7ev3n Virus | Virus turning off the keyboard
ฝัง
- เผยแพร่เมื่อ 10 ต.ค. 2019
- Hello, my friends! Let's hit 20K likes? Check out my website! enderman.ch
Today I am going to show you the most annoying virus of all time. It is called 7ev3n, has a unique payload and does not have a decryptor.
Links:
Private repository - go.enderman.ch/repository
Password:
mysubsarethebest
Still got questions? Don't hesitate, send them to contact@enderman.ch!
Hope you have a great day!
#endermanch #virus #malware - วิทยาศาสตร์และเทคโนโลยี
How to make the keyboard work again while the virus is active:
Plug another one.
BIG BRAIN
The virus would paralyze it as well. note : I know this is a joke, please don't r/woooosh me edit : fuck everyone that r/wooooshed me
Edit 2 : what the heck have i created
thank you
excuse me wtf
R/woooosh
7ev3n ransomware: *disables most keys*
Num Pad Enter: You have no power.
Underrated comment
🤣🤣🤣🤣
Enter key: *doesnt work*
Numpad Enter: I'm about to start this man's whole career
lmao
Original and great lol
save*
r/comedy cemetery
Kris krzem Gameplay he/she could have meant start.
0:10 you gotta love the picture of yoshi saying i committed tax fraud
yes hahaha
yesn't
...
IS VERY FUNNY THE YOSHI SAYING I COMMITED TAX FRAUD
7ev3n: claims to disable all keys from your keyboard
num pad enter: *helo*
he knows how to use the mouse without the keyboard
congratulations to him !!!
i think it is better to use the keyboard for key shortcut but ...
haha
That's the entire num pad that isn't touched by the ransomware, which is pretty cool
NumLk enter POV:im safe
7ev3n: no youre not
7ev3n: **claims to disable all keys from your keyboard**
NumLk enter POV:cant break me
7ev3n: ok
7ev3n leaved
if you hear the windows wiping, you know it’s gonna be a good video.
@Krystian Borkowski *y e s* polaku
DUN DUN DUN DON DOON DOO DOO
you mean weeping?
do di do do Do dododododo dododid
@krystek1313 Borkowski
*Y E S*
P o l s k a
Windows 10 joins the game
*Ransomware joins the game*
reboots pc
*Ransomware exits the game*
Minecraft hat aufgehört zu arbeiten...
*Ransomware has been banned by Enderman*
Windows 10 pc
Podłączenie
się
Fun fact: the way this ransomware disables the keyboard (scancode map) prevents you from disabling the Numpad enter. Windows just ignores it.
This video: uploaded
the ransomware developer: *WRITE THAT DOWN! WRITE THAT DOWN!!!*
Charles the French?
Ransomware stereotypical developers.
Nice vide*p* comment wow NICE *P* instead of O 10/10 lol
VIDEP; THE WAY HOME
I see you accidentally toped p instead of o because their right next to each other but HOW THE HELL DO YOU *ACCIDENTALY TYPE ; THATS NOT EVEN POSSIBLE*
WHO WOULD WIN?
A RANSOMWARE, WHICH IS VERY SMART AND DOESN'T LET YOU TO USE CMD NORMALLY or...
*one num enter boi?*
Super Knuckles PandoTech can kill any ransomware
@@rechargeablefanbutdead5082 "PandoTech can kill any ransomware"
Can he?
Black Hat r/woooosh
@@tionaus It wasn't a joke.
Micah Bell r/ihaveareddit
Wait, when was this ransomware made? It says 13 bitcoin (~4980 USD). 13 bitcoin nowadays is literally 93k dollars!
123nabilben123 yeah, probably
But bitcoin was made in 2009, no?
Overloader7 I’m not sure. Maybe he was using another crypto currency and then turned to bitcoin when it got popular and forgot to change the value
Howlly sheet
it's 126k, I love stonks
7ev3n: im bout to end this mans whole career
Enderman: **reverse uno card**
Using VMware lol
hahaha this is true
Imagine virus went so deep it went over the VM lol
Or is coded to bypass VM oh how the turn tables
...
I love the fact how he literally goes into the vm’s bios in every single video.
developer: puts extreme keyboard lock and doesn't encrypt files coz it's almost flawless.
Enderman: *Hold my beer*
Decrypts 9GB an hour? 😂
I noted this nonsense
Asks for 5 thousand dollard
Dollars
nonsense.
what
Keyboard: Stops working
Virtual keyboard: I'm here to save your day
This gonna be a great video.
