How not to Pirate: Malware in cracks on Github

แชร์
ฝัง
  • เผยแพร่เมื่อ 15 พ.ค. 2024
  • How NOT to pirate, do not download cracks off github, you are likely to be hit by an infostealer that will hack your accounts.
    Safely explore the dark web with Flare: hi.flare.io/pcsecuritychannel... (sponsor)
    Buy the best antivirus: thepcsecuritychannel.com/best...
    Join the discussion on Discord: discord.tpsc.tech/
    Get your business endpoints tested by us: tpsc.tech/
    Contact us for business: thepcsecuritychannel.com/contact
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 557

  • @Davebd
    @Davebd 15 วันที่ผ่านมา +406

    Let's say we installed a info stealer, Is there a way to prevent it from reading cookies?

    • @HoshangGovil
      @HoshangGovil 15 วันที่ผ่านมา +27

      I also want to know the answer of this question.

    • @Electrify_
      @Electrify_ 15 วันที่ผ่านมา +81

      Not really. You are kinda fucked when you download the infostealer.

    • @garrymccracken9775
      @garrymccracken9775 15 วันที่ผ่านมา +16

      Immediately disconnect from the Internet then Investigate

    • @Electrify_
      @Electrify_ 15 วันที่ผ่านมา +2

      @@Plazmal You could... But who has that time lmao

    • @brawldude2656
      @brawldude2656 15 วันที่ผ่านมา +54

      It reads your cookies at the exact milisecond it starts to run. And your data is already sent to a server (probably) overseas somewhere

  • @amoeba8888
    @amoeba8888 15 วันที่ผ่านมา +1668

    pirating from github 💀

    • @Xcczs
      @Xcczs 15 วันที่ผ่านมา +199

      ikr who tf pirates from github

    • @MikaelKKarlsson
      @MikaelKKarlsson 15 วันที่ผ่านมา +24

      Not that Github isn't a mess anyway. 😅

    • @theycallmeken
      @theycallmeken 15 วันที่ผ่านมา +9

      Eyebrows were raised 😂🤦🏾‍♂️

    • @ForDeath16
      @ForDeath16 15 วันที่ผ่านมา +184

      Tbh best KMS script is hosted on github

    • @Zenith_Star69
      @Zenith_Star69 15 วันที่ผ่านมา +15

      ​@@ForDeath16I just used this and it had me doubting myself for a second loll thank you

  • @metallurgico
    @metallurgico 15 วันที่ผ่านมา +163

    A download button in github? That's suspicious.
    I never managed to see one.

    • @imperiaonlinebr
      @imperiaonlinebr 11 วันที่ผ่านมา +9

      And the link is from another repository 💀

    • @JonathanBytes
      @JonathanBytes 11 วันที่ผ่านมา

      Easy to download on GitHub? Hmmm sus

  • @Xcczs
    @Xcczs 15 วันที่ผ่านมา +665

    No smart person uses Google results to search for pirated software. You just use reputable websites which Google of course doesn't show on search results.

    • @staying_substantially6186
      @staying_substantially6186 15 วันที่ผ่านมา +11

      Disagree on that one for video games

    • @Xcczs
      @Xcczs 15 วันที่ผ่านมา

      @@staying_substantially6186 what do you mean?

    • @Xcczs
      @Xcczs 15 วันที่ผ่านมา

      @@staying_substantially6186 all sites that google lists when you type cracked are straight-up malware wdym?

    • @askeladden450
      @askeladden450 15 วันที่ผ่านมา

      @@staying_substantially6186 who tf uses google search for games? You go directly to fitgirl and the likes.

    • @LatvianVideo
      @LatvianVideo 15 วันที่ผ่านมา

      @@staying_substantially6186 opposite for me, most things on google arent that good, excluding a few. General search results, not reddit

  • @3lH4ck3rC0mf0r7
    @3lH4ck3rC0mf0r7 15 วันที่ผ่านมา +266

    I instantly noticed the download button to be a different repository. Major red flag.

    • @TechnoMinded-qp5in
      @TechnoMinded-qp5in 15 วันที่ผ่านมา

      You should see how stupid phishers are in emails it's gullible that people don't check and trace headers for any signs of flaws or have a link checker someone tried phishing my brother by claiming he didn't pay for his "Apple" phone when he never even bought one I called them out and they never replied and the funny part is the idiot was using his gmail what fucking idiot uses their own gmail to try and click bait someone?

    • @user-cl1rq1sg8m
      @user-cl1rq1sg8m 14 วันที่ผ่านมา +7

      As Thio Joe shows you can upload a file as a comment to any repository and it will show that repository url as the source of the info stealer .zip file

    • @3lH4ck3rC0mf0r7
      @3lH4ck3rC0mf0r7 14 วันที่ผ่านมา

      @@user-cl1rq1sg8m I know. And they didn't even bother to do that.

    • @sourkefir
      @sourkefir 13 วันที่ผ่านมา

      @@user-cl1rq1sg8m Here the file appears to be in a release, not as an attachment, since you can upload any files to repo releases. (not tags)
      EDIT: examined the repo, looks like the user themselves released the malicious zip, the code itself belongs to some kind of role manager app?

