Тёмный

Convert .EXE to IMAGE! 

ebola man
Подписаться 114 тыс.
Просмотров 470 тыс.
50% 1

• Educational Purposes Only •
» Skool Community: www.skool.com/anonymous-9484
» GitHub: github.com/EbolaMan-YT
» Patreon: / ebolaman
TIMESTAMPS:
0:00 Intro
0:15 Changing Icon
0:49 Binding Image & Exe
1:40 File Extension Spoof #1
2:12 File Extension Spoof #2
3:07 File Extension Spoof #3
4:48 IMPORTANT

Опубликовано:

 

1 июн 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 813   
@ebolaman_
@ebolaman_ 5 месяцев назад
webhook.exe is just a placeholder (so i dont get banned), you can use the methods in this video with a token logger, rat, etc
@Amitherabbit
@Amitherabbit 5 месяцев назад
very *Educational Purposes
@The_Wafool
@The_Wafool 5 месяцев назад
you do realize computer hacking is very illegal
@indio1452
@indio1452 5 месяцев назад
have how send the code of the weehook.exe
@Andrew90046zero
@Andrew90046zero 5 месяцев назад
​@@The_Wafool "hacking" is not the same as "stealing people's data and damaging property". So no, hacking is not illegal. What is illegal is using means of hacking to commit actual crimes like stealing, harassing, damaging property, etc. In the same way that teaching people how to pick locks is not illegal either. Though, in many situations, people may state that "hacking" IS "stealing data" as an over simplification of the word. This over simplification causes confusion and makes people think that Hacking is (and can only be) the act of breaking security for the purpose of stealing (and other crimes), but you can hack without causing damage to anyone. Hacking is simply the act of bypassing of security measures, or breaking some other system to gain access or priveledges. But if you have been given permission by the right people to have such access or priveledges, then it's not illegal. And spreading awareness of computer security flaws, like how @ebolaman_ has done here, helps everyone to know how to protect themselves against these exploits. If this was not shown here, it will still be shown in other places where actual criminals hang out. Showing these security flaws can even lead to an eventual patch of the flaws. So keeping this information secret can be more dangerous to everyone.
@JK-xo9wm
@JK-xo9wm 5 месяцев назад
​@@The_Wafoolno way, its very much legal man what are you talking about?
@altomon
@altomon 5 месяцев назад
Educational purposes is pretty much the universal dev excuse now
@F1L337
@F1L337 5 месяцев назад
I guess it is the same for nudity counting as art.
@lembarkii8669
@lembarkii8669 5 месяцев назад
​@@F1L337t w i t c h
@0xF81
@0xF81 5 месяцев назад
Not really, he showed us how is it made so now we're aware how to be careful in case of sus file
@BabyKnxckz
@BabyKnxckz 5 месяцев назад
it is educational init
@reality5783
@reality5783 5 месяцев назад
I have soo many *educational purpose* ideas!!!🤣🤣
@Theooolone
@Theooolone 2 месяца назад
That right to left override character in the filename was absolutely devious
@Yazan_Majdalawi
@Yazan_Majdalawi День назад
But I think the extension in the properties menu would still be the right one
@serbianspaceforce6873
@serbianspaceforce6873 12 дней назад
malware tutorial 😭
@Drixpyyy
@Drixpyyy 21 час назад
thatts his whole channel
@RealThornZ
@RealThornZ 2 месяца назад
the phrase educational purposes only is the one thing keeping this channel from not being cancalled
@Kanibulus
@Kanibulus 16 дней назад
He hasnt done anything illegal.
@ziadidabde3662
@ziadidabde3662 13 дней назад
Y can hide virus by this method ​@@Kanibulus
@farn1991
@farn1991 6 дней назад
It's not like he is going to distribute any zero day exploit through youtube video.
@cracktek_industries
@cracktek_industries 5 месяцев назад
The RLO trick is actually something I didn't know even as a CS student, thanks!
