +1

      @@Compute_and_Hack no defender can still be on and active. If you add an exclution zone you can run code without it being scanned by defender and I think even amsi

    • @Compute_and_Hack
      @Compute_and_Hack 2 місяці тому

      @@Muziek37414 Thanks

    • @similiciousprogrammer1109
      @similiciousprogrammer1109 Місяць тому

      I want to target android Is it same for android ?

    • @robertsteve5175
      @robertsteve5175 Місяць тому

      @@Muziek37414 how please

  • @chudchadanstud
    @chudchadanstud Місяць тому +2

    Downloading a tool that will do all the work is kinda pointless. I thought you where gonna go through the theory.

  • @technicalmaster-mind
    @technicalmaster-mind Місяць тому +1

    Thank you

  • @IamLookingforWoody_________786
    @IamLookingforWoody_________786 Місяць тому +4

    Thanks for guiding us for using VMware machine before practicing this work.

    • @hollycow8171
      @hollycow8171 Місяць тому

      how old are you tbh. 😮

    • @robinsonpk5867
      @robinsonpk5867 29 днів тому

      Its not working right now , fixed by discord. Right?

    • @cstyt5443
      @cstyt5443 23 дні тому

      @@robinsonpk5867is it working now

  • @user-mq4lc2bs1b
    @user-mq4lc2bs1b 2 місяці тому +3

    super i like it thanks for the valuable information.

  • @DiverseInBits
    @DiverseInBits 6 днів тому

    Ah yes. The ultimate excuse. “For educational purposes only”

  • @frezerfiseha1553
    @frezerfiseha1553 3 місяці тому +5

    It's been ages men😢

  • @LeftoverAtoms
    @LeftoverAtoms Місяць тому +1

    Why aren't file extensions enabled by default? It just makes sense...

  • @TrippyMango
    @TrippyMango 2 місяці тому +8

    It might work until you have file extensions enabled or download it from a internet browser, there it will say "image.jpg.exe"

  • @stanislavsmetanin1307
    @stanislavsmetanin1307 2 місяці тому +7

    Wait!! After the user opening you should close the picture, not going to discord, as user will not stare at the BMW forever. :)

    • @-zarex-6847
      @-zarex-6847 Місяць тому

      can u only Control if the picture is open? then Its useless lol

    • @chattf
      @chattf 25 днів тому

      @@-zarex-6847 u can control even when they close it bc the rat is hidden some where else not in the photo

    • @-zarex-6847
      @-zarex-6847 21 день тому

      @@chattf is that possible on mobile too, like whne u install apk? I never openes photos on mobile but with anything else like the base Game apk is actually this Virus?

    • @chattf
      @chattf 12 днів тому

      @@-zarex-6847 no clue

  • @SuperNickid
    @SuperNickid Місяць тому

    @zSecurity: What about emulator does are application.exe but the majority of them are not virus and the reason they are is to make sure the game work when you used the emulation since you need executable file to run the game.

  • @tentimesful
    @tentimesful Місяць тому

    if an image is hacker thing and your image opener makes them hack you get rid of it as a image program reads out the image colors at their positions and voila no hacking on to you, and this goes also for your videos,,,

  • @Gaming_And_Creativity
    @Gaming_And_Creativity Місяць тому

    Once the hack is done, I have the information about the victim machine so now my question is will the firewall be closed on the victim machine or is there nothing to do with it...?

  • @gamingassassin6736
    @gamingassassin6736 Місяць тому

    if you have window defender on will it still download and execute?

  • @Gaming_Squad485
    @Gaming_Squad485 21 день тому +1

    im using clinet built and it keeps telling me windows cant fijd this it opens the image but dosent make it execute

  • @craigdaniels1492
    @craigdaniels1492 Місяць тому +2

    Won't Windows defender catch this if they click on the image??

  • @mihaelkYeah
    @mihaelkYeah Місяць тому

    This hugely complex security exploit can be easily avoided in any operating system if you just DON'T HIDE EXTENSIONS FOR KNOWN FILE TYPES

  • @AbubakerMahmoudshangab
    @AbubakerMahmoudshangab Місяць тому

    Perfect zsecurity guys

  • @Tsu1.
    @Tsu1. 2 місяці тому

    when someone opens it i can only do 2 commands before it just stops working can i have help?

