Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
end;
ClearQuarantine;
TerminateProcessByName('c:\users\Мират\appdata\local\schedule\schedule.exe');
QuarantineFileF('C:\Program Files\MediaPlayerV1', '*', true, ' ', 0, 0);
QuarantineFileF('C:\Program Files\VideoPlayerV3', '*', true, ' ', 0, 0);
QuarantineFileF('c:\users\Мират\appdata\local\schedule', '*', true, ' ', 0, 0);
QuarantineFileF('C:\ProgramData\BitGuard', '*', true, ' ', 0, 0);
QuarantineFile('C:\Users\Мират\appdata\roaming\closer.exe','');
QuarantineFile('C:\Program Files\Internet Explorer\iexplore.url','');
QuarantineFile('C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe','');
QuarantineFile('c:\progra~2\bitguard\261694~1.246\{c16c1~1\bitguard.dll','');
QuarantineFile('C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha667\ie\WebexpEnhancedV1alpha667.dll','');
QuarantineFile('C:\Program Files\VideoPlayerV3\VideoPlayerV3beta86\ie\VideoPlayerV3beta86.dll','');
QuarantineFile('C:\Program Files\MediaViewerV1\MediaViewerV1alpha1198\ie\MediaViewerV1alpha1198.dll','');
QuarantineFile('C:\Program Files\MediaPlayerV1\MediaPlayerV1alpha258\ie\MediaPlayerV1alpha258.dll','');
QuarantineFile('c:\users\Мират\appdata\local\schedule\schedule.exe','');
DeleteFile('C:\Program Files\MediaPlayerV1\MediaPlayerV1alpha258\ie\MediaPlayerV1alpha258.dll','32');
DeleteFile('C:\Program Files\MediaViewerV1\MediaViewerV1alpha1198\ie\MediaViewerV1alpha1198.dll','32');
DeleteFile('C:\Program Files\VideoPlayerV3\VideoPlayerV3beta86\ie\VideoPlayerV3beta86.dll','32');
DeleteFile('C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha667\ie\WebexpEnhancedV1alpha667.dll','32');
DeleteFile('c:\progra~2\bitguard\261694~1.246\{c16c1~1\bitguard.dll','32');
DeleteFile('C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe','32');
DeleteFile('C:\Program Files\Internet Explorer\iexplore.url','32');
DeleteFile('C:\Users\Мират\AppData\Local\Schedule\Schedule.exe','32');
DeleteFile('C:\Windows\Tasks\Digital Sites.job','32');
DeleteFile('C:\Windows\system32\Tasks\Digital Sites','32');
DeleteFile('C:\Windows\system32\Tasks\DealPlyUpdate','32');
DeleteFile('C:\Users\Мират\appdata\roaming\closer.exe','32');
DelBHO('{fe704bf8-384b-44e1-8cf2-8dbeb3637a8a}');
DelBHO('{d968e620-98a2-4c47-880e-c0a47b07a2eb}');
DelBHO('{c45af92c-9f8c-4d12-8229-5d23a344387d}');
DelBHO('{787d726c-a314-4274-97f0-214a632444b4}');
DelBHO('{1824FF90-C98E-48A6-838F-E3B6572B0C77}');
DelBHO('{149bc70b-cf18-442f-adf0-1903df1650d8}');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','mobilegeni daemon');
RegKeyParamDel('HKEY_LOCAL_MACHINE','System\CurrentControlSet\Control\Session Manager\AppCertDlls','x64');
DeleteService('BitGuard');
DeleteFileMask('C:\Program Files\MediaPlayerV1', '*', true, ' ');
DeleteFileMask('C:\Program Files\VideoPlayerV3', '*', true, ' ');
DeleteFileMask('C:\ProgramData\BitGuard', '*', true, ' ');
DeleteFileMask('c:\users\Мират\appdata\local\schedule', '*', true, ' ');
DeleteDirectory('C:\Program Files\MediaPlayerV1');
DeleteDirectory('C:\Program Files\VideoPlayerV3');
DeleteDirectory('C:\ProgramData\BitGuard');
DeleteDirectory('c:\users\Мират\appdata\local\schedule');
BC_ImportAll;
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
BC_Activate;
ExecuteRepair(9);
RebootWindows(true);
end.