Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\B215~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE','');
QuarantineFile('C:\Users\Светлана\AppData\Roaming\eTranslator\eTranslator.exe','');
DeleteService('BDSafeBrowser');
DeleteService('BDMWrench_x64');
DeleteService('BDEnhanceBoost');
DeleteService('BDAntiExp');
DeleteService('bd0004');
DeleteService('bd0001');
DeleteService('{51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64');
QuarantineFile('C:\ProgramData\e25f457c-9287-4f2d-b5a8-8cd714c55009\maintainer.exe','');
DeleteService('MaintainerSvc4.00.5030318');
QuarantineFile('C:\Windows\system32\drivers\{c5db642e-a4dc-48dc-a9f5-088bcf85b719}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64.sys','');
QuarantineFile('C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll','');
QuarantineFile('c:\programdata\samsung\sw update service\swmagent.exe','');
TerminateProcessByName('c:\programdata\iepluginservices\pluginservice.exe');
QuarantineFile('c:\programdata\iepluginservices\pluginservice.exe','');
TerminateProcessByName('C:\Program Files (x86)\SupTab\Loader64.exe');
QuarantineFile('C:\Program Files (x86)\SupTab\Loader64.exe','');
TerminateProcessByName('c:\program files (x86)\suptab\loader32.exe');
QuarantineFile('c:\program files (x86)\suptab\loader32.exe','');
TerminateProcessByName('c:\program files (x86)\suptab\hpui.exe');
QuarantineFile('c:\program files (x86)\suptab\hpui.exe','');
TerminateProcessByName('c:\users\Светлана\appdata\local\amigo\application\amigo.exe');
DeleteFile('c:\users\Светлана\appdata\local\amigo\application\amigo.exe','32');
DeleteFile('c:\program files (x86)\suptab\hpui.exe','32');
DeleteFile('c:\program files (x86)\suptab\loader32.exe','32');
DeleteFile('C:\Program Files (x86)\SupTab\Loader64.exe','32');
DeleteFile('c:\programdata\iepluginservices\pluginservice.exe','32');
DeleteFile('C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll','32');
DeleteFile('C:\Windows\system32\drivers\{51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{c5db642e-a4dc-48dc-a9f5-088bcf85b719}Gw64.sys','32');
DeleteFile('C:\ProgramData\e25f457c-9287-4f2d-b5a8-8cd714c55009\maintainer.exe','32');
DeleteFile('C:\Windows\system32\DRIVERS\BDSafeBrowser.sys','32');
DeleteFile('C:\Windows\system32\DRIVERS\BDMWrench_x64.sys','32');
DeleteFile('C:\Windows\system32\drivers\BDEnhanceBoost.sys','32');
DeleteFile('C:\Windows\system32\DRIVERS\BDAntiExp.sys','32');
DeleteFile('C:\Windows\system32\DRIVERS\bd0004.sys','32');
DeleteFile('C:\Windows\system32\DRIVERS\bd0001.sys','32');
DeleteFile('C:\Program Files (x86)\BaiduEx\uninit.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\pcket_x86','command');
DeleteFile('C:\Program Files (x86)\Baidu\BaiduAn\3.0.0.3971\baiduAnTray.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\baiduAnTray','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\pcket_x64','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\amigo','command');
DeleteFile('C:\Users\Светлана\AppData\Local\Amigo\Application\ok.exe','32');
DeleteFile('C:\Users\Светлана\AppData\Local\Amigo\Application\vk.exe','32');
DeleteFile('C:\Users\Светлана\AppData\Roaming\eTranslator\eTranslator.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\eTranslator Update','command');
DeleteFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP1.job','64');
DeleteFile('C:\Windows\Tasks\APSnotifierPP2.job','64');
DeleteFile('C:\Windows\Tasks\APSnotifierPP3.job','64');
DeleteFile('C:\Users\B215~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE','32');
DeleteFile('C:\Windows\Tasks\Digital Sites.job','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2','64');
DeleteFile('C:\Windows\system32\Tasks\Digital Sites','64');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Компьютер перезагрузится.