Pretty naive ransomware, i've read some about it. But, still somewhat thought.
xd
y e s
Dont think the owner of the ransomware took the time to even obfuscate it, if he didnt i could just dump it and take its source once i did that i can just rewrite the ransomware lol
its you again
@@malwaretestingfan yuo comment on every video. Btw i work as a white hat and i basically ruin yuor opportunities
1:01 lol I didn't expect you to put a cute kitten as your profile :3 lol
Nooo, you cant just stop my entire payload with a simple command
Haha, run + shutdown -a goes brrrrrrrrr
3:48 oh boiiii i love NK
never excepted to you to use his songs :)
Me: rip keyboard
Enderman: im about to end this ransomware's whole career
Is there a way to trick the ransomware into thinking you paid? Given how lazy the dev is with leaving out so many things, I wouldn't be surprised if there was a massive security hole that you could exploit. Edit: after some reading on how the ransomware works, there is a test decrypt function that allows you to decrypt up to 5 files to make sure decryption is possible. I think you could exploit that.
He obviously could. He is the real ethical hacker ,others are a straight lie!
some ransomware dont decrypt after you pay its just a scam
the problem is the ransomware doesnt unlock when you pay, its obviously a scam
@@Stasiss_ most do though. otherwise, why pay ransom at all? just fuhmat. is bad business. pork.
Reverse engineer the entire program to test decrypt every file it encrypted?
*2:49** thats most likely because normal enter and numpad enter are 2 different keys in most languages.*
C# (and i guess other languages too) call normal enter _Return_ and numpad enter something like _KeyPad Enter_
Enderman, bless you sir for providing a safe space for us to grab malware from for testing. Has really streamlined it for me and made it safer and more reliable thanks again!
When your PC gets screwed:
Installs Keyboard Screwer
This would be so fun to use on people who think numpads are clunky and unnecessary :D
Ransomware: *exists*
People without the Num keys: *chuckles* I'm in danger.
Me with a touchscreen computer: *I don't have such weaknesses.*
it is now possible to (potentially) decrypt r4a and r5a (7ev3n encryption extension)
Who would win:
A virus that encrypt most files and disable keyboard (except num enter) or
One “Block thief” boi ?
Enderman the fact u can 💔 any viruses is awesome! I love ur vids and u
Someone: wheres the hacker?
Me: oh, he ransomware.
0:12
FBI OPEN UP
2:48 I guess the programmer of the ransomware wasn't even thinking abut that!
developer has no numlock enter on his keyboard
will you ever make a tutorial how to download/use vmware or virtualbox? i've been struggling with it for 3 days, also i just realised NIGHTkilla music was in this video!!
thank you enderman for another amazing video
Wonder if the owner of the ransomware took the time to obfuscate it because if he didn't then you could easily take the key and remove the ransomware
well you would need the algorithm as well, and where the key is actually in the code, and that's assuming that the key is in the program at all
I installed this on my brothers computer, hope his "homework" folder still opens
Did you really did it?
@@seemscoolReal yes i did do it.
@@DigitalHandle i expected it as a joke
@@emireri2387 nope, i did it, i am still grounded lol
Enderman:this ransomware removes keyboard
Me: *uses screen keyboard*
everyone gangsta until the glass wiping sound plays
Now I know the I name my files similarly to Enderman
0:12 i am never watching another one of your videos ever again
7ev3n: I’m gonna destroy this keyboard’s whole career
Num enter key: I’m gonna pretend I didn’t hear that
I hope conhost and/or windows terminal adds an on-screen keyboard in a form of a keyboard drawer or something
If you can read file data well, then put a simple text file and figure out the encryption key.
Black Hat you can get the encryption method
@@cat1554 Nope. It would suppose that the ransomware uses an hardcoded key, that frankly does not.
Nope. Any encryption worth its salt is resistant against known-plaintext attacks. Hell, even the KL-7 (The US's response to Germany's Enigma Machine) was safe against these attacks. It's reasonable to assume that any modern encryption algorithm is immune to this too.
I would really love a tutorial video on how to use vmware!
:-:
Thanks for all those regkeys. Now I can make a reg file, which deletes all that crap from the reg at once. Just in case.
The creator of the ransomeware: didn’t plan numberpads enter
People with touch screen laptop:
5000USD? Am i bill gates or what?
Just send the PC to DriveSavers
NO! THIS IS PATRICK!
capitalism
@@yqy stalin will remember you. heh ( take this as a joke yeah )
@@yqy R O A S T E D
I think Microsoft should add regedit to the ctrl+alt+del menu
I think they shouldn't. Regedit is too powerful, adding it to the ctrl+alt+del menu would give easy access to it, and you know how kids are with computers. They can go in there and screw up Windows by deleting a bunch of stuff in the registry.
Pretty sure kids are able to press windows button then type regedit
@@lunakittyyyYeaaaaaah *NO* , that just gets stupid over time.
@@fitmotheyap Yeah but how will they know it even exists? Putting it in the ctrl+alt+del just shoves it in their face
@@joshth647 How so?
4:38 "Sadly, there is no decryptor for that ransomware, Every *(.doc, .docx, .xlsx, .ppptx, .pdf)* file that become .R5A is trashed forever. However most the files are intact."
of the* (no offense ik it's a typo)
What filetypes are encrypted with this virus?