    • @shroomer3867
      @shroomer3867 13 วันที่ผ่านมา +11

      Usually, software released on github doesn't have a direct download link and instead has a download in the "Releases" tab since things can change with each version.
      It doesn't mean that if it does that it's safe, no, it still could be malware, but the telltale sign is a sketchy download link.

  • @theanonymousdbdplayer5548
    @theanonymousdbdplayer5548 14 วันที่ผ่านมา +78

    You can def legally upload malware on Github but u have to write "Those files are dangerous and shall be ran on isolated environment for testing purpose". If the repository miss this statement , the author is trying to social engineering. Github itself can't stop this attack effectively, cuz (again) malware can be uploaded legally in some scenarios.

    • @wsg1231
      @wsg1231 12 วันที่ผ่านมา +4

      I will legally steal your Social password 😊

    • @Nico1a5
      @Nico1a5 11 วันที่ผ่านมา +1

      For teaching purposes you would make the user input their own dump IP instead

    • @FlamingSwordful
      @FlamingSwordful 11 วันที่ผ่านมา

      ​@@wsg1231yes dadi

    • @ChineseRatfaceCHANG
      @ChineseRatfaceCHANG 6 วันที่ผ่านมา

      ...yes they can. It's their platform thus they can do whatever they want on it. My God, people are stupid these days.

    • @supertaakot
      @supertaakot 6 วันที่ผ่านมา

      You should be using the wording "allowed by their ToS" because literally no state in the world legally allows info-stealing never mind in the form of malware.

  • @brawldude2656
    @brawldude2656 15 วันที่ผ่านมา +153

    I just love the fact that every cyber security tip leads to "Just don't run anything untrusted on your device" at the end

    • @3lH4ck3rC0mf0r7
      @3lH4ck3rC0mf0r7 15 วันที่ผ่านมา +38

      When it comes to digital anything, it's always about trust. Piracy isn't actually any different in that regard.
      That's just the ethos of digital security.

    • @CyberTechSRB
      @CyberTechSRB 15 วันที่ผ่านมา +7

      Windows for example 😅😂

    • @globalist1990
      @globalist1990 13 วันที่ผ่านมา

      What if i don't trust any software?

    • @3lH4ck3rC0mf0r7
      @3lH4ck3rC0mf0r7 13 วันที่ผ่านมา

      @@globalist1990 Not even a program you wrote yourself?

    • @brawldude2656
      @brawldude2656 12 วันที่ผ่านมา +1

      @@globalist1990 then good luck man life is hard for you

  • @Czaroslaw
    @Czaroslaw 14 วันที่ผ่านมา +76

    My favorite part about cracks (in this case for Microsoft's Office) is that only Windows Defender recognizes it as malicious software while other antiviruses don't.

    • @perahoky
      @perahoky 11 วันที่ผ่านมา +18

      because microsoft flags software they dont like as malicious, even if isnt.

    • @Oruta563
      @Oruta563 11 วันที่ผ่านมา +1

      Bro you don't download crack for Microsoft office 💀

    • @in_vas_por8810
      @in_vas_por8810 11 วันที่ผ่านมา +5

      @@Oruta563 You used to not long ago. I think many people still use older versions of Office so they don't have to do the 365 version (which was Microsoft's attempt to stop pirating).

    • @shantilkhadatkar1195
      @shantilkhadatkar1195 11 วันที่ผ่านมา

      ​@@in_vas_por8810So is MS office virus?

    • @KaitouKaiju
      @KaitouKaiju 5 วันที่ผ่านมา +1

      ​@@Oruta563You can absolutely crack office365

  • @dbkarman
    @dbkarman 15 วันที่ผ่านมา +81

    I downloaded the file (dont try at home) and Kaspersky did not detect its hash. It only detected it after I did an "in depth" scan. Virus total also shows that none of the popular antivirus software recognise the hash. What a joke, the file has been up for 2 months.

    • @erroroliver
      @erroroliver 14 วันที่ผ่านมา +13

      > I downloaded the file (dont try at home)
      I mean, it's not downloading a virus that gives you a virus, it's opening the virus after downloading it but i get it

    • @bmxscape
      @bmxscape 13 วันที่ผ่านมา

      @@erroroliver this file isn't the virus though so it will never be detected as such, this file downloads a chain of viruses that continuously download more in order to scrape as much of your data as possible. its not like an active keylogger, they just searched for all your saved passwords from your web browser and all currently logged in apps and dumps all the info it gets so if every virus it downloaded isn't blocked immediately by your antivirus then your passwords are all compromised. i was dumb enough to fall for it a couple months ago and had to re install my operating system because for every 1 virus you detect they have downloaded 3 more. weird part to me is they only took my steam, reddit and instagram. also it detects if you run a windows scan and shuts off your pc lmfao

    • @xavier4151
      @xavier4151 11 วันที่ผ่านมา +1

      Yep! It's not the downloads that activates it. It's the executables.

