Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
StopService('wxpdrivers');
QuarantineFile('C:\WINDOWS\system32\office.exe','');
QuarantineFile('C:\WINDOWS\systemup.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\Ljm.exe','');
QuarantineFile('C:\WINDOWS\update.tray-7-0\svchost.exe','');
QuarantineFile('C:\WINDOWS\update.tray-2-0\svchost.exe','');
QuarantineFile('C:\WINDOWS\sysdriver32_.exe','');
QuarantineFile('C:\WINDOWS\sysdriver32.exe','');
QuarantineFile('C:\WINDOWS\services32.exe','');
QuarantineFile('C:\WINDOWS\TEMP\940058.exe','');
QuarantineFile('C:\WINDOWS\TEMP\9348925.exe','');
QuarantineFile('C:\WINDOWS\TEMP\8671379.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7384778.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7119001.exe','');
QuarantineFile('C:\WINDOWS\TEMP\6307539.exe','');
QuarantineFile('C:\WINDOWS\TEMP\5192083.exe','');
QuarantineFile('C:\WINDOWS\TEMP\5188797.exe','');
QuarantineFile('C:\WINDOWS\TEMP\5155399.exe','');
QuarantineFile('C:\WINDOWS\TEMP\4285882.exe','');
QuarantineFile('C:\WINDOWS\TEMP\333691.exe','');
QuarantineFile('C:\WINDOWS\TEMP\209653.exe','');
QuarantineFile('C:\WINDOWS\TEMP\142066.exe','');
QuarantineFile('C:\WINDOWS\TEMP\1090640.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\9763504.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\9677590.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\9375461.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\8076952.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\7916919.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\6837272.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\6169240.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\5090297.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\4837215.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\4422142.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\4178155.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\3895475.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\2775724.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\2585412.exe','');
QuarantineFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\2573355.exe','');
QuarantineFile('C:\WINDOWS\update.2\svchost.exe','');
QuarantineFile('C:\WINDOWS\update.1\svchost.exe','');
DeleteFile('C:\WINDOWS\update.1\svchost.exe');
DeleteFile('C:\WINDOWS\update.2\svchost.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\2573355.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\2585412.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\2775724.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\3895475.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\4178155.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\4422142.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\4837215.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\5090297.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\6169240.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\6837272.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\7916919.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\8076952.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\9375461.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\9677590.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\9763504.exe');
DeleteFile('C:\WINDOWS\TEMP\1090640.exe');
DeleteFile('C:\WINDOWS\TEMP\142066.exe');
DeleteFile('C:\WINDOWS\TEMP\209653.exe');
DeleteFile('C:\WINDOWS\TEMP\333691.exe');
DeleteFile('C:\WINDOWS\TEMP\4285882.exe');
DeleteFile('C:\WINDOWS\TEMP\5155399.exe');
DeleteFile('C:\WINDOWS\TEMP\5188797.exe');
DeleteFile('C:\WINDOWS\TEMP\5192083.exe');
DeleteFile('C:\WINDOWS\TEMP\6307539.exe');
DeleteFile('C:\WINDOWS\TEMP\7119001.exe');
DeleteFile('C:\WINDOWS\TEMP\7384778.exe');
DeleteFile('C:\WINDOWS\TEMP\8671379.exe');
DeleteFile('C:\WINDOWS\TEMP\9348925.exe');
DeleteFile('C:\WINDOWS\TEMP\940058.exe');
DeleteFile('C:\WINDOWS\services32.exe');
DeleteFile('C:\WINDOWS\sysdriver32.exe');
DeleteFile('C:\WINDOWS\sysdriver32_.exe');
DeleteFile('C:\WINDOWS\update.tray-2-0\svchost.exe');
DeleteFile('C:\WINDOWS\update.tray-7-0\svchost.exe');
DeleteFile('C:\DOCUME~1\Lena\LOCALS~1\Temp\Ljm.exe');
DeleteFile('C:\WINDOWS\systemup.exe');
DeleteFile('C:\WINDOWS\system32\office.exe');
DeleteFile('C:\WINDOWS\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job');
DeleteFileMask('C:\DOCUME~1\Lena\LOCALS~1\Temp', '*.*',true);
DeleteFileMask('C:\WINDOWS\TEMP', '*.*',true);
BC_ImportDeletedList;
ExecuteSysClean;
BC_Activate;
RegKeyStrParamWrite('HKLM', 'System\CurrentControlSet\Control\SafeBoot', 'AlternateShell', 'cmd.exe');
RebootWindows(true);
end.
Компьютер перезагрузится.