Под самый конец установки KAV 2015 вываливается BSOD SYSTEM_SERVICE_EXCEPTION - 0x0000003b.
И после перезагрузки перестают работать usb порты, тачпад и клавиатура на ноутбуке.
Printable View
Под самый конец установки KAV 2015 вываливается BSOD SYSTEM_SERVICE_EXCEPTION - 0x0000003b.
И после перезагрузки перестают работать usb порты, тачпад и клавиатура на ноутбуке.
Уважаемый(ая) [B]Delion[/B], спасибо за обращение на наш форум!
Удаление вирусов - абсолютно бесплатная услуга на VirusInfo.Info. Хелперы, в самое ближайшее время, ответят на Ваш запрос. Для оказания помощи необходимо предоставить логи сканирования утилитами АВЗ и HiJackThis, подробнее можно прочитать в [URL="http://virusinfo.info/pravila.html"]правилах оформления запроса о помощи[/URL].
Если наш сайт окажется полезен Вам и у Вас будет такая возможность - пожалуйста [URL="http://virusinfo.info/content.php?r=113-virusinfo.info-donate"]поддержите проект[/URL].
Сразу предупрежу, выкашивать неизвестные драйвера будем долго (постов 5-10)
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('azpkakxg');
DeleteService('azitekis');
DeleteService('azelmhlo');
DeleteService('aygmlzls');
DeleteService('ayfapovz');
DeleteService('aybsitrm');
DeleteService('axrdlcwq');
DeleteService('axnorjws');
DeleteService('axlvirkn');
DeleteService('axincqjh');
DeleteService('axhnmmmk');
DeleteService('axftibwb');
DeleteService('axcjshkv');
DeleteService('axbibhub');
DeleteService('rdvnyvam');
QuarantineFile('rdvnyvam.sys','');
QuarantineFile('C:\Windows\system32\drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}Gw64.sys','');
DeleteService('{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}Gw64');
QuarantineFile('C:\PROGRA~3\Wincert\WIN64C~1.DLL','');
QuarantineFile('C:\PROGRA~2\MOVIES~1\Datamngr\x64\mgrldr.dll','');
QuarantineFile('C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe','');
QuarantineFile('C:\Users\8C74~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE','');
DeleteService('awzjruta');
DeleteService('awrutwyb');
DeleteService('awpjbgqr');
DeleteService('awnnsehu');
DeleteService('awkenhsh');
DeleteService('avgswalx');
DeleteService('avgrvnph');
DeleteService('avggdsgn');
DeleteService('auyzempv');
DeleteService('auryrksb');
DeleteService('aulocwuv');
DeleteService('augfhdms');
DeleteService('atmpujow');
DeleteService('asugwzfj');
DeleteService('aslqrliq');
DeleteService('arwodtls');
DeleteService('arfzhcfb');
DeleteService('aremsynm');
DeleteService('arapjjdt');
DeleteService('aqzkwzme');
DeleteService('aqqmgywo');
DeleteService('aqmbforr');
DeleteService('aqklalgj');
DeleteService('aproizch');
DeleteService('apmamfqd');
DeleteService('aplesvma');
DeleteService('apikiixh');
DeleteService('apfyoeye');
DeleteService('apesnbpm');
DeleteService('aojwqjea');
DeleteService('aoeycxox');
DeleteService('anfbpwbo');
DeleteService('andtnazc');
DeleteService('anbokmlp');
DeleteService('amwmllft');
DeleteService('amqxfrla');
DeleteService('ammzfkpe');
DeleteService('amjhrztz');
DeleteService('amiulphl');
DeleteService('amewkokx');
DeleteService('ajpxfdxa');
DeleteService('ajkypbfi');
DeleteService('ajkfpouk');
DeleteService('ajgmmocm');
DeleteService('ajclnzjk');
DeleteService('ajbsommf');
DeleteService('aisdfyaj');
DeleteService('ahynmjtw');
DeleteService('ahiejdvf');
DeleteService('aheqzsun');
DeleteService('ahbqcski');
DeleteService('agakbflr');
DeleteService('afriaavj');
DeleteService('aevfesyv');
DeleteService('aegsfxrc');
DeleteService('aeasvciw');
DeleteService('adyucdkt');
DeleteService('adnlybmh');
DeleteService('acvulkad');
DeleteService('acofqbmz');
DeleteService('abtwrser');
DeleteService('abcxthob');
DeleteService('aayovpcr');
DeleteService('aauoutgh');
DeleteService('aaovtxol');
DeleteService('aajscyfe');
DeleteFile('C:\Windows\system32\drivers\aajscyfe.sys','32');
DeleteFile('C:\Windows\system32\drivers\aaovtxol.sys','32');
DeleteFile('C:\Windows\system32\drivers\aauoutgh.sys','32');
DeleteFile('C:\Windows\system32\drivers\aayovpcr.sys','32');
DeleteFile('C:\Windows\system32\drivers\abcxthob.sys','32');
DeleteFile('C:\Windows\system32\drivers\abtwrser.sys','32');
DeleteFile('C:\Windows\system32\drivers\acofqbmz.sys','32');
DeleteFile('C:\Windows\system32\drivers\acvulkad.sys','32');
DeleteFile('C:\Windows\system32\drivers\adnlybmh.sys','32');
DeleteFile('C:\Windows\system32\drivers\adyucdkt.sys','32');
DeleteFile('C:\Windows\system32\drivers\aeasvciw.sys','32');
DeleteFile('C:\Windows\system32\drivers\aegsfxrc.sys','32');
DeleteFile('C:\Windows\system32\drivers\aevfesyv.sys','32');
DeleteFile('C:\Windows\system32\drivers\afriaavj.sys','32');
DeleteFile('C:\Windows\system32\drivers\agakbflr.sys','32');
DeleteFile('C:\Windows\system32\drivers\ahbqcski.sys','32');
DeleteFile('C:\Windows\system32\drivers\ajpxfdxa.sys','32');
DeleteFile('C:\Windows\system32\drivers\ajkypbfi.sys','32');
DeleteFile('C:\Windows\system32\drivers\ajkfpouk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ajgmmocm.sys','32');
DeleteFile('C:\Windows\system32\drivers\ajclnzjk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ajbsommf.sys','32');
DeleteFile('C:\Windows\system32\drivers\aisdfyaj.sys','32');
DeleteFile('C:\Windows\system32\drivers\ahynmjtw.sys','32');
DeleteFile('C:\Windows\system32\drivers\ahiejdvf.sys','32');
DeleteFile('C:\Windows\system32\drivers\aheqzsun.sys','32');
DeleteFile('C:\Windows\system32\drivers\amewkokx.sys','32');
DeleteFile('C:\Windows\system32\drivers\anfbpwbo.sys','32');
DeleteFile('C:\Windows\system32\drivers\andtnazc.sys','32');
DeleteFile('C:\Windows\system32\drivers\anbokmlp.sys','32');
DeleteFile('C:\Windows\system32\drivers\amwmllft.sys','32');
DeleteFile('C:\Windows\system32\drivers\amqxfrla.sys','32');
DeleteFile('C:\Windows\system32\drivers\ammzfkpe.sys','32');
DeleteFile('C:\Windows\system32\drivers\amjhrztz.sys','32');
DeleteFile('C:\Windows\system32\drivers\amiulphl.sys','32');
DeleteFile('C:\Windows\system32\drivers\aproizch.sys','32');
DeleteFile('C:\Windows\system32\drivers\apmamfqd.sys','32');
DeleteFile('C:\Windows\system32\drivers\aplesvma.sys','32');
DeleteFile('C:\Windows\system32\drivers\apikiixh.sys','32');
DeleteFile('C:\Windows\system32\drivers\apfyoeye.sys','32');
DeleteFile('C:\Windows\system32\drivers\apesnbpm.sys','32');
DeleteFile('C:\Windows\system32\drivers\aojwqjea.sys','32');
DeleteFile('C:\Windows\system32\drivers\aoeycxox.sys','32');
DeleteFile('C:\Windows\system32\drivers\aqzkwzme.sys','32');
DeleteFile('C:\Windows\system32\drivers\aqqmgywo.sys','32');
DeleteFile('C:\Windows\system32\drivers\aqmbforr.sys','32');
DeleteFile('C:\Windows\system32\drivers\aqklalgj.sys','32');
DeleteFile('C:\Windows\system32\drivers\aqjxmvvo.sys','32');
DeleteFile('C:\Windows\system32\drivers\asugwzfj.sys','32');
DeleteFile('C:\Windows\system32\drivers\aslqrliq.sys','32');
DeleteFile('C:\Windows\system32\drivers\arwodtls.sys','32');
DeleteFile('C:\Windows\system32\drivers\arfzhcfb.sys','32');
DeleteFile('C:\Windows\system32\drivers\aremsynm.sys','32');
DeleteFile('C:\Windows\system32\drivers\arapjjdt.sys','32');
DeleteFile('C:\Windows\system32\drivers\awzjruta.sys','32');
DeleteFile('C:\Windows\system32\drivers\awrutwyb.sys','32');
DeleteFile('C:\Windows\system32\drivers\awpjbgqr.sys','32');
DeleteFile('C:\Windows\system32\drivers\awnnsehu.sys','32');
DeleteFile('C:\Windows\system32\drivers\awkenhsh.sys','32');
DeleteFile('C:\Windows\system32\drivers\avgswalx.sys','32');
DeleteFile('C:\Windows\system32\drivers\avgrvnph.sys','32');
DeleteFile('C:\Windows\system32\drivers\avggdsgn.sys','32');
DeleteFile('C:\Windows\system32\drivers\auyzempv.sys','32');
DeleteFile('C:\Windows\system32\drivers\auryrksb.sys','32');
DeleteFile('C:\Windows\system32\drivers\aulocwuv.sys','32');
DeleteFile('C:\Windows\system32\drivers\augfhdms.sys','32');
DeleteFile('C:\Windows\system32\drivers\atmpujow.sys','32');
DeleteFile('C:\Users\8C74~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE','32');
DeleteFile('C:\Windows\Tasks\Digital Sites.job','64');
DeleteFile('C:\Windows\Tasks\SpeedUpMyPC Maintenance.job','64');
DeleteFile('C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe','32');
DeleteFile('C:\Windows\Tasks\SpeedUpMyPC Startup.job','64');
DeleteFile('C:\Windows\system32\Tasks\Digital Sites','64');
DeleteFile('C:\Windows\system32\Tasks\SpeedUpMyPC Maintenance','64');
DeleteFile('C:\Windows\system32\Tasks\SpeedUpMyPC Startup','64');
DeleteFile('C:\PROGRA~2\MOVIES~1\Datamngr\x64\mgrldr.dll','32');
DeleteFile('C:\PROGRA~3\Wincert\WIN64C~1.DLL','32');
DeleteFile('C:\Windows\system32\drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}Gw64.sys','32');
DeleteFile('rdvnyvam.sys','32');
DeleteFile('C:\Windows\system32\drivers\aygmlzls.sys','32');
DeleteFile('C:\Windows\system32\drivers\ayfapovz.sys','32');
DeleteFile('C:\Windows\system32\drivers\aybsitrm.sys','32');
DeleteFile('C:\Windows\system32\drivers\axrdlcwq.sys','32');
DeleteFile('C:\Windows\system32\drivers\axnorjws.sys','32');
DeleteFile('C:\Windows\system32\drivers\axlvirkn.sys','32');
DeleteFile('axincqjh.sys','32');
DeleteFile('C:\Windows\system32\drivers\axhnmmmk.sys','32');
DeleteFile('C:\Windows\system32\drivers\axftibwb.sys','32');
DeleteFile('C:\Windows\system32\drivers\axcjshkv.sys','32');
DeleteFile('C:\Windows\system32\drivers\axbibhub.sys','32');
DeleteFile('C:\Windows\system32\drivers\azpkakxg.sys','32');
DeleteFile('C:\Windows\system32\drivers\azitekis.sys','32');
DeleteFile('C:\Windows\system32\drivers\azelmhlo.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Пришлите карантин согласно [B]Приложения 2[/B] правил по красной ссылке [COLOR="Red"][U][B]Прислать запрошенный карантин[/B][/U][/COLOR] вверху темы
Сделайте новые логи
Сделайте лог [url="http://virusinfo.info/showthread.php?t=53070&p=1104657&viewfull=1#post1104657"]полного сканирования МВАМ[/url]
Карантина не оказалось или я что-то не так сделал, но в папке ничего нет.