  • @dev.lani29
    @dev.lani29 Місяць тому

    Will Anti Virus on windows PC detect the backdoor when the user try to download and view it?

  • @sgct89
    @sgct89 Місяць тому

    Please ask them to keep waiting? I have dial up and it said I've got 8 months left until the image is completely downloaded!

  • @user-zi5hp3ih7j
    @user-zi5hp3ih7j 2 місяці тому

    during my intern i was victim on this , the usb is encrypted

  • @Fevirre
    @Fevirre 29 днів тому

    What's funny if you scan the virus on triage, it can log the bot's token the attacker is using and it can be used to login with a discord bot client and screw up their current operation
    Basically sending a good dose of karma to the attacker

  • @Muziek37414
    @Muziek37414 2 місяці тому

    Maybe show to add some persistence? With powershell add on startup

  • @ComposewithAi
    @ComposewithAi 2 місяці тому

    Will it work if I have firewall to block new connection

  • @PatrickCreations
    @PatrickCreations 21 день тому

    My brother is going to have some troubble finding this one 😂

  • @Oracule-bh5vy
    @Oracule-bh5vy 2 місяці тому

    injected PIC, its new for you?

  • @blackanonymous
    @blackanonymous Місяць тому

    yoooo thanks so much

  • @zamal7611
    @zamal7611 2 місяці тому +2

    yeah, it's working but windows firewall detected (can u make video for win firewall to avoid malware in image)

  • @barskarakas4927
    @barskarakas4927 16 днів тому

    new fear unlocked
    Amazing video thanks a lot

  • @virtualheadless4764
    @virtualheadless4764 2 місяці тому +2

    Hey what happen if user is offline and then open the file and deleted in offline mode by finding nothing on file
    Can still we have access

    • @shadowsalah1484
      @shadowsalah1484 2 місяці тому

      the backdoor wouldn't be activated at that moment since the file couldn't establish a connection to the attacker's server or execute any malicious code while offline.but once the friend goes back online, if the backdoored image contains executable code or a script that initiates a connection to the attacker's server, the backdoor could potentially execute its malicious payload.

  • @NikolaTomic
    @NikolaTomic 2 місяці тому +1

    Will it execute if I right-click on file to go to properties but I already have XNView MP with shell extension to show me image preview in explorer?

    • @keto4life197
      @keto4life197 Місяць тому

      With a keygen so You got all the virus You need

  • @endremurti
    @endremurti Місяць тому

    Any idea for android target setup?

  • @ENROUTERV3
    @ENROUTERV3 Місяць тому

    Know the difference between steganography and evasion

  • @owASTA
    @owASTA Місяць тому

    i think the cons are the space of the file , it can be spotted

  • @Noobgaming93745
    @Noobgaming93745 24 дні тому

    im gonna make this and put it on my friends and rickroll them 💀

  • @memz4519
    @memz4519 24 дні тому

    This worked soo much on my school project i got A+ thanks

  • @Conecte_Aqui
    @Conecte_Aqui 3 місяці тому +2

    How are you managing to keep your UA-cam channel covering hacker issues?
    I had a channel with several hacker-related topics and UA-cam, after I had 200 videos, deleted my channel.
    How can you keep the videos?

    • @user-pv6mx4wi5x
      @user-pv6mx4wi5x 2 місяці тому +4

      You forgot to add for educational purposes 😂

    • @Conecte_Aqui
      @Conecte_Aqui 2 місяці тому +2

      @@user-pv6mx4wi5x I put it in the video description that it was for educational purposes and even then it didn't allow it until a warning at the beginning of the video

    • @FurqanHun
      @FurqanHun 2 місяці тому +1

      You're not supposed to show everything in video, you shouldn't be showing malicious code on the screen and there shouldn't be a real victim 🚶 there's a grey area in the education section and it's pretty easy to cross over it 🚶 btw you can still send a takeout request to google for that channel even if it's terminated and you'll get permission to download your videos

    • @archerthepitbull883
      @archerthepitbull883 Місяць тому

      Hii bro can u teach me how to start hacking...

