Writing Custom Malware: Import Address Table Hooking

Поделиться
HTML-код
  • Опубликовано: 6 дек 2023
  • jh.live/maldevacademy || Learn to write modern 64-bit Windows malware with Maldev Academy! Save 10% even on the LIFETIME plan with code 'HAMMOND10': jh.live/maldevacademy
    Free Cybersecurity Education and Ethical Hacking
    🔥RUclips ALGORITHM ➡ Like, Comment, & Subscribe!
    🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
    🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
    🌎FOLLOW ME EVERYWHERE ➡ jh.live/discord ↔ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/instagram ↔ jh.live/tiktok
    💥 SEND ME MALWARE ➡ jh.live/malware

Комментарии • 110

  • @_JohnHammond
    @_JohnHammond  7 месяцев назад +34

    This video had some difficulty while uploading and processing. The audio should be resolved now, make sure your volume is on :)

    • @mpakaboy
      @mpakaboy 7 месяцев назад +1

      honestly, this video is somewhat difficult to understand as well. And this is a programmer that is telling that. I will need to spend some time with google, bing and gpt popped out with this a bit later..

  • @jamesisadude9187
    @jamesisadude9187 7 месяцев назад +12

    Best coding tutorial. He both explains what he is doing and why.

  • @W3b5t3r
    @W3b5t3r 7 месяцев назад +6

    thank you John for your efforts to make informative content everyday

  • @cyphodias1640
    @cyphodias1640 7 месяцев назад +1

    I always love your content! Keep up the great work. 👍

  • @lord_snigglebottom
    @lord_snigglebottom 6 месяцев назад +2

    i may not understand computers as much as the target audience would but i still love these videos so much ❤ computers are great

  • @_661.
    @_661. 7 месяцев назад

    I love u lessons, master, I take many knowledge with u helping materials and lections, thanks for all ❤

  • @crr0ww
    @crr0ww 7 месяцев назад +8

    you absolute legend. what a fun watch! thunk (hehe) you for posting this, john :')

    • @_JohnHammond
      @_JohnHammond  7 месяцев назад +4

      YOU ARE THE BEST CR0W
      KEEP DOING WHAT YOU DOING 😁

  • @djdohboyhtc
    @djdohboyhtc 7 месяцев назад +16

    I LOVE the coding video's you do, weather it be python or c++!! Plase do more there great and you explaine them very well!

    • @MasterCraft_48
      @MasterCraft_48 7 месяцев назад

      It's written whether. I make thay mistake more time that I'd like to admit

    • @aboveaphid
      @aboveaphid 7 месяцев назад

      ⁠@@MasterCraft_48it’s written that. I make typos sometimes too. 😂 lol

  • @sora4222
    @sora4222 6 месяцев назад

    Thank you for the education John, I will use this for good (legal) use 😊

  • @Angelinajolieshorts
    @Angelinajolieshorts 7 месяцев назад +2

    Great man❤

  • @devcognicion
    @devcognicion 7 месяцев назад

    What about the 1M subs sir, gz! :)

  • @11ph22il
    @11ph22il 7 месяцев назад +2

    This video got me HOOKed

  • @michaeldprovenzano9936
    @michaeldprovenzano9936 7 месяцев назад +1

    Could you write a signature for the malware you made? It would be cool to know how to.

  • @JoakimBB
    @JoakimBB 7 месяцев назад +1

    Is this from maldev academy:)? Good stuff!

  • @lss9191
    @lss9191 7 месяцев назад

    Awesome, 😊

  • @petrsuchy6386
    @petrsuchy6386 3 месяца назад +1

    43:20 How is it possible to inject dll without Administrator privileges? I don't see UAC prompt popup..

  • @ItIsYouAreNotYour
    @ItIsYouAreNotYour 7 месяцев назад +3

    Do you upload the source code anywhere?

  • @AGASTRONICS
    @AGASTRONICS 7 месяцев назад +1

    Master, please tech BEC, and spoofing ❤

  • @logiciananimal
    @logiciananimal 7 месяцев назад

    How does the original hook work? I think I remember from a previous video that it is one of those tools that is in arms race with Defender ...

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      Do you mean the CreateFileWOriginal? That is set to the value of the original function pointer by the IAT Hook function, so you can just call it.

  • @Chabdi111
    @Chabdi111 14 дней назад

    Isnt it just possible to include the headerfile directly instead of including functions from a header file?

  • @Mezzosd
    @Mezzosd 7 месяцев назад

    nice😉

  • @robertommmin5
    @robertommmin5 7 месяцев назад +1

    Hello John

  • @MrGentlemanism
    @MrGentlemanism 7 месяцев назад +1

    It's a great video for entertainment purposes. There's a lot of prerequisite knowledge required to be able to understand the video at it's current speed and format.

    • @southwestedc
      @southwestedc 7 месяцев назад

      so glad were getting some more technical content. The beginner simple stuff is great too but its good to get some stuff for students whove already covered much of the basics

  • @JorgeMartinez-xb2ks
    @JorgeMartinez-xb2ks 7 месяцев назад

    Great job, thank a lot

  • @eavi4645
    @eavi4645 7 месяцев назад +3

    No audio

  • @MrJannikH
    @MrJannikH 7 месяцев назад +1

    360p only?

  • @RD-tx9vr
    @RD-tx9vr 7 месяцев назад

    You forgot to mention the exe compression and obfuscation

  • @антихакер
    @антихакер 7 месяцев назад

    "No bro I'm a white hat I promise"

  • @JosephH
    @JosephH 7 месяцев назад

    More malaware analysis videos or I start revolting.

  • @gambit3570
    @gambit3570 7 месяцев назад

    hi what version of visual studio are you using is it community edition ?