Поместите в карантин МВАМ всё найденное
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('lggceejb');
DeleteService('lftysxdl');
DeleteService('lfnnvcea');
DeleteService('lfltlxyp');
DeleteService('lfjygrhv');
DeleteService('leslrwpd');
DeleteService('lebyvpzf');
DeleteService('ldjrcrwk');
DeleteService('ldeykzzd');
DeleteService('ldcvctyk');
DeleteService('lciiwqnf');
DeleteService('laabmvnl');
DeleteService('casxgzxk');
DeleteService('caohpfsp');
DeleteService('caeokpzp');
DeleteService('caduubrh');
DeleteService('caazgmlm');
DeleteService('bzolwjoa');
DeleteService('bzekorpv');
DeleteService('byfnmbbg');
DeleteService('bxxnfnya');
DeleteService('bxncdrsp');
DeleteService('bxjxysvr');
DeleteService('bwwywkaj');
DeleteService('bwottuwr');
DeleteService('bwgqsser');
DeleteService('bwdkxdrc');
DeleteService('bwbithec');
DeleteService('bvlgtsae');
DeleteService('bvgyfypv');
DeleteService('buseewbe');
DeleteService('bueirbhr');
DeleteService('bubiwlis');
DeleteService('btyfpysr');
DeleteService('btwjrtro');
DeleteService('btusklde');
DeleteService('bttpkrrx');
DeleteService('btqnfusb');
DeleteService('btofitpd');
DeleteService('btlzxobv');
DeleteService('btimjvos');
DeleteService('btcdxrdn');
DeleteService('bsrbaqar');
DeleteService('bshumbqs');
DeleteService('bsbsiugp');
DeleteService('brrhpidp');
DeleteService('brkusimt');
DeleteService('brdjfepk');
DeleteService('bqzbmutu');
DeleteService('bqymbtna');
DeleteService('bqwhmtlu');
DeleteService('bqspnqnk');
DeleteService('bprppued');
DeleteService('bppekbur');
DeleteService('bovpehye');
DeleteService('borchcfk');
DeleteService('bnxqshkf');
DeleteService('bnnnfdco');
DeleteService('bnavidqu');
DeleteService('bnabzxrd');
DeleteService('bmrtcalv');
DeleteService('bmfotlxd');
DeleteService('blupnsic');
DeleteService('blsuahwm');
DeleteService('blmmnnqc');
DeleteService('blcsitua');
DeleteService('blbpdhnh');
DeleteService('bktftiir');
DeleteService('bksznmed');
DeleteService('bkjvitnb');
DeleteService('bipzlmrq');
DeleteService('bievdgdz');
DeleteService('bholvwrc');
DeleteService('bhfchvwm');
DeleteService('bgwtnwva');
DeleteService('bgvuhruy');
DeleteService('bgvcwrax');
DeleteService('bgngzuoh');
DeleteService('bgkbueco');
DeleteService('bggvolss');
DeleteService('bgcrslhx');
DeleteService('bgbrvutl');
DeleteService('bfuxqoia');
DeleteService('bfparbpa');
DeleteService('bfbvmaau');
DeleteService('bergifrm');
DeleteService('beavdkxz');
DeleteService('bdsrpsyq');
DeleteService('bdpoaymi');
DeleteService('bddgizvx');
DeleteService('bcofneef');
DeleteService('bcklfkfk');
DeleteService('bbtdhbfq');
DeleteService('bbquwffl');
DeleteService('bbappydt');
DeleteService('basqkqgy');
DeleteService('baeufbqa');
DeleteService('aqiskbsd');
DeleteService('aqcbpviy');
DeleteService('alvxmkqt');
DeleteService('aliyeuhp');
DeleteService('akqlvgop');
DeleteService('akjesbmi');
DeleteService('akaghvlq');
DeleteFile('C:\Windows\system32\drivers\aqiskbsd.sys','32');
DeleteFile('C:\Windows\system32\drivers\aqcbpviy.sys','32');
DeleteFile('C:\Windows\system32\drivers\alvxmkqt.sys','32');
DeleteFile('C:\Windows\system32\drivers\aliyeuhp.sys','32');
DeleteFile('C:\Windows\system32\drivers\akqlvgop.sys','32');
DeleteFile('C:\Windows\system32\drivers\akjesbmi.sys','32');
DeleteFile('C:\Windows\system32\drivers\akaghvlq.sys','32');
DeleteFile('C:\Windows\system32\drivers\bcofneef.sys','32');
DeleteFile('C:\Windows\system32\drivers\bcklfkfk.sys','32');
DeleteFile('C:\Windows\system32\drivers\bbtdhbfq.sys','32');
DeleteFile('C:\Windows\system32\drivers\bbquwffl.sys','32');
DeleteFile('C:\Windows\system32\drivers\bbappydt.sys','32');
DeleteFile('C:\Windows\system32\drivers\basqkqgy.sys','32');
DeleteFile('C:\Windows\system32\drivers\baeufbqa.sys','32');
DeleteFile('C:\Windows\system32\drivers\bfuxqoia.sys','32');
DeleteFile('C:\Windows\system32\drivers\bfparbpa.sys','32');
DeleteFile('C:\Windows\system32\drivers\bfbvmaau.sys','32');
DeleteFile('C:\Windows\system32\drivers\bergifrm.sys','32');
DeleteFile('C:\Windows\system32\drivers\beavdkxz.sys','32');
DeleteFile('C:\Windows\system32\drivers\bdsrpsyq.sys','32');
DeleteFile('C:\Windows\system32\drivers\bdpoaymi.sys','32');
DeleteFile('C:\Windows\system32\drivers\bddgizvx.sys','32');
DeleteFile('C:\Windows\system32\drivers\bipzlmrq.sys','32');
DeleteFile('C:\Windows\system32\drivers\bievdgdz.sys','32');
DeleteFile('C:\Windows\system32\drivers\bholvwrc.sys','32');
DeleteFile('C:\Windows\system32\drivers\bhfchvwm.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgwtnwva.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgvuhruy.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgvcwrax.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgngzuoh.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgkbueco.sys','32');
DeleteFile('C:\Windows\system32\drivers\bggvolss.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgcrslhx.sys','32');
DeleteFile('C:\Windows\system32\drivers\bgbrvutl.sys','32');
DeleteFile('C:\Windows\system32\drivers\bnxqshkf.sys','32');
DeleteFile('C:\Windows\system32\drivers\bnnnfdco.sys','32');
DeleteFile('C:\Windows\system32\drivers\bnavidqu.sys','32');
DeleteFile('C:\Windows\system32\drivers\bnabzxrd.sys','32');
DeleteFile('C:\Windows\system32\drivers\bmrtcalv.sys','32');
DeleteFile('C:\Windows\system32\drivers\bmfotlxd.sys','32');
DeleteFile('C:\Windows\system32\drivers\blupnsic.sys','32');
DeleteFile('C:\Windows\system32\drivers\blsuahwm.sys','32');
DeleteFile('C:\Windows\system32\drivers\blmmnnqc.sys','32');
DeleteFile('C:\Windows\system32\drivers\blcsitua.sys','32');
DeleteFile('C:\Windows\system32\drivers\blbpdhnh.sys','32');
DeleteFile('C:\Windows\system32\drivers\bktftiir.sys','32');
DeleteFile('C:\Windows\system32\drivers\bksznmed.sys','32');
DeleteFile('C:\Windows\system32\drivers\bkjvitnb.sys','32');
DeleteFile('C:\Windows\system32\drivers\bkbnhyof.sys','32');
DeleteFile('C:\Windows\system32\drivers\bsrbaqar.sys','32');
DeleteFile('C:\Windows\system32\drivers\bshumbqs.sys','32');
DeleteFile('C:\Windows\system32\drivers\bsbsiugp.sys','32');
DeleteFile('C:\Windows\system32\drivers\brrhpidp.sys','32');
DeleteFile('C:\Windows\system32\drivers\brkusimt.sys','32');
DeleteFile('C:\Windows\system32\drivers\brdjfepk.sys','32');
DeleteFile('C:\Windows\system32\drivers\bqzbmutu.sys','32');
DeleteFile('C:\Windows\system32\drivers\bqymbtna.sys','32');
DeleteFile('C:\Windows\system32\drivers\bqwhmtlu.sys','32');
DeleteFile('C:\Windows\system32\drivers\bqspnqnk.sys','32');
DeleteFile('C:\Windows\system32\drivers\bprppued.sys','32');
DeleteFile('C:\Windows\system32\drivers\bppekbur.sys','32');
DeleteFile('C:\Windows\system32\drivers\bovpehye.sys','32');
DeleteFile('C:\Windows\system32\drivers\borchcfk.sys','32');
DeleteFile('C:\Windows\system32\drivers\btyfpysr.sys','32');
DeleteFile('C:\Windows\system32\drivers\btwjrtro.sys','32');
DeleteFile('C:\Windows\system32\drivers\btusklde.sys','32');
DeleteFile('C:\Windows\system32\drivers\bttpkrrx.sys','32');
DeleteFile('C:\Windows\system32\drivers\btqnfusb.sys','32');
DeleteFile('C:\Windows\system32\drivers\btofitpd.sys','32');
DeleteFile('C:\Windows\system32\drivers\btlzxobv.sys','32');
DeleteFile('C:\Windows\system32\drivers\btimjvos.sys','32');
DeleteFile('C:\Windows\system32\drivers\btcdxrdn.sys','32');
DeleteFile('C:\Windows\system32\drivers\bwwywkaj.sys','32');
DeleteFile('C:\Windows\system32\drivers\bwottuwr.sys','32');
DeleteFile('C:\Windows\system32\drivers\bwgqsser.sys','32');
DeleteFile('C:\Windows\system32\drivers\bwdkxdrc.sys','32');
DeleteFile('C:\Windows\system32\drivers\bwbithec.sys','32');
DeleteFile('C:\Windows\system32\drivers\bvlgtsae.sys','32');
DeleteFile('C:\Windows\system32\drivers\bvgyfypv.sys','32');
DeleteFile('C:\Windows\system32\drivers\buseewbe.sys','32');
DeleteFile('C:\Windows\system32\drivers\bueirbhr.sys','32');
DeleteFile('C:\Windows\system32\drivers\bubiwlis.sys','32');
DeleteFile('C:\Windows\system32\drivers\bzolwjoa.sys','32');
DeleteFile('C:\Windows\system32\drivers\bzekorpv.sys','32');
DeleteFile('C:\Windows\system32\drivers\byfnmbbg.sys','32');
DeleteFile('C:\Windows\system32\drivers\bxxnfnya.sys','32');
DeleteFile('C:\Windows\system32\drivers\bxncdrsp.sys','32');
DeleteFile('C:\Windows\system32\drivers\bxjxysvr.sys','32');
DeleteFile('C:\Windows\system32\drivers\casxgzxk.sys','32');
DeleteFile('C:\Windows\system32\drivers\caohpfsp.sys','32');
DeleteFile('C:\Windows\system32\drivers\caeokpzp.sys','32');
DeleteFile('C:\Windows\system32\drivers\caduubrh.sys','32');
DeleteFile('C:\Windows\system32\drivers\caazgmlm.sys','32');
DeleteFile('C:\Windows\system32\drivers\leslrwpd.sys','32');
DeleteFile('C:\Windows\system32\drivers\lebyvpzf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ldjrcrwk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ldeykzzd.sys','32');
DeleteFile('C:\Windows\system32\drivers\ldcvctyk.sys','32');
DeleteFile('C:\Windows\system32\drivers\lciiwqnf.sys','32');
DeleteFile('C:\Windows\system32\drivers\laabmvnl.sys','32');
DeleteFile('C:\Windows\system32\drivers\lggceejb.sys','32');
DeleteFile('C:\Windows\system32\drivers\lftysxdl.sys','32');
DeleteFile('C:\Windows\system32\drivers\lfnnvcea.sys','32');
DeleteFile('C:\Windows\system32\drivers\lfltlxyp.sys','32');
DeleteFile('C:\Windows\system32\drivers\lfjygrhv.sys','32');
DeleteFile('C:\Windows\system32\drivers\lfetcygc.sys','32');
DeleteFile('C:\Windows\system32\drivers\lfdyliit.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новый лог AVZ
В MBAM добавил в карантин все что он нашел. Новый лог АВЗ.