  • @Kulenn
    @Kulenn 10 днів тому

    When i click '' build " it says Unhandaled exeption occurred in your app. Can anyone help?

  • @ReligionAndMaterialismDebunked
    @ReligionAndMaterialismDebunked 2 місяці тому

    Been a while since y'all posted. Shalom. Hehe. :3

  • @didyouknowamazingfacts2790
    @didyouknowamazingfacts2790 Місяць тому

    I'm pretty sure most email providers will pick this up as malicious.

    • @bhavyanegi6602
      @bhavyanegi6602 Місяць тому

      Yea easily, you need to learn by-passing AV and reverse engineering to make it undetectable.

  • @sus-rh6tw
    @sus-rh6tw 28 днів тому

    me with image extensions turned on:

  • @bilal_404
    @bilal_404 8 днів тому

    does it work on smartphones also?

  • @uniqueinsanvlog
    @uniqueinsanvlog 2 місяці тому

    It's work on mobile as well??

  • @DeeperSoul
    @DeeperSoul 10 днів тому

    Many softwares like Telegram has auto download what I hate cause so many strangers/scammers messaging you with image messages.
    You have to disable downloads settings after setup or every installation but for the safety that settings must be disabled as default!

  • @avx0966
    @avx0966 2 місяці тому

    Form to input guild Id and server id is not opening

  • @trippythegoat9438
    @trippythegoat9438 Місяць тому

    I tried this but when i tried to change the name and the picture it came with the same error ''ATR not found''

  • @nightwing09x
    @nightwing09x 2 місяці тому

    Taking your course on udemy, thanks!

  • @wawaweewa9159
    @wawaweewa9159 17 днів тому

    So why is a file allowed to be listed as jpeg if its an app?

  • @user-kz2sz6bi7b
    @user-kz2sz6bi7b 2 місяці тому

    best Sir, but can u tell me how can we build in pdf file for android, kindly make a video for android and uplaod on channel, please

  • @allyouneed4775
    @allyouneed4775 2 місяці тому

    Sir where is your channel can you please give me the link of your channel

  • @lowspender147
    @lowspender147 10 днів тому

    I always change the settings to show the files extension and show the hidden and protected windows files since the age of windows XP, so clickbait won't work , why don't they make these setting default? Hiding files extension will just prevent people from learning some simple thing

  • @jageshnaidoo5588
    @jageshnaidoo5588 Місяць тому

    What is the useful app to avoid hackers?

  • @BM-wl2sn
    @BM-wl2sn Місяць тому +1

    Type of file WEBP (.webp) what this?

  • @theremixsong.4712
    @theremixsong.4712 Місяць тому +1

    When I clicked it then: "Oh no! You have no power here"
    Operating System: Arch Linux BTW

    • @chattf
      @chattf 25 днів тому

      linix dont work

  • @sangepuvinod3333
    @sangepuvinod3333 19 днів тому

    Is this executable is detected by Av??

  • @lancemarchetti8673
    @lancemarchetti8673 Місяць тому

    Just embed the reversed Base64 of your payload after the 2nd byte in any jpg file. Image parsers will ignore it as Metadata.
    And your image won't look suspicious.
    No need for exe renaming tricks.

    • @Hello-eg8er
      @Hello-eg8er Місяць тому

      How does this work?

    • @afjelidfjssaf
      @afjelidfjssaf 24 дні тому

      @@Hello-eg8er i think he means instead of storing the payload inside the exe, just have the code in the exe read the images metadata and parse it

    • @mmtaqi8448
      @mmtaqi8448 4 дні тому

      how you can bypass the windows defender or antivirus when the user click on it ?

    • @afjelidfjssaf
      @afjelidfjssaf 4 дні тому

      @@mmtaqi8448 you can't. All files automatically get mark of the web (except ISOs and such)

  • @cyberguardsolutionsservices
    @cyberguardsolutionsservices 2 місяці тому

    Please the renaming can you edit later and modify the exe in the file name?. Thank

  • @Shervan96
    @Shervan96 24 дні тому

    Please explain How to drive by download a malware virus and how to upload it for a phone can download it

  • @hollycow8171
    @hollycow8171 Місяць тому

    We did this in 2006 😜 Easy to track keystrokes, screenshots, and more.

  • @kolawoleoyedokun7250
    @kolawoleoyedokun7250 3 місяці тому +1

    🎉. This is cool.
    But, how do we bypass windows defender and antivirus being installed on windows target

  • @Doomslayer151
    @Doomslayer151 26 днів тому

    Special thanks to do Discord , Github , MS-Windows Charmap for supports DIY malware(not really)

  • @nildesperandum2034
    @nildesperandum2034 18 днів тому

    WINDOWS DEFENDER LAUGHED THIS !!!

  • @abdbout
    @abdbout 2 місяці тому

    hi ser is it working on phones

  • @xd22fahadsameershaikh43
    @xd22fahadsameershaikh43 12 днів тому

    Antivirus in the cornor laughing

  • @ProfChemeng3
    @ProfChemeng3 3 місяці тому +4

    Ill try this on you😂

  • @user-bv6ms6ww6b
    @user-bv6ms6ww6b 26 днів тому

    Work on phone?

  • @ranjitkumargouda8970
    @ranjitkumargouda8970 2 місяці тому +1

    The biggest lie "This Video is for Educational Purpose Only"!

  • @Sp1ritYT735
    @Sp1ritYT735 26 днів тому +2

    When i open up the script with the foto its says windows cannot find backdoor.exe make sure you typed the name correctly
    And then try again

    • @InduwaraPerera_YT
      @InduwaraPerera_YT 14 днів тому

      you have to add the correct name of the exe file created with builder app or rename that to backdoor.exe. when u creating zip file use the correct name of it not the name in the video.

    • @InduwaraPerera_YT
      @InduwaraPerera_YT 14 днів тому

      btw i tried the whole steps correctly unfortunately it says this app dosent support on my pc and i don't have any other device to test it😒, please let me know if it works for u.

  • @daddyserban2038
    @daddyserban2038 2 місяці тому

    We need a example for how to crack the cctv passwords if they are not default

    • @BaapLap
      @BaapLap Місяць тому

      Same here

  • @DirkArnez
    @DirkArnez Місяць тому

    .exe is too beginner that i automatically ignore when i enable extension in Windows Explorer. I prefer to have virus in an image file that i cannot complain

  • @kobeJanssen_officieel
    @kobeJanssen_officieel Місяць тому

    after 10 min my discord bot is offline how can i fix it?

  • @KDR911KO
    @KDR911KO Місяць тому

    Well that can be resolved by extraction the file and kill the virus service

  • @waiphyoaung1107
    @waiphyoaung1107 3 місяці тому

    Can kill windows security for this image?

  • @Blackify_live
    @Blackify_live 2 місяці тому

    Thank you for your precious time and knowledge. ❤

  • @Nochymusic
    @Nochymusic 3 місяці тому

    Teach how to embed a RAT(apk)into am image

  • @kurra_sapaan
    @kurra_sapaan Місяць тому

    Flipkart is very scandalous

  • @deadlydragonrealm
    @deadlydragonrealm 2 місяці тому +1

    is it undetectable by defender?

  • @mudassarmuhammad776
    @mudassarmuhammad776 Місяць тому

    How to remove it from the machine ???? this should also be told in the video....

    • @jonda_mc
      @jonda_mc Місяць тому

      Just make new one

  • @KDR911KO
    @KDR911KO Місяць тому

    Is linux not feeling well does it need a vaccine

  • @kingsmith3352
    @kingsmith3352 Місяць тому

    Still showing my icon only not my executable file😢😢 y pls someone should answer me😢

  • @bostm8687
    @bostm8687 Місяць тому

    But how can you sent this file. I mean all programs as discord, email… recognize that that is a virus a blocks it?

  • @darkworld1873
    @darkworld1873 25 днів тому

    Z security waiting for us to click this video

    • @chattf
      @chattf 25 днів тому

      huh? wym