    • @dbkarman
      @dbkarman 11 วันที่ผ่านมา +2

      @@erroroliver i know but why risk it, i did it in a VM because Kaspersky didnt detect it and I might have accidentally ran it. until the hash is known to all the different AV companies its dangrous. Its now showing as something like 50/100 on VirusTotal but before i reported it to Microsoft, Norton, Kaspersky, BitDefender and McAfee, it was 9/100.

    • @Oruta563
      @Oruta563 11 วันที่ผ่านมา

      When you ran it did it immediately got detected?

  • @Vlame
    @Vlame 15 วันที่ผ่านมา +124

    That readme should already bring up a huge red flag

    • @cyrus2387
      @cyrus2387 15 วันที่ผ่านมา +2

      Why is that?

    • @Not_Aran8276
      @Not_Aran8276 15 วันที่ผ่านมา +59

      Only having readme and the license on the GitHub, and having the download button, that downloads the whole software on the readme is completely wrong anyways. Real and legit piracy tools are going to be some sort of patcher with the source code provided and the download is going to be always on the "Releases" tab, and the readme going to tell us how to exactly use the tool and sometimes it is simply a CLI tool meaning you need to run some sort of terminal first and pass in some argument / parameters. Only thing you have to worry is the tool probably won't work "on your machine".

    • @pold111
      @pold111 13 วันที่ผ่านมา +8

      a github repo even having a download button is a huge red flag, like..... just build

    • @caxacar8901
      @caxacar8901 7 ชั่วโมงที่ผ่านมา +1

      Says readme is a red flag
      Proceeds to not elaborate why

  • @xRoot64
    @xRoot64 15 วันที่ผ่านมา +29

    It's not even just softwares, even "corn" videos too. I think it's very keyword specific, like if you search for leaks, google will return results from github too. Very modern day limewire I'd say.

  • @maximfyodorovich4489
    @maximfyodorovich4489 15 วันที่ผ่านมา +115

    Sailing the seas hones your bullshit detector on pirating things

    • @GregorianMG
      @GregorianMG 10 วันที่ผ่านมา +10

      As a person who occasionally sails the sea, having a trusted platform helps a lot to find your pirated copy.

    • @veteranhamster7410
      @veteranhamster7410 9 วันที่ผ่านมา +9

      @@GregorianMG My issue as a newbie is finding safe waters to sail upon.

    • @Blankult
      @Blankult 9 วันที่ผ่านมา +2

      True but my bs detector has failed once =(

    • @adityananda9126
      @adityananda9126 8 วันที่ผ่านมา

      ​@@veteranhamster7410But those waters are home to large sea monsters😔

    • @user-lr5kf5qf8e
      @user-lr5kf5qf8e 2 วันที่ผ่านมา

      @@veteranhamster7410 1337xx is a good start. FitGirl and DODI repacks are highly respectable, and from that you can find more trusted sources.

  • @tigartar
    @tigartar 13 วันที่ผ่านมา +16

    The sneakest ones(and these have been around for a long time) are repacked cracks where its the actual crack for a program but either due to a badly written crack or some simple exploit they can tag along extra things that get executed or they just write a wrapper for the original crack either way there are plenty who look like they did the job and thus make you way less suspicious about anything having gone wrong and makes it less likely you try to find a way to get rid of it.
    Seen this happen to a few friends who all used the same reuploaded version of a game instead of getting it from the group who originally did it and they all had their info stolen and none of them knew why until they realize it all started after they got that game.
    the ones making the malware get smarter but the average user seems to be getting more stupid.

    • @pipacombate393
      @pipacombate393 7 วันที่ผ่านมา +4

      Bro atleast tell us where did they download the repacks from. I always use fitgirl repacks are those safe?

    • @tigartar
      @tigartar 7 วันที่ผ่านมา

      @@pipacombate393 Listing the site here will most likely get the comment removed as they typically do when people mention places like it but her stuff if it comes from her .site are safe that much i can say.

  • @saviorvx1883
    @saviorvx1883 15 วันที่ผ่านมา +3

    i gott a question, will having a portable chrome and having duplicated exe but there no trace of it saying chrome/google in process will that negate a stealer searching for those processe/default paths? also filecr is a site i use a lot lol

  • @infiniminer7677
    @infiniminer7677 8 วันที่ผ่านมา +3

    beginner question but is it possible to get hacked merely by clicking a button in a web browser without receiving any kind of downloaded file?

  • @user-km7qr4kx1q
    @user-km7qr4kx1q 11 วันที่ผ่านมา +2

    Hi, another great video. But I once had a question of interest. Do you know of any other channels (or would you make a video) that shed more light on spyware and malware on cell phones (especially iPhones)? As this is a topic that is often neglected, I would be interested to know whether users really notice whether malware or spyware is installed?