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('ksyankvi');
DeleteService('ksxabjyh');
DeleteService('ksuanfbc');
DeleteService('ksfumobq');
DeleteService('ksepuyhs');
DeleteService('ksctyswc');
DeleteService('ktxumdnj');
DeleteService('kuwabdfm');
DeleteService('kujohacc');
DeleteService('kuenbjpo');
DeleteService('kucoiepr');
DeleteService('kyrujwch');
DeleteService('kymejcag');
DeleteService('kykuwmcc');
DeleteService('kyietcdw');
DeleteService('kwgrekdx');
DeleteService('kwehbspa');
DeleteService('kvtjqnky');
DeleteService('kvsnoawf');
DeleteService('kvfykubb');
DeleteService('kvdltlhy');
DeleteService('kzciprau');
DeleteService('kzgmbhjl');
DeleteService('kzkypevw');
DeleteService('kzlchqqi');
DeleteService('lhjzlhpz');
DeleteService('lhltatbk');
DeleteService('lhtrteml');
DeleteService('liegfndt');
DeleteService('lismjgkf');
DeleteService('ljgdlcpp');
DeleteService('ljgdxdsh');
DeleteService('lklxzfkp');
DeleteService('lknbprvz');
DeleteService('lkthfipp');
DeleteService('llifkxsy');
DeleteService('{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64');
DeleteService('daxgqpth');
DeleteService('daxbtchg');
DeleteService('danxtbjv');
DeleteService('danisytt');
DeleteService('dajosbfr');
DeleteService('dafkoddn');
DeleteService('dadhapkl');
DeleteService('czplwhlv');
DeleteService('cynsmypt');
DeleteService('cymflwwh');
DeleteService('cygnxqak');
DeleteService('cxzzdmcz');
DeleteService('cxarjktj');
DeleteService('cwzronln');
DeleteService('cwnznbyv');
DeleteService('cwffmgpp');
DeleteService('cvndlusi');
DeleteService('cvbjilnb');
DeleteService('cuulmapt');
DeleteService('cursyhzz');
DeleteService('cujjzbsw');
DeleteService('cuchdefo');
DeleteService('cuatcfss');
DeleteService('ctsommeh');
DeleteService('ctessicw');
DeleteService('csphgqmq');
DeleteService('cniemueq');
DeleteService('cryrbklu');
DeleteService('crhngydo');
DeleteService('crcvsesv');
DeleteService('cravikmb');
DeleteService('cqhkqmis');
DeleteService('cqafpjfu');
DeleteService('cpqbanxy');
DeleteService('cppanbud');
DeleteService('cpnijtgu');
DeleteService('cpaaqeji');
DeleteService('coghsbcg');
DeleteService('cocorfma');
DeleteService('cobabroz');
DeleteService('cnoysgdz');
DeleteService('cmqdghul');
DeleteService('cmgbiqqf');
DeleteService('cmcjqphd');
DeleteService('cmcjajdc');
DeleteService('clsquwvz');
DeleteService('clqlcsrg');
DeleteService('clbmxzbv');
DeleteService('clatoczp');
DeleteService('cktfnofp');
DeleteService('ckrxyljv');
DeleteService('ckfoufcl');
DeleteService('cjypknfs');
DeleteService('cjoxacvf');
DeleteService('cjigfply');
DeleteService('citxaooh');
DeleteService('cisskyyo');
DeleteService('ciigwkhv');
DeleteService('ciaoohem');
DeleteService('chmbipjn');
DeleteService('chlhcloc');
DeleteService('chklfagh');
DeleteService('cgunlvvx');
DeleteService('cgscffuv');
DeleteService('cgolmink');
DeleteService('cglwkhln');
DeleteService('cghhmhhp');
DeleteService('cgexgrbi');
DeleteService('cgckkzoj');
DeleteService('cgbxvrve');
DeleteService('cfwufuqq');
DeleteService('cfadyqzf');
DeleteService('cednnsdn');
DeleteService('cdrdvqst');
DeleteService('cdpzqljd');
DeleteService('cdogqexe');
DeleteService('cdoeobsg');
DeleteService('cdnrbxja');
DeleteService('cdevapyr');
DeleteService('cchxxayi');
DeleteService('ccbeastg');
DeleteService('cbhkqqhq');
DeleteFile('C:\Windows\system32\drivers\cfwufuqq.sys','32');
DeleteFile('C:\Windows\system32\drivers\cfadyqzf.sys','32');
DeleteFile('C:\Windows\system32\drivers\cednnsdn.sys','32');
DeleteFile('C:\Windows\system32\drivers\cdrdvqst.sys','32');
DeleteFile('C:\Windows\system32\drivers\cdpzqljd.sys','32');
DeleteFile('C:\Windows\system32\drivers\cdogqexe.sys','32');
DeleteFile('C:\Windows\system32\drivers\cdoeobsg.sys','32');
DeleteFile('C:\Windows\system32\drivers\cdnrbxja.sys','32');
DeleteFile('C:\Windows\system32\drivers\cdevapyr.sys','32');
DeleteFile('C:\Windows\system32\drivers\cchxxayi.sys','32');
DeleteFile('C:\Windows\system32\drivers\ccbeastg.sys','32');
DeleteFile('C:\Windows\system32\drivers\cbhkqqhq.sys','32');
DeleteFile('C:\Windows\system32\drivers\cgunlvvx.sys','32');
DeleteFile('C:\Windows\system32\drivers\cgscffuv.sys','32');
DeleteFile('C:\Windows\system32\drivers\cgolmink.sys','32');
DeleteFile('C:\Windows\system32\drivers\cglwkhln.sys','32');
DeleteFile('C:\Windows\system32\drivers\cghhmhhp.sys','32');
DeleteFile('C:\Windows\system32\drivers\cgexgrbi.sys','32');
DeleteFile('C:\Windows\system32\drivers\cgckkzoj.sys','32');
DeleteFile('C:\Windows\system32\drivers\cgbxvrve.sys','32');
DeleteFile('C:\Windows\system32\drivers\cisskyyo.sys','32');
DeleteFile('C:\Windows\system32\drivers\ciigwkhv.sys','32');
DeleteFile('C:\Windows\system32\drivers\ciaoohem.sys','32');
DeleteFile('C:\Windows\system32\drivers\chmbipjn.sys','32');
DeleteFile('C:\Windows\system32\drivers\chlhcloc.sys','32');
DeleteFile('C:\Windows\system32\drivers\chklfagh.sys','32');
DeleteFile('C:\Windows\system32\drivers\cmqdghul.sys','32');
DeleteFile('C:\Windows\system32\drivers\cmgbiqqf.sys','32');
DeleteFile('C:\Windows\system32\drivers\cmcjqphd.sys','32');
DeleteFile('C:\Windows\system32\drivers\cmcjajdc.sys','32');
DeleteFile('C:\Windows\system32\drivers\clsquwvz.sys','32');
DeleteFile('C:\Windows\system32\drivers\clqlcsrg.sys','32');
DeleteFile('C:\Windows\system32\drivers\clbmxzbv.sys','32');
DeleteFile('C:\Windows\system32\drivers\clatoczp.sys','32');
DeleteFile('C:\Windows\system32\drivers\cktfnofp.sys','32');
DeleteFile('C:\Windows\system32\drivers\ckrxyljv.sys','32');
DeleteFile('C:\Windows\system32\drivers\ckfoufcl.sys','32');
DeleteFile('C:\Windows\system32\drivers\cjypknfs.sys','32');
DeleteFile('C:\Windows\system32\drivers\cjoxacvf.sys','32');
DeleteFile('C:\Windows\system32\drivers\cjigfply.sys','32');
DeleteFile('C:\Windows\system32\drivers\citxaooh.sys','32');
DeleteFile('C:\Windows\system32\drivers\cryrbklu.sys','32');
DeleteFile('C:\Windows\system32\drivers\crhngydo.sys','32');
DeleteFile('C:\Windows\system32\drivers\crcvsesv.sys','32');
DeleteFile('C:\Windows\system32\drivers\cravikmb.sys','32');
DeleteFile('C:\Windows\system32\drivers\cqhkqmis.sys','32');
DeleteFile('C:\Windows\system32\drivers\cqafpjfu.sys','32');
DeleteFile('C:\Windows\system32\drivers\cpqbanxy.sys','32');
DeleteFile('C:\Windows\system32\drivers\cppanbud.sys','32');
DeleteFile('C:\Windows\system32\drivers\cpnijtgu.sys','32');
DeleteFile('C:\Windows\system32\drivers\cpaaqeji.sys','32');
DeleteFile('C:\Windows\system32\drivers\coghsbcg.sys','32');
DeleteFile('C:\Windows\system32\drivers\cocorfma.sys','32');
DeleteFile('C:\Windows\system32\drivers\cobabroz.sys','32');
DeleteFile('C:\Windows\system32\drivers\cnoysgdz.sys','32');
DeleteFile('C:\Windows\system32\drivers\cniemueq.sys','32');
DeleteFile('C:\Windows\system32\drivers\cxzzdmcz.sys','32');
DeleteFile('C:\Windows\system32\drivers\cxarjktj.sys','32');
DeleteFile('C:\Windows\system32\drivers\cwzronln.sys','32');
DeleteFile('C:\Windows\system32\drivers\cwnznbyv.sys','32');
DeleteFile('C:\Windows\system32\drivers\cwffmgpp.sys','32');
DeleteFile('C:\Windows\system32\drivers\cvndlusi.sys','32');
DeleteFile('C:\Windows\system32\drivers\cvbjilnb.sys','32');
DeleteFile('C:\Windows\system32\drivers\cuulmapt.sys','32');
DeleteFile('C:\Windows\system32\drivers\cursyhzz.sys','32');
DeleteFile('C:\Windows\system32\drivers\cujjzbsw.sys','32');
DeleteFile('C:\Windows\system32\drivers\cuchdefo.sys','32');
DeleteFile('C:\Windows\system32\drivers\cuatcfss.sys','32');
DeleteFile('C:\Windows\system32\drivers\ctsommeh.sys','32');
DeleteFile('C:\Windows\system32\drivers\ctessicw.sys','32');
DeleteFile('C:\Windows\system32\drivers\csphgqmq.sys','32');
DeleteFile('C:\Windows\system32\drivers\czplwhlv.sys','32');
DeleteFile('C:\Windows\system32\drivers\cynsmypt.sys','32');
DeleteFile('C:\Windows\system32\drivers\cymflwwh.sys','32');
DeleteFile('C:\Windows\system32\drivers\cygnxqak.sys','32');
DeleteFile('C:\Windows\system32\drivers\daxgqpth.sys','32');
DeleteFile('C:\Windows\system32\drivers\daxbtchg.sys','32');
DeleteFile('C:\Windows\system32\drivers\danxtbjv.sys','32');
DeleteFile('C:\Windows\system32\drivers\danisytt.sys','32');
DeleteFile('C:\Windows\system32\drivers\dajosbfr.sys','32');
DeleteFile('C:\Windows\system32\drivers\dafkoddn.sys','32');
DeleteFile('C:\Windows\system32\drivers\dadhapkl.sys','32');
DeleteFile('C:\Windows\system32\drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64.sys','32');
DeleteFile('C:\Windows\system32\drivers\lhjzlhpz.sys','32');
DeleteFile('C:\Windows\system32\drivers\lhltatbk.sys','32');