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      2022 community edition.

    • @gambit3570
      @gambit3570 7 месяцев назад +1

      thank you @@nordgaren2358

  • @ruycr4ft
    @ruycr4ft 7 месяцев назад

    Hey

  • @oluwatosinbamise1539
    @oluwatosinbamise1539 7 месяцев назад

    I thought I'm the only one not hearing. No audio bro

  • @boogieman97
    @boogieman97 7 месяцев назад +1

    These arrows are not really pointers, they dereference struct fields. Create video though!

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      Those are pointers. Pointers in C are derefed with `->` and non pointers, like a local structure, is derefed with `.`

    • @boogieman97
      @boogieman97 7 месяцев назад +1

      @@nordgaren2358 you say it yourself, dereferenced with ->, which mean you get the actual data where the pointer is pointing to. Thats why I said it is not really a pointer it is a dereferenced pointer.

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      @@boogieman97 but it is a pointer. You use that synax on a pointer. The struct could be local and you would have to use a period, because it's not a pointer.

  • @MrRAGHUSHARMA
    @MrRAGHUSHARMA 7 месяцев назад +1

    second

  • @humanxoxo4
    @humanxoxo4 7 месяцев назад

    No audio bruh

  • @jhonwick2590
    @jhonwick2590 7 месяцев назад +1

    John you forgot to activate the windows 😂

    • @ulbed
      @ulbed 7 месяцев назад

      I guess he can now add the activate windows button to notepad.

  • @user-eh1vi3jz1c
    @user-eh1vi3jz1c 7 месяцев назад +2

    First

    • @pizzabossxd
      @pizzabossxd 7 месяцев назад +1

      you greatly deserve the achievement.

    • @galaxylord4000
      @galaxylord4000 7 месяцев назад

      ​@@pizzabossxdAgreed, this man is a diety among us.

  • @livestreamvi7991
    @livestreamvi7991 3 месяца назад

    Bro please give me the source code please please bro i am a malware lover please give me the source code please ❤❤❤😢😢😢😢😢

  • @AGASTRONICS
    @AGASTRONICS 7 месяцев назад

    Woo, now we are on track teach us master. Then we take over the world 🌍 👿. `laughing evilly`

  • @crypto8951
    @crypto8951 7 месяцев назад

    👾👾👾👾👾👾

  • @footy2024
    @footy2024 7 месяцев назад

    Hope you pin me ❤❤❤

  • @subhamrai8918
    @subhamrai8918 7 месяцев назад

    second 😂

  • @bp7092
    @bp7092 7 месяцев назад

    activate windows frfr

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      You don't know what a VM is?

    • @bp7092
      @bp7092 7 месяцев назад

      @@nordgaren2358 I do know and use vms yes

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      @@bp7092 So you buy a new key to activate windows on all your VMs?

    • @bp7092
      @bp7092 7 месяцев назад

      @nordgaren2358 no u don't have to do that

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      ​@@bp7092 You do if you want to activate windows.

  • @optic3096
    @optic3096 6 месяцев назад

    Paywalling code as part of a tutorial is crazy. Whats happened to this channel smh

  • @BombadilBeardie
    @BombadilBeardie 7 месяцев назад +1

    Free Palestine

  • @AlbertGal-uv9qp
    @AlbertGal-uv9qp 7 месяцев назад +2

    What is this skiddie stuff? You have no idea what are you doing :D

    • @marveII0us
      @marveII0us 7 месяцев назад +5

      Comments like these always puzzle me.
      Like how do you know that he doesn't know what he's doing? Not saying this sarcastically but geniunely curious

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      What is skiddie about it?

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад

      ​@@marveII0usjealousy

    • @AlbertGal-uv9qp
      @AlbertGal-uv9qp 7 месяцев назад +2

      @@marveII0us Examining the video closely, it's evident that the individual may be replicating code from tutorials without a comprehensive understanding of the underlying concepts. Don't get me wrong, I genuinely appreciate the video, it offers valuable content. The inclusion of links and tools used to examine the executable files is particularly helpful. :)

    • @nordgaren2358
      @nordgaren2358 7 месяцев назад +2

      @@AlbertGal-uv9qp You know people can script videos before they write them out on camera, so that they don't make as many mistakes when on camera, right?

  • @karim3741
    @karim3741 7 месяцев назад +1

    @_JohnHammond
    The video has no audio bro 😅

  • @Quran20731
    @Quran20731 7 месяцев назад +82

    Free Palestine

    • @Samuel-cr9mc
      @Samuel-cr9mc 7 месяцев назад +1

      I thought they both have a truce

    • @Mustafa-hw1hy
      @Mustafa-hw1hy 7 месяцев назад +6

      ​@@Samuel-cr9mcThere is already a ceasefire, but the occupying Israel is still in the Palestinian territories

    • @Samuel-cr9mc
      @Samuel-cr9mc 7 месяцев назад +5

      @@Mustafa-hw1hy To me they both deserve to share the land. Israel have theirs same as Palestine. If you think one of them should occupy the whole land then stop this Free stuff it is getting out of hand. Humans should live in peace with one another. And stop using these Free Palestine especially when they've just reach an agreement

    • @Mustafa-hw1hy
      @Mustafa-hw1hy 7 месяцев назад +5

      @@Samuel-cr9mc Brother, what is happening there is not something that started from October 7th. The state of Israel was not established to live there in peace. It is not possible for Muslims and Jews to live in peace.

    • @LittleRainGames
      @LittleRainGames 7 месяцев назад +3

      ​​@@Mustafa-hw1hyMaybe all religions should be abolished then, if all they do is stop the peace.