Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
StopService('63B59DDB-B3F8-44E7-8847-9E1FF802F619');
StopService('csrcc');
StopService('groover130220161556 Updater');
StopService('Joxne');
StopService('SSFK');
StopService('vekujixuzbt');
DeleteService('csrcc');
DeleteService('groover130220161556 Updater');
DeleteService('Joxne');
DeleteService('SSFK');
DeleteService('vekujixuzbt');
QuarantineFile('c:\program files (x86)\db774909-1455395964-e211-8e64-2089844236c4\knsz4149.tmp','');
QuarantineFile('C:\Program Files (x86)\DB774909-1455395964-E211-8E64-2089844236C4\Zaojmiw.exe','');
QuarantineFile('C:\Program Files (x86)\Hostify\idscservice.exe','');
QuarantineFile('C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\_etoured.dll','');
QuarantineFile('c:\program files (x86)\redragonzone samsara gaming mouse\lpdmon.exe','');
QuarantineFile('C:\Program Files\groover130220161556\csrcc.exe','');
QuarantineFile('C:\Program Files\groover130220161556\Womihyu.exe','');
QuarantineFile('C:\Program Files\KMSpico\Service_KMS.exe','');
QuarantineFile('C:\ProgramData\ffaKKIIb\sDJlhjLl5.bat','');
QuarantineFile('C:\ProgramData\RVZJAbFWH\KhGxRsfC0.bat','');
QuarantineFile('C:\PROGRA~1\GROOVE~1\Xuwagufo.bat','');
QuarantineFile('c:\users\asympro_user\appdata\local\ygcmpack\pcds32.exe','');
QuarantineFile('C:\Users\Asympro_user\AppData\Local\YgcmPack\pxtzovpp.dll','');
QuarantineFile('C:\Users\Asympro_user\AppData\Local\YmlPack\jhhgohmr.dll','');
QuarantineFile('c:\users\asympro_user\appdata\roaming\proxygate\cloud.exe','');
QuarantineFile('C:\Users\ASYMPR~1\AppData\Local\Temp\setdebug.exe','');
QuarantineFile('C:\Windows\system32\config\systemprofile\AppData\Local\Birds\birds365.exe','');
QuarantineFile('C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\GubfFisnoo\Ponka.exe','');
QuarantineFile('C:\Windows\SysWOW64\KBDUSXX.dll','');
DeleteFile('c:\program files (x86)\db774909-1455395964-e211-8e64-2089844236c4\knsz4149.tmp','32');
DeleteFile('C:\Program Files (x86)\DB774909-1455395964-E211-8E64-2089844236C4\Zaojmiw.exe','32');
DeleteFile('C:\Program Files (x86)\Hostify\idscservice.exe','32');
DeleteFile('C:\Program Files (x86)\SFK\SSFK.exe','32');
DeleteFile('C:\Program Files\groover130220161556\csrcc.exe','32');
DeleteFile('C:\Program Files\groover130220161556\Womihyu.exe','32');
DeleteFile('C:\ProgramData\ffaKKIIb\sDJlhjLl5.bat','32');
DeleteFile('C:\ProgramData\RVZJAbFWH\KhGxRsfC0.bat','32');
DeleteFile('C:\PROGRA~1\GROOVE~1\Xuwagufo.bat','32');
DeleteFile('C:\Users\Asympro_user\AppData\Local\YgcmPack\pcds32.exe','32');
DeleteFile('C:\Users\Asympro_user\AppData\Local\YgcmPack\pxtzovpp.dll','32');
DeleteFile('C:\Users\Asympro_user\AppData\Local\YmlPack\jhhgohmr.dll','32');
DeleteFile('c:\users\asympro_user\appdata\roaming\proxygate\cloud.exe','32');
DeleteFile('C:\Users\ASYMPR~1\AppData\Local\Temp\setdebug.exe','32');
DeleteFile('C:\Windows\system32\config\systemprofile\AppData\Local\Birds\birds365.exe','32');
DeleteFile('C:\Windows\system32\Tasks\bvjmstfpu','64');
DeleteFile('C:\Windows\system32\Tasks\MAXDriverUpdaterRunAtStartup','64');
DeleteFile('C:\Windows\system32\Tasks\Tuootos','64');
DeleteFile('C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\GubfFisnoo\Ponka.exe','32');
DeleteFile('C:\Windows\Tasks\bvjmstfpu.job','32');
DeleteFile('C:\Windows\Tasks\MAXDriverUpdater_UPDATES.job','32');
DeleteService('63B59DDB-B3F8-44E7-8847-9E1FF802F619');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','Ablworks');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','uTorrent');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','YgcmPack');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','YmlPack');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','IDSCPRODUCT');
RegKeyParamDel('HKEY_USERS','.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run','Birds');
RegKeyParamDel('HKEY_USERS','S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run','Birds');
BC_ImportALL;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.