@catorlife
@catorlife 5 месяцев назад
this is old one, if you do this, even Window Defender can catch this, it automatically consider the file as a trojan even when it's not harmful (test file)
@KennyWlr
@KennyWlr 5 месяцев назад
​@@catorlife can confirm, it's been like this for a while now
@Coxick
@Coxick 5 месяцев назад
The name will go back to it's original form once you upload it somewhere, so not useful even if the target has no antivirus
@RandomGeometryDashStuff
@RandomGeometryDashStuff 5 месяцев назад
there are file managers that separate extension from rest of name like double commander
@miner4236
@miner4236 5 месяцев назад
Wow even as a CS student ? Xdd
@olafcio
@olafcio 5 месяцев назад
.scr is an shortcut for screensaver executables. It's exactly the same as normal executables, but isn't .exe. EDIT: Also, it's better to change the shortcut executable to "cmd.exe /c .\image.png", because when you leave the full path (c:\users\boris\...), it only supports your location of the folder with your username. But still, good video.
@pizzazr
@pizzazr 5 месяцев назад
True but you're sending it to someone else anyways
@andrey_sviridov
@andrey_sviridov 5 месяцев назад
Wtf .scr is 'script' not 'screenshare'
@pizzazr
@pizzazr 5 месяцев назад
@@andrey_sviridov it's Screensaver
@Meletion1
@Meletion1 5 месяцев назад
@@andrey_sviridoveveryone is wrong it’s screen saver😂
@andrey_sviridov
@andrey_sviridov 5 месяцев назад
@@Meletion1 yeah, that too. I have bubbles.scr installed as my Win11 screensaver :)
@alibrahym
@alibrahym 5 месяцев назад
instructions unclear: Im in the prison cell and re-watching this video
@GRPYouTube
@GRPYouTube 6 месяцев назад
Bro you literally got the the info i was finding for 2 years
@nothink0945
@nothink0945 5 месяцев назад
I was tryna find this for so long and this was here the whole time????
@x4dam
@x4dam 5 месяцев назад
frr
@TeeChemist
@TeeChemist 5 месяцев назад
The question is whether windows defender detects it as malicious? Or does it depends upton the the exe that is being executed.
@xodzphone
@xodzphone 5 месяцев назад
Shit I was doing 25 years ago
@PericoBeast
@PericoBeast 5 месяцев назад
@@TeeChemist dumbass alert someone ban this kid
@Uthael_Kileanea
@Uthael_Kileanea 5 месяцев назад
Good video. Knowing how to do dangerous things helps in defending against them. For example, to defend yourself against this, use a custom system icon pack and disable thumbnails. No antivirus needed or keeping your eyes peeled for extensions. Also, your default icons look cooler.
@Cryptocurrency69
@Cryptocurrency69 5 месяцев назад
Could you tell that how do you switch to a custom system pack and disable thumbnails
@blvdes
@blvdes 5 месяцев назад
​@@Cryptocurrency69 ask Google
@Uthael_Kileanea
@Uthael_Kileanea 3 месяца назад
@@Cryptocurrency69 Both answers depend on your operating system. You'll have to ask mama Google.
@supercellex4D
@supercellex4D 12 дней назад
Doesn't help if you're a high value target, the real trick is to know Windows screensavers are autoran executables, and to check the file type. Or use Unix because NT has one of the most comprehensive filesystem permission systems ever that doesn't have execute as an attribute.
@ontop3543
@ontop3543 4 месяца назад
educational purpose only. Enjoy 💀
@antxnioo
@antxnioo Месяц назад
bro's channel is surviving with the educational purposes excuse
@Bin2Hex
@Bin2Hex 5 месяцев назад
RLO is already detected by most AV's .scr is also detected by most AV's now and will be stopped by WD smart screen. the .lnk method works but will be caught by behavior dynamic analysis which most AV's have. double masquerade extensions will also be caught and stopped by smartscreen.
@phir9255
@phir9255 5 месяцев назад
Is Windows Defender included in "most AV's"?