DeleteFile('C:\Windows\system32\drivers\lhtrteml.sys','32');
DeleteFile('C:\Windows\system32\drivers\liegfndt.sys','32');
DeleteFile('C:\Windows\system32\drivers\lismjgkf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ljgdlcpp.sys','32');
DeleteFile('C:\Windows\system32\drivers\ljgdxdsh.sys','32');
DeleteFile('C:\Windows\system32\drivers\lklxzfkp.sys','32');
DeleteFile('C:\Windows\system32\drivers\lknbprvz.sys','32');
DeleteFile('C:\Windows\system32\drivers\lkthfipp.sys','32');
DeleteFile('C:\Windows\system32\drivers\llifkxsy.sys','32');
DeleteFile('C:\Windows\system32\drivers\kzciprau.sys','32');
DeleteFile('C:\Windows\system32\drivers\kzgmbhjl.sys','32');
DeleteFile('C:\Windows\system32\drivers\kzkypevw.sys','32');
DeleteFile('C:\Windows\system32\drivers\kzlchqqi.sys','32');
DeleteFile('C:\Windows\system32\drivers\kyrujwch.sys','32');
DeleteFile('C:\Windows\system32\drivers\kymejcag.sys','32');
DeleteFile('C:\Windows\system32\drivers\kykuwmcc.sys','32');
DeleteFile('C:\Windows\system32\drivers\kyietcdw.sys','32');
DeleteFile('C:\Windows\system32\drivers\kwgrekdx.sys','32');
DeleteFile('C:\Windows\system32\drivers\kwehbspa.sys','32');
DeleteFile('C:\Windows\system32\drivers\kvtjqnky.sys','32');
DeleteFile('C:\Windows\system32\drivers\kvsnoawf.sys','32');
DeleteFile('C:\Windows\system32\drivers\kvfykubb.sys','32');
DeleteFile('C:\Windows\system32\drivers\kvdltlhy.sys','32');
DeleteFile('C:\Windows\system32\drivers\kuwabdfm.sys','32');
DeleteFile('C:\Windows\system32\drivers\kujohacc.sys','32');
DeleteFile('C:\Windows\system32\drivers\kuenbjpo.sys','32');
DeleteFile('C:\Windows\system32\drivers\kucoiepr.sys','32');
DeleteFile('C:\Windows\system32\drivers\ktxumdnj.sys','32');
DeleteFile('C:\Windows\system32\drivers\ksyankvi.sys','32');
DeleteFile('C:\Windows\system32\drivers\ksxabjyh.sys','32');
DeleteFile('C:\Windows\system32\drivers\ksuanfbc.sys','32');
DeleteFile('C:\Windows\system32\drivers\ksfumobq.sys','32');
DeleteFile('C:\Windows\system32\drivers\ksepuyhs.sys','32');
DeleteFile('C:\Windows\system32\drivers\ksctyswc.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новый лог AVZ
новый лог.
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('jybpommg');
DeleteService('jyxzztkt');
DeleteService('jzfcvntx');
DeleteService('jzgxpfll');
DeleteService('jztltqna');
DeleteService('jzujqmts');
DeleteService('kaqdxpke');
DeleteService('kbecpaaf');
DeleteService('kbghftgn');
DeleteService('kbmoemib');
DeleteService('kcolgqju');
DeleteService('kcoyepzb');
DeleteService('kcpkhslh');
DeleteService('kdevamay');
DeleteService('keacwyiz');
DeleteService('kfbchudq');
DeleteService('kfhxqbqx');
DeleteService('kfnbcjfb');
DeleteService('kfouddmn');
DeleteService('kfxdfmub');
DeleteService('kgctsmkr');
DeleteService('kgktqlla');
DeleteService('kgtejfrq');
DeleteService('kgtyaguv');
DeleteService('kguogsct');
DeleteService('kgwudxcy');
DeleteService('kgxmvldi');
DeleteService('kgxmxmqa');
DeleteService('khapuygq');
DeleteService('khbxqlue');
DeleteService('khmmakhr');
DeleteService('khonbsez');
DeleteService('khufhdcw');
DeleteService('kihwhaco');
DeleteService('kikknjnm');
DeleteService('kiuhiomb');
DeleteService('kixqxztn');
DeleteService('kjbhrebn');
DeleteService('kjjetznq');
DeleteService('kjpkaxpf');
DeleteService('kkcfbzdi');
DeleteService('kkgvmugv');
DeleteService('kkuupyvy');
DeleteService('kkzbbefn');
DeleteService('klncwvwv');
DeleteService('kmaciexj');
DeleteService('kmfkvslk');
DeleteService('kmlqitxz');
DeleteService('kmoobbyg');
DeleteService('kmqrknyv');
DeleteService('kmrbkbcm');
DeleteService('kmsqlsog');
DeleteService('knqdmjhd');
DeleteService('knrhzbok');
DeleteService('knvgjbcd');
DeleteService('kovsarkt');
DeleteService('kpxqimjy');
DeleteService('kqalcyjb');
DeleteService('kqmdtccd');
DeleteService('kqxddvgt');
DeleteService('krhjqgwd');
DeleteService('krpjeqzt');
DeleteService('eiufscsz');
DeleteService('eikttjte');
DeleteService('eievcmho');
DeleteService('ehyfndjf');
DeleteService('ehwqvfih');
DeleteService('egwooxjz');
DeleteService('egoeemgg');
DeleteService('efycyexd');
DeleteService('efvclgev');
DeleteService('efmkzafw');
DeleteService('efgndrzs');
DeleteService('eehuundv');
DeleteService('eehiaxas');
DeleteService('eeeriwcd');
DeleteService('eddpgrqo');
DeleteService('ecfrbqsc');
DeleteService('ecdugytx');
DeleteService('ebxenldv');
DeleteService('ebvgnlwf');
DeleteService('ebpwgeuf');
DeleteService('eavqtemp');
DeleteService('eaarwzuk');
DeleteService('dzzswlxg');
DeleteService('dzfqkbha');
DeleteService('dzapnisl');
DeleteService('dyyqqiex');
DeleteService('dyrgliqp');
DeleteService('dyrempmn');
DeleteService('dxqxapxr');
DeleteService('dxhqqsae');
DeleteService('dwxgjdie');
DeleteService('dwwaajuv');
DeleteService('dwlvxouk');
DeleteService('dvvuobsc');
DeleteService('dvulbjyd');
DeleteService('dvnumiao');
DeleteService('dvejdoqg');
DeleteService('dvcgbsfh');
DeleteService('dvauyusy');
DeleteService('dutjbpeb');
DeleteService('durkajdq');
DeleteService('dtbizkei');
DeleteService('dsxecqij');
DeleteService('dskmliia');
DeleteService('dsjrppbk');
DeleteService('drxnubbe');
DeleteService('drhikcrw');
DeleteService('drhhmzzh');
DeleteService('drfhlnri');
DeleteService('dqscqvxg');
DeleteService('dqrgdyry');
DeleteService('dqfchnfj');
DeleteService('dqbopfgr');
DeleteService('dpqqfmuh');
DeleteService('dppwiehx');
DeleteService('dppiupgo');
DeleteService('dpehhfcy');
DeleteService('dowjyqqa');
DeleteService('dosdgisv');
DeleteService('dogqnqtn');
DeleteService('dofbluzq');
DeleteService('dobcztwc');
DeleteService('dnofjeau');
DeleteService('dnnvdkmq');
DeleteService('dnfcoqjt');
DeleteService('dnddxewj');
DeleteService('dloeyasm');
DeleteService('dllyaqrd');
DeleteService('dlipppyq');
DeleteService('dlddrqpk');
DeleteService('dlatdvmm');
DeleteService('dknlfehu');
DeleteService('djsbsgok');
DeleteService('diqzudue');
DeleteService('didqeuti');
DeleteService('dhvwhcbw');
DeleteService('dhsdujxb');
DeleteService('dhdqeyxt');
DeleteService('dhakvunr');
DeleteService('dguroakc');
DeleteService('dgdcxrll');
DeleteService('dfxyjyed');
DeleteService('dfqamefr');
DeleteService('devqwtug');
DeleteService('dehthuct');
DeleteService('degodntv');
DeleteService('dedrzhhd');
DeleteService('ddrqtdrp');
DeleteService('ddqnfbrp');
DeleteService('ddnanyfz');
DeleteService('ddkvbghp');
DeleteService('dcywknhr');
DeleteService('dcyozott');
DeleteService('dcldnofd');
DeleteService('dcjlekqq');
DeleteService('dcaeeqch');
DeleteService('dbcugidf');
DeleteService('dbbhakko');
DeleteFile('C:\Windows\system32\drivers\dgdcxrll.sys','32');
DeleteFile('C:\Windows\system32\drivers\dfxyjyed.sys','32');
DeleteFile('C:\Windows\system32\drivers\dfqamefr.sys','32');
DeleteFile('C:\Windows\system32\drivers\devqwtug.sys','32');
DeleteFile('C:\Windows\system32\drivers\dehthuct.sys','32');
DeleteFile('C:\Windows\system32\drivers\degodntv.sys','32');
DeleteFile('C:\Windows\system32\drivers\dedrzhhd.sys','32');
DeleteFile('C:\Windows\system32\drivers\ddrqtdrp.sys','32');
DeleteFile('C:\Windows\system32\drivers\ddqnfbrp.sys','32');
DeleteFile('C:\Windows\system32\drivers\ddnanyfz.sys','32');
DeleteFile('C:\Windows\system32\drivers\ddkvbghp.sys','32');
DeleteFile('C:\Windows\system32\drivers\dcywknhr.sys','32');
DeleteFile('C:\Windows\system32\drivers\dcyozott.sys','32');
DeleteFile('C:\Windows\system32\drivers\dcldnofd.sys','32');
DeleteFile('C:\Windows\system32\drivers\dcjlekqq.sys','32');
DeleteFile('C:\Windows\system32\drivers\dcaeeqch.sys','32');
DeleteFile('C:\Windows\system32\drivers\dbcugidf.sys','32');
DeleteFile('C:\Windows\system32\drivers\dbbhakko.sys','32');
DeleteFile('C:\Windows\system32\drivers\dloeyasm.sys','32');
DeleteFile('C:\Windows\system32\drivers\dllyaqrd.sys','32');
DeleteFile('C:\Windows\system32\drivers\dlipppyq.sys','32');
DeleteFile('C:\Windows\system32\drivers\dlddrqpk.sys','32');
DeleteFile('C:\Windows\system32\drivers\dlatdvmm.sys','32');
DeleteFile('C:\Windows\system32\drivers\dknlfehu.sys','32');
DeleteFile('C:\Windows\system32\drivers\djsbsgok.sys','32');
DeleteFile('C:\Windows\system32\drivers\diqzudue.sys','32');
DeleteFile('C:\Windows\system32\drivers\didqeuti.sys','32');
DeleteFile('C:\Windows\system32\drivers\dhvwhcbw.sys','32');
DeleteFile('C:\Windows\system32\drivers\dhsdujxb.sys','32');
DeleteFile('C:\Windows\system32\drivers\dhdqeyxt.sys','32');
DeleteFile('C:\Windows\system32\drivers\dhakvunr.sys','32');
DeleteFile('C:\Windows\system32\drivers\dguroakc.sys','32');
DeleteFile('C:\Windows\system32\drivers\dowjyqqa.sys','32');
DeleteFile('C:\Windows\system32\drivers\dosdgisv.sys','32');