  • @LatvianVideo
    @LatvianVideo 15 วันที่ผ่านมา +14

    Thats a smooth transition to the sponsor segment

    • @janisbanis6882
      @janisbanis6882 15 วันที่ผ่านมา +1

      braucu ar vilcienu

    • @lussor1
      @lussor1 15 วันที่ผ่านมา +1

      Sponsorblock 😊

  • @justplayinggames963
    @justplayinggames963 15 วันที่ผ่านมา +2

    but even if you're not downloading a crack out of github you can never know if the crack is ok or not
    because Antiviruses don't really like cracks on games - and when i'm downloading a cracked game - i downloading it with the crack in the installation of the game

  • @FryJayPhilip
    @FryJayPhilip วันที่ผ่านมา +1

    good information, nice channel, subbed

  • @yousefslimani99
    @yousefslimani99 13 วันที่ผ่านมา

    Does also means they gonna make your computer running slow too right? Especially in windows explorer! 5:08

  • @danielfarcas5189
    @danielfarcas5189 4 วันที่ผ่านมา

    Does Microsoft Office app (cracked) that i got it from filelist can be a virus?

  • @Monkey_D_Luffy56
    @Monkey_D_Luffy56 9 วันที่ผ่านมา

    How do we know if the software we already installed have info sealer

  • @iDownloadCast
    @iDownloadCast 11 วันที่ผ่านมา +1

    Same thing happened to me with a Mod for an Assassins Creed game yesterday. Exe was clean but the dll had a logger payload. Unfortunately i found out after running it. None of the normal tools (NPE, HitmanPro, Malwarebytes etc.) detected anything. Reinstalled windows anyway. Didnt format my other drives tho. Is there anything else i can do?

    • @user-od4gs3iu4t
      @user-od4gs3iu4t 11 วันที่ผ่านมา

      you mean besides taking more care about what you install on your PC? well you can try some advance HIPS utility like COMODO utility pack, some registry watcher like mjregwatcher. They MAY help you to make a right decision, but it's always your decision to run or not to run an unknown app or to hook a dll

  • @l1nuxguy646
    @l1nuxguy646 15 วันที่ผ่านมา +2

    I would not be even slightly surprised if it was a publisher that placed the malware.

  • @BlackAnt02
    @BlackAnt02 12 วันที่ผ่านมา +3

    that's why I look for source code of the crack, then look at the code and inspect it then finally compile it myself. I use stuff like pykms and etc.

  • @christianmarana3959
    @christianmarana3959 14 วันที่ผ่านมา

    What should u do if you got infected by this? Format?

  • @lisapearce7655
    @lisapearce7655 15 วันที่ผ่านมา +4

    Hey guys weird question but does anyone know any sites what you can download cursors without viruses?

    • @sunla
      @sunla 15 วันที่ผ่านมา +2

      Cursors, that sounds fun! I don't know, but I used to make them a long time ago, which is easy enough to do.

    • @JajaofAbuja
      @JajaofAbuja 15 วันที่ผ่านมา +1

      Cursor fx

    • @angelabov3n
      @angelabov3n 15 วันที่ผ่านมา

      Open Cursor Library, has an array of cursors. You do have to manually set everything to be said cursor in your pointer settings.

    • @lisapearce7655
      @lisapearce7655 14 วันที่ผ่านมา

      @@sunla how did u make them?

    • @lisapearce7655
      @lisapearce7655 14 วันที่ผ่านมา

      @@JajaofAbuja thanks 👍

  • @namenotfound2456
    @namenotfound2456 15 วันที่ผ่านมา +2

    I've been thinking for the last 2-3 years that the "big dogs" of malware (wannacry, etc) will gradually fade from common attacks. It's much easier and cheaper.

  • @venomus9286
    @venomus9286 15 วันที่ผ่านมา

    I don’t want to give anyone idea (just typing this I might), but wouldnt github activation stuff like Windows activation or whatever may be, contain one of these?

    • @DCCB7550
      @DCCB7550 15 วันที่ผ่านมา

      If your referring to MAS no that’s completely different, they have a whole dedicated server and page explaining how it works but fakes do exist so be careful

  • @neiltropolis
    @neiltropolis 15 วันที่ผ่านมา

    Why can't github/Microsoft scan for threats? I also found hacks for warzone on github/Microsoft. Probably root kit. 😅

  • @Veticia
    @Veticia 14 วันที่ผ่านมา

    I tried to download malware like that but my AV removed the file before I had a chance to test it with virus total

  • @lordadz1615
    @lordadz1615 11 วันที่ผ่านมา +1

    Hi can you make a vid on atlas os. I think your input on whether or not its safe would be a cool topic.

  • @theycallmeken
    @theycallmeken 15 วันที่ผ่านมา +23

    why would you goto an open source software hub for access to closed source software? Am I just thinking about this too rationally or who’s the target mark here?

    • @detecta
      @detecta 15 วันที่ผ่านมา +10

      i think its just people who know enough tech to know about open source then think "open source = safe"

    • @romulo2714
      @romulo2714 14 วันที่ผ่านมา +5

      It preys on the Dunning Kruger effect, people that thinks they know a lot about computers and the internet, while in reality just being ignorant.

    • @scrung
      @scrung 11 วันที่ผ่านมา

      @@romulo2714ironically the dunning-kruger effect has nothing to do with any of this

    • @Handlebrake2
      @Handlebrake2 10 วันที่ผ่านมา +1

      Lmao, you know who. Js and web devs.

    • @tired9494
      @tired9494 9 วันที่ผ่านมา +2

      because there ARE a lot of open source cracking/activation scripts

  • @ganeshs1360
    @ganeshs1360 15 วันที่ผ่านมา

    Hi please can you tell me how to track Powershell events in windows. Like which program triggered Powershell and what script was run in it. I saw somewhere it has something to do with gpedit, but I didn't understand it. It will be really helpful to all. Thanks

    • @user-od4gs3iu4t
      @user-od4gs3iu4t 15 วันที่ผ่านมา +1

      COMODO firewall is a way to catch system intrusions, including attempts to run powershell. Or any other program with good HIPS utility

    • @ganeshs1360
      @ganeshs1360 14 วันที่ผ่านมา

      @@user-od4gs3iu4t thanks

  • @2514ben88
    @2514ben88 15 วันที่ผ่านมา +2

    thanks for the knowledge

  • @mgjk
    @mgjk 15 วันที่ผ่านมา +5

    smoooooth sales pitch. Interesting site.

  • @ChineseRatfaceCHANG
    @ChineseRatfaceCHANG 6 วันที่ผ่านมา +1

    Woaw your video is SOO good, because i definitely download malware off github daily. You sure are a "security researcher"!!

  • @schabernix
    @schabernix 14 วันที่ผ่านมา

    Why is Defender UI actually recognized as a virus? You can also check that

  • @previousslayer
    @previousslayer 12 วันที่ผ่านมา

    how is that repo still up...

  • @owencmyk
    @owencmyk 9 วันที่ผ่านมา

    I was about to sign up with flare but they don't except gmail addresses. That's so strange

  • @tiger_of_kai
    @tiger_of_kai 15 วันที่ผ่านมา +1

    So lets say, I use a VM with GPU pass-through. What will happen?
    Will you please make a video about this matter?

    • @kolkoki
      @kolkoki 9 วันที่ผ่านมา

      The stealer will grab anything on that VM, GPU or not. Basically if you have that VM solely for gaming, it may not steal your credit card info, but will steal your online games credentials, as well as any game launcher info installed on that machine.
      On a blank machine tho? Wont steal what's not there

  • @-Trycs
    @-Trycs 15 วันที่ผ่านมา

    Hey, you should point out in another video in github or something, there is normal software in the malware repo's BUT at the veryy top of the repo's you scroll sideways, you will see a payload installing a malware

  • @cool-jd8hg
    @cool-jd8hg 4 วันที่ผ่านมา

    Theres no way this is happening, and theyre not all even gone, but when i uploaded memz to one of my repos to use on a vista vm (no tools moment) my account was banned after 1 day💀 and i cant get it back

  • @melomaniac_0000
    @melomaniac_0000 6 วันที่ผ่านมา

    please do a video about rav end point protection by reason labs

  • @WitherForge
    @WitherForge 14 วันที่ผ่านมา

    i had something like this but i scanned it on virustotal it didnt give a flag tho it was virus

  • @yasincomps2056
    @yasincomps2056 13 วันที่ผ่านมา

    I dont have dollars or money what must i do i need the app also

  • @phossu
    @phossu 8 วันที่ผ่านมา +2

    Could you analyze hydra launcher on git hub?

    • @albryx
      @albryx 3 วันที่ผ่านมา

      hydra launcher is trusted. it's basically a torrent client, and its source is up for everyone to read (and build its own release)

  • @Joreg_Catapang
    @Joreg_Catapang 14 วันที่ผ่านมา

    Actually my first ransomware that attack on my laptop is iobit software like their security, screen fecorder, and uninstaller, I installed qll of it and very next day my laptop now infected with ransomware I don't know what is the malware name but the extension I saw is .wrui

  • @arrongamez1388
    @arrongamez1388 15 วันที่ผ่านมา +2

    I noticed this a while ago but forgot about it

  • @whatavibe8186
    @whatavibe8186 14 วันที่ผ่านมา +1

    I've found quite a few of those on github, been making sure to report all the ones I find

  • @defnotatroll
    @defnotatroll 15 วันที่ผ่านมา

    A guy I know occasionally sails the high seas for software, and when he does he runs the cracks through virustotal just to be safe, how can this guy tell cracks/false positives from actual malware on VT? This person sees stuff like "packed" and "themida" on these files

    • @GregorianMG
      @GregorianMG 10 วันที่ผ่านมา

      Once you have quite an experience on sailing the high seas, you will bound to know where to look at good crack and how to avoid the bad crack with malware.

  • @JimCKD
    @JimCKD 15 วันที่ผ่านมา +3

    Ι kinda wonder. Why should someone download a cracked avast? I mean, he shouldnt even the official avast. :-)

  • @mrskye08
    @mrskye08 12 วันที่ผ่านมา

    How to know if the crack is really just a false positive or an actual virus? (without telling me to just purchase the app or install the free alternatives)

    • @user-od4gs3iu4t
      @user-od4gs3iu4t 11 วันที่ผ่านมา

      the short answer is: it's less expensive to pay for an app than for hiring an IT specialist who can make an informed decision about the modified file

    • @GregorianMG
      @GregorianMG 10 วันที่ผ่านมา

      Yolo it, then see it yourself.
      Jokes aside, no easy answer here. I would say go for reputable source and then start from there.

  • @thebottedgoat5300
    @thebottedgoat5300 9 วันที่ผ่านมา

    Is there any free resources to check if your pc has malware?

    • @omelette_apex
      @omelette_apex 9 วันที่ผ่านมา +1

      Malwarebytes free, autoruns, process explorer

    • @Kastelt
      @Kastelt 5 วันที่ผ่านมา

      ESET online scanner seems like a good choice.

  • @user-ul9hn6hh3o
    @user-ul9hn6hh3o 11 วันที่ผ่านมา

    Could you review ESET NOD32?

  • @blazzycrafter
    @blazzycrafter 15 วันที่ผ่านมา

    UPDATED 1
    sorry to say (i am at 1 minute so dont judge me for the resoning...) but if the conclusion "Malware in Cracks on Github" only lays on 1 VT test?
    then sorry to say...
    but mostly EVERY crack gets detected on VT just because the softwar was "modified..."
    but may there a more reasons XD
    for this conclusion...
    update1
    3:47
    an gdata report is more an reason :D

  • @johnnyb0001
    @johnnyb0001 14 วันที่ผ่านมา +1

    Same thing if people search on TH-cam for free-payed software linking to a phishing software

  • @manusiaorang2842
    @manusiaorang2842 2 วันที่ผ่านมา

    is that a 3 swords style pirates jolly roger?

  • @user-lr5kf5qf8e
    @user-lr5kf5qf8e 2 วันที่ผ่านมา

    Not saying that you should pirate, but having a FitGirl manning the ship can help out a lot.

  • @Ryan-xq3kl
    @Ryan-xq3kl 11 วันที่ผ่านมา +1

    wait till people learn that file names are entirely aethstetic "you can even get malware in an msi file" made me lol

  • @Striech
    @Striech 15 วันที่ผ่านมา +3

    I trust the song "RiveR - Solo" for my games and "known/trusted" pirates in the good ol pirate bay for other software

  • @supreme-erg9875
    @supreme-erg9875 6 วันที่ผ่านมา +1

    So what’s the correct way to pirate software?

    • @RockisIife
      @RockisIife 2 วันที่ผ่านมา

      On reputable sites.

  • @DUDEBroHey
    @DUDEBroHey 15 วันที่ผ่านมา

    Good info. Thanks. I'm sure so much of my data has been stolen, not like this, but still...

  • @MattStevens9824
    @MattStevens9824 15 วันที่ผ่านมา +4

    This is why I couldn't get into many direct installation Ai systems and Git repositories that some influencers are pushing. Some in the instructions even encourage to disable your AV.

  • @galenklassen8634
    @galenklassen8634 15 วันที่ผ่านมา

    Great video

  • @slickrickcm
    @slickrickcm 15 วันที่ผ่านมา

    Is flare easy to use for someone that has never been on the dark web?

  • @Kiritoasuna33
    @Kiritoasuna33 8 วันที่ผ่านมา +1

    Is fitgirl repack safe??

    • @RockisIife
      @RockisIife 2 วันที่ผ่านมา

      Yes she is among the most reputable people in pirating community

  • @markusTegelane
    @markusTegelane 15 วันที่ผ่านมา +1

    4:24 that's just a GPLv2 license lol

  • @understatements
    @understatements 15 วันที่ผ่านมา

    nowadays people think github is a safe place to download stuff because it repos have source code, but it's already a huge red flag the repo itself only has a readme and license file and the download button redirects to somewhere else

    • @EpicMiniMeatwad
      @EpicMiniMeatwad 10 วันที่ผ่านมา

      It really is if you build it yourself and can read the code.

  • @HoshangGovil
    @HoshangGovil 15 วันที่ผ่านมา +3

    I have already suffered this breach in April due to Telegram mod hack.

    • @FusionDeveloper
      @FusionDeveloper 15 วันที่ผ่านมา +2

      Telegram and WhatsApp are bad.

  • @Jamie_D
    @Jamie_D 8 วันที่ผ่านมา

    All cracks are considered malware of some kind even if they are genuinely harmless, because they make minor adjustments to the software on the system, just like a dangerous virus would. So you never know for sure if you screwed until you screwed,lol

  • @xavier4151
    @xavier4151 11 วันที่ผ่านมา +3

    This is so accurate! My co worker downloaded something on GitHub and she confessed that it was an attempt to pirate a software. The infostealer manage to steal her notes and her cookies trying to hijack her sessions which was disrupted shortly since it was suspended by our IT Dept thereafter. We watch in real time how the infostealer did it's work and leave without a trace. So everyone! It's not like those malware or trojans where your computer are infected through a backdoor. It requires you to sort of execute it for it to run and operate it's working command.
    The best way to avoid this is to not pirate softwares or games. Period.

    • @Oruta563
      @Oruta563 11 วันที่ผ่านมา +3

      This is why companies need to limit regular employee access

    • @xavier4151
      @xavier4151 11 วันที่ผ่านมา +3

      @@Oruta563 Yes and constant vigilance against behavioural patterns that leads to such penetration in the first place. Though infostealer isn't as heavyweight compared to other type of viruses such as leaving it's presence behind for future backdoor, it certainly warrants extra precautions such as changing your password for all accounts to prevent successful profiling penetration thereafter

  • @RingZero
    @RingZero 14 วันที่ผ่านมา +5

    Hey Leo, Thanks for the video and sharing awareness. I would like to recommend a few steps to the audience on how to protect themselves from these threat actors.
    1. Always use non-privileged user to operate your system on a daily basis
    2. Run your browser using a different account.
    3. Use Admin account with care and ensure you are 100% sure what you're doing.
    4. Enable "Core Isolation" in Windows
    5. Enable "Controlled folder access" and ensure to add only the known programs to the "Authorized" list.

    • @scientificthesis
      @scientificthesis 13 วันที่ผ่านมา +2

      Unfortunately that also happens to be highly inconvenient. I just do my research, rely on my antivirus and hope for the best 👍

  • @simonwu7250
    @simonwu7250 15 วันที่ผ่านมา +1

    My dumbass brother loves to download cracked software and the family computer always feels awful

  • @user-mv9dq4cv1c
    @user-mv9dq4cv1c 5 วันที่ผ่านมา +1

    since M$ owns GitHub then why on Earth are these allowed?

  • @hyrog7795
    @hyrog7795 15 วันที่ผ่านมา

    downloading a random exe off the internet to crack an antivirus must be the most chad thing I've ever seen

  • @Jnsystems
    @Jnsystems 15 วันที่ผ่านมา

    Wow, I found something on github and ran it, and an av provider stopped it from executing, I replicate it on a online sandbox and sure enough it is what it is, I even reset the entire computer in the end just to be extra safe.

  • @nomorejustice
    @nomorejustice 15 วันที่ผ่านมา +3

    How about stablel diffusion? is this 100% safe?

    • @theycallmeken
      @theycallmeken 15 วันที่ผ่านมา +5

      No software is 100% safe however on GitHub they do have the “issues” tab and if someone has an issue with the software , it’ll be reported there most likely 👍🏾

    • @nomorejustice
      @nomorejustice 15 วันที่ผ่านมา

      @@theycallmeken thanks for the info 🙏

    • @pxllfx3207
      @pxllfx3207 15 วันที่ผ่านมา +1

      Stable diffusion?
      That's text to image generation?
      Yes that safe sound 38k star the repo so obv that safe even I use that in my pc for unlimited use

    • @nomorejustice
      @nomorejustice 14 วันที่ผ่านมา

      @@pxllfx3207 do i need to instal cuda and cudnn first or just follow the youtuber tutorial to instal SD? Thanks in advance

  • @DanteMishima
    @DanteMishima 15 วันที่ผ่านมา +5

    Mistake 1 - searching with Google
    Mistake 2 - thinking GitHub is a place to pirate

  • @sinergy9837
    @sinergy9837 14 วันที่ผ่านมา

    We tried Flare, The company doesnt seem setup to accept new customers. They are insisting on phone interviews/verifications to demo their software. You got us interested in the software but the vendor dropped the ball on this one. Perhaps your next video can recommend another tool?

  • @_JohnHammond
    @_JohnHammond 15 วันที่ผ่านมา +62

    Flaaaarreeeeee!

    • @brawldude2656
      @brawldude2656 15 วันที่ผ่านมา +1

      Yooo it's the legend himself

    • @pcsecuritychannel
      @pcsecuritychannel  15 วันที่ผ่านมา +16

      Heyyyyy fellow Flare user! for those who don't know, John and I do a monthly (somewhat) hangout on our discord: discord.com/invite/y7q3qMM
      So if ever wanted to hear TH-camrs talk about behind the scenes stuff, that's a gold session to join.

    • @stage6fan475
      @stage6fan475 15 วันที่ผ่านมา

      Hi, John

    • @anirudhakumar2271
      @anirudhakumar2271 15 วันที่ผ่านมา +1

      @@stage6fan475 i thought he isn't real john, (there's a underscore in name) 😭

  • @alternatuber6698
    @alternatuber6698 12 วันที่ผ่านมา

    Open source apps for mostly alternative to proprietary software not crack them.

  • @ethimself5064
    @ethimself5064 15 วันที่ผ่านมา

    Even their website is very likely filled with bugs

  • @Sameer.Trivedi
    @Sameer.Trivedi 10 วันที่ผ่านมา +1

    Cracked antivirus is the most ironic thing I've heard in a while 😂

  • @4t4k4n
    @4t4k4n 3 ชั่วโมงที่ผ่านมา

    I was saddened to see this video after realizing that my pc was infected with trojans after downloading the wox app from github two days ago

    • @4t4k4n
      @4t4k4n 3 ชั่วโมงที่ผ่านมา

      In the meantime windows defender gave a warning message and when I scanned the pc with kaspersky I cleaned 4 trojans, but is this enough. What information was leaked?

  • @nezu_cc
    @nezu_cc 15 วันที่ผ่านมา +31

    Analyzing malware is often harder than cracking software. I just make my own cracks whenever none of the trusted sources have one.

    • @talkingthoughts4747
      @talkingthoughts4747 15 วันที่ผ่านมา +34

      Not a trivial thing to do for most of.. well, anyone.

    • @daniellaurin9566
      @daniellaurin9566 15 วันที่ผ่านมา +8

      That sounds like so much more work than just using something open source

    • @visitante-pc5zc
      @visitante-pc5zc 15 วันที่ผ่านมา +33

      @talkingthoughts4747 he aint doing shit. He's here for attention: look guys how awesome I am.

    • @Zullfix
      @Zullfix 15 วันที่ผ่านมา +11

      ​@@visitante-pc5zcSpoken like someone who has never RE'd paid software before. Many paid softwares can be unlocked by just adding a mov and ret instruction to return true from a single function.

    • @Retrospxa
      @Retrospxa 15 วันที่ผ่านมา +9

      Try cracking denuvo games, if you can

  • @cazh666
    @cazh666 15 วันที่ผ่านมา

    this also applies to hwid spoofers n all that

  • @jcdenton7914
    @jcdenton7914 14 วันที่ผ่านมา

    There's a Windows 11 activation script that's open source, but it's so much code I can't validate it myself but the r/piracy crowd just uses it

  • @xpossed
    @xpossed 15 วันที่ผ่านมา

    this is the same case as "valorant skinchanger"

  • @45545videos
    @45545videos 15 วันที่ผ่านมา +2

    Imagine looking for a cracked version of bloatware LMAO

  • @mnageh-bo1mm
    @mnageh-bo1mm 14 วันที่ผ่านมา +1

    duh the megathread exists for a reason

  • @Lewdiculous
    @Lewdiculous 10 วันที่ผ่านมา +1

    This was made for the guy that begged "just give me an EXE". XD

    • @christopher9727
      @christopher9727 10 วันที่ผ่านมา

      ....
      Do you know Jesus Christ can set you free from sins and save you from hell today
      Jesus Christ is the only hope in this world no other gods will lead you to heaven
      There is no security or hope with out Jesus Christ in this world come and repent of all sins today
      Today is the day of salvation come to the loving savior Today repent and do not go to hell
      Come to Jesus Christ today
      Jesus Christ is only way to heaven
      Repent and follow him today seek his heart Jesus Christ can fill the emptiness he can fill the void
      Heaven and hell is real cone to the loving savior today
      Today is the day of salvation tomorrow might be to late come to the loving savior today
      Romans 6.23
      For the wages of sin is death; but the gift of God is eternal life through Jesus Christ our Lord.
      John 3:16-21
      16 For God so loved the world, that he gave his only begotten Son, that whosoever believeth in him should not perish, but have everlasting life. 17 For God sent not his Son into the world to condemn the world; but that the world through him might be saved. 18 He that believeth on him is not condemned: but he that believeth not is condemned already, because he hath not believed in the name of the only begotten Son of God. 19 And this is the condemnation, that light is come into the world, and men loved darkness rather than light, because their deeds were evil. 20 For every one that doeth evil hateth the light, neither cometh to the light, lest his deeds should be reproved. 21 But he that doeth truth cometh to the light, that his deeds may be made manifest, that they are wrought in God.
      Mark 1.15
      15 And saying, The time is fulfilled, and the kingdom of God is at hand: repent ye, and believe the gospel.
      2 Peter 3:9
      The Lord is not slack concerning his promise, as some men count slackness; but is longsuffering to us-ward, not willing that any should perish, but that all should come to repentance.
      Hebrews 11:6
      6 But without faith it is impossible to please him: for he that cometh to God must believe that he is, and that he is a rewarder of them that diligently seek him.
      Jesus

  • @reegyreegz
    @reegyreegz 15 วันที่ผ่านมา

    Yea no, never ever thought of downloading a random unverified repository from github. Its kinda obvious.

  • @federation1111
    @federation1111 15 วันที่ผ่านมา

    now make a video on

  • @Oh_No...
    @Oh_No... 15 วันที่ผ่านมา +1

    Pirating IObit or CCleaner is wild

    • @rizkyadiyanto7922
      @rizkyadiyanto7922 15 วันที่ผ่านมา +1

      i did that back then. 😂

    • @hardVatsuki
      @hardVatsuki 14 วันที่ผ่านมา +1

      pirating trash software is something else, truly

  • @laif9857
    @laif9857 15 วันที่ผ่านมา

    i remember when i join to your discord and the moderators of the channel ban me for talk about crack and piracy , now we can?

  • @chickenpowder9273
    @chickenpowder9273 13 วันที่ผ่านมา +1

    I always pirate software and games from torrents and crack websites.

  • @2029a
    @2029a 14 วันที่ผ่านมา

    damn it, not my fucking cookies

  • @veto_5762
    @veto_5762 11 วันที่ผ่านมา

    that's why you should always check the repo and readme yourself and not go with the "Is on github so it should be fine!"

  • @CelesteOnYoutube
    @CelesteOnYoutube 14 วันที่ผ่านมา

    Hope you had a good time in Nice ^_^