Malware Hunting with Mark Russinovich and the Sysinternals Tools

preview_player
Показать описание
Mark provides an overview of several Sysinternals tools, including Process Monitor, Process Explorer, and Autoruns, focusing on the features useful for malware analysis and removal. These utilities enable deep inspection and control of processes, file system and registry activity, and autostart execution points. He demonstrates their malware-hunting capabilities by presenting several current, real-world malware samples and using the tools to identify and clean malware.

Filmed at TechEd 2014
Рекомендации по теме
Комментарии
Автор

To whom it may concern: this talk is from 2014.

pgteugj
Автор

I started learning computer science since 9 years old. Now I'm 17 and I'm graduating from the school and going on to a system administrator education program. Mark Russinovich was inspiring me into that for the whole last year :)

cloakface-svsm
Автор

This guy is a genius. I really don't know how to appreciate his work..

nemo
Автор

I've been using a Windows PC since windows 95. I have no desire to deal with the fails of windows from it's own software failures to viruses but unfortunately a necessity. This video is so over the top for me but informative. This guy is a SAVANT.

ebeaulieu
Автор

Amazing how powerful this tool is and the whole suite. Amazing also is that since the original winternals, it's freeware. Respect to the developers on this.

timlind
Автор

Great talk! I am always learning new things about the Sysinternals tools with these videos. I wish there was an updated talk. Keep it up!

QQ_Victory
Автор

his tools make you a windows internal guru in about 1h30 min. Thanks Mark!!!

sekousekou
Автор

Good stuff mark, just add the year of the video to the title, I thought you'd actually done one for this year's ignite

liamodonnell
Автор

I loved this. Im motivated to get Into Malware hunting on Windows and this vid fired me up even more. I will Check your Channel and Hope Theres more Like this

getoutmore
Автор

Thanks for sharing this video Mark. I am using your tools almost every day! They are amazing and Must

ColdFireInBox
Автор

I have to thank you for this amazing tools. Our analyst life is much easier

famspower
Автор

끝 없는 개선 박수 짝짝짝 = I applaud the endless improvement

hickenc
Автор

great video, i just wish it weren't so blurry... Anyone have a fixed version? Maybe one that's been run through a Deblurring AI model?

RealShinpin
Автор

Are there any significant differences with malware now in 2022?
Is the information in the presentation still entirely relevant?

For cleaning the system, wouldn't it be better to fully wipe, format the drive, and reinstall Windows?

sirtimatbob
Автор

The sigcheck doesn't seem to work for windows 10 after download.
Any update?

simmonszhu
Автор

I think i have a wmi malware but its not showing up in autoruns pls halp!

Sensualfrg
Автор

Is there a more succinct way of describing it? like my videos for example

restoration
Автор

This is a nice presentation but the video quality sucks.

av
Автор

An intrussion mega virus like windose, searching for an intrusion virus.

Hilarious.

The_Penguin_City
Автор

just use kaspersky and forget this flex..

nintendo