No video

How To Setup A Sandbox Environment For Malware Analysis

  Рет қаралды 251,216

HackerSploit

HackerSploit

Күн бұрын

Hey guys! in this video I will be showing you how to setup a sandbox environment for malware analysis with VirtualBox and Fakenet.
Fakenet: sourceforge.ne...
Get Our Courses:
Python For Ethical Hacking: www.udemy.com/...
Our Platforms:
Hsploit: hsploit.com/
HackerSploit Forum: hackersploit.org/
HackerSploit Academy: hackersploit.io/
HackerSploit Podcast: / hackersploit
iTunes: itunes.apple.c...
⭐SUPPORT HACKERSPLOIT BY USING THE FOLLOWING LINKS:
NordVPN: nordvpn.org/ha...
Use the link above or the code below for 77% Off your order
Promo Code: hacker
Patreon: / hackersploit
I Hope you enjoy/enjoyed the video.
If you have any questions or suggestions feel free to ask them in the comments section or on my social networks.
🔗 HackerSploit Website: hsploit.com/
🔹 SUPPORT THE CHANNEL
NordVPN Affiliate Link: nordvpn.org/ha...
Patreon: / hackersploit
🔹 SOCIAL NETWORKS - Connect With Us!
-------------------------------
Facebook: / hackersploit
Twitter: / hackersploit
Instagram: / hackersploit
Patreon: / hackersploit
--------------------------------
Thanks for watching!
Благодаря за гледането
Kiitos katsomisesta
Danke fürs Zuschauen!
感谢您观看
Merci d'avoir regardé
Grazie per la visione
Gracias por ver
شكرا للمشاهدة
دیکھنے کے لیے شکریہ
देखने के लिए धन्यवाद
#MalwareAnalysis

Пікірлер: 160
@kso35
@kso35 2 жыл бұрын
The way you used your words in this video was intelligent, precise, and clear. You are amazing at what you do. Thank you so much!
@Just1HotPringles
@Just1HotPringles 3 жыл бұрын
I like the speaker's voice! Very clear, confident and well spoken! Good content!
@tomislav6718
@tomislav6718 5 жыл бұрын
Dude, I am subscribed on Your channel for about 2 months and I can say that your videos thaught me more than any profesor on my university in a last 2-3 years. Kudos to You and big thanks, you are doing great job here! Cheers :D
@e1Pr0f3ss0r
@e1Pr0f3ss0r 4 жыл бұрын
@Hackersploit plz reply this guy... respect ur followers..
@stanhoppe
@stanhoppe 4 жыл бұрын
@@e1Pr0f3ss0r he is still searching why fakenet do not output all the infos to a file beside .pcap
@rxph_official
@rxph_official 3 жыл бұрын
lets be honest... we all just want to be able to click on every shady link that ever pops up with no consequences
@LaptopBagga
@LaptopBagga 3 жыл бұрын
facts
@dani_g59
@dani_g59 3 жыл бұрын
im just here to do windows destruction
@theepicman293
@theepicman293 3 жыл бұрын
yup
@seanwatts392
@seanwatts392 2 жыл бұрын
Lol I 100% do that 😂 I don't use a virtual machine tho. I have alot of usb thumb drives and a few extra samsung 870 evo ssds and i boot windows from them. I have 1 usb stick for normal pc usage that a normal human being usually does on a pc like youtube and Firefox. I have Another USB stick that that I boot off of windows with that I use to try to get as much illegal software and torrents as possible that I need and test them on that same usb stick. If there's a virus from a torrent which I rarely get I just reinstall windows on that thumb drive. And the last usb thumb drive is to store all the downloads I have gathered and just stored. And if I go help my friend makes beats at his house I pop that sucker in and he picks whatever plugin or software he wants lol. I do all that on 1 or 2 laptops😂 and the windows 10 I use is a stripped down modded version that has littrally no bloatware. No Microsoft Spyware and it doesn't even have windows defender. It's disabled its 100% not installed. My gaming pc I littrally just play games on. You might ask me why am I worried about viruses? Lol I'm actually not. I don't store anything personal or important that I would care to loose. I'm more worried about ransomwear on my gaming pc. And all that reckless stuff I do I mabe got 5 viruses within 3 years. 🤙
@270Winchester
@270Winchester 2 жыл бұрын
I just want to be able to mess with some Indians from Kolkata.
