Malware Analysis Bootcamp - File Type Identification

Поділитися
Вставка
  • Опубліковано 9 січ 2025

КОМЕНТАРІ • 46

  • @m1k3thirteen81
    @m1k3thirteen81 3 роки тому +7

    You are the David Attenborough of Cybersecurity! Can’t get enough! Thank you so much for what you do for the community!

    • @HackerSploit
      @HackerSploit  3 роки тому

      That is greatly appreciated, I am glad you find value in the content.

  • @Naveenbabuborugadda
    @Naveenbabuborugadda Рік тому

    This is the ratest video about Malware Analysis in UA-cam

  • @eswar5252
    @eswar5252 3 роки тому

    Thanks You saved me a lot of time and drew me out of confusion of what to learn

  • @ABDULKARIMHOMAIDI
    @ABDULKARIMHOMAIDI 2 місяці тому

    Thanks man you deserve support

  • @sametsahin-eh3qj
    @sametsahin-eh3qj Рік тому

    You sir are a genius. Huge respect.

  • @cherubrock222
    @cherubrock222 5 років тому

    Amazing series! You have a great way of explaining this stuff.

  • @christojojo6590
    @christojojo6590 Рік тому

    Hi, if the cff explorer can find all the info about the file type, then what is the need for all other tools explained in the video(Hexeditor,exeinfo PE)

  • @VipulVaibhaw
    @VipulVaibhaw 5 років тому

    Watched it over minutely... thanks for this. :)

  • @95Biswajit
    @95Biswajit 5 років тому

    Loved it. :).. looking forward to get more in this series.

  • @blade1551431
    @blade1551431 5 років тому +2

    link for sample does not work for me

  • @KishorKumar-re2rs
    @KishorKumar-re2rs 11 місяців тому

    Can you please explain what is the entry point and what are its uses?

  • @nitczi706
    @nitczi706 2 роки тому

    I'm trying to download the Pestudio manually, but when i run it, it says "The version of this file is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need an x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher."
    I tried to find another version to download but I have no success. What can i do? There's another program which could replace the PEstudio?

  • @puneetkulkarni2416
    @puneetkulkarni2416 3 роки тому

    Hello Hackersploit!!! You think I should refer to the book Malware Analysis by Monappa KA?
    Which one did you refer?

  • @Wei-ji9ou
    @Wei-ji9ou 3 роки тому +1

    Can malware activate without execute them ?

  • @Chris-ez1ly
    @Chris-ez1ly 3 роки тому

    Great video. Thank you as always.

  • @austinmurphy9074
    @austinmurphy9074 4 роки тому

    doesn't host-only adapter allow guest to communicate with host? How is this safe?

  • @pavanteja2219
    @pavanteja2219 2 роки тому

    The sample malware not PE right ?

  • @_nosma
    @_nosma 5 років тому

    Cannot Download the sample, it gives me a 404 error page.

  • @nikhilt3755
    @nikhilt3755 5 років тому +3

    "this program cannot be run in DOS"
    this is located inside DOS stub
    if you are running on DOS this header is identified and gets executed
    else its skips this header
    last 16 bits in MZ header tells the address to the PE header
    (because DOS header gets skipped in windows 10)
    my old memories with malware analysis

    • @HackerSploit
      @HackerSploit  5 років тому

      Yes, we have not yet covered headers yet. This will also be explained.

    • @nikhilt3755
      @nikhilt3755 5 років тому

      @@HackerSploit ok bro
      i m just saying what i remembered
      its been long while i have learnt
      waiting for whole tuts

  • @supratickdey7125
    @supratickdey7125 4 роки тому

    then how to find file type for packed ones

  • @theunforgiven2601
    @theunforgiven2601 4 роки тому

    why it doesn't work for me?
    it keeps telling me that it cant open the file because if may contain viruses.
    when ever i drag the malware to the hex editor or any other program.
    please help x(
    note that it was working before, and all of sudden it didn't work again x( x(

    • @theunforgiven2601
      @theunforgiven2601 3 роки тому

      @Nathan Jenkins i did.. but still the malware didn't open.
      However, i used linux. And it's working :p

    • @qwerty.760
      @qwerty.760 3 роки тому +1

      @@theunforgiven2601 also dont run it on your main system. Use virtual box/vmware or another isolated system.

    • @theunforgiven2601
      @theunforgiven2601 3 роки тому

      @@qwerty.760 Yep... thank you for the advice. i used VM for that :)

    • @bobnoob1467
      @bobnoob1467 2 роки тому

      @@theunforgiven2601 even better, a sandbox environement.

  • @timoteogarcia1581
    @timoteogarcia1581 5 років тому

    What does MZ stand for?

  • @cyberi2009
    @cyberi2009 5 років тому

    what about Hebrew in the thanks part

  • @hanial-hayyawi4578
    @hanial-hayyawi4578 Рік тому

    Splendid video

  • @SatyamKumar-ti6hw
    @SatyamKumar-ti6hw 5 років тому

    The malware sample is no longer located in the Google drive. Error 404

  • @dylanzentz4525
    @dylanzentz4525 4 роки тому

    where can i go to find malware? i just want the source code of viruses. Where can i find them?

    • @ProfChoy
      @ProfChoy 4 роки тому

      Have you found them? I think GitHub has it

  • @choudhary6964
    @choudhary6964 5 років тому

    Is it cryptography?

  • @ecliptic_at
    @ecliptic_at 6 місяців тому

    great video

  • @amoghnath3330
    @amoghnath3330 5 років тому

    Thanks waiting for this :)

  • @visionofsalvation
    @visionofsalvation Рік тому

    Thank you.

  • @rayamoooooo685
    @rayamoooooo685 2 роки тому

    thanks

  • @MayankBhardwaj-fy7ge
    @MayankBhardwaj-fy7ge Рік тому

    😍😍😍😍😍😍

  • @B14CK.M4M84
    @B14CK.M4M84 5 років тому

    ❤❤👍👍

  • @MisterK-YT
    @MisterK-YT Рік тому

    Windows Vista? Lol