This is just a question but how do the people like __RiP_ChAiN_ , TwistedMetal, rridgely etc know what it is to look for when someone posts a Hijack This log for analysis.
I have sat looking through many posts trying to identify patterns, however the logs don't really mean terribly much to me at a glance. It's an area that has interested me for a little while, but I'm not quite sure how to go about acquiring the necessary knowledge!
Have you had an interest/been involved in this area for so long that you recognise patterns, or does your knowledge come from attending a College or University?
Any tips or directions to learning materials would be great!
Cheers
Stryker
Spyware Mods/Analysts
Started by Stryker, Apr 10 2008 08:50 PM
6 replies to this topic
#1 OFFLINE
Posted 10 April 2008 - 08:50 PM
Sucess is a journey, not a destination...
#2 OFFLINE
Posted 11 April 2008 - 01:09 AM
They have a free online "university" to learn how to read hijack this logs here:
http://forums.spywareinfo.com/
http://forums.spywareinfo.com/
#3 OFFLINE
#4 OFFLINE
Posted 11 April 2008 - 12:31 PM
Thanks Davey. I wasn't sure where the best place to post that question was.
I'll give him a PM.
I'll give him a PM.
Sucess is a journey, not a destination...
#5 OFFLINE
Posted 11 April 2008 - 09:34 PM
HijackThis Tutorial & Guide
A guide and tutorial on using HijackThis to remove Browser Hijackers & Spyware
It does not explain what is good nor bad but using the two tutorials and Google searches you will soon find out how to read the HijackThis logs.
"Education is what remains after one has forgotten everything he learned in school." - Albert Einstein
IE7Pro user
IE7Pro user
#6 OFFLINE
Posted 12 April 2008 - 05:57 AM
Sorry for being late to this thread, I rarely deviate from the HijackThis forums..
Although it is possible to learn how HijackThis works in detail by reading tutorials on the subject, including the one available from Bleeping Computer, you will still need to go through some sort of training in order to recognize the infections in such logs. I, myself, went through the training course available on GeeksToGo, which is now one of the places I help teach how to work HIjackThis logs at. For more information on training there, you can take a look here.
There are also other schools that will teach you about HijackThis, such as CastleCops, MRU, and Bleeping Computer.
It is really interesting to get such a unique perspective on the way malware infects computers, and the ways used to get rid of such crap.
In addition, the reason people like me just seem to show up from nowhere, is because most of us regularly do work at half a dozen forums, or more. Usually at one of the main fourms, where you can also learn how to read HJT logs from.
Quote
I have sat looking through many posts trying to identify patterns, however the logs don't really mean terribly much to me at a glance. It's an area that has interested me for a little while, but I'm not quite sure how to go about acquiring the necessary knowledge!
Have you had an interest/been involved in this area for so long that you recognise patterns, or does your knowledge come from attending a College or University?
Have you had an interest/been involved in this area for so long that you recognise patterns, or does your knowledge come from attending a College or University?
There are also other schools that will teach you about HijackThis, such as CastleCops, MRU, and Bleeping Computer.
It is really interesting to get such a unique perspective on the way malware infects computers, and the ways used to get rid of such crap.
In addition, the reason people like me just seem to show up from nowhere, is because most of us regularly do work at half a dozen forums, or more. Usually at one of the main fourms, where you can also learn how to read HJT logs from.
#7 OFFLINE
Posted 15 April 2008 - 12:31 PM
Thanks for all the advice. I'll give them a look and let you know how I get on!
Stryker
Stryker
Sucess is a journey, not a destination...