@JCBurdenLifter
@JCBurdenLifter 4 ай бұрын
I know this is years later but oh, my, goodness I am so thankful for you and this video series! Thank you!
@debdutta9375
@debdutta9375 5 жыл бұрын
Hi your tutorials are awesome. As previously told by me can you please make a tutorial about reverse engineering (fuzzing,buffer overflow vulnerability etc. etc.) Thanks
@TemperedWambat
@TemperedWambat 5 жыл бұрын
you've been rolling out alot of videos lately. Keep up the good work 😃
@stuff97
@stuff97 5 жыл бұрын
just as a side advise, I don't think that "host only" virtual bridge would be enough to stop "worms", take your precautions.
@OthmanAlikhan
@OthmanAlikhan 3 жыл бұрын
Thanks for the video. Very educational and systematic, and best of all, your voice is awesome =)
@redapple0007
@redapple0007 5 жыл бұрын
You make very useful content. Keep it up! 👌
@isacramosdomingos5282
@isacramosdomingos5282 5 жыл бұрын
I really enjoy your videos Keep Going I am learning so much thank you
@crispyhaole8533
@crispyhaole8533 4 жыл бұрын
I thought that shared folders between guest and host was one of the easier vectors for malware on a VM to traverse to the host. Has this changed?
@nobytes2
@nobytes2 4 жыл бұрын
You can add and remove shared folders without rebooting VM. It can be mounted as read only but I prefer to completely remove it until I need it.
@maciejkawka9715
@maciejkawka9715 5 жыл бұрын
You say about imitating real anvironment. Would malware not check for things like Fakenet installation or disabled firewall also?
@drewgibson4233
@drewgibson4233 4 жыл бұрын
A lot of people who are not IT savy will often have there firewall off either some sort of malware disabled it or they turned it off for some reason and don't know why they need it. I worked at a hotel for years and ran a small side business fixing guest computers that were our regulars 90% of the ones I looked at had no antivirus running the firewall was off and they had absurd amounts of different malware.
@vypr1653
@vypr1653 4 жыл бұрын
@@drewgibson4233 I have my firewall off (to cheat) and no antivirus (downloading things) but I've been fine, if you have common since it shouldn't be that hard to not get hacked
@sliver7993
@sliver7993 3 жыл бұрын
@@vypr1653 cheater
@mahendrakathe
@mahendrakathe 2 жыл бұрын
Great video to start with , for malware analysis sandboxed environment - Thanks for sharing .
@ro6AXE
@ro6AXE 4 ай бұрын
Thanks man now i can test these performance boost stuff
@lakiluci474
@lakiluci474 5 жыл бұрын
Wow , you are young tutor / professional , i thought you r an old person... good to know u r between 32 & 38
@vincenttjia
@vincenttjia 5 жыл бұрын
Could you outsmart a malware by let say. I make my host system identify as virtual machine so that malware would reject to run? Like installing VMware tools?
@mohammadabdussamad2258
@mohammadabdussamad2258 5 жыл бұрын
That is interesting !! He doesn't do that kind of videos , don't know why!
@zeykis7369
@zeykis7369 4 жыл бұрын
@@mohammadabdussamad2258 cuz the malware goes through
@vincenttjia
@vincenttjia 4 жыл бұрын
@HTB_For_Life well some precautions are better than none. I will of course keep running my antivirus on top of it
@nobytes2
@nobytes2 4 жыл бұрын
Highly unlikely you can outsmart a virus, a virus will most likely still run even if it has vmware tools. He's just saying some check for that.
