Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\IVAN\AppData\Roaming\mystartsearch\UninstallManager.exe','');
DelBHO('{98889811-442D-49dd-99D7-DC866BE87DBC}');
DelBHO('{F7397BDC-2127-7177-C856-DAD9162B48EF}');
QuarantineFile('C:\Program Files\priceChop\_DYPSu.dll','');
DelBHO('{1a894269-562d-459e-b17e-efd8de428e41}');
DelBHO('{2EECD738-5844-4a99-B4B6-146BF802613B}');
DelBHO('{41BA8CCE-EAB2-121B-1DC1-D230665929F4}');
QuarantineFile('C:\Program Files\Adblocker\6rXHttE.dll','');
QuarantineFile('C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll','');
QuarantineFile('C:\Program Files\Kino-Filmov.Net\prxtbKin0.dll','');
QuarantineFile('c:\progra~1\softqu~1\sprote~1.dll','');
QuarantineFile('c:\progra~1\mocaflix\sprote~1.dll','');
QuarantineFile('c:\progra~1\contin~1\sprote~1.dll','');
QuarantineFile('C:\iexplore.bat','');
QuarantineFile('C:\firefox.bat','');
QuarantineFile('C:\Users\IVAN\AppData\Local\vk.bat','');
QuarantineFile('C:\Users\IVAN\AppData\Local\ok.bat','');
QuarantineFile('C:\Users\IVAN\AppData\Local\amigo.bat','');
QuarantineFile('C:\ProgramData\Program status\scheck.exe','');
QuarantineFile('C:\Program Files\Google\chrome.bat','');
QuarantineFile('C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe','');
QuarantineFile('C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe','');
TerminateProcessByName('c:\programdata\schedule\timetasks.exe');
QuarantineFile('c:\programdata\schedule\timetasks.exe','');
TerminateProcessByName('c:\users\ivan\appdata\roaming\ssleas.exe');
QuarantineFile('c:\users\ivan\appdata\roaming\ssleas.exe','');
TerminateProcessByName('c:\programdata\windows\csrss.exe');
QuarantineFile('c:\programdata\windows\csrss.exe','');
TerminateProcessByName('c:\users\ivan\appdata\roaming\cppredistx86.exe');
QuarantineFile('c:\users\ivan\appdata\roaming\cppredistx86.exe','');
DeleteFile('c:\users\ivan\appdata\roaming\cppredistx86.exe','32');
DeleteFile('c:\programdata\windows\csrss.exe','32');
DeleteFile('c:\users\ivan\appdata\roaming\ssleas.exe','32');
DeleteFile('c:\programdata\schedule\timetasks.exe','32');
DeleteFile('C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe','32');
DeleteFile('C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','pcket_x86');
DeleteFile('C:\Program Files\Google\chrome.bat','32');
DeleteFile('C:\ProgramData\Program status\scheck.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','sCloudStatusCheck');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','Schedule');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','Client Server Runtime Subsystem');
DeleteFile('C:\Users\IVAN\AppData\Local\amigo.bat','32');
DeleteFile('C:\Users\IVAN\AppData\Local\ok.bat','32');
DeleteFile('C:\Users\IVAN\AppData\Local\vk.bat','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','Microsoft Visual C++ 2010');
DeleteFile('C:\firefox.bat','32');
DeleteFile('C:\iexplore.bat','32');
DeleteFile('c:\progra~1\contin~1\sprote~1.dll','32');
DeleteFile('c:\progra~1\mocaflix\sprote~1.dll','32');
DeleteFile('c:\progra~1\softqu~1\sprote~1.dll','32');
DeleteFile('C:\Program Files\Kino-Filmov.Net\prxtbKin0.dll','32');
DeleteFile('C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll','32');
DeleteFile('C:\Program Files\Adblocker\6rXHttE.dll','32');
DeleteFile('C:\Program Files\priceChop\_DYPSu.dll','32');
DeleteFile('C:\ProgramData\Premium\OptimizerPro\profile.ini','32');
DeleteFile('C:\Windows\Tasks\OptimizerProUpdaterTask{F45DD279-6E8D-4837-94C5-6910D0334CD2}.job','32');
DeleteFile('C:\ProgramData\Premium\OptimizerPro\OptimizerPro.exe','32');
DeleteFile('C:\Windows\system32\Tasks\OptimizerProUpdaterTask{F45DD279-6E8D-4837-94C5-6910D0334CD2}','32');
DeleteFile('C:\Users\IVAN\AppData\Roaming\mystartsearch\UninstallManager.exe','32');
DeleteFile('C:\Windows\system32\Tasks\{1B6AC395-BC91-4BE7-92EC-F143DDC6279A}','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Компьютер перезагрузится.