Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
DelCLSID('{63332668-8CE1-445D-A5EE-25929176714E}');
StopService('contentdefenderdrv');
StopService('ginoquci');
StopService('hidekoqe');
StopService('pupivyhi');
StopService('QMUdisk');
StopService('QQSysMonX64');
StopService('ryrojiry');
StopService('segiguxozbt');
StopService('sozetoxizbt');
StopService('SSFK');
StopService('sutirohe');
StopService('TAOAccelerator');
StopService('TAOFrame');
StopService('TAOKernelDriver');
StopService('TS888x64');
StopService('TSDefenseBt');
StopService('TSSKX64');
StopService('wucotusy');
DeleteService('contentdefenderdrv');
DeleteService('ginoquci');
DeleteService('hidekoqe');
DeleteService('pupivyhi');
DeleteService('QMUdisk');
DeleteService('QQSysMonX64');
DeleteService('ryrojiry');
DeleteService('segiguxozbt');
DeleteService('sozetoxizbt');
DeleteService('SSFK');
DeleteService('sutirohe');
DeleteService('TAOAccelerator');
DeleteService('TAOFrame');
DeleteService('TAOKernelDriver');
DeleteService('TSDefenseBt');
DeleteService('TSSKX64');
DeleteService('wucotusy');
QuarantineFile('C:\Program Files (x86)\4C4C4544-1448613623-4810-8050-B7C04F324E31\hnsk1FD1.tmp','');
QuarantineFile('C:\Program Files (x86)\4C4C4544-1448613623-4810-8050-B7C04F324E31\jnskD4DB.tmp','');
QuarantineFile('C:\Program Files (x86)\4C4C4544-1448613623-4810-8050-B7C04F324E31\knse8DF8.tmp','');
QuarantineFile('C:\Program Files (x86)\4C4C4544-1452364606-4810-8050-B7C04F324E31\hnslF94F.tmp','');
QuarantineFile('C:\Program Files (x86)\4C4C4544-1452364606-4810-8050-B7C04F324E31\knsk7CF6.tmpfs','');
QuarantineFile('C:\Program Files (x86)\4C4C4544-1453745305-4810-8050-B7C04F324E31\knskC932.tmpfs','');
QuarantineFile('C:\Program Files (x86)\baidu\ppt.exe','');
QuarantineFile('C:\Program Files (x86)\SFK\SSFK.exe','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QMContextScan.dll','');
QuarantineFile('c:\program files (x86)\tencent\qqpcmgr\10.7.16065.215\qmsysrepprov.dll','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QMUdisk64.sys','');
QuarantineFile('c:\program files (x86)\tencent\qqpcmgr\10.7.16065.215\qqpcrtp.exe','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QQPCTray.exe','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QQSysMonX64.sys','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\TAOFrame.exe','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\TS888x64.sys','');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\TSDefenseBT64.sys','');
QuarantineFile('C:\Program Files\content defender\cd.exe','');
QuarantineFile('C:\Program Files\content defender\condefsetup.exe','');
QuarantineFile('C:\Program Files\content defender\contentdefender.exe','');
QuarantineFile('C:\Program Files\content defender\contentdefenderps.dll','');
QuarantineFile('C:\Program Files\content defender\import_root_cert.exe','');
QuarantineFile('C:\Program Files\content defender\libeay32.dll','');
QuarantineFile('C:\Program Files\content defender\nfregdrv.exe','');
QuarantineFile('C:\Program Files\content defender\nss\certutil.exe','');
QuarantineFile('C:\Program Files\content defender\nss\mozcrt19.dll','');
QuarantineFile('C:\Program Files\content defender\nss\nspr4.dll','');
QuarantineFile('C:\Program Files\content defender\nss\nss3.dll','');
QuarantineFile('C:\Program Files\content defender\nss\plc4.dll','');
QuarantineFile('C:\Program Files\content defender\nss\plds4.dll','');
QuarantineFile('C:\Program Files\content defender\nss\smime3.dll','');
QuarantineFile('C:\Program Files\content defender\nss\softokn3.dll','');