@emmanuelbekele7620
@emmanuelbekele7620 4 жыл бұрын
@@nobytes2 but the prestige of such an accomplishment. hardly not worth the time.
@andrada.p
@andrada.p 3 жыл бұрын
Super interesting, thank you! Could you please also make a video about the Cuckoo sandbox for malware analysis?
@edentan_
@edentan_ 3 жыл бұрын
thorough and awesome
@ilyxzs
@ilyxzs 5 жыл бұрын
i love your videos man keep up the good work
@AT-le8xu
@AT-le8xu 5 жыл бұрын
How can i install all necessary packages in Kali linux(WSL)
@redpanda31337
@redpanda31337 5 жыл бұрын
sudo apt install kali-linux-full
@vamshipapani1563
@vamshipapani1563 5 жыл бұрын
Thank you for the Video. Great Work!!
@vedprakash4682
@vedprakash4682 3 жыл бұрын
Sir please upload on yourself how you started your career as ethical hacker
@JosefSmidrkal
@JosefSmidrkal 5 жыл бұрын
Thanks for a great video. Please consider system details also display windows product key.
@bryanstark324
@bryanstark324 3 жыл бұрын
This is really a great tutorial. I recently made a bad decision to use software that was part of a class on Udemy and the instructor for the class said it was going to activate a "false positive" but I ran the software, it tripped my anti-virus software and then I removed the software. I don't know what the software installed though in the background or in hidden files. Would you be open to letting me pay you to analyze this software on a virtual machine and tell me what was likely installed into hidden files?
@cringesh1t427
@cringesh1t427 4 ай бұрын
What class was it?
@NemesisT23
@NemesisT23 2 жыл бұрын
wouldn't internal network be a better choice? why would you want to give malware a path to your host machine?
@mohammadameen-zb3es
@mohammadameen-zb3es 5 жыл бұрын
i hoped that you install it in any debian opsys
@jasonbrussmn
@jasonbrussmn 5 жыл бұрын
Great video, any chance you would do a video in the future on using Linux?
@DomWhite
@DomWhite 3 жыл бұрын
No get windows
@wendy_113
@wendy_113 11 ай бұрын
You make it interesting to learn ty
@freez8829
@freez8829 4 ай бұрын
Starting in virtual box virtual machine is already wrong. If you are doing virus analysis I recommend QEMU with KVM (virtual box is not an option cause it can be detected) If you are going for reverse engineer I would still recommend QEMU but also virtual box is an option too
@RapFab
@RapFab 5 жыл бұрын
Could you please make more Videos about making your Android Phone into a hacking machine? I would really like to learn more about that!
@demiwodnatenate6849
@demiwodnatenate6849 5 жыл бұрын
Make a way for yourself dont relie on hackersploit
@EngrAjmalKanju
@EngrAjmalKanju 2 жыл бұрын
Thanks for the amazing help of this video. I am going to start making yt videos and flashback express seems like the right option to go with. Thx again for the help this video had for me Any One Interested in the Full Version...
@alanfernandes3477
@alanfernandes3477 5 жыл бұрын
Man, you're the best!
@Wastelander1972
@Wastelander1972 4 жыл бұрын
I have two questions: 1. Do you have to worry about networking a VM due to the threats of worms? What if you’re examining links that lead you to webpages with a keylogger installed? 2. Do you worry about VMEscape malware?
@ResenVMOfficial
@ResenVMOfficial Жыл бұрын
NoEscape doesn't get out of the VM, So feel free to try it in a VM.
@namkhanh_kelleroan8836
@namkhanh_kelleroan8836 Жыл бұрын
Thank you so much you really help me :)
@picklr3893
@picklr3893 3 жыл бұрын
Thanks for the detailed tutorial you got a sub from me
@bharathsajan6297
@bharathsajan6297 5 ай бұрын
Is it okay if i stay connected to the internet in my sandbox environment? I'm trying to detect crytpojackers and without a network connection i really can't conclude the malware is a cryptojacker.How else could i implement this?
