Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Program Files\video saver\tool\recover.exe','');
QuarantineFile('C:\Users\MAX\AppData\Roaming\WindowsUpdater\Updater.exe','');
QuarantineFile('C:\Users\MAX\AppData\Local\Oktoberfest\Bin\Oktoberfest.dll','');
QuarantineFile('C:\Users\MAX\AppData\Local\Temp\..\updt.js','');
QuarantineFile('C:\Program Files\Video Saver\zPnE_0l.exe','');
QuarantineFile('C:\Program Files\advPlugin\8Z1cz8R.exe.exe','');
QuarantineFile('C:\Program Files\Video Saver\tool\recover.exe','');
QuarantineFile('C:\Program Files\globalUpdate\Update\globalupdate.exe','');
QuarantineFile('C:\Users\MAX\AppData\Local\30383\a14761.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-7.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-6.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-5.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-4.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-3.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-11.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-10.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-7.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-6.exe','');
DelBHO('{7D1B27B2-3DE0-4F26-94A0-E14FDB06D292}');
QuarantineFile('C:\Program Files\SearchSnacks\IE\SearchSnacksClientIE.dll','');
QuarantineFile('C:\ProgramData\TimeTasks\timetasks.exe','');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','pntsyxgaxu');
DeleteFile('C:\Users\MAX\AppData\Roaming\OdnUqnxVqtAcmfpq4n\encrypter.exe','32');
DeleteFile('C:\Users\MAX\AppData\Roaming\AceWebExtension\updater\ace_web_extension.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AceWebExtensionUpdater','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\EncrypterEpta','command');
DeleteFile('C:\ProgramData\TimeTasks\timetasks.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Timestasks','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TorProject','command');
DeleteFile('C:\Program Files\SearchSnacks\IE\SearchSnacksClientIE.dll','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-6.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-7.exe','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-6.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-7.job','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-10.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-11.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-3.exe','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-3.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-11.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-10_user.job','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-4.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-5.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-6.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV14.05\73e1d639-ef1c-422b-8891-9cb26a444f2e-7.exe','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-7.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-6.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-5_user.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-5.job','32');
DeleteFile('C:\Windows\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-4.job','32');
DeleteFile('C:\Users\MAX\AppData\Local\30383\a14761.exe','32');
DeleteFile('C:\Windows\Tasks\AmiUpdXp.job','32');
DeleteFile('C:\Program Files\globalUpdate\Update\globalupdate.exe','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job','32');
DeleteFile('C:\Program Files\Video Saver\tool\recover.exe','32');
DeleteFile('C:\Windows\Tasks\Recovery Tool for Video Saver.job','32');
DeleteFile('C:\Windows\Tasks\Recovery Tool for Video Saver2.job','32');
DeleteFile('C:\Program Files\advPlugin\8Z1cz8R.exe.exe','32');
DeleteFile('C:\Windows\Tasks\Update Service for advPlugin.job','32');
DeleteFile('C:\Windows\Tasks\Update Service for advPlugin2.job','32');
DeleteFile('C:\Program Files\Video Saver\zPnE_0l.exe','32');
DeleteFile('C:\Windows\Tasks\Update Service for Video Saver.job','32');
DeleteFile('C:\Windows\Tasks\Update Service for Video Saver2.job','32');
DeleteFile('C:\Windows\Tasks\Update Service for VK Downloader.job','32');
DeleteFile('C:\Windows\Tasks\Update Service for VK Downloader2.job','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\..\updt.js','32');
DeleteFile('C:\Windows\system32\Tasks\$crrUnisntlDsply$ Updater','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-6','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-1-7','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-10_user','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-11','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-3','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-4','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-5','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-5_user','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-6','32');
DeleteFile('C:\Windows\system32\Tasks\73e1d639-ef1c-422b-8891-9cb26a444f2e-7','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','32');
DeleteFile('C:\Windows\system32\Tasks\Recovery Tool for Video Saver','32');
DeleteFile('C:\Windows\system32\Tasks\Recovery Tool for Video Saver2','32');
DeleteFile('C:\Windows\system32\Tasks\Update Service for advPlugin','32');
DeleteFile('C:\Windows\system32\Tasks\Update Service for advPlugin2','32');
DeleteFile('C:\Windows\system32\Tasks\Update Service for Video Saver','32');
DeleteFile('C:\Windows\system32\Tasks\Update Service for Video Saver2','32');
DeleteFile('C:\Windows\system32\Tasks\Update Service for VK Downloader','32');
DeleteFile('C:\Windows\system32\Tasks\Update Service for VK Downloader2','32');
DeleteFile('C:\Users\MAX\AppData\Roaming\WindowsUpdater\Updater.exe','32');
DeleteFile('C:\Windows\system32\Tasks\WindowsUpdater','32');
DeleteFile('C:\Windows\system32\Tasks\Yahoo! Search Updater','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nsb4D74.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nsbAB3A.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nshEB68.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nshEEDA.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nsr908C.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nss865F.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nst97AE.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nswDEBB.tmp\blowfish.dll','32');
DeleteFile('C:\Users\MAX\AppData\Local\Temp\nsz4AF6.tmp\blowfish.dll','32');
DeleteFile('C:\Program Files\video saver\tool\recover.exe','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Будет выполнена перезагрузка компьютера.