@MrGenius2
@MrGenius2 5 месяцев назад
​@@phir9255probably yeah wd is the most annoying av because it just does to much I don't have it because it even blocks my work
@whocares4444
@whocares4444 5 месяцев назад
@@phir9255windows defender is an AV (anti-virus software) preloaded with the windows OS
@miner4236
@miner4236 5 месяцев назад
​@@phir9255likely
@Bin2Hex
@Bin2Hex 5 месяцев назад
@@phir9255 considering windows defender is default installed on all windows operating system, then yes it would be considered part of “Most AV’s”
@sanchogodinho
@sanchogodinho 5 месяцев назад
Its just wow 🤯 So nicely explained straight to the point!
@btarg1
@btarg1 5 месяцев назад
You can embed code inside an LNK file, and have the link file run it, so you could also fit an image inside an LNK and do it that way!
@MarilynCol7
@MarilynCol7 5 месяцев назад
Damn its very rare that i find interesting channels ln RU-vid
@chillappreciator885
@chillappreciator885 5 месяцев назад
Slick demonstration man! It was fun to finally know how do they do this
@TSFVoided
@TSFVoided 25 дней назад
mixing this with being able to view other desktops and holy hell you're goated
@muuqii
@muuqii 8 месяцев назад
appreciate it man keep up the good work
@cwypto4488
@cwypto4488 5 месяцев назад
that's really cool! im not interested in doing this but i like the style of your videos and your explanation. Subbed.
@ancestrall794
@ancestrall794 13 дней назад
First video I see of your channel and you definitely earned a sub. Tbh I don't really see how the "standard users" could not fall for this
@arshamshayan
@arshamshayan 8 месяцев назад
thank you for this tutorial ebola man
@zirtaontop
@zirtaontop 4 месяца назад
this is very improtant not for scamming but for being aware so its very important also this teaches u that the best antivirus is you
@hoangat7188
@hoangat7188 4 месяца назад
Keep it up man! That's awesome
@avocadoricardo6957
@avocadoricardo6957 5 месяцев назад
The amount of people who think that clicking the image sent on discord will execute it is hilarious
@pinguluk1
@pinguluk1 5 месяцев назад
Wasn't there an exploit that basically did that?
@freen1364
@freen1364 5 месяцев назад
They just send the embed from a other device once they click the image it’s all a scam
@avocadoricardo6957
@avocadoricardo6957 5 месяцев назад
@@pinguluk1 no that’s not possible because of how discord works. When you send an image, discord harvests that information and displays the image, more or less like a middleman, in other words it’s literally just an image, you can’t hide executables in it.
@aidaonYT
@aidaonYT 5 месяцев назад
thats why you only look at the embed
@Hackedpw
@Hackedpw 5 месяцев назад
@@pinguluk1 yeah there somewhat was. for others in the replies: .WebP (note; webp wasn't the only thing that was exploited nor was it only discord related but its the one with most information.)
@lowHP_
@lowHP_ 5 месяцев назад
what a legendary mic stand
@AussieCricketOnTop
@AussieCricketOnTop 5 месяцев назад
Cant wait to use this for educational perpousus only!
