Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DelBHO('{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}');
DelBHO('{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}');
DelBHO('{8E8F97CD-60B5-456F-A201-73065652D099}');
QuarantineFile('C:\Program Files (x86)\XTab\SupTab.dll','');
QuarantineFile('C:\ProgramData\dydwQZXho\dTHeUlkppQVWAku0.bat','');
QuarantineFile('C:\Users\Александр\AppData\Local\KbRYEVUhz\XbzXXIikUNTP0.bat','');
QuarantineFile('C:\ProgramData\vwbgcAh\ItrveQ5.bat','');
QuarantineFile('C:\Program Files (x86)\Zaxar\ZaxarLoader.exe','');
QuarantineFile('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe','');
QuarantineFile('C:\ProgramData\TimeTasks\timetasks.exe','');
QuarantineFile('C:\Users\Александр\AppData\Local\SmartWeb\SmartWebHelper.exe','');
QuarantineFile('C:\Windows\system32\drivers\swsedrvr_vt_1_10_0_25.sys','');
DeleteService('swsedrvr_vt_1_10_0_25');
SetServiceStart('WindowsMangerProtect', 4);
SetServiceStart('WdsManPro', 4);
SetServiceStart('pyroqyme', 4);
SetServiceStart('fujugize', 4);
SetServiceStart('divimeze', 4);
DeleteService('divimeze');
DeleteService('fujugize');
DeleteService('pyroqyme');
DeleteService('WdsManPro');
DeleteService('WindowsMangerProtect');
DeleteService('winzipersvc');
TerminateProcessByName('c:\programdata\1wminipro1\wminipro.exe');
QuarantineFile('c:\programdata\1wminipro1\wminipro.exe','');
TerminateProcessByName('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\hnsj7d1e.tmp');
TerminateProcessByName('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\jnsddfc4.tmp');
TerminateProcessByName('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\knsdc146.tmpfs');
TerminateProcessByName('c:\programdata\tmp0x0x\protectwindowsmanager.exe');
QuarantineFile('c:\programdata\tmp0x0x\protectwindowsmanager.exe','');
QuarantineFile('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\knsdc146.tmpfs','');
QuarantineFile('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\jnsddfc4.tmp','');
QuarantineFile('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\hnsj7d1e.tmp','');
DeleteFile('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\hnsj7d1e.tmp','32');
DeleteFile('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\jnsddfc4.tmp','32');
DeleteFile('c:\program files (x86)\38fd60d1-1449040687-5203-8e16-e964a7cf0828\knsdc146.tmpfs','32');
DeleteFile('c:\programdata\tmp0x0x\protectwindowsmanager.exe','32');
DeleteFile('c:\programdata\1wminipro1\wminipro.exe','32');
DeleteFile('C:\Program Files (x86)\WinZipper\winzipersvc.exe','32');
DeleteFile('C:\Windows\system32\drivers\swsedrvr_vt_1_10_0_25.sys','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\RunOnce','Application Restart #0');
DeleteFile('C:\Users\Александр\AppData\Local\SmartWeb\SmartWebHelper.exe','32');
DeleteFile('C:\ProgramData\TimeTasks\timetasks.exe','32');
DeleteFile('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe','32');
DeleteFile('C:\Program Files (x86)\Zaxar\ZaxarLoader.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ZaxarLoader','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ZaxarGameBrowser','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Timestasks','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SmartWeb','command');
DeleteFile('C:\ProgramData\vwbgcAh\ItrveQ5.bat','32');
DeleteFile('C:\Users\Александр\AppData\Local\KbRYEVUhz\XbzXXIikUNTP0.bat','32');
DeleteFile('C:\ProgramData\dydwQZXho\dTHeUlkppQVWAku0.bat','32');
DeleteFile('C:\Program Files (x86)\XTab\SupTab.dll','32');
DeleteFile('D:\autorun.inf','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Будет выполнена перезагрузка компьютера.