F rip moment
2:19 IT'S A CAT
Yea boi cat
MEOWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
Its koteyka i think..
Thicc
The fun thing all that buttons are not even working without virus cuz my keyboard is broken xD
On-screen keyboard: i dont have such weaknesses.
Oh thank god! Some guy sent me this and said that it was a hack for CS:GO! Thanks for helping me out!
U seroous?
Never download hacked games or hacks.
@@thecommentato4 well I did, because it looked cool on his screen...
@@jagjyot4828 next time dont be stupid, take this advice from me. I had a stack of viruses. Try to guess what number lol
@@thecommentato4 103
but it's fine now
i have avast p r e m i e r
NIGHTkilla
I like the music BTW (k-391 windows) and nice video
Sweet login Logo Enderman😍😍
Great video!
pls join enderman discord
2:42 : *Presses num lock enter * ppl who have TKL/60% keyboards am i a joke to u?
Virus: no enter
Num lock enter: *allow me to introduce myself*
Virus: Locked the keyboard.
Enderman: Make the keyboard work again.
Virus: Shit! I'll die.
Oh yeah.... In this video have a hand reveal 😂
oh yeah... in this comment theres no english or spelling
**Windows 10 join the game**
**Ransomware join the game**
**Reboot**
**Ransomware has banned 9999999999999999 days**
🤣🤣🤣🤣🤣🤣🤣 why **inf** days
0:01 *Enderman join the game*
*Enderman runs the Ransomware As Admin*
*Ransomware join the game*
*Ransomware reboots the system*
*Ransomware disables the keyboard*
*Enderman gets revenge on Ransomware*
*Ransomware has banned inf days*
Happy 100K Sus
bscribers to U Enderman
Hi. Does it block on-screen keyboard too?
Ah, the good old days when 13 Bitcoin was worth only $4980.
I feel as though whichever bully created that virus used a keyboard WITHOUT a number pad.
(EDIT 1 year and 8 months later: Maybe that bully developed that virus on a laptop!)
Laptops have number pads lol
@@Calibrato
Not all of them do!
Keyboard: doesn't work
Keyboard 2: *Yeah, this is big brain time*
What type of VMware do you use? Is it some free version? I've heard that it's much more efficient than VirtualBox. I'd like to set it up for myself.
I don't regret following you for 2 years ...
hey in the cmd in the boot drive you could type notepad then open then make it so all files are shown then copy explorer .exe. (its in D:) then go to users (username) then on the thing that says explorer type appdata then click local. paste explorer.exe and delete system.exe rename explorer.exe to system.exe. reboot. then manually look for regedit then continue with enders tutorial.
Enter Key = Doesn't Work
Enderman = **hold my nums m8**
Can i have a copy of the uac disabler? It makes running viruses on my vm easier
7ev3n: haha i kill keybord
OemEnter (numberpad Enter): it's showtime
I REALLY LOVE YOUR VIDEO
When someone sent me a ransom from email do they know when I open it because it said I have 1 week but that was on jan 31st 2021 and now it’s March so does it start when I open it??
No, most likely not. It's the ransomware itself that was programmed that way to show a timer as soon as it's opened. It's also programmed to do other things, like constantly pop-up the window.
Reminds me of the time I got the worst ransomware.
I literally just switched users and it was gone. It didn't even encrypt anything.
I was 7 or so at the time.
Me, who has a laptop: you have no power here
Why would a ransomware disable Valve Anti-Cheat?
Sure i have ransomware “sometimes when i turn my pc on it cant turn on mouse and wifi usb” /its ransomware
?
Hey Enderman I've been watching your videos for a long time and how do you pull up the CMD on the install screen??
-Elias
@Kennita Pombar-Munet what is that link?
Shift+F10
numpad enter: exists
ransomware: why do i hear boss music
That was very interesting!
Wow, what a good song choice 😂 😂
K391 windows
Windows related song, Windows related video
The ramsomware creator:
Impossible. Pay me
Bruh you can literally remove any type of virus dude ur a legend
0:44 перейдите в командную строку, введите shutdown -a, после чего запланированное выключение будет отменено,конечно ... если они заразятся вирусом, который планирует автоматическое отключение
normal enter:disabled
numlock ender:It's my turn now
4:35 That Excel file lol
For once numlock enter was useful
0:12 yoshi commits tax fraud
Awesome :D
The windows key disable is very useful
If you want to game
Dayum your VM is faster than my whole PC
*pc keyboard broken*
On Screen keyboard: *aM i A jOKe to YOu?*
the virtual keyboard it my friend.........
Love and respect you today is my birthday
7ev3n: *”Disables All Keyboard Keys and Encrypts”*
Enderman: Cmd, Regedit, *”Presses Num Pad Enter”*