How to Find Out What Suspicious Connections Your Computer Makes When Going to a Website.

preview_player
Показать описание
Whenever you visit a website, your browser could be making hundreds of connections to other URLs in the background. These connections could be loading media, displaying ads, or deliver potentially malicious code. This video will show you how to analyze all the connections your browser makes when you access a website.

You’ll learn how to use the browser’s developer tools to record website network traffic, extract URLs using a Powershell script, and analyze any suspicious links with VirusTotal. This workflow is especially useful for incident responders or security researchers who need to understand the various connections a website makes when people connect to it.

00:00 Why You Should Analyze Website Connections
00:44 Using Developer Tools to Record Network Activity
01:36 Analyzing Network Connections Made by a Website
02:38 Individual URL Analysis With Virus Total
03:33 How to Download and Parse HAR Files
04:04 How to Extract URLs from a HAR File in Windows with PowerShell
05:58 What Are The Upsides of using Developer Tools to Record Network Traffic?
06:24 Downsides of Using This Method?

The PowerShell script shown in the video and scripts for MacOS and Linux are available here:

👍 LIKE AND SUBSCRIBE 👏

#cyberspatial​ #digitalforensics #malwareanalysis
Get next-gen PCAP visualization and analysis at
Рекомендации по теме
Комментарии
Автор

Missed these types of tutorials. You're not following the hype or the job recruitment stuff and showing things that can be used everywhere. Love this

Cybersader
Автор

Man I like these kind of technical tutorials.

apollomedia
Автор

This was a very informative video. Thanks a lot man, keep the quality content coming!

smnomad
Автор

yo this is great. Looking forward in the next

jasonme
Автор

Nice one have use virus total to stop different suspicious I.P and website on my website.
Nice one, I love technical things

sundayigetimothy
Автор

Nice Loved this.. was able to follow along even modified the ps code on the fly. TY Sir.

bryantonojeta
Автор

Most of the browser connections are harmless, more interesting is the systems traffic, no virus will use the browser to communicate back, so i dont think web tools is a great source. Installing an IDS or sniffer/monitor on the router is the only way to get usefull oversight onto traffic ...

xuedi
Автор

Why do I feel like this is John's voice???

pawanneupane