@hassansaqib442
@hassansaqib442 5 жыл бұрын
Sir please ! Tell me How to follow Your videos ! For Beginners please sir !
@thibodeaudan
@thibodeaudan 11 ай бұрын
If on my host computer, I have a specific drive for VM's, why can I not see the Oracle program on that drive? Does Virtual Box have to be installed on the C drive of the host machine?
@QFixxDigi
@QFixxDigi 10 ай бұрын
Now are you running Vbox inside of a sandbox software like shade or sandboxie? Or is this VM running alone?
@nickthiru
@nickthiru 3 жыл бұрын
Hi! Great video, thank you very much. I was wondering, if I remove Guest Additions, I'm unable to increase the screen size e.g. go full screen, of the VM easily (there are some "low level" configurations that could be tried, but I haven't tried them yet). Note: I am using an Intel processor, so I can't select Enable Nested VT-x/AMD-V, which was one of the suggested solution I came across. Some have mentioned that it's okay to have the Guest Additions installed but to ensure that shared folders and clipboard are disabled. Any thoughts and/or suggestions regarding this, or possibly share how you dealt with this matter? Thanks!
@HackerSploit
@HackerSploit 3 жыл бұрын
Guest Additions install a custom graphics driver that provide GPU acceleration for your VM, therefore, you require the guest additions in order to go full screen. Alternatively, you can change the resolution manually within the VM display settings.
@NSGameplay24
@NSGameplay24 5 жыл бұрын
Big fan from bangladesh
@pascalnarcos3482
@pascalnarcos3482 5 жыл бұрын
Great ! Thanks !
@locataires405degaulle6
@locataires405degaulle6 2 жыл бұрын
WIthout VmWare tools installed, we can used th clipboard, so we can copy for exemple a hash from the VM to the host browser to anlalyse it ?
@ardamn6435
@ardamn6435 6 ай бұрын
can we connect to the internet while we are downloading, and then disconnect while executing malwares? is it safe to do? or we need to be completely disconnected from the vm all the time?
@tsegayemelkamumelkamu1942
@tsegayemelkamumelkamu1942 5 жыл бұрын
#Your titorial is best
@sameerparnami8552
@sameerparnami8552 5 жыл бұрын
Informative
@segdesc
@segdesc 2 жыл бұрын
Is it too bad to run it in a NAT network at all times? It will receive a different IP address from the host, but this way I can create a internal networks of VMs and play with attack/defense between Windows/Kali, for example.
@458gopichand
@458gopichand 5 жыл бұрын
Here we can retrive established network connection, but how to capture the changes happtin system due to execution of malware?
@hritishkumar3871
@hritishkumar3871 5 жыл бұрын
Nice one!
@shaikhjunaaydjs1217
@shaikhjunaaydjs1217 2 жыл бұрын
are you sure about host only? because i saw tutorials saying that was the wrong thing. what is the right network adapter for just testing viruses?
@TheJoka31
@TheJoka31 2 жыл бұрын
Is their a video for VMware / writeup
@Murder_Guy
@Murder_Guy 2 жыл бұрын
are these things also enough for old malware like Bonzibuddy, MEMZ (ok, not so old), Wannacry etc.?
@AZTechLabs
@AZTechLabs 2 жыл бұрын
why wouldn't the malware look to see if it can get to someplace like Google or look for fake net?
@fretfulgentle2593
@fretfulgentle2593 3 жыл бұрын
do i keep fakenet running while I'm analyzing it?
@klaasweerstand9429
@klaasweerstand9429 4 жыл бұрын
what about hyper-v? can I use that too?
@qwersstudios
@qwersstudios 4 жыл бұрын
When I go to the network settings and select host only adapter, nothing appears in the name. Please help me.
@lordadz1615
@lordadz1615 3 жыл бұрын
interesting. I was trying to run kali linux but my actual AV went off when i ran nikto on it (through a VM) . Is there anyway i can avoid that
@spartafisetu1414
@spartafisetu1414 2 жыл бұрын
Hello, Why we need to remove the guest ?