DeleteFile('C:\Windows\system32\drivers\dogqnqtn.sys','32');
DeleteFile('C:\Windows\system32\drivers\dofbluzq.sys','32');
DeleteFile('C:\Windows\system32\drivers\dobcztwc.sys','32');
DeleteFile('C:\Windows\system32\drivers\dnofjeau.sys','32');
DeleteFile('C:\Windows\system32\drivers\dnnvdkmq.sys','32');
DeleteFile('C:\Windows\system32\drivers\dnfcoqjt.sys','32');
DeleteFile('C:\Windows\system32\drivers\dnddxewj.sys','32');
DeleteFile('C:\Windows\system32\drivers\dqscqvxg.sys','32');
DeleteFile('C:\Windows\system32\drivers\dqrgdyry.sys','32');
DeleteFile('C:\Windows\system32\drivers\dqfchnfj.sys','32');
DeleteFile('C:\Windows\system32\drivers\dqbopfgr.sys','32');
DeleteFile('C:\Windows\system32\drivers\dpqqfmuh.sys','32');
DeleteFile('C:\Windows\system32\drivers\dppwiehx.sys','32');
DeleteFile('C:\Windows\system32\drivers\dppiupgo.sys','32');
DeleteFile('C:\Windows\system32\drivers\dpehhfcy.sys','32');
DeleteFile('C:\Windows\system32\drivers\dtbizkei.sys','32');
DeleteFile('C:\Windows\system32\drivers\dsxecqij.sys','32');
DeleteFile('C:\Windows\system32\drivers\dskmliia.sys','32');
DeleteFile('C:\Windows\system32\drivers\dsjrppbk.sys','32');
DeleteFile('C:\Windows\system32\drivers\drxnubbe.sys','32');
DeleteFile('C:\Windows\system32\drivers\drhikcrw.sys','32');
DeleteFile('C:\Windows\system32\drivers\drhhmzzh.sys','32');
DeleteFile('C:\Windows\system32\drivers\drfhlnri.sys','32');
DeleteFile('C:\Windows\system32\drivers\dzzswlxg.sys','32');
DeleteFile('C:\Windows\system32\drivers\dzfqkbha.sys','32');
DeleteFile('C:\Windows\system32\drivers\dzapnisl.sys','32');
DeleteFile('C:\Windows\system32\drivers\dyyqqiex.sys','32');
DeleteFile('C:\Windows\system32\drivers\dyrgliqp.sys','32');
DeleteFile('C:\Windows\system32\drivers\dyrempmn.sys','32');
DeleteFile('C:\Windows\system32\drivers\dxqxapxr.sys','32');
DeleteFile('C:\Windows\system32\drivers\dxhqqsae.sys','32');
DeleteFile('C:\Windows\system32\drivers\dwxgjdie.sys','32');
DeleteFile('C:\Windows\system32\drivers\dwwaajuv.sys','32');
DeleteFile('C:\Windows\system32\drivers\dwlvxouk.sys','32');
DeleteFile('C:\Windows\system32\drivers\dvvuobsc.sys','32');
DeleteFile('C:\Windows\system32\drivers\dvulbjyd.sys','32');
DeleteFile('C:\Windows\system32\drivers\dvnumiao.sys','32');
DeleteFile('C:\Windows\system32\drivers\dvcgbsfh.sys','32');
DeleteFile('C:\Windows\system32\drivers\dvauyusy.sys','32');
DeleteFile('C:\Windows\system32\drivers\dutjbpeb.sys','32');
DeleteFile('C:\Windows\system32\drivers\durkajdq.sys','32');
DeleteFile('C:\Windows\system32\drivers\eiufscsz.sys','32');
DeleteFile('C:\Windows\system32\drivers\eikttjte.sys','32');
DeleteFile('C:\Windows\system32\drivers\eievcmho.sys','32');
DeleteFile('C:\Windows\system32\drivers\ehyfndjf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ehwqvfih.sys','32');
DeleteFile('C:\Windows\system32\drivers\egwooxjz.sys','32');
DeleteFile('C:\Windows\system32\drivers\egoeemgg.sys','32');
DeleteFile('C:\Windows\system32\drivers\efycyexd.sys','32');
DeleteFile('C:\Windows\system32\drivers\efvclgev.sys','32');
DeleteFile('C:\Windows\system32\drivers\efmkzafw.sys','32');
DeleteFile('C:\Windows\system32\drivers\efgndrzs.sys','32');
DeleteFile('C:\Windows\system32\drivers\eehuundv.sys','32');
DeleteFile('C:\Windows\system32\drivers\eehiaxas.sys','32');
DeleteFile('C:\Windows\system32\drivers\eeeriwcd.sys','32');
DeleteFile('C:\Windows\system32\drivers\eddpgrqo.sys','32');
DeleteFile('C:\Windows\system32\drivers\ecfrbqsc.sys','32');
DeleteFile('C:\Windows\system32\drivers\ecdugytx.sys','32');
DeleteFile('C:\Windows\system32\drivers\ebxenldv.sys','32');
DeleteFile('C:\Windows\system32\drivers\ebvgnlwf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ebpwgeuf.sys','32');
DeleteFile('C:\Windows\system32\drivers\eavqtemp.sys','32');
DeleteFile('C:\Windows\system32\drivers\eaarwzuk.sys','32');
DeleteFile('C:\Windows\system32\drivers\knqdmjhd.sys','32');
DeleteFile('C:\Windows\system32\drivers\knrhzbok.sys','32');
DeleteFile('C:\Windows\system32\drivers\knvgjbcd.sys','32');
DeleteFile('C:\Windows\system32\drivers\kovsarkt.sys','32');
DeleteFile('C:\Windows\system32\drivers\kpxqimjy.sys','32');
DeleteFile('C:\Windows\system32\drivers\kqalcyjb.sys','32');
DeleteFile('C:\Windows\system32\drivers\kqmdtccd.sys','32');
DeleteFile('C:\Windows\system32\drivers\kqxddvgt.sys','32');
DeleteFile('C:\Windows\system32\drivers\krhjqgwd.sys','32');
DeleteFile('C:\Windows\system32\drivers\krpjeqzt.sys','32');
DeleteFile('C:\Windows\system32\drivers\kjbhrebn.sys','32');
DeleteFile('C:\Windows\system32\drivers\kjjetznq.sys','32');
DeleteFile('C:\Windows\system32\drivers\kjpkaxpf.sys','32');
DeleteFile('C:\Windows\system32\drivers\kkcfbzdi.sys','32');
DeleteFile('C:\Windows\system32\drivers\kkgvmugv.sys','32');
DeleteFile('C:\Windows\system32\drivers\kkuupyvy.sys','32');
DeleteFile('C:\Windows\system32\drivers\kkzbbefn.sys','32');
DeleteFile('C:\Windows\system32\drivers\klncwvwv.sys','32');
DeleteFile('C:\Windows\system32\drivers\kmaciexj.sys','32');
DeleteFile('C:\Windows\system32\drivers\kmfkvslk.sys','32');
DeleteFile('C:\Windows\system32\drivers\kmlqitxz.sys','32');
DeleteFile('C:\Windows\system32\drivers\kmoobbyg.sys','32');
DeleteFile('C:\Windows\system32\drivers\kmqrknyv.sys','32');
DeleteFile('C:\Windows\system32\drivers\kmrbkbcm.sys','32');
DeleteFile('C:\Windows\system32\drivers\khapuygq.sys','32');
DeleteFile('C:\Windows\system32\drivers\khbxqlue.sys','32');
DeleteFile('C:\Windows\system32\drivers\khmmakhr.sys','32');
DeleteFile('C:\Windows\system32\drivers\khonbsez.sys','32');
DeleteFile('C:\Windows\system32\drivers\khufhdcw.sys','32');
DeleteFile('C:\Windows\system32\drivers\kihwhaco.sys','32');
DeleteFile('C:\Windows\system32\drivers\kikknjnm.sys','32');
DeleteFile('C:\Windows\system32\drivers\kiuhiomb.sys','32');
DeleteFile('C:\Windows\system32\drivers\kixqxztn.sys','32');
DeleteFile('C:\Windows\system32\drivers\kaqdxpke.sys','32');
DeleteFile('C:\Windows\system32\drivers\kbecpaaf.sys','32');
DeleteFile('C:\Windows\system32\drivers\kbghftgn.sys','32');
DeleteFile('C:\Windows\system32\drivers\kbmoemib.sys','32');
DeleteFile('C:\Windows\system32\drivers\kcolgqju.sys','32');
DeleteFile('C:\Windows\system32\drivers\kcoyepzb.sys','32');
DeleteFile('C:\Windows\system32\drivers\kcpkhslh.sys','32');
DeleteFile('C:\Windows\system32\drivers\kdevamay.sys','32');
DeleteFile('C:\Windows\system32\drivers\keacwyiz.sys','32');
DeleteFile('C:\Windows\system32\drivers\kfbchudq.sys','32');
DeleteFile('C:\Windows\system32\drivers\kfhxqbqx.sys','32');
DeleteFile('C:\Windows\system32\drivers\kfnbcjfb.sys','32');
DeleteFile('C:\Windows\system32\drivers\kfouddmn.sys','32');
DeleteFile('C:\Windows\system32\drivers\kfxdfmub.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgctsmkr.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgktqlla.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgtejfrq.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgtyaguv.sys','32');
DeleteFile('C:\Windows\system32\drivers\kguogsct.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgwudxcy.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgxmvldi.sys','32');
DeleteFile('C:\Windows\system32\drivers\kgxmxmqa.sys','32');
DeleteFile('C:\Windows\system32\drivers\jybpommg.sys','32');
DeleteFile('C:\Windows\system32\drivers\jyxzztkt.sys','32');
DeleteFile('C:\Windows\system32\drivers\jzfcvntx.sys','32');
DeleteFile('C:\Windows\system32\drivers\jzgxpfll.sys','32');
DeleteFile('C:\Windows\system32\drivers\jztltqna.sys','32');
DeleteFile('C:\Windows\system32\drivers\jzujqmts.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новый лог AVZ
Новый лог
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('jkmefduk');
DeleteService('jklwnkph');
DeleteService('jkkbjroo');
DeleteService('jkdqtflu');
DeleteService('jkanqhkt');
DeleteService('jjrszzaj');
DeleteService('jjqurair');
DeleteService('jjnshfpr');
DeleteService('jjnopfqk');
DeleteService('jjlfmuns');
DeleteService('jjkaaaup');
DeleteService('jjeiotav');
DeleteService('jiypddyi');
DeleteService('jhxfiuys');
DeleteService('jgowchau');
DeleteService('jgnlikdk');
DeleteService('jlabpqsp');
DeleteService('jldbotps');
DeleteService('jlnfdsuc');
DeleteService('jlqduyjf');
DeleteService('jlyyhnby');
DeleteService('jlzfaoua');
DeleteService('jmdlncnd');
DeleteService('jmixrxdl');
DeleteService('jmjjqhpv');
DeleteService('jmlcbegk');
DeleteService('jmumxobe');
DeleteService('jrllrwtj');
DeleteService('jqyggmrc');
DeleteService('jqxhmszd');
DeleteService('jqtplblp');