QuarantineFile('C:\Program Files\content defender\ssleay32.dll','');
QuarantineFile('C:\ProgramData\KSrQpDHQffbpzKy\vCZzdWMnPKrFNqr5.bat','');
QuarantineFile('C:\PROGRA~2\x264vfw\x264vfw.dll','');
QuarantineFile('C:\Torrentex\Torrentex.exe','');
QuarantineFile('C:\Users\hyk\AppData\Local\4C4C4544-1450593876-4810-8050-B7C04F324E31\qnshA1FB.tmp','');
QuarantineFile('C:\Users\hyk\AppData\Local\Cooking Comp\{B0CC8F54-4056-4D78-8188-55B10F54E640}\CookingComp.dll','');
QuarantineFile('C:\Users\hyk\AppData\Local\Hostinstaller\3232245334_monster.exe','');
QuarantineFile('C:\Users\hyk\AppData\Local\PPTAssist\utility\uninst.exe','');
QuarantineFile('C:\Users\hyk\AppData\Local\Temp\dasHost.exe','');
QuarantineFile('C:\Users\hyk\AppData\Local\Temp\nsc5662.tmp','');
QuarantineFile('C:\Users\hyk\AppData\Local\Temp\svhost.jar.jar','');
QuarantineFile('C:\Users\hyk\AppData\Local\ukrskidki\config.json','');
QuarantineFile('C:\Users\hyk\AppData\Local\ukrskidki\skdustb.exe','');
QuarantineFile('C:\Users\hyk\AppData\Roaming\istartpageing\UninstallManager.exe','');
QuarantineFile('C:\Users\hyk\AppData\Roaming\MyDesktop\qweeeCL.exe','');
QuarantineFile('C:\Users\hyk\AppData\Roaming\OdnUqnxVqtAcmfpq4n\encrypter.exe','');
QuarantineFile('C:\Users\hyk\AppData\Roaming\OdnUqnxVqtAcmfpq4n\tor\tor.exe','');
QuarantineFile('C:\Users\hyk\AppData\Roaming\WindowsUpdater\Updater.exe','');
QuarantineFile('C:\Windows\system32\AESTFl64.exe','');
QuarantineFile('C:\Windows\system32\drivers\contentdefenderdrv.sys','');
QuarantineFile('C:\Windows\system32\Drivers\TAOAccelerator64.sys','');
QuarantineFile('C:\Windows\System32\Drivers\TAOKernel64.sys','');
QuarantineFile('C:\Windows\system32\drivers\tsskx64.sys','');
QuarantineFile('wuauserv.sys','');
DeleteFile('C:\Program Files (x86)\4C4C4544-1448613623-4810-8050-B7C04F324E31\hnsk1FD1.tmp','32');
DeleteFile('C:\Program Files (x86)\4C4C4544-1448613623-4810-8050-B7C04F324E31\jnskD4DB.tmp','32');
DeleteFile('C:\Program Files (x86)\4C4C4544-1448613623-4810-8050-B7C04F324E31\knse8DF8.tmp','32');
DeleteFile('C:\Program Files (x86)\4C4C4544-1452364606-4810-8050-B7C04F324E31\hnslF94F.tmp','32');
DeleteFile('C:\Program Files (x86)\4C4C4544-1452364606-4810-8050-B7C04F324E31\knsk7CF6.tmpfs','32');
DeleteFile('C:\Program Files (x86)\4C4C4544-1453745305-4810-8050-B7C04F324E31\knskC932.tmpfs','32');
DeleteFile('C:\Program Files (x86)\baidu\ppt.exe','32');
DeleteFile('C:\Program Files (x86)\SFK\SSFK.exe','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QMContextScan.dll','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\10.7.16065.215\qmsysrepprov.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QMUdisk64.sys','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\10.7.16065.215\qqpcrtp.exe','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QQPCTray.exe','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QQSysMonX64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\TAOFrame.exe','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\TS888x64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\TSDefenseBT64.sys','32');
DeleteFile('C:\Program Files\content defender\cd.exe','32');
DeleteFile('C:\Program Files\content defender\condefclean.exe','32');
DeleteFile('C:\Program Files\content defender\condefsetup.exe','32');
DeleteFile('C:\Program Files\content defender\contentdefender.exe','32');
DeleteFile('C:\Program Files\content defender\contentdefenderps.dll','32');
DeleteFile('C:\Program Files\content defender\import_root_cert.exe','32');
DeleteFile('C:\Program Files\content defender\libeay32.dll','32');
