Skip to main content

Posts

Featured

GUESS WHO'S STILL ALIVE

 ok but am i?  i am, just kidding. i started working and totally lost track of everything but I'm back now. and I'm gonna do one blog entry a week lessgoooo so this is ILOVEYOU malware challenge from BTLO. pretty straightforward but fun nonetheless. lets hope I get to do an update where I do an actual binary analysis on the malware. done December 3.  ok so learning what all this means one by one. rem is used to write comments, and dim is used to define variables. then we define vbscopy which is used for file reading. then wscr is used to create a shell script object, then it reads registry keys in windows scripting host/settings/timeout, and if its >= 1, then its turned to zero. why tho??? what does it do?? lemme google girls wait. ah ok so time out basically tells how long the processor has to wait before executing whatever command. ok lets move on. then we find some special folders(????) in windows, temp and system directory. then the vbscopy is copied into mskernel3...

Latest posts

CLICKED - IBM SKILLSBUILD CREATING AND IMPLEMENTING A CYBERSECURITY PROGRAM TEAM SPRINT (FEB 21 TO MARCH 21 2023)

Memory Forensics - Ransomware (BTLO Challenge)

BTLO & CYBERDEFENDERS UPDATE

CYBER DEFENDERS CHALLENGE ESCAPE ROOM(NETWORK FORENSICS, REVERSE ENGINEERING)

micro mini update

Mini Update

Malware compromise

UPDATE

DONT READ THIS ONLY FOR FUTURE ME

Suspicious USB stick