DeleteService('jqqcaihc');
DeleteService('jqpecmez');
DeleteService('jqiacciu');
DeleteService('jqhcaphd');
DeleteService('jqauquld');
DeleteService('jpzawitz');
DeleteService('jpuuoajo');
DeleteService('jomwjckc');
DeleteService('jojtznzf');
DeleteService('jntvuura');
DeleteService('jntegrms');
DeleteService('jnsbpxtr');
DeleteService('jnhzmuaj');
DeleteService('jscunwmt');
DeleteService('jsfudivl');
DeleteService('jsipsmsw');
DeleteService('jskbdcfv');
DeleteService('jsmzxjaa');
DeleteService('jspcubdu');
DeleteService('jsucwifb');
DeleteService('jsvkalnr');
DeleteService('jtgonjvv');
DeleteService('jthgivgm');
DeleteService('jtjolnfj');
DeleteService('jtkfcafq');
DeleteService('jtuevrwu');
DeleteService('jtvzvlac');
DeleteService('jtztaxej');
DeleteService('jugtnvad');
DeleteService('jukrcrix');
DeleteService('jukybqve');
DeleteService('juugirio');
DeleteService('juxyanln');
DeleteService('jvexazue');
DeleteService('jvgxusdc');
DeleteService('jvhclxlq');
DeleteService('jvkzduww');
DeleteService('jvnuebwa');
DeleteService('jvongvqx');
DeleteService('jvqljubw');
DeleteService('jvuniwkw');
DeleteService('jwadmwle');
DeleteService('jwclgwpo');
DeleteService('jwhyfgfr');
DeleteService('jwkdcdig');
DeleteService('jxatgkaq');
DeleteService('jxickftd');
DeleteService('jxlttddc');
DeleteService('jxmzxaxn');
DeleteService('jxnuhiph');
DeleteService('jxwpcazs');
DeleteService('jxxqchln');
DeleteService('ffzxlwmi');
DeleteService('ffpplvmc');
DeleteService('ffnzlmqz');
DeleteService('femjtxsi');
DeleteService('fdwutdmz');
DeleteService('fdselshj');
DeleteService('fdjszuxp');
DeleteService('fdhgfjig');
DeleteService('fcutctug');
DeleteService('fbunlokm');
DeleteService('fbpgiysm');
DeleteService('fauxwocn');
DeleteService('ezqouaje');
DeleteService('ezmrklwt');
DeleteService('ezjnpcxj');
DeleteService('ezhmvjgk');
DeleteService('ezbnmsor');
DeleteService('ezatvxav');
DeleteService('eyhayhlj');
DeleteService('exdhyirk');
DeleteService('ewxckqni');
DeleteService('evvnybbf');
DeleteService('evnbgbtj');
DeleteService('evhzpdwr');
DeleteService('evhvcbat');
DeleteService('evcehdgd');
DeleteService('euslodzt');
DeleteService('euqzmlgd');
DeleteService('eukqcmdj');
DeleteService('eudzfiqk');
DeleteService('eucayhkw');
DeleteService('etwucfus');
DeleteService('etthuhoe');
DeleteService('etqqrkzd');
DeleteService('etpdyree');
DeleteService('etfgleof');
DeleteService('esvsiyej');
DeleteService('esvocjhv');
DeleteService('esukxhnf');
DeleteService('esprjfbe');
DeleteService('eslqjpzh');
DeleteService('ertwuwii');
DeleteService('erjeidps');
DeleteService('eranehqo');
DeleteService('eqzytgkc');
DeleteService('eqpnysra');
DeleteService('epzymzyl');
DeleteService('epvujqqw');
DeleteService('epsjlezo');
DeleteService('eppkqvsu');
DeleteService('eopnjtgn');
DeleteService('eobilcxi');
DeleteService('enxigzwf');
DeleteService('emzzqmhb');
DeleteService('emtxxrul');
DeleteService('emqslanh');
DeleteService('emphdwhw');
DeleteService('emluxmse');
DeleteService('elxgtjgm');
DeleteService('elscwxon');
DeleteService('elhnfjrl');
DeleteService('elgzuzvq');
DeleteService('elfoaqej');
DeleteService('ekttagbx');
DeleteService('ekotomam');
DeleteService('ekamwgyf');
DeleteFile('C:\Windows\system32\drivers\emzzqmhb.sys','32');
DeleteFile('C:\Windows\system32\drivers\emtxxrul.sys','32');
DeleteFile('C:\Windows\system32\drivers\emqslanh.sys','32');
DeleteFile('C:\Windows\system32\drivers\emphdwhw.sys','32');
DeleteFile('C:\Windows\system32\drivers\emluxmse.sys','32');
DeleteFile('C:\Windows\system32\drivers\elxgtjgm.sys','32');
DeleteFile('C:\Windows\system32\drivers\elscwxon.sys','32');
DeleteFile('C:\Windows\system32\drivers\elhnfjrl.sys','32');
DeleteFile('C:\Windows\system32\drivers\elgzuzvq.sys','32');
DeleteFile('C:\Windows\system32\drivers\elfoaqej.sys','32');
DeleteFile('C:\Windows\system32\drivers\ekttagbx.sys','32');
DeleteFile('C:\Windows\system32\drivers\ekotomam.sys','32');
DeleteFile('C:\Windows\system32\drivers\ekamwgyf.sys','32');
DeleteFile('C:\Windows\system32\drivers\etthuhoe.sys','32');
DeleteFile('C:\Windows\system32\drivers\etqqrkzd.sys','32');
DeleteFile('C:\Windows\system32\drivers\etpdyree.sys','32');
DeleteFile('C:\Windows\system32\drivers\etfgleof.sys','32');
DeleteFile('C:\Windows\system32\drivers\esvsiyej.sys','32');
DeleteFile('C:\Windows\system32\drivers\esvocjhv.sys','32');
DeleteFile('C:\Windows\system32\drivers\esukxhnf.sys','32');
DeleteFile('C:\Windows\system32\drivers\esprjfbe.sys','32');
DeleteFile('C:\Windows\system32\drivers\eslqjpzh.sys','32');
DeleteFile('C:\Windows\system32\drivers\ertwuwii.sys','32');
DeleteFile('C:\Windows\system32\drivers\erjeidps.sys','32');
DeleteFile('C:\Windows\system32\drivers\eranehqo.sys','32');
DeleteFile('C:\Windows\system32\drivers\eqzytgkc.sys','32');
DeleteFile('C:\Windows\system32\drivers\eqpnysra.sys','32');
DeleteFile('C:\Windows\system32\drivers\epzymzyl.sys','32');
DeleteFile('C:\Windows\system32\drivers\epvujqqw.sys','32');
DeleteFile('C:\Windows\system32\drivers\epsjlezo.sys','32');
DeleteFile('C:\Windows\system32\drivers\eppkqvsu.sys','32');
DeleteFile('C:\Windows\system32\drivers\eopnjtgn.sys','32');
DeleteFile('C:\Windows\system32\drivers\eobilcxi.sys','32');
DeleteFile('C:\Windows\system32\drivers\enxigzwf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ezqouaje.sys','32');
DeleteFile('C:\Windows\system32\drivers\ezmrklwt.sys','32');
DeleteFile('C:\Windows\system32\drivers\ezjnpcxj.sys','32');
DeleteFile('C:\Windows\system32\drivers\ezhmvjgk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ezbnmsor.sys','32');
DeleteFile('C:\Windows\system32\drivers\ezatvxav.sys','32');
DeleteFile('C:\Windows\system32\drivers\eyhayhlj.sys','32');
DeleteFile('C:\Windows\system32\drivers\exdhyirk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ewxckqni.sys','32');
DeleteFile('C:\Windows\system32\drivers\evvnybbf.sys','32');
DeleteFile('C:\Windows\system32\drivers\evnbgbtj.sys','32');
DeleteFile('C:\Windows\system32\drivers\evhzpdwr.sys','32');
DeleteFile('C:\Windows\system32\drivers\evhvcbat.sys','32');
DeleteFile('C:\Windows\system32\drivers\evcehdgd.sys','32');
DeleteFile('C:\Windows\system32\drivers\euslodzt.sys','32');
DeleteFile('C:\Windows\system32\drivers\euqzmlgd.sys','32');
DeleteFile('C:\Windows\system32\drivers\eukqcmdj.sys','32');
DeleteFile('C:\Windows\system32\drivers\eudzfiqk.sys','32');
DeleteFile('C:\Windows\system32\drivers\eucayhkw.sys','32');
DeleteFile('C:\Windows\system32\drivers\etwucfus.sys','32');
DeleteFile('C:\Windows\system32\drivers\ffzxlwmi.sys','32');
DeleteFile('C:\Windows\system32\drivers\ffpplvmc.sys','32');
DeleteFile('C:\Windows\system32\drivers\ffnzlmqz.sys','32');
DeleteFile('C:\Windows\system32\drivers\femjtxsi.sys','32');
DeleteFile('C:\Windows\system32\drivers\fdwutdmz.sys','32');
DeleteFile('C:\Windows\system32\drivers\fdselshj.sys','32');
DeleteFile('C:\Windows\system32\drivers\fdjszuxp.sys','32');
DeleteFile('C:\Windows\system32\drivers\fdhgfjig.sys','32');
DeleteFile('C:\Windows\system32\drivers\fcutctug.sys','32');
DeleteFile('C:\Windows\system32\drivers\fbunlokm.sys','32');
DeleteFile('C:\Windows\system32\drivers\fbpgiysm.sys','32');
DeleteFile('C:\Windows\system32\drivers\fauxwocn.sys','32');
DeleteFile('C:\Windows\system32\drivers\jwadmwle.sys','32');
DeleteFile('C:\Windows\system32\drivers\jwclgwpo.sys','32');
DeleteFile('C:\Windows\system32\drivers\jwhyfgfr.sys','32');
DeleteFile('C:\Windows\system32\drivers\jwkdcdig.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxatgkaq.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxickftd.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxlttddc.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxmzxaxn.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxnuhiph.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxwpcazs.sys','32');
DeleteFile('C:\Windows\system32\drivers\jxxqchln.sys','32');
DeleteFile('C:\Windows\system32\drivers\jugtnvad.sys','32');
DeleteFile('C:\Windows\system32\drivers\jukrcrix.sys','32');
DeleteFile('C:\Windows\system32\drivers\jukybqve.sys','32');
DeleteFile('C:\Windows\system32\drivers\juugirio.sys','32');
DeleteFile('C:\Windows\system32\drivers\juxyanln.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvexazue.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvgxusdc.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvhclxlq.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvkzduww.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvnuebwa.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvongvqx.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvqljubw.sys','32');