@orren6999
@orren6999 8 месяцев назад
I remember this video
@user-tc9uz7zy8d
@user-tc9uz7zy8d 4 месяца назад
Fantastic video
@unknown-yo2tx
@unknown-yo2tx 5 месяцев назад
cool old techniques you covered
@li_B4shar_il
@li_B4shar_il 5 месяцев назад
thanks ebola man, very cool 👍
@macpclinux1
@macpclinux1 2 месяца назад
i admit. i have been pwned by this in the past. it's such a good method
@jannes5293
@jannes5293 5 месяцев назад
i appriciate youre videos i love all of them
@RandomGuuy69
@RandomGuuy69 5 месяцев назад
Very helpful ! Thank you
@user-CosmoGT
@user-CosmoGT 4 месяца назад
i love this man
@alvinrahmanwafi
@alvinrahmanwafi 5 месяцев назад
My man earned a subscriber
@wallaguest1
@wallaguest1 5 месяцев назад
damn it, the RLO trick is quite surprising, for things like this you just better drag the file to the image editor
@memmoman
@memmoman 27 дней назад
Thank you ebola man
@tryingtonot3369
@tryingtonot3369 5 месяцев назад
casualy doing gods work
@Luzum
@Luzum 4 месяца назад
beautiful stuff here
@RoachJr695
@RoachJr695 5 месяцев назад
underrated content creator
@lamborghinigamer
@lamborghinigamer 5 месяцев назад
Now I'm scared for images. Luckily I'm on linux so no exe's, but still scary to think how easy it is to hide the real file extension
@infectieon
@infectieon 5 месяцев назад
So ANY image on discord could be laced like this??? Wtf how do you even stay safe from this? Idk how to work linux
@Phobos001_youtube
@Phobos001_youtube 5 месяцев назад
​@@infectieonUploaded images with machine code execution will get rejected because they're not REALLY images; The headers and offsets are wildly different and be considered corrupt or invalid. You only need to worry about fake 'images' stored directly on your file system, and make sure not to run them.
@dnchplay-archive
@dnchplay-archive 5 месяцев назад
Also the reversed text trick used to spoof the file format works only on explorer and a gew other programs, in the most of apps this trick won't work and the original file format will be shown
@CluelessGeek
@CluelessGeek 3 месяца назад
"linux is free if your time is worthless" proceeds to get hacked by an image
@yashi0412
@yashi0412 2 месяца назад
​@@CluelessGeekthis was the cause by my change to dual boot windows/linux to just linux 😅
@Javascripting_is_Cool
@Javascripting_is_Cool 5 месяцев назад
You know wayyyy to much! this is crazy thanks
@RawApeFromAlbion
@RawApeFromAlbion 4 месяца назад
Really cool! More videos!!
@TheSterg98
@TheSterg98 5 месяцев назад
Thanks ebola man!
@shinydewott
@shinydewott 4 дня назад
Now I am immensely paranoid of all of those background remover and image downloading websites I have visited in the past! Wonderful!
@vasilis23456
@vasilis23456 5 месяцев назад
The fact that Windows lets you use the RLO in filenames and it actually works is crazy. They didn't think at all about how this could be used, or they did but didn't care. There should be some kind of indication of every type of character in a filename, be that a color change on reversed text or whatever.
@Lagger625
@Lagger625 4 месяца назад
What about Arabs and Asians, millions would be pissed about having to type their filenames in reverse
@silv2r
@silv2r 3 месяца назад
really good bro
@baconboys_1
@baconboys_1 3 месяца назад
u a w fr fr love u bro
@thereaper3796
@thereaper3796 5 месяцев назад
Esto podría ser bastante útil algún dia en el sentido "educativo"
@programwolf7039
@programwolf7039 19 дней назад
Oh im gonna enjoy this alright
@vladz8754
@vladz8754 5 месяцев назад
DUDE YOU ARE THE REAL G OMG
@iogamesplayer
@iogamesplayer 26 дней назад
first part was useful, thanks
@dawid142
@dawid142 5 месяцев назад
ngl thats actually so smart omg
@BytePix_
@BytePix_ 5 месяцев назад
This is scary simple. I don't know if I am suppose to be scared or surprised.
@kamimatsuyama
@kamimatsuyama 5 месяцев назад
you can check the file extension and size when downloading files
@RzExfeL
@RzExfeL 5 месяцев назад
both
@BytePix_
@BytePix_ 5 месяцев назад
Have you watched the entire video? because it can look like a png or whatever file and still run as a cmd. @@kamimatsuyama
@Ransomwave
@Ransomwave 5 месяцев назад
the RLO method doesn't work after uploading a file to 99.9% of file hosts online. you shouldn't be scared. if you're skeptical, you can always just right click and check the properties
@sab_33fr
@sab_33fr 2 месяца назад
This is very interesting. Might use it against scammers
@catorlife
@catorlife 5 месяцев назад
the RLO trick is not gonna work since even Window Defender can catch this, it automatically consider the file as a trojan even when it's not harmful (test file)
@smoothbraindetainer
@smoothbraindetainer 5 месяцев назад
Yeah this isn't actually a danger to anyone. The only reason windows isn't freaking out about the file is because it was made on his computer. If you were to upload that to the Internet and try running it on another computer it'd get instantly sent to the shadow realm by even the worst of anti viruses
@Lar_me
@Lar_me 4 месяца назад
@@smoothbraindetainer I tried making my own, and Windows Defender successfully stopped it from executing. Maybe the video uploader disabled Defender for the sake of the demonstration?
@smoothbraindetainer
@smoothbraindetainer 4 месяца назад
@@Lar_me yes exactly my point, even the crappiest of antivirus programs would catch this low-level bug
@iplayminecraft2248
@iplayminecraft2248 12 дней назад
Ehehehehe Definitely going into the saved videos
@shotbydemon
@shotbydemon 8 месяцев назад
TYSM (btw where do you find all this stuff)
@touyaakira1866
@touyaakira1866 4 месяца назад
I'm like a lot of people here I'm like a lot of people here who are really scared if youtube bans you. Your knowledge is amazingwho are really scared if youtube bans you.
@kahton
@kahton 2 месяца назад
Awesome content.
@pwlegolas3
@pwlegolas3 12 дней назад
Brilliant
@hemdy_M
@hemdy_M 2 месяца назад
That is terrifying! But so smart 🤯!
@misterpoogiesthecat3469
@misterpoogiesthecat3469 6 месяцев назад
an angel omfg
@whorunit
@whorunit 4 месяца назад
Thank you, from now I can easily steal from everyone's computers information about them. Can't wait for new video about IP addresses and other things.
@Islandpulledfromthesea
@Islandpulledfromthesea 5 месяцев назад
This is getting out of hands Thank you tho
@Glrdohorario
@Glrdohorario 4 месяца назад
very good men
@cyber8972
@cyber8972 5 месяцев назад
bro is a prodigy
@eliseyzscripts6762
@eliseyzscripts6762 4 месяца назад
TYSM!
@sam_farsi
@sam_farsi 20 дней назад
Bro u are legend 😂❤
@artemvgyg9863
@artemvgyg9863 15 дней назад
Very cool
@NolenFelten
@NolenFelten 4 месяца назад
That grassy hill image was taken in Sonoma County, California, where I grew up.
@OfficialSwazzzy
@OfficialSwazzzy 5 месяцев назад
hello do you know how to make a hwid spoofer? been watching these videos and tryna make one using the multi tool method as well.
@Pr0toPoTaT0
@Pr0toPoTaT0 5 месяцев назад
I subscribed right at.... you know. The one nobody buys. I totally never bought this program but damn if it doesnt seem to always be activated. Crazy.
@Cruciblecoder
@Cruciblecoder 2 месяца назад
Love some good bass boosted Xenogenesis by TheFatRat
@auguststas7770
@auguststas7770 5 месяцев назад
Nice vidz do more
@ironic.
@ironic. 5 месяцев назад
this is good
@LOCKBlT
@LOCKBlT 5 месяцев назад
Love ur vids
@GodPhazer
@GodPhazer 5 месяцев назад
I'm impressed by RLO, I didn't know.
@huyhuynh5575
@huyhuynh5575 5 месяцев назад
Dangggggggg, That's insane.
@nonstoppe9
@nonstoppe9 19 дней назад
Educational purposes=educating hacksers
@seamluss
@seamluss 4 месяца назад
thats op this could get in the wrong hands
@aigg_
@aigg_ 5 месяцев назад
i'm torn over liking this for the educational purpose but also not liking so less people use this maliciously. nice explanation tho, kinda scary
@SlophyMedia
@SlophyMedia Месяц назад
ebola man i have a question how can i make it look like an image when i send it through discord like i want to get their token when they open the image on browser but when i send it as you showed it sends as a file. please help
@s1llycat
@s1llycat 7 месяцев назад
what app did you use to 'short cut' the unicode rlo character?
@ebolaman_
@ebolaman_ 7 месяцев назад
right click>insert unicode character
@Dino-zg2vx
@Dino-zg2vx 5 месяцев назад
@@ebolaman_ he wants to know how youre able to see that unicode thing
@scaryrobloxvideos
@scaryrobloxvideos 5 месяцев назад
@@Dino-zg2vx when youre renaming the file just right click on the file name and it should give you those options. he literally told you to pay attention
@joedartonthefenderbass
@joedartonthefenderbass 5 месяцев назад
@@Dino-zg2vx it's just built into windows
@spartv1537
@spartv1537 2 месяца назад
technically, you can go deeper with shortcut method without spoiling hidden file but it's gonna be multi-task command for cmd
@riveralonzo
@riveralonzo 5 месяцев назад
I’m literally working on defense against file extensions and file uploads right now… gonna see if spoofed files get through what I wrote.
@user-gq5bc6zy5p
@user-gq5bc6zy5p 4 месяца назад
great nice video can i see the other screen from a distance from another user to see whats he doing? with sessionsploit or search another pc mac
@sikirebirth
@sikirebirth 5 месяцев назад
Okay this is cool and all, Now show us how to counter/detect all of the aforementioned funny things, that'd be even cooler
@overdigitize
@overdigitize 5 месяцев назад
Second that
@dieselgeezer18
@dieselgeezer18 5 месяцев назад
the antivirus can do all that
@GnobarEl
@GnobarEl 5 месяцев назад
WHOWWWWWW! Amazing!
@KitsuNoir
@KitsuNoir 5 месяцев назад
Good to know nothing is safe. I knew there was a way to do this with pdfs, but I didn't think about hazardous png files.
@Chris-Clips-Games
@Chris-Clips-Games 2 месяца назад
Thank you! I just hacked tens of thousands of poor souls who thought i sent them a picture of a puppy! 😃
@masternerd64
@masternerd64 11 дней назад
I remember doing this in highschool to get around the exe blocks in gmail
@gurgen5165
@gurgen5165 15 дней назад
Shortcuts are one of the more unsafe things in Windows. Even with applocker rules and execution policies, shortcuts can run powershell which in turn can run more or less everything I have a website dedicated for prancing coworkers which requires being able to run my pranks with zero/nobody permissions. And shortcuts have been my saviour for the last project I’ve done😅
@SKBLX
@SKBLX 3 месяца назад
that's crazy !
@QuavanteZingletonTheThird
@QuavanteZingletonTheThird 5 месяцев назад
Ebola man!
@cpinnoofficial
@cpinnoofficial Месяц назад
where do i get the file from to do change my file into a image file
@brunio167761
@brunio167761 4 месяца назад
nice dude, next turorial: how to empty someone bank account (just educational)
@Wan_Destroyer
@Wan_Destroyer 5 месяцев назад
One question. That probably will prevent prople to decompile/reverse engineer my exe, right?
@lewis1902
@lewis1902 4 месяца назад
fucking awesome dude
@EvanVR1987
@EvanVR1987 11 дней назад
thanks, now i "educationally" know how to give someone a virus.
Далее
Infiltrating Roblox’s Fake Middleman Scam
18:57
Просмотров 255 тыс.
I Made a Neural Network with just Redstone!
17:23
Просмотров 327 тыс.
Exposing Discord Image Loggers on TikTok!
6:08
Просмотров 515 тыс.
I Trained an AI with 10,000 Memes
14:52
Просмотров 175 тыс.
I Tried a Roblox Scam Website Generator…
8:10
Просмотров 1,6 млн
How to Get Someone's Password
17:53
Просмотров 739 тыс.
CMD PRANKS! (Educational Purposes ONLY!)
9:17
Просмотров 1,3 млн