
this lecture shows how turning off windows defender and firewall can leave a pc vulnerable to malware, and demonstrates a simulated attack using kali linux and metasploit.
Open task manager to view programs and distinguish foreground, background, and default Windows apps; use details and performance tabs to monitor CPU and memory and end suspicious tasks as needed.
Analyze Windows network activity with TCP View, exploring program connections, process IDs, and remote addresses to identify traffic patterns across IPv4 and IPv6 and compare TCP and UDP behavior.
Discover how Windows event logs record past system activity in binary formats (.evtx) under system32, viewable with event viewer, wevtutil, or PowerShell, and exportable to text, xml, or csv.
Want to Secure your Windows computer or know how it can get hacked?
In this course you will learn about Windows Endpoint Security. It is a beginners course that doesn't need any prior knowledge. You will see how a Windows computer can get hacked (demo) and all the steps you can do to investigate a Windows system.
You will learn about tools like Microsoft Defender, TCP View, Task Manager and others. Each tool has its unique purpose and can assist you with the security of your Windows device.
Microsoft Defender for Endpoint is a comprehensive security solution that helps organizations defend against threats including malware, viruses, and phishing attacks. It also includes features like device management and data loss prevention.
TCP View lets you see network connections from your device to the internet. Hackers often have a connection to your device to remotely control it, use a so called reverse shell. This makes your computer connect to one of theirs, and allows them to remotely control it. They can access files, microphone, webcam and much more.
Do you want to know how to investigate your Windows computers or how a hack works? This course is for you. It is a beginners course that doesn't require any advanced knowledge.