DeleteFile('C:\Windows\system32\drivers\jvuniwkw.sys','32');
DeleteFile('C:\Windows\system32\drivers\jscunwmt.sys','32');
DeleteFile('C:\Windows\system32\drivers\jsfudivl.sys','32');
DeleteFile('C:\Windows\system32\drivers\jsipsmsw.sys','32');
DeleteFile('C:\Windows\system32\drivers\jskbdcfv.sys','32');
DeleteFile('C:\Windows\system32\drivers\jsmzxjaa.sys','32');
DeleteFile('C:\Windows\system32\drivers\jspcubdu.sys','32');
DeleteFile('C:\Windows\system32\drivers\jsucwifb.sys','32');
DeleteFile('C:\Windows\system32\drivers\jsvkalnr.sys','32');
DeleteFile('C:\Windows\system32\drivers\jtgonjvv.sys','32');
DeleteFile('C:\Windows\system32\drivers\jthgivgm.sys','32');
DeleteFile('C:\Windows\system32\drivers\jtjolnfj.sys','32');
DeleteFile('C:\Windows\system32\drivers\jtkfcafq.sys','32');
DeleteFile('C:\Windows\system32\drivers\jtuevrwu.sys','32');
DeleteFile('C:\Windows\system32\drivers\jtvzvlac.sys','32');
DeleteFile('C:\Windows\system32\drivers\jtztaxej.sys','32');
DeleteFile('C:\Windows\system32\drivers\jrllrwtj.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqyggmrc.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqxhmszd.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqtplblp.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqqcaihc.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqpecmez.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqiacciu.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqhcaphd.sys','32');
DeleteFile('C:\Windows\system32\drivers\jqauquld.sys','32');
DeleteFile('C:\Windows\system32\drivers\jpzawitz.sys','32');
DeleteFile('C:\Windows\system32\drivers\jpuuoajo.sys','32');
DeleteFile('C:\Windows\system32\drivers\jomwjckc.sys','32');
DeleteFile('C:\Windows\system32\drivers\jojtznzf.sys','32');
DeleteFile('C:\Windows\system32\drivers\jntvuura.sys','32');
DeleteFile('C:\Windows\system32\drivers\jntegrms.sys','32');
DeleteFile('C:\Windows\system32\drivers\jnsbpxtr.sys','32');
DeleteFile('C:\Windows\system32\drivers\jnhzmuaj.sys','32');
DeleteFile('C:\Windows\system32\drivers\jlabpqsp.sys','32');
DeleteFile('C:\Windows\system32\drivers\jldbotps.sys','32');
DeleteFile('C:\Windows\system32\drivers\jlnfdsuc.sys','32');
DeleteFile('C:\Windows\system32\drivers\jlqduyjf.sys','32');
DeleteFile('C:\Windows\system32\drivers\jlyyhnby.sys','32');
DeleteFile('C:\Windows\system32\drivers\jlzfaoua.sys','32');
DeleteFile('C:\Windows\system32\drivers\jmdlncnd.sys','32');
DeleteFile('C:\Windows\system32\drivers\jmixrxdl.sys','32');
DeleteFile('C:\Windows\system32\drivers\jmjjqhpv.sys','32');
DeleteFile('C:\Windows\system32\drivers\jmlcbegk.sys','32');
DeleteFile('C:\Windows\system32\drivers\jmumxobe.sys','32');
DeleteFile('C:\Windows\system32\drivers\jkmefduk.sys','32');
DeleteFile('C:\Windows\system32\drivers\jklwnkph.sys','32');
DeleteFile('C:\Windows\system32\drivers\jkkbjroo.sys','32');
DeleteFile('C:\Windows\system32\drivers\jkdqtflu.sys','32');
DeleteFile('C:\Windows\system32\drivers\jkanqhkt.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjrszzaj.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjqurair.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjnshfpr.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjnopfqk.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjlfmuns.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjkaaaup.sys','32');
DeleteFile('C:\Windows\system32\drivers\jjeiotav.sys','32');
DeleteFile('C:\Windows\system32\drivers\jiypddyi.sys','32');
DeleteFile('C:\Windows\system32\drivers\jhxfiuys.sys','32');
DeleteFile('C:\Windows\system32\drivers\jgowchau.sys','32');
DeleteFile('C:\Windows\system32\drivers\jgnlikdk.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новый лог AVZ
Лог авз.
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('iaeoqaco');
DeleteService('iafxehqq');
DeleteService('iagyvoat');
DeleteService('iammjyqu');
DeleteService('iauraplh');
DeleteService('iavemgyd');
DeleteService('ibdrkpxs');
DeleteService('ibfhokgl');
DeleteService('ibkllcia');
DeleteService('ibtoaqyc');
DeleteService('ibvwcfuq');
DeleteService('ibwgkbli');
DeleteService('idjenhyi');
DeleteService('idsprzdk');
DeleteService('ieaspwyc');
DeleteService('ieqcwher');
DeleteService('ieweouko');
DeleteService('ifmaczic');
DeleteService('ifnnpykq');
DeleteService('ifsestsp');
DeleteService('igchcrzr');
DeleteService('igqiyzsb');
DeleteService('iguxjnte');
DeleteService('ihhewcby');
DeleteService('iidfisqi');
DeleteService('iidnasmb');
DeleteService('iiukfjqq');
DeleteService('ijabvsnv');
DeleteService('ijdudhii');
DeleteService('ijjwdwnu');
DeleteService('ijkezkhi');
DeleteService('ijqrpedi');
DeleteService('ijtzgtyt');
DeleteService('ikkdvzzr');
DeleteService('ikqxjwqy');
DeleteService('ikuzhemd');
DeleteService('ilddwqlr');
DeleteService('ilqvposl');
DeleteService('ilrmftfu');
DeleteService('ilwujeam');
DeleteService('imuqjyio');
DeleteService('ineihwgq');
DeleteService('invpgnia');
DeleteService('ioaayswe');
DeleteService('iodjrcoc');
DeleteService('ioumuktx');
DeleteService('ipakyspd');
DeleteService('iubbqrqg');
DeleteService('itxyzaqa');
DeleteService('itvhtqbv');
DeleteService('itperqfs');
DeleteService('itmmsntk');
DeleteService('ismrlbnj');
DeleteService('iskyjxrv');
DeleteService('ishenomw');
DeleteService('ishebuds');
DeleteService('isgnkhcr');
DeleteService('isgduijw');
DeleteService('irvuwhoj');
DeleteService('irjhhnfk');
DeleteService('irdytbzc');
DeleteService('irdhrhgv');
DeleteService('iqutrgxr');
DeleteService('iqgslkja');
DeleteService('iphppwfx');
DeleteService('ipfqucmf');
DeleteService('iuxvyscb');
DeleteService('ivjsanka');
DeleteService('ivuvjvth');
DeleteService('iwcernit');
DeleteService('iwlvbfom');
DeleteService('ixcgtcrx');
DeleteService('ixqeyrkw');
DeleteService('iyagoaik');
DeleteService('iycscobe');
DeleteService('izdpzjez');
DeleteService('izhgnvfp');
DeleteService('izmsfrdf');
DeleteService('izrupjvp');
DeleteService('jakykszv');
DeleteService('javnrduh');
DeleteService('jaxgwlks');
DeleteService('jbdisfwt');
DeleteService('jbvdkucn');
DeleteService('jbveqcsr');
DeleteService('jcfomuwb');
DeleteService('jcycraiq');
DeleteService('jdhazuus');
DeleteService('jebcisxt');
DeleteService('jekinumh');
DeleteService('jeoitsvj');
DeleteService('jetdumzt');
DeleteService('jfiiblxh');
DeleteService('jfrnltnw');
DeleteService('jrznyrei');
DeleteService('ghoslypd');
DeleteService('ghixxtfx');
DeleteService('ghhnvqjf');
DeleteService('ghgjbwen');
DeleteService('ghegowll');
DeleteService('ggzndsyy');
DeleteService('ggxxvqyq');
DeleteService('ggvkxjcp');
DeleteService('ggrdojtu');
DeleteService('gfkyilms');
DeleteService('gfgzpqwj');
DeleteService('gelvszbf');
DeleteService('gegmyydi');
DeleteService('gdxixynf');
DeleteService('gdsbhopb');
DeleteService('gdripmnu');
DeleteService('gcwkxrtu');
DeleteService('gcugnmup');
DeleteService('gcmcfbmi');
DeleteService('gcgbvpif');
DeleteService('gcfrbapa');
DeleteService('gcccmajg');
DeleteService('gbzziuik');
DeleteService('gbrgbnpr');
DeleteService('gbpqqazy');
DeleteService('gbntilny');
DeleteService('gbbqoobd');
DeleteService('gafksnch');
DeleteService('fzvhibuw');
DeleteService('fzlfliqe');
DeleteService('fywriedf');
DeleteService('fygmssrx');
DeleteService('fyeuenda');
DeleteService('fxvzjihd');
DeleteService('fxpwfocu');
DeleteService('fxlvydgq');
DeleteService('fxkewwkm');
DeleteService('fxjyjltw');
DeleteService('fxesnasz');
DeleteService('fxenitoa');
DeleteService('fxdyofkx');
DeleteService('fwxsoyna');
DeleteService('fwvnlkgs');
DeleteService('fwulhitv');
DeleteService('fwsfaonw');
DeleteService('fwfknyre');
DeleteService('fwbqbmns');
DeleteService('fvnyrprk');
DeleteService('fvkefgrh');
DeleteService('fvbmiwbr');
DeleteService('fusccdnh');
DeleteService('fulguano');
DeleteService('fubbynlo');
DeleteService('ftscvyqb');
DeleteService('ftobrhhw');
DeleteService('ftnxbbpy');
DeleteService('ftjsxyrk');
DeleteService('fszvfftd');
DeleteService('fstxjxdu');
DeleteService('fslrsoui');
DeleteService('fsihknmc');
DeleteService('frxptsgd');
DeleteService('frqcsqjd');
DeleteService('fqrxrray');
DeleteService('fqbiylnc');
DeleteService('fpzdwwzh');
DeleteService('fpupvxry');
DeleteService('fojuandb');
DeleteService('fojpopvb');
DeleteService('fohvjkbh');
DeleteService('fnkaedih');
DeleteService('fnjihcop');
DeleteService('fnffsrgs');
DeleteService('fmncgtqe');
DeleteService('fmkrybts');
DeleteService('flvsxapd');
DeleteService('fltzxuva');
DeleteService('fltifybg');
DeleteService('flqyxepu');
