Malware Hunting with Microsoft Sysintenals Tools | TryHackMe

Поділитися
Вставка
  • Опубліковано 29 вер 2024

КОМЕНТАРІ • 16

  • @keshavmahoorkar8117
    @keshavmahoorkar8117 3 роки тому +1

    Please make video on malware hunting in Crowdstrike EDR tool

  • @akashupadhyayawow
    @akashupadhyayawow 3 роки тому

    Best vedio 😍😍

  • @Randomrel
    @Randomrel Рік тому +1

    Thank you for this video. its very good and easy to understand

  • @cyberwarriorall6260
    @cyberwarriorall6260 3 роки тому

    thank you sir

  • @grand8295
    @grand8295 2 роки тому +1

    awesome video, what other sources would you recommend us to start learning more of these knowledge

  • @kualder
    @kualder 3 роки тому +1

    the best video, thanks,

  • @cyberwarriorall6260
    @cyberwarriorall6260 3 роки тому

    Hi Sir, I have query.. When Handling incident if we identify the process on proc exp based on virus total score, company name etc.. then next step is to suspend then kill and then open autorun to check and reg entries and just uncheck them will do or do we need to delete or use jump to entry and remove the value.
    Just building the connection of steps during IR.
    Thank you.

    • @MotasemHamdan
      @MotasemHamdan  3 роки тому +1

      All the steps you mentioned are correct. Don't forget to check the registry, temp files and %appdata% folder.

  • @jameezybreezy9030
    @jameezybreezy9030 Рік тому

    you have a knack for teaching

  • @piratimir1101
    @piratimir1101 Рік тому

    Imagine a malware manipulating your systinternal tools after you add it to the PATH.

    • @MotasemHamdan
      @MotasemHamdan  Рік тому

      Yup !

    • @piratimir1101
      @piratimir1101 Рік тому

      @@MotasemHamdan Do you recommend any material to read on the information you shared in your presentation?

    • @piratimir1101
      @piratimir1101 Рік тому

      Well, what source?

  • @MALWARELATINO
    @MALWARELATINO 3 роки тому

    Txh 😳

  • @hamdancybersecurity2029
    @hamdancybersecurity2029 3 роки тому

    1st🔥🔥🔥