DeleteFile('C:\Program Files\content defender\nfregdrv.exe','32');
DeleteFile('C:\Program Files\content defender\nss\certutil.exe','32');
DeleteFile('C:\Program Files\content defender\nss\mozcrt19.dll','32');
DeleteFile('C:\Program Files\content defender\nss\nspr4.dll','32');
DeleteFile('C:\Program Files\content defender\nss\nss3.dll','32');
DeleteFile('C:\Program Files\content defender\nss\plc4.dll','32');
DeleteFile('C:\Program Files\content defender\nss\plds4.dll','32');
DeleteFile('C:\Program Files\content defender\nss\smime3.dll','32');
DeleteFile('C:\Program Files\content defender\nss\softokn3.dll','32');
DeleteFile('C:\Program Files\content defender\ssleay32.dll','32');
DeleteFile('C:\ProgramData\KSrQpDHQffbpzKy\vCZzdWMnPKrFNqr5.bat','32');
DeleteFile('C:\Users\hyk\AppData\Local\4C4C4544-1450593876-4810-8050-B7C04F324E31\qnshA1FB.tmp','32');
DeleteFile('C:\Users\hyk\AppData\Local\Hostinstaller\3232245334_monster.exe','32');
DeleteFile('C:\Users\hyk\AppData\Local\PPTAssist\utility\uninst.exe','32');
DeleteFile('C:\Users\hyk\AppData\Local\Temp\dasHost.exe','32');
DeleteFile('C:\Users\hyk\AppData\Local\Temp\nsc5662.tmp','32');
DeleteFile('C:\Users\hyk\AppData\Local\Temp\svhost.jar.jar','32');
DeleteFile('C:\Users\hyk\AppData\Local\ukrskidki\config.json','32');
DeleteFile('C:\Users\hyk\AppData\Local\ukrskidki\skdustb.exe','32');
DeleteFile('C:\Users\hyk\AppData\Roaming\istartpageing\UninstallManager.exe','32');
DeleteFile('C:\Users\hyk\AppData\Roaming\MyDesktop\qweeeCL.exe','32');
DeleteFile('C:\Users\hyk\AppData\Roaming\OdnUqnxVqtAcmfpq4n\encrypter.exe','32');
DeleteFile('C:\Users\hyk\appdata\roaming\windowsupdater\updater.exe','32');
DeleteFile('C:\Windows\system32\drivers\contentdefenderdrv.sys','32');
DeleteFile('C:\Windows\system32\Drivers\TAOAccelerator64.sys','32');
DeleteFile('C:\Windows\System32\Drivers\TAOKernel64.sys','32');
DeleteFile('C:\Windows\system32\drivers\tsskx64.sys','32');
DeleteFile('C:\Windows\system32\Tasks\Soft installer','64');
DeleteFile('C:\Windows\system32\Tasks\WindowsUpdater','64');
DeleteFile('C:\Windows\system32\Tasks\{6BF5EDCE-252C-47DA-BDBB-CB18E55D9ADD}','64');
DeleteFile('C:\Windows\system32\Tasks\{C194F030-89C8-45B9-9225-A5933518A911}','64');
DeleteFileMask('C:\Program Files\content defender', '*', true, ' ');
DeleteDirectory('C:\Program Files\content defender');
DeleteFileMask('C:\Program Files (x86)\Tencent', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\Tencent');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\apphide','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\C','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Device Association Framework Provider','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\EncrypterEpta','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Microsoft','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyDesktop','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TorProject','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ukrskidki','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','QQPCTray');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved','{63332668-8CE1-445D-A5EE-25929176714E}');
RegKeyIntParamWrite('HKLM', 'SYSTEM\CurrentControlSet\Control', 'WaitToKillServiceTimeout', 20000);
RegKeyStrParamWrite('HKCU', 'Control Panel\Desktop', 'WaitToKillAppTimeout', '20000');
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
BC_ImportALL;
ExecuteSysClean;
ExecuteRepair(3);
ExecuteRepair(4);
ExecuteRepair(9);
BC_Activate;
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.