DeleteService('flnhimlc');
DeleteService('fljkcwme');
DeleteService('fldlxulm');
DeleteService('fkzxqgpb');
DeleteService('fkwrivki');
DeleteService('fkmkbmqo');
DeleteService('fkkndwzs');
DeleteService('fkeutdwh');
DeleteService('fkdlygwc');
DeleteService('fjpeybpo');
DeleteService('fjotdcxs');
DeleteService('fixmcrsb');
DeleteService('fidobedb');
DeleteService('fhxcyivs');
DeleteService('fgwxddhn');
DeleteService('fgowzpik');
DeleteService('fgfoacps');
DeleteService('fgedqgpy');
DeleteService('fgbwscfv');
DeleteFile('C:\Windows\system32\drivers\fjpeybpo.sys','32');
DeleteFile('C:\Windows\system32\drivers\fjotdcxs.sys','32');
DeleteFile('C:\Windows\system32\drivers\fixmcrsb.sys','32');
DeleteFile('C:\Windows\system32\drivers\fidobedb.sys','32');
DeleteFile('C:\Windows\system32\drivers\fhxcyivs.sys','32');
DeleteFile('C:\Windows\system32\drivers\fgwxddhn.sys','32');
DeleteFile('C:\Windows\system32\drivers\fgowzpik.sys','32');
DeleteFile('C:\Windows\system32\drivers\fgfoacps.sys','32');
DeleteFile('C:\Windows\system32\drivers\fgedqgpy.sys','32');
DeleteFile('C:\Windows\system32\drivers\fgbwscfv.sys','32');
DeleteFile('C:\Windows\system32\drivers\fkzxqgpb.sys','32');
DeleteFile('C:\Windows\system32\drivers\fkwrivki.sys','32');
DeleteFile('C:\Windows\system32\drivers\fkmkbmqo.sys','32');
DeleteFile('C:\Windows\system32\drivers\fkkndwzs.sys','32');
DeleteFile('C:\Windows\system32\drivers\fkeutdwh.sys','32');
DeleteFile('C:\Windows\system32\drivers\fkdlygwc.sys','32');
DeleteFile('C:\Windows\system32\drivers\fnkaedih.sys','32');
DeleteFile('C:\Windows\system32\drivers\fnjihcop.sys','32');
DeleteFile('C:\Windows\system32\drivers\fnffsrgs.sys','32');
DeleteFile('C:\Windows\system32\drivers\fmncgtqe.sys','32');
DeleteFile('C:\Windows\system32\drivers\fmkrybts.sys','32');
DeleteFile('C:\Windows\system32\drivers\flvsxapd.sys','32');
DeleteFile('C:\Windows\system32\drivers\fltzxuva.sys','32');
DeleteFile('C:\Windows\system32\drivers\fltifybg.sys','32');
DeleteFile('C:\Windows\system32\drivers\flqyxepu.sys','32');
DeleteFile('C:\Windows\system32\drivers\flnhimlc.sys','32');
DeleteFile('C:\Windows\system32\drivers\fvbmiwbr.sys','32');
DeleteFile('C:\Windows\system32\drivers\fusccdnh.sys','32');
DeleteFile('C:\Windows\system32\drivers\fulguano.sys','32');
DeleteFile('C:\Windows\system32\drivers\fubbynlo.sys','32');
DeleteFile('C:\Windows\system32\drivers\ftscvyqb.sys','32');
DeleteFile('C:\Windows\system32\drivers\ftobrhhw.sys','32');
DeleteFile('C:\Windows\system32\drivers\ftnxbbpy.sys','32');
DeleteFile('C:\Windows\system32\drivers\ftjsxyrk.sys','32');
DeleteFile('C:\Windows\system32\drivers\fszvfftd.sys','32');
DeleteFile('C:\Windows\system32\drivers\fstxjxdu.sys','32');
DeleteFile('C:\Windows\system32\drivers\fslrsoui.sys','32');
DeleteFile('C:\Windows\system32\drivers\fsihknmc.sys','32');
DeleteFile('C:\Windows\system32\drivers\frxptsgd.sys','32');
DeleteFile('C:\Windows\system32\drivers\frqcsqjd.sys','32');
DeleteFile('C:\Windows\system32\drivers\fqrxrray.sys','32');
DeleteFile('C:\Windows\system32\drivers\fqbiylnc.sys','32');
DeleteFile('C:\Windows\system32\drivers\fpzdwwzh.sys','32');
DeleteFile('C:\Windows\system32\drivers\fpupvxry.sys','32');
DeleteFile('C:\Windows\system32\drivers\fojuandb.sys','32');
DeleteFile('C:\Windows\system32\drivers\fojpopvb.sys','32');
DeleteFile('C:\Windows\system32\drivers\fohvjkbh.sys','32');
DeleteFile('C:\Windows\system32\drivers\fzvhibuw.sys','32');
DeleteFile('C:\Windows\system32\drivers\fzlfliqe.sys','32');
DeleteFile('C:\Windows\system32\drivers\fywriedf.sys','32');
DeleteFile('C:\Windows\system32\drivers\fygmssrx.sys','32');
DeleteFile('C:\Windows\system32\drivers\fyeuenda.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxvzjihd.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxpwfocu.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxlvydgq.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxkewwkm.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxjyjltw.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxesnasz.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxenitoa.sys','32');
DeleteFile('C:\Windows\system32\drivers\fxdyofkx.sys','32');
DeleteFile('C:\Windows\system32\drivers\fwxsoyna.sys','32');
DeleteFile('C:\Windows\system32\drivers\fwulhitv.sys','32');
DeleteFile('C:\Windows\system32\drivers\fwvnlkgs.sys','32');
DeleteFile('C:\Windows\system32\drivers\fwsfaonw.sys','32');
DeleteFile('C:\Windows\system32\drivers\fwfknyre.sys','32');
DeleteFile('C:\Windows\system32\drivers\fwbqbmns.sys','32');
DeleteFile('C:\Windows\system32\drivers\fvnyrprk.sys','32');
DeleteFile('C:\Windows\system32\drivers\fvkefgrh.sys','32');
DeleteFile('C:\Windows\system32\drivers\gcwkxrtu.sys','32');
DeleteFile('C:\Windows\system32\drivers\gcugnmup.sys','32');
DeleteFile('C:\Windows\system32\drivers\gcmcfbmi.sys','32');
DeleteFile('C:\Windows\system32\drivers\gcgbvpif.sys','32');
DeleteFile('C:\Windows\system32\drivers\gcfrbapa.sys','32');
DeleteFile('C:\Windows\system32\drivers\gcccmajg.sys','32');
DeleteFile('C:\Windows\system32\drivers\gbzziuik.sys','32');
DeleteFile('C:\Windows\system32\drivers\gbrgbnpr.sys','32');
DeleteFile('C:\Windows\system32\drivers\gbpqqazy.sys','32');
DeleteFile('C:\Windows\system32\drivers\gbntilny.sys','32');
DeleteFile('C:\Windows\system32\drivers\gbbqoobd.sys','32');
DeleteFile('C:\Windows\system32\drivers\gafksnch.sys','32');
DeleteFile('C:\Windows\system32\drivers\gadrwkcw.sys','32');
DeleteFile('C:\Windows\system32\drivers\ghoslypd.sys','32');
DeleteFile('C:\Windows\system32\drivers\ghixxtfx.sys','32');
DeleteFile('C:\Windows\system32\drivers\ghhnvqjf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ghgjbwen.sys','32');
DeleteFile('C:\Windows\system32\drivers\ghegowll.sys','32');
DeleteFile('C:\Windows\system32\drivers\ggzndsyy.sys','32');
DeleteFile('C:\Windows\system32\drivers\ggxxvqyq.sys','32');
DeleteFile('C:\Windows\system32\drivers\ggvkxjcp.sys','32');
DeleteFile('C:\Windows\system32\drivers\ggrdojtu.sys','32');
DeleteFile('C:\Windows\system32\drivers\gfkyilms.sys','32');
DeleteFile('C:\Windows\system32\drivers\gfgzpqwj.sys','32');
DeleteFile('C:\Windows\system32\drivers\gelvszbf.sys','32');
DeleteFile('C:\Windows\system32\drivers\gegmyydi.sys','32');
DeleteFile('C:\Windows\system32\drivers\gdxixynf.sys','32');
DeleteFile('C:\Windows\system32\drivers\gdsbhopb.sys','32');
DeleteFile('C:\Windows\system32\drivers\gdripmnu.sys','32');
DeleteFile('C:\Windows\system32\drivers\jbdisfwt.sys','32');
DeleteFile('C:\Windows\system32\drivers\jbvdkucn.sys','32');
DeleteFile('C:\Windows\system32\drivers\jbveqcsr.sys','32');
DeleteFile('C:\Windows\system32\drivers\jcfomuwb.sys','32');
DeleteFile('C:\Windows\system32\drivers\jcycraiq.sys','32');
DeleteFile('C:\Windows\system32\drivers\jdhazuus.sys','32');
DeleteFile('C:\Windows\system32\drivers\jebcisxt.sys','32');
DeleteFile('C:\Windows\system32\drivers\jekinumh.sys','32');
DeleteFile('C:\Windows\system32\drivers\jeoitsvj.sys','32');
DeleteFile('C:\Windows\system32\drivers\jetdumzt.sys','32');
DeleteFile('C:\Windows\system32\drivers\jfiiblxh.sys','32');
DeleteFile('C:\Windows\system32\drivers\jfrnltnw.sys','32');
DeleteFile('C:\Windows\system32\drivers\jrznyrei.sys','32');
DeleteFile('C:\Windows\system32\drivers\iycscobe.sys','32');
DeleteFile('C:\Windows\system32\drivers\izdpzjez.sys','32');
DeleteFile('C:\Windows\system32\drivers\izhgnvfp.sys','32');
DeleteFile('C:\Windows\system32\drivers\izmsfrdf.sys','32');
DeleteFile('C:\Windows\system32\drivers\izrupjvp.sys','32');
DeleteFile('C:\Windows\system32\drivers\jakykszv.sys','32');
DeleteFile('C:\Windows\system32\drivers\javnrduh.sys','32');
DeleteFile('C:\Windows\system32\drivers\jaxgwlks.sys','32');
DeleteFile('C:\Windows\system32\drivers\ivjsanka.sys','32');
DeleteFile('C:\Windows\system32\drivers\ivuvjvth.sys','32');
DeleteFile('C:\Windows\system32\drivers\iwcernit.sys','32');
DeleteFile('C:\Windows\system32\drivers\iwlvbfom.sys','32');
DeleteFile('C:\Windows\system32\drivers\ixcgtcrx.sys','32');
DeleteFile('C:\Windows\system32\drivers\ixqeyrkw.sys','32');
DeleteFile('C:\Windows\system32\drivers\iyagoaik.sys','32');
DeleteFile('C:\Windows\system32\drivers\iuxvyscb.sys','32');
DeleteFile('C:\Windows\system32\drivers\iubbqrqg.sys','32');
DeleteFile('C:\Windows\system32\drivers\itxyzaqa.sys','32');
DeleteFile('C:\Windows\system32\drivers\itvhtqbv.sys','32');
DeleteFile('C:\Windows\system32\drivers\itperqfs.sys','32');
DeleteFile('C:\Windows\system32\drivers\itmmsntk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ismrