A new RAT technique without Malware

Поділитися
Вставка

КОМЕНТАРІ • 190

  • @acceptablecasualty5319
    @acceptablecasualty5319 4 місяці тому +230

    When they see the only programs on the infected PC are Wireshark and a pirated Copy of MS Excel: 💀

    • @Weed
      @Weed 4 місяці тому +1

      LMAO

    • @VOID_4487
      @VOID_4487 4 місяці тому +4

      Too bad the command and control machine is already located

    • @ditrypand8273
      @ditrypand8273 4 місяці тому +5

      JohnTravolta.gif

  • @mu11668B
    @mu11668B 4 місяці тому +39

    "It's gonna be easy to get rid of."
    No. Just reinstall the system unless you have privilege separation set up and the attacker cannot get administration privileges even through known vulnerabilities. Once the attacker gets admin permission, it is difficult to make sure you got all the post-compromise activities cleaned up.

    • @Fidelity-0
      @Fidelity-0 4 місяці тому

      the only secure way

    • @hamburger_eatspie
      @hamburger_eatspie 4 місяці тому +1

      like... what if they send the victim like 7 different malicious files that nest themselves deep into the computer... you can't just uninstall that.

    • @Fidelity-0
      @Fidelity-0 4 місяці тому

      @@hamburger_eatspie malware can't creep inside system recovery files.

    • @slightlylongername
      @slightlylongername 4 місяці тому +10

      ​@@Fidelity-0Yes... yes they can. There are demonstrated instances of state-actor malware infecting HDD firmware/backups/USB controllers.

    • @mu11668B
      @mu11668B 4 місяці тому

      @@Fidelity-0 System recovery files are just wim images. There were attacks that utilized built-in dism tool to tamper with them.

  • @landesverrat
    @landesverrat 4 місяці тому +8

    I don't know anything about coding, but I am very interested in learning cyber security. Your videos are very enjoyable to watch and you explain everything perfectly without overdoing it and making it complicated, Subscribed and I'm willing to learn a lot more from you in the future! :D

  • @DerEchte101
    @DerEchte101 4 місяці тому +100

    the background music is fire

  • @nottootall4120
    @nottootall4120 4 місяці тому +5

    Love how chill these videos are. No script or anything just a discussion/live investigation of weird malware, fascinating stuff

  • @misty_5083
    @misty_5083 4 місяці тому +426

    i love your videos please don't get pregnant

    • @EricParker
      @EricParker  4 місяці тому +139

      is there a reference I don't get here?

    • @adhdvolcano
      @adhdvolcano 4 місяці тому +136

      @@EricParker yeah, its just something people say now. sometimes its "dont explode" or something. pretty funny most of the time

    • @redwalmart
      @redwalmart 4 місяці тому +43

      thank you for making my morning this is one of the funniest comments ive come across LMAO

    • @FBI_Agent_
      @FBI_Agent_ 4 місяці тому +2

      🤨🤨🤨🤨

    • @penewoldahh
      @penewoldahh 4 місяці тому

      dont be every english teacher ever

  • @Sypaka
    @Sypaka 4 місяці тому +18

    A RAT courtesy made by the Hamachi developers.

    • @Seeks__
      @Seeks__ 4 місяці тому +6

      Logmein?
      Logusin.

    • @W0lfCL
      @W0lfCL 4 місяці тому +2

      @@Seeks__ Wearein themainfraim😎⌨

  • @craftingdragon007
    @craftingdragon007 4 місяці тому +6

    I love the lain refrences, that you put in all the time 😂

  • @vladik_yt3186
    @vladik_yt3186 4 місяці тому +30

    Dude you're famous asf now for making that windows XP experiment!

  • @blackbonnieiscool
    @blackbonnieiscool 4 місяці тому +2

    Your voice is calm to us, your knowledge is dangerous to malware.

  • @Тарас-щ9с
    @Тарас-щ9с 4 місяці тому +1

    i like your videos. and the chill atmosphere of them. thank you! wish you all the best

  • @HoonzoDarkspawn
    @HoonzoDarkspawn 4 місяці тому +5

    Quite spooky for not being detected, better be extra careful

  • @ArthursHD
    @ArthursHD 4 місяці тому +1

    n-able RMM also has system-level Shell and Remote Desktop. It is a good tool to manage PCs and Servers.
    Just found out about Tactical RMM. Looks like it can be self-hosted free of charge. So there is potential to be abused.

  • @NotIlham
    @NotIlham 4 місяці тому +3

    Its kinda interesting tho to see new rat technique without even getting detected

    • @leonidas14775
      @leonidas14775 4 місяці тому +1

      Genius move my microsoft having file extensions hidden by default.

    • @NotIlham
      @NotIlham 4 місяці тому +1

      @@leonidas14775 LMAO THATS TRUE

  • @xstevenwav
    @xstevenwav 4 місяці тому +1

    i always enjoy watching your videos man!
    don't stop 🙏

  • @KevinHarvickisnothappy4
    @KevinHarvickisnothappy4 4 місяці тому +5

    Eric is open shell and are the classic shell forums safe like im scared that a windows update could break the taskbar or the system and im worried about the classic shell forums since the site is not secure no https

    • @EricParker
      @EricParker  4 місяці тому +9

      It's probably safe but it can break on updates because it's editing deep parts of the windows UI.

    • @goongleton
      @goongleton 4 місяці тому

      i am using openshell, its safe

  • @arijanj
    @arijanj 4 місяці тому +2

    How do you set up WireShark to bypass the WireGuard encryption and get you the raw TCP traffic? Unless you're just not connected at all :)

  • @whtiequillBj
    @whtiequillBj 4 місяці тому +1

    is there a way to monitor the traffic "over the wire" checking the interface that is being connected to on the host computer outside of the VM?
    this would be akin to splicing an ethernet cable and attaching a very obvious cable coming off it to watch the traffic.

  • @DaewidYouTube
    @DaewidYouTube 4 місяці тому +183

    How did you train your comment section so well, they don't say FIRST when they comment. First time I'm seeing this, even channels with 2 subs still get "first" comments.

    • @joe7992
      @joe7992 4 місяці тому +23

      We get hit, get out while you can

    • @madbanana22
      @madbanana22 4 місяці тому +116

      no way edgy 12 year old fortite kids are not interested in reverse engineering

    • @DaewidYouTube
      @DaewidYouTube 4 місяці тому +8

      @@joe7992 thanks for the warning, i'm flying to Mexico now

    • @stefanandrejevic2570
      @stefanandrejevic2570 4 місяці тому +19

      what about the guy who commented under this video "if ur skibidi pin me"

    • @Psychopatz
      @Psychopatz 4 місяці тому +2

      FIRST!

  • @acevvxa
    @acevvxa 4 місяці тому

    the "hello everybody" never gets old

  • @snippez1
    @snippez1 4 місяці тому +1

    46k SUBS UR A DEMON KEEP IT PUSHING MY GOAT. UNDER A MONTH AGO U WERE AT 10K

  • @valennina7965
    @valennina7965 4 місяці тому

    so i got a spam email telling me to confirm an invoice -with a payment method that i dont have..- and now this video got recommended to me by the algorithm XD

  • @wolfrig2000
    @wolfrig2000 4 місяці тому

    Found you through the algorithm randomly suggesting me your connecting windows xp to the internet video

  • @mysteryman169
    @mysteryman169 4 місяці тому

    damn bro you gained subs fast cangrats i remember u were at a few thousand and now almost 50k

  • @Amonimus
    @Amonimus 4 місяці тому

    I wonder if there are malware that checks if the user has AnyDesk or any easy-use Remote Desktop installed, and just opens it and sends over the login number.

  • @LESLEYYY0
    @LESLEYYY0 4 місяці тому

    You can dump ssl keys of Windows so you can decrypt the SSL traffic, without MITM

  • @ALiteralTV
    @ALiteralTV 4 місяці тому +10

    Another W video, as usual. You definitely deserve more attention.

  • @trevoreyre2775
    @trevoreyre2775 4 місяці тому +1

    Jokes on you scammers, I HAVE bought thousands of dollars worth of oil rig equipment!

  • @gasplanet4341
    @gasplanet4341 4 місяці тому +17

    Comment for the algorithm

  • @amandabrunsperger3726
    @amandabrunsperger3726 4 місяці тому +1

    bruh i clicked on the video and the comment section was same

  • @thismightbetwo
    @thismightbetwo 4 місяці тому

    proud to say that i knew eric before connecting windows xp

  • @factswithlouis
    @factswithlouis 4 місяці тому +1

    another day another good video from eric

  • @hamburger_eatspie
    @hamburger_eatspie 4 місяці тому +1

    this video made youtube put a roblox executor software video in the little recommended video thing on the side. (love your vids tho!!)

    • @hamburger_eatspie
      @hamburger_eatspie 4 місяці тому

      (incase ur wondering: yes its a virus, its so obvious just from the title)

    • @hamburger_eatspie
      @hamburger_eatspie 4 місяці тому

      for some strange reason I really want to watch the video just to write a funny comment like "this executor held my entire family hostage! would recommend!" so people know to not install and also hopefully the comment will stay there long enough where someone will read it. lots of "roblox exploit software" videos either turn off comments, flag words like "scam" or "virus," or the owner goes around and deletes any comment that talks about it being malicious.

    • @eggs4561
      @eggs4561 4 місяці тому +1

      ​@@hamburger_eatspie stupid me got ratted by one of those a long while ago :D
      Lost my ubisoft account and had to change the email on my Microsoft account because people were spamming incorrect passwords with my email but otherwise I'm fine now

  • @CentilmenSon
    @CentilmenSon 4 місяці тому +15

    moral story don't download random files

    • @willwastaken
      @willwastaken 4 місяці тому +6

      moral of the story*

    • @velvetyredd
      @velvetyredd 4 місяці тому +1

      @@willwastaken why does it matter

    • @fahnkymuncke7439
      @fahnkymuncke7439 4 місяці тому

      @@velvetyredd my bum 😂😂😂😂😂😂

  • @hamburger_eatspie
    @hamburger_eatspie 4 місяці тому

    The strongest anti-virus is probably common sense. lots of times stuff like this can be avoided by not downloading random stuff, but there are exceptions I guess... (risky websites, network attacks, and malware making it's way into actual software.)

  • @j_stasHCR
    @j_stasHCR 4 місяці тому

    Great video as always!

  • @Graham6410
    @Graham6410 4 місяці тому +1

    Wouldn't be surprised if the tech support scammers start using this.

    • @bobbyrandomguy1489
      @bobbyrandomguy1489 4 місяці тому +2

      Im not sure most of those scammers are smart enough to even buy some random malware and send it to people lol. Seems like most just go off a script. Pre written by their boss or something

    • @FriedMonkey362
      @FriedMonkey362 4 місяці тому

      In the video he litterly said they did

    • @sauliusvitkauskas8741
      @sauliusvitkauskas8741 4 місяці тому

      why is idksterling wtahcing eric parker

  • @PianoElipse
    @PianoElipse 4 місяці тому

    6:08 what is the name of used debugger?

  • @LoadedNorth
    @LoadedNorth 4 місяці тому

    I love these videos keep up the great work

  • @rootdevelopment
    @rootdevelopment 4 місяці тому

    Great video as always

  • @Mordecrox
    @Mordecrox 4 місяці тому

    As soon as I heard logmein my head logmeout.
    I mean still watching and interested but every company worth their salt blocked logmein software for ages for various reasons, the most honorable being "we don't want people running Age of Empires multiplayer".
    (And people run anyway because actual corporate VPN /LAN is in place making Hamachi redundant)

  • @qoombert
    @qoombert 4 місяці тому

    UA-cam auto subtitles get "harmless" as "homeless" on your videos because of the accent

  • @whydoyoulooklol
    @whydoyoulooklol 4 місяці тому +3

    u should make a video on steamunlocked next

    • @sauliusvitkauskas8741
      @sauliusvitkauskas8741 4 місяці тому

      safe just dont download those goofy ahh ads and some may probably be flagged as a hacktool so its safe

    • @ThatUltra
      @ThatUltra 4 місяці тому

      ​it has uploads from igg-games,igg is known for putting malware in their uploads (they also doxxed the owner of goodolddownloads). ​@@sauliusvitkauskas8741

  • @slowdownex
    @slowdownex 4 місяці тому

    This one wasnt so bad, but generally im like half watching half listening to the video (I watch them while doing other stuff like making coffee), sometimes I'll be listening and following and then you'll start reacting to whats on screen without describing it. To be clear, of course you can make videos however you want. But I think me (and others who listen) could benefit from a little more describing.

  • @noneedtohavethis
    @noneedtohavethis 4 місяці тому

    Which linux do you use? btw great vid

  • @OBviEZ
    @OBviEZ 4 місяці тому +1

    lol im friends with the guy who made that song you're using in the background

  • @greenplaysmanygames
    @greenplaysmanygames 4 місяці тому +2

    i love your videos please don't explode

  • @Fidelity-0
    @Fidelity-0 4 місяці тому

    Hi eric, big fan here. Can you make a review on Wave executor for roblox i love playing games and I don't want to get ratted. Thanks!

    • @FriedMonkey362
      @FriedMonkey362 4 місяці тому +2

      Dont install it?
      Pretty sure you can play without it

  • @guarf3576
    @guarf3576 4 місяці тому

    i dont even really understand this stuff but i definitely enjoy

  • @YaySyu
    @YaySyu 4 місяці тому

    Use burpesuit to get a certificate and decrypt the traffic

  • @opiiiiiiiiiiii
    @opiiiiiiiiiiii 4 місяці тому

    i love this guys videos even though half the time i dont know whats he speaking about i just pretend that i understand it

  • @poocyx
    @poocyx 4 місяці тому

    Interesting Video!

  • @replikvltyoutube3727
    @replikvltyoutube3727 4 місяці тому

    Lol it comes with bash and cat

  • @hn1f
    @hn1f 4 місяці тому

    394 views in 10 minutes bro will explode overnight

  • @eggs4561
    @eggs4561 4 місяці тому

    your videos are very good but whatever you do do not want to play with high traffic

  • @gdbored
    @gdbored 4 місяці тому

    you should do a video on the roblox Solara hack rat please, i would love the video!

  • @Klusio19
    @Klusio19 4 місяці тому

    That's clever

  • @skver
    @skver 4 місяці тому +1

    smart

  • @bananaFN4
    @bananaFN4 4 місяці тому

    Keep it up ❤

  • @SlenderFN
    @SlenderFN 4 місяці тому +2

    Wow

  • @RandomytchannelGD
    @RandomytchannelGD 4 місяці тому +1

    Hi

  • @katjaczajkov8694
    @katjaczajkov8694 4 місяці тому

    not related to me, its an exe file 😮

  • @mrj4264
    @mrj4264 4 місяці тому

    cat.exe

  • @ploobman92
    @ploobman92 4 місяці тому

    neat

  • @擢
    @擢 4 місяці тому

    tech support scammmers beware :)
    (yes i know theres other and better methods)

  •  4 місяці тому +1

    W video

  • @TheGamermanX
    @TheGamermanX 4 місяці тому +1

    Yooo

  • @MaxiBini253
    @MaxiBini253 4 місяці тому

    8 views in 1 minute

  • @iestyn129
    @iestyn129 4 місяці тому +2

    another good vid! don’t get pregnant yet though!

  • @debilista
    @debilista 4 місяці тому +2

    "getting ratted without malware"
    ".exe"
    i stopped watching

  • @progamer3000-uz7pj
    @progamer3000-uz7pj 4 місяці тому

    9776th person to watch

  • @densemotherflipper
    @densemotherflipper 4 місяці тому +1

    you should look at the carpe diem executor RAT, a lot a people in the roblox exploiting community got ratted by it.
    not sure if you can get it anymore though..

  • @A_T_F_
    @A_T_F_ 4 місяці тому

    i love your videos please get pregnant

    • @lol-w4r
      @lol-w4r 4 місяці тому +2

      I'M SORRY WHAT-

    • @piratetriforce
      @piratetriforce 4 місяці тому

      are you good? do you need help?

  • @Daniel636-j7l
    @Daniel636-j7l 4 місяці тому +1

    55TH

  • @Electro-tw9um
    @Electro-tw9um 4 місяці тому +4

    I watched the whole video and you never explained this "new RAT technique". You just showed a legit remote software.

    • @Archimedes.5000
      @Archimedes.5000 4 місяці тому

      Well the video never said it's going to "explain" it, it's just a showcase.
      And yeah obviously it's a legit remote access software, that's the entire point, it's just that it's used to gain remote access and steal some shit from people who don't know that this grants remote access

    • @MyFedora
      @MyFedora 4 місяці тому

      Yes, that's the point. Malware devs abuse legit software for malicious purposes. But this technique has been around for a while, so I don't get why they call it a new RAT technique.

  • @CallofComedy1
    @CallofComedy1 4 місяці тому

    FIRSTTT

    • @fovfloor
      @fovfloor 4 місяці тому +1

      Shut up

    • @aisultan3329
      @aisultan3329 4 місяці тому

      Nobody gives a ⓕᙈᑕ𝕜ıᑎg shit lil bro
      2 days ago💀

  • @realvercy
    @realvercy 4 місяці тому +1

    37th comment i guess

  • @BGforever420
    @BGforever420 4 місяці тому

    Not first here

  • @Psychopatz
    @Psychopatz 4 місяці тому +2

    FIRST!

  • @incandescentwithrage
    @incandescentwithrage 4 місяці тому

    I appreciate your presentation style, but lord alive you're bad at analysis/reversal.

  • @Zombie_Grandma
    @Zombie_Grandma 4 місяці тому +8

    if ur skibidi pin me

    • @stefanandrejevic2570
      @stefanandrejevic2570 4 місяці тому +5

      Ezekiel 21:31-32
      “I will pour out my wrath on you and breathe out my fiery anger against you; I will deliver you into the hands of brutal men, men skilled in destruction. You will be fuel for the fire; your blood will be shed in your land; you will be remembered no more, for I the Lord have spoken.”

    • @stefanandrejevic2570
      @stefanandrejevic2570 4 місяці тому

      skimbibi bop bop bop yes yes

    • @43021
      @43021 4 місяці тому +2

      3772 Jadewood Drive, Chicago, Illinois. 😊

    • @Zombie_Grandma
      @Zombie_Grandma 4 місяці тому

      @@43021 ??

    • @TeoSivanich
      @TeoSivanich 4 місяці тому

      ​@@43021🥰🥰🥰

  • @chemloaf3020
    @chemloaf3020 4 місяці тому

    Invoice.exe 😆 😆 😆

  • @ihaveafortniteaddiction
    @ihaveafortniteaddiction 4 місяці тому

    169 like!