1 00:00:00,600 --> 00:00:06,030 Hello and welcome to the practical building, the passport sniffer van. 2 00:00:07,290 --> 00:00:17,220 So now we're going to do this, we change to this directory first by copying that path and then opening 3 00:00:17,730 --> 00:00:19,890 a CC for it to someone from. 4 00:00:25,780 --> 00:00:31,810 Now we are going to change to the directory, we share, copy a first paste, he thought. 5 00:00:32,150 --> 00:00:35,350 By clicking and then hitting enter who changed? 6 00:00:35,350 --> 00:00:38,620 But now you call the compile script. 7 00:00:43,300 --> 00:00:44,180 And he enter. 8 00:00:47,990 --> 00:00:53,090 And you can see the the AL has been successfully built over here. 9 00:00:53,780 --> 00:01:01,940 Now we need to test this down before we converted to the Hex format and put it in the Trojan. 10 00:01:02,660 --> 00:01:06,770 So to test it, you have the need to use your hierarchy. 11 00:01:07,370 --> 00:01:11,980 And also another tool that can receive the DBA output string. 12 00:01:13,610 --> 00:01:17,180 So if you recall, that's open this. 13 00:01:22,150 --> 00:01:33,040 But certainly for their has called this up to the rocks, trees all over the court to output some debugging 14 00:01:33,040 --> 00:01:37,900 information so that you can test to make sure everything is working. 15 00:01:39,190 --> 00:01:42,180 So we need the DBA view. 16 00:01:42,970 --> 00:01:49,600 So the view is actually downloadable if you don't have it, but normally it comes pre-installed on the 17 00:01:49,600 --> 00:01:50,320 fly VM. 18 00:01:51,610 --> 00:01:58,990 Otherwise, if you don't have it, you can come to this website on Google and Google for it, and you 19 00:01:58,990 --> 00:02:02,160 will get this website where you can download The View. 20 00:02:04,660 --> 00:02:08,020 There is some link here to download developer you. 21 00:02:13,620 --> 00:02:22,010 So to open the valve, you you can search for the valve, you type big view and you will appear here. 22 00:02:23,210 --> 00:02:23,850 You got you. 23 00:02:24,680 --> 00:02:25,520 So that's running. 24 00:02:27,690 --> 00:02:32,610 Now it is ready to capture the debugging information from past before. 25 00:02:36,630 --> 00:02:40,860 So the Wrangler are now opening, they're actually. 26 00:02:43,730 --> 00:02:45,200 And then get ready to. 27 00:02:45,770 --> 00:02:47,630 And he said. 28 00:02:48,950 --> 00:02:58,820 So before we sat before the Mt. Dry, we will inject a DNA using process hacker. 29 00:03:02,950 --> 00:03:09,990 So you open process, occur at any look forward, actually directly. 30 00:03:11,230 --> 00:03:13,860 And then you click on miscellaneous inject. 31 00:03:13,900 --> 00:03:14,290 Yeah. 32 00:03:17,310 --> 00:03:19,080 So here, U.S. 33 00:03:19,420 --> 00:03:21,960 He said he's got some debugging info. 34 00:03:22,890 --> 00:03:28,890 This is not related to our our projects here, so we can click on these to clear the screen. 35 00:03:30,180 --> 00:03:35,110 And now you are going to inject our gear. 36 00:03:37,910 --> 00:03:39,290 Go to Fuyang. 37 00:03:42,620 --> 00:03:44,360 First password sniffer. 38 00:03:44,540 --> 00:03:48,830 And select the jail and head open and see what happens. 39 00:03:49,700 --> 00:03:57,230 And immediately you see this debugging information, you can pull on these two expen, which are two 40 00:03:57,230 --> 00:04:08,210 now, but not by successfully hope this debugging string is coming from your and sniffer. 41 00:04:11,910 --> 00:04:12,840 From this line. 42 00:04:15,190 --> 00:04:25,420 So it seems that he has caught the hook target after the processes that he calls Hook, Target and his 43 00:04:25,420 --> 00:04:28,150 prince to the buggy string from here. 44 00:04:31,710 --> 00:04:33,750 Now we are going to. 45 00:04:35,240 --> 00:04:41,270 Man, so let's select the file and you want to mount. 46 00:04:44,180 --> 00:04:53,960 Imagery, you see all these false positives being printed to the screen because these are all probably 47 00:04:53,960 --> 00:04:57,620 using the same API function to. 48 00:04:58,860 --> 00:05:00,950 Received a bath. 49 00:05:01,770 --> 00:05:04,470 Where you going to mount the fire? 50 00:05:06,570 --> 00:05:18,180 So go to variety and hit on my data and you see Fassett Fosso Finest Hour also be created by probably 51 00:05:18,180 --> 00:05:20,070 the password is not yet in there. 52 00:05:22,810 --> 00:05:35,080 Can open my data now, great human, so human, so like the this number, no, it is right to hit on 53 00:05:35,080 --> 00:05:50,460 man over here, click on display, possibly send H.R. 5+2 and into your asset catalog test bus to B. 54 00:05:50,500 --> 00:05:52,510 D. A. OK. 55 00:05:54,940 --> 00:05:57,970 And you can see a passport here in the display. 56 00:05:58,810 --> 00:06:00,010 Test positivity. 57 00:06:01,300 --> 00:06:03,880 And if you go and check how file? 58 00:06:05,690 --> 00:06:12,260 In the barracks before the new fires we created and you can accompany. 59 00:06:14,650 --> 00:06:16,030 If you look. 60 00:06:20,900 --> 00:06:24,350 And you will see certainly test, possibly. 61 00:06:26,400 --> 00:06:32,400 And if not, in addition to this, so are the false positives here. 62 00:06:33,180 --> 00:06:42,210 There is because it is also logging on all the other parameters used by the the white child to motivate 63 00:06:42,720 --> 00:06:43,710 API function. 64 00:06:45,330 --> 00:06:54,200 And their IQ has crash, probably, because have you opened a fire, so it seems to be working so now 65 00:06:54,200 --> 00:06:57,120 that you can convert it into. 66 00:06:58,720 --> 00:07:06,760 Into her character and put it inside the trailer so he can give his pacifier now you no longer needed. 67 00:07:09,860 --> 00:07:15,750 So then here you can also clear you in the next lesson. 68 00:07:15,770 --> 00:07:17,530 You are going to continue this. 69 00:07:20,390 --> 00:07:28,220 So in the meantime, we'll we can look the rocket by using precise hacker. 70 00:07:30,330 --> 00:07:33,990 If you see our here, you can use directly and kill it. 71 00:07:34,770 --> 00:07:45,030 So it's already that since it is already know that you don't have to do it, so you can now close up 72 00:07:45,030 --> 00:07:45,360 view. 73 00:07:47,010 --> 00:07:52,470 So in this lesson, we are going to convert how the alpha. 74 00:07:55,410 --> 00:07:57,090 Into Hex for me, 75 00:08:00,060 --> 00:08:08,190 you convert this into a hex format and then inserted into our fusion and then build our fusion. 76 00:08:08,670 --> 00:08:09,910 So I'll see you in the next. 77 00:08:09,960 --> 00:08:11,820 Listen, thank you for watching.