Attention! Use of the code samples and proof-of-concepts shown here is permitted solely at your own risk for academic and non-malicious purposes. It is the end user's responsibility to comply with all applicable local, state, and federal laws. The developer assumes no liability and is not responsible for any misuse or damage caused by this tool and the software in general.
- Installed V-Compiler
- Windows OS (test environment)
- Download the binaries or clone the repository and follow these steps:
- build endless.v with
v endless.v
- use tob64.v to get the base64 string of the generated binary (
v run tob64.v
) - paste the base64 string as one line into the code and compile it (
v tryToStopIt.v
)
- build endless.v with
The malware has a strong DoS behavior. It launches endless loops, which in turn launch endless new threads, which endlessly create new files and execute them.
!Test this only in a virtual machine!
To create the symlink for Autostart, run tryToStopIt.exe
elevated.
- tryToStopIt.exe -> creates symlink in Autostart, executes endless creation and execution of endless.exe
- endless.exe -> endless thread creation, count to infinity in each of them.
- tob64.v -> if code of endless.v is changed, get the new base64 string