@johnvardy9559
@johnvardy9559 7 ай бұрын
alex the GREAT thanks
@Tommieboy_666
@Tommieboy_666 3 жыл бұрын
Does this work for testing minecraft clients that might have trojans etc?
@Ultimah
@Ultimah Жыл бұрын
Microsoft VM is not available anymore on their site please do an update.
@togwam
@togwam 3 жыл бұрын
Why not use windows sandbox for malware analysis?
@sharingangaming3044
@sharingangaming3044 5 жыл бұрын
Hey @HackerSploit so there are two version of Fake-net the one you have and using on this video and there is another version called " Fakenet-NG" would you be able to show how to set up fakenet. Im also running into the trouble of running it as is giving me a "gateway"error . Does this have to do anything with the VM being in "Host-only adapter" how can i fix this? its probably a simple fix.
@jamespatrick8145
@jamespatrick8145 3 жыл бұрын
So with this, what is the point of the previous windows 7 setup video?
@robertstan7243
@robertstan7243 3 жыл бұрын
I've been asking myself the same question..
@akash6039
@akash6039 3 жыл бұрын
Great!
@Jay-ey8yb
@Jay-ey8yb 2 жыл бұрын
do i get virus on my pc if i play crack game on sandbox environment ?
@regentester72
@regentester72 3 жыл бұрын
i did everything and i cant even access the shared folder bullshit because its not connected to the internet
@dulipramanik7001
@dulipramanik7001 5 жыл бұрын
Sir plz start making video
@evanliu0803
@evanliu0803 3 жыл бұрын
Where's the VMWARE video?
@othmanBarram-uj1pl
@othmanBarram-uj1pl 4 ай бұрын
واالله لي عندو االغة الانجليزية فهو في نعمة عضيمة
@umbrafn_
@umbrafn_ Жыл бұрын
Does VMware work?
@trashmonkle4877
@trashmonkle4877 3 жыл бұрын
Dose this still work
@leonart1848
@leonart1848 5 жыл бұрын
it works for testing ransomware or it will get out ?? the ransomware is scary
@constucticons
@constucticons 5 жыл бұрын
It wont get out.
@roronoa_d_law1075
@roronoa_d_law1075 Жыл бұрын
2:33 lmao savage
@x0rZ15t
@x0rZ15t 3 жыл бұрын
Would it also be advisable to choosing the amount for ram based on the "powers of 2" numbers, like for example: 4096 Mb (which is 2^12) or 8192 Mb (2^13), etc?
@westhouse4641
@westhouse4641 2 жыл бұрын
I know this is old but, fingers crossed for when they decide anything under 8 cores is a vm lol
@omsaxena789
@omsaxena789 5 жыл бұрын
I need help.... My friend forgot his apple id and his iPhone 7 is locked.... Is there any possible way to remove it... Please help...
@noahneedshelp
@noahneedshelp 3 жыл бұрын
8:05
@DrJOKe-dd9tl
@DrJOKe-dd9tl 5 жыл бұрын
There he is Ma nigga
@haiderrizwan5
@haiderrizwan5 Жыл бұрын
was monetized, so that company could aim for Nice tutorials channel to make money
@techplanetpro1134
@techplanetpro1134 5 жыл бұрын
i want to learn so much from your videos...i am fucking procastinating all the time
@stroft2
@stroft2 3 жыл бұрын
Hi, is this method safe for messing with memz or wanna cry? Cuz I wanna make a malware testing and how to deal with malware channel. So is this method completely safe for testing memz and other aggressive viruses? Thanks...
@crukiesbasted1732
@crukiesbasted1732 3 жыл бұрын
I tried installing a malware for a free game and it didnt affect my pc just the vm, I also downloaded vpn to avoid the virus getting to my network. I will say it's safe but I deleted it cuz I'm gonna be selling my pc soon
@crukiesbasted1732
@crukiesbasted1732 3 жыл бұрын
If u ever need help I'll try to download the memz thing and tell you what happens
@stroft2
@stroft2 3 жыл бұрын
@@crukiesbasted1732 ok pls help me
@crukiesbasted1732
@crukiesbasted1732 3 жыл бұрын
@@stroft2 I downloaded that MEMZ virus and I was shocked lol, nothing happened just cant control the mouse or anything. I restarted my pc and restart the vm and it works fine
@stroft2
@stroft2 3 жыл бұрын
@@crukiesbasted1732 I'm so scared. I want to contact you on discord. Do you have discord?
@shubhamarya1918
@shubhamarya1918 5 жыл бұрын
HEY HS....BACKUP YOUR VIDEOS TO ANOTHER STREAMING SITE KZfaq IS BEING SHITTY AGAIN (READ THE KZfaq COMMUNITY GUIDELINES)
@dionysus3774
@dionysus3774 5 жыл бұрын
10th awesome!
@heatherryan9820
@heatherryan9820 10 ай бұрын
LMAO, my whole laptop only has 4gb of RAM.
@Tecform
@Tecform 8 ай бұрын
same
@tjforentertainment5423
@tjforentertainment5423 5 жыл бұрын
5:17
@emadeathmetal1264
@emadeathmetal1264 4 жыл бұрын
It's probably a cracked key.
@thuanphunghanhtantruc6187
@thuanphunghanhtantruc6187 3 жыл бұрын
scp096 jasonmraz criticalrole 3dprinting rekietalaw carpenters markrober
@CRRonaldo-lq9os
@CRRonaldo-lq9os 5 жыл бұрын
He hackersploit i have alfa wifi AWUS036H can't connected wifi ..It tries to connect and does not connect
@mathcraftofficial3423
@mathcraftofficial3423 3 жыл бұрын
Who tried the 000.exe virus after? XD
@thatonegayfurry4177
@thatonegayfurry4177 4 жыл бұрын
*me i here using a bare metal setup worth like 40k * am I a joke to you
@near5148
@near5148 Ай бұрын
I will now download free robux
@ApertureMiku
@ApertureMiku 5 жыл бұрын
this seems kinda crappy tbh, most malware would detect the vm environment without any hardening done (and even then)
@Anthony-kj3xw
@Anthony-kj3xw 5 жыл бұрын
Instead of shitting on his work like an asshat, why not give some actual specifics on what he missed?
@grandtheftautoexpert2040
@grandtheftautoexpert2040 4 жыл бұрын
@@Anthony-kj3xw he probably has to change the drive names in regedit
Malware Analysis Bootcamp - Introduction To Static Analysis
3:39
HackerSploit
Рет қаралды 44 М.
Detect Hackers & Malware on your Computer (literally for free)
16:38
The Giant sleep in the town 👹🛏️🏡
00:24
Construction Site
Рет қаралды 20 МЛН
黑天使遇到什么了?#short #angel #clown
00:34
Super Beauty team
Рет қаралды 47 МЛН
Parenting hacks and gadgets against mosquitoes 🦟👶
00:21
Let's GLOW!
Рет қаралды 13 МЛН
Windows Defender Sandbox Test vs Malware
19:55
The PC Security Channel
Рет қаралды 374 М.
How To Setup A Virtual Penetration Testing Lab
28:54
HackerSploit
Рет қаралды 239 М.
An Introduction to Malware Analysis
1:10:01
crow
Рет қаралды 42 М.
Strange File in Downloads Folder? Gootloader Malware Analysis
30:20
John Hammond
Рет қаралды 744 М.
Practical Malware Analysis Essentials for Incident Responders
50:49
RSA Conference
Рет қаралды 147 М.
MALWARE ANALYSIS // How to get started with John Hammond
55:45
David Bombal
Рет қаралды 291 М.
Malware Analysis Bootcamp - Introduction To Malware Analysis
12:46
HackerSploit
Рет қаралды 112 М.
Malware Analysis Bootcamp - Analyzing The PE Header
20:21
HackerSploit
Рет қаралды 56 М.