Did I Overreact to Malware on a Mini PC? Interview with Shannon Morse (Security Expert)

Поделиться
HTML-код
  • Опубликовано: 8 июн 2024
  • AceMagic malware? Following up my experience with finding malware on two systems from the same manufacturer, I've been getting a bit more paranoid about using review devices on my home network. Most of my replies have been supportive of me taking more aggressive steps, like reinstalling a computer's OS, but I have gotten a few comments indicating I might be overreacting to false positives in a virus scanner.
    I brought on my friend Shannon Morse to chat about best practices for setting up a new computer, protecting your network, and how to get started in cyber security.
    Give Shannon a Follow!
    / shannonmorse
    snubsie.com/30-day-security-c...
    / shannonmorse
    TEAM SGG PATREON / somegadgetguy
    Juan's Phone Photography Book amzn.to/2HqvUCk
    SomeGadgetGuy's Gear List
    Panasonic G85 amzn.to/2oKNwAm
    Panasonic G9 amzn.to/2XU3mLQ
    Sigma 16mm f/1.4 amzn.to/39uXahF
    Olympus 17mm f/1.8 amzn.to/2StRDxF
    Panasonic 12-35mm f/2.8 amzn.to/2LAASjA
    RODE Wireless GO II amzn.to/3m2x5Mj
    Audio-Technica Lavalier amzn.to/2WywofM
    Focusrite 6i6 Audio Interface amzn.to/2p5l7py
    Shure SM57 Microphone amzn.to/2oypnLm
    Cloudlifter CL1 amzn.to/2oKN9G5
    LED Light Panels amzn.to/2oy60ls
    AJA U-TAP HDMI amzn.to/2wfprBF
    Elgato HD60 S amzn.to/2p95Unu
    --------------------------------------
    SGGQA Podcast RSS: feeds.feedburner.com/SGGQA
    SGGQA Podcast on Spotify: open.spotify.com/show/1CoyEVl...
    SGGQA Podcast Google Play: play.google.com/music/listen?...
    SGGQA Podcast iTunes: itunes.apple.com/us/podcast/s...
    SGGQA Podcast on Stitcher: www.stitcher.com/podcast/juan...
    SGGQA Podcast on PlayerFM: player.fm/series/sggqa-podcas...
    SGGQA Podcast on Archive.org: archive.org/search.php?query=...
    Official site: somegadgetguy.com/2012/07/15/s...
    Patreon: / somegadgetguy
    Mastodon: techhub.social/@SomeGadgetGuy
    Threads: www.threads.net/@somegadgetguy
    Twitch: / somegadgetguy
    Flickr: www.flickr.com/photos/jickbah...
    Instagram: instragram.com/somegadgetguy
    Bluesky: bsky.app/profile/somegadgetgu...
    0:00 AceMagic Malware Detected
    1:46 Introducing Shannon Morse
    4:16 AceMagic's Response
    6:39 What are Software Signatures
    8:10 Warning Signs During My Review
    10:04 False Positives and Threat Modeling
    13:13 Better Home Network Safety
    16:36 Air Gap a New PC at Setup
    18:48 Troubleshooting an Older PC with Malware
    22:34 Where to find good security information
    25:42 The Wrap Up
    Links on this page may be affiliate links which help support production on this website.
    #security #windows #pcbuilding
  • НаукаНаука

Комментарии • 22

  • @blackhorseteck8381
    @blackhorseteck8381 Месяц назад +11

    What really happened is the OEM/ODM that really makes the hardware for all of these small shopfronts doesn't activate Windows the legitimate way and is cloning the same infected copy to every single PC they make. Talking about "Windows source code" is like talking about snake oil in the tech space.

  • @Salfordian
    @Salfordian Месяц назад +6

    I always install a fresh copy of windows when I buy a new laptop but if you're using Norton you've got bigger issues, that's the Blindman's anti-virus, I remember having to fix my sisters rig and the first thing I noticed was Norton so I uninstalled it and run a scan using ESET and it detected nearly 300 viruses and malware

  • @xmlthegreat
    @xmlthegreat Месяц назад +3

    My take before going through the whole video:
    "Source Code"? Microsoft isn't gonna be sharing their source with some random ODM... Besides, vendors like Lenovo, HP, Dell etc have always had a way to roll custom Windows Images in a way that doesn't break chain of trust of MS software components... It's called DISM and it's a tool available to anyone to roll in specific drivers, along with registry and group policy settings, not to mention preinstalled software and scripts.
    AceMagic had no reason to go beyond these measures. It's likely one of the apps being rolled into the Windows Image is unsigned (which is similar to what they said about the RGB software) but they're also patching something in the MS secure libraries, which is a big no-no and sets off alarms for heuristic detectors in Antivirus software.

  • @SpawnWaveMedia
    @SpawnWaveMedia Месяц назад +3

    Snubs in the house 😊 Awesome video, I love to learn new things, besides just watching review videos. Very refreshing 👍

  • @wademiyataki9221
    @wademiyataki9221 Месяц назад +4

    Great video. Yeah, not sure if I want vendors “doing things for me” to “make my experience better”… I don’t even like how “helpful” O365 is. Normally I end up looking for ways to turn that @#$& off.😁

  • @adalbert.arkosi
    @adalbert.arkosi Месяц назад +1

    17:20 Shannon that quick little code (I'm guessing you're talking about oobe \bypassnro) doesn't work anymore with the latest Win11. Neither does closing network connection flow - which you can't even find in task manager. I've tried last week on a Dell prebuilt.

  • @cool24a
    @cool24a Месяц назад +1

    Awesome! Chat!

  • @matthewelberson4140
    @matthewelberson4140 Месяц назад +1

    Which mini pc makers are best at providing legit hardware without rolling malware into the system?

  • @onknight
    @onknight Месяц назад +3

    I'd just install a new OS Scorched...earth...

  • @skiptopher
    @skiptopher Месяц назад +4

    Hello all!

  • @sucafrutpi
    @sucafrutpi Месяц назад

    Phenomenal video!

  • @jesuschristiscallingyou953
    @jesuschristiscallingyou953 Месяц назад

    2:35 JC embracing his inner Na'vi. 😁

  • @jesuschristiscallingyou953
    @jesuschristiscallingyou953 Месяц назад

    17:13 😂

  • @jaymagisa1273
    @jaymagisa1273 7 дней назад

    reformat

  • @federicocatelli8785
    @federicocatelli8785 Месяц назад +1

    Hell no Acemagic is either malicious or incompetent

  • @davmbol
    @davmbol Месяц назад

    As an IT professional, I wouldn’t risk it even if you wipe it, these manufacturers could easily solder chips directly to the MOBO for malicious intent.
    A keylogging chip between the cpu and the interface for your keyboard isn’t out of the question.
    Unless you really know what you’re doing, don’t touch these things.

    • @radioideaxp
      @radioideaxp Месяц назад

      ... and this is the real problem for all Chinese brands. Better to build own mini pc. It will be larger, but 100% sure what you have there