These Files Don't Show Their Extension
Vložit
- čas přidán 7. 05. 2024
- jh.live/snyk || Try Snyk for free and find vulnerabilities in your code and applications! ➡ jh.live/snyk
Learn Cybersecurity - Name Your Price Training with John Hammond: nameyourpricetraining.com
Read The Hacker Mindset by Garret Gee: jh.live/hackermindset
WATCH MORE:
Dark Web & Cybercrime Investigations: • Tracking Cybercrime on...
📧JOIN MY NEWSLETTER ➡ jh.live/email
🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
💥 SEND ME MALWARE ➡ jh.live/malware
🔥CZcams ALGORITHM ➡ Like, Comment, & Subscribe!
Fun fact with the compression algorithms. [32:21]
Depending on the type and input, some can result indeed bigger instead of smaller.
Imagine a simple example with text content "AAAAAA" where you compress it and the result is "6A".
As you can see, it is smaller, right - but what if the content will be "ABC"?
The result will be "1A1B1C" resulting twice as big, instead of smaller.
That is also the reason why there are multiple compression algorithms and where one can shine, the other fails and otherwise.
I believe one of the reasons it's larger often for very small files is the metadata. I experienced this phenomenon while writing my own compression algorithm one day. The metadata might not go smaller than a certain size and this size depends on the file metadata structure. For example, a plaintext file might only contain 5 UTF-8 characters and be 5 bytes, but when archived, the archive contains the modification date, creation date, file path and the compressed data so it will always be larger than the input 5 bytes. It also depends on the entropy of the input file, the compression algorithm doesn't make all files smaller, only low entropy files are shrunk, high entropy files are actually compressed larger than their input because there is only a finite amount of possible byte combinations.
Any lossless compression algorithm must on average of all possible inputs compress by a factor less than or equal to 1 ( so, either not at all or increase the size )
Otherwise you'd be storing more than 1 bit of information in each bit of the file
@@teamredstudio7012 Compression algorithms will usually fall back to leaving a block of data uncompressed if it ends up being larger when compressed but it will still result in some small overhead in the datastream or file format compared to the original file since it has to actually store some metadata about compression method and size etc
@@olnnn That is correct, I even implemented that in my own algorithm, where if the compressed chunk including the header for this chunk is larger than the uncompressed data the original data is just copied.
Oh man I was hoping for the NTAuthority\System will be able to edit/delete, but now I can't wait for the TrustedInstaller video. John Hammond to the rescue, that should be juicy. :D
You can create .url files simply by creating a normal .lnk file over the GUI and simply paste in a URL. It will create a Internet-Shortcut (.url)-File - Steam does use those for theyre game shortcuts for example.
Also you can refresh any explorer.exe content or your desktop with F5.
@28:37, actually game shortcuts made by Steam are .url files not .lnk.
Knowing where they are stored now, I might just make a little powershell script that scans the registry for all files with hidden extensions to make sure there aren't any extra.
Also delete the NeverShowExt keys from all instances. ;)
@@BillAnt can you help me understand this statement?
@@Bizzybugproductions - Watch the full video to understand it.
btw, if you want the script, I posted it in a second comment.
Cheers! Thank you for covering this. 😃👍💛
FYI, you can right click the desktop to refresh it and the changes will take effect.
Actually can press F5 to refresh on the desktop/explorer.
A simple desktop refresh via F5 or right click will not show the extensions via the removal of the NeverShowExt key. He ran a script which contains "taskkill /F /IM explorer.exe" and "start explorer.exe".
What main operating system do you use @John? Is it like bare metal ubuntu and all the security stuff you do is on VM's or some other kind of setup? Thank you in advance!
The Moles (Minecraft hacker guys) used the .pif trick in a campaign against Minehut. They used .pif to trick users into running a stealer under the guise of it being a captcha image.
Super interesting as always!
Hey John, what keyboard do you use?
Allmost fell for a lnk file inside an archive that looked like a folder few years ago.. It wanted todo some powershell stuff from an url... Pretty sniky :s
ooh man this are some awesome extension
Calculator has a protocol handler? Wild. I had looked at protocol handlers briefly based on one of JH (or maybe it was LiveOverflow)'s stuff and seemingly missed that one! (I remember writing code to enumerate all the registered ones.)
Do you suggest upgrading from windows 10 to 11?
Isn't there a NirSoft tool that allows you to run any executable or command as any user with basically any settings you can imagine?
I vaguely remember something about setting the hot key but I don't believe it was saved in the file.
Very nice video, we want the following 👽
Where do you get your Virtual Machines from?
cool shirt
quality video.
Man you teach me a lot!
We have software which works with MAPI or SMTP depending on the config so I guess it's actually used
I want learn Format String Vulnerability in pwn to get shell,can you teach me?
4:53 not working when I do this. It is still showing the ending
Memories bring back memories bring back YO😂
15:20 Your Desktop, Documents and some other folders on the side are already such libraries in Win11. Maybe you cannot add a library to a library. Or Win11 is just being weird.
For anyone wondering how John is 'typing' emoji in Windows: windows/super-key + . (period/full stop)
Lol. I spent a few hours last weekend doing something similar.
total commander shows every extention
Hope you're not using the cracked version bro
How did John Get the Checkmarks
The emojis? You can pull that up on Windows with a key
Ctrl + : for emoji menu within Windows
Thanks for the info
I think search-ms failed because you typed 'johnh' instead of 'john'
Completely vanilla; opens Sublime. 😂
.url icon worked in Internet explorer
That .mapi sounds like a pandoras box 😂
Dude ... pif files .... I know them. I'm so old.
🔥🔥🔥
That's why I use Linux
Windows still can have PIF files? What?
Don't use windows
Cry about it
Some people really don’t have a choice. They have to for certain software or for work.
Linux GUI is very buggy
First comment from Kenya always inspired.
Usituhack banah
chat jibbity 🤣
I got hacked by a sketch software pls help me
It says i need to pay 1500 in bitcoin
This is why you use Linux.
GNU/Linux🤓🤓 😤😤☝☝🤬🤬🤬👹👹
Ah yes, the Operting System that stores plain text files, binary executables, and literally anything else, all in a file with no file extension.
@@muizzsiddique Oh ok ill just use windows
@@muizzsiddiqueYou do realize that nobody is stopping you from using extensions anyway? The point is that linux doesnt lie to the user about filenames
Everything has it's own pros and cons@@muizzsiddique
No views?! Never been so early on a video.
Is there really no way to show the .lnk? A problem is that they look exactly like symlinks except that the "link target" field is empty, which you can't always see, so that's kind of annoying.
This guy does not do segways.
Like this segway to our sponsor...
Segue
Nope, but this guy segways...
Like he is on a roll.
one of pest in my life
oh okey new thing for me to use ...
FIRST ❤
Also you're the man 🔥 🤘
mate how am i so early
First
Big fan sir i watched you every video they are awesome how can i contact you online or chat with you i have some cybersecurtiy or security related question from which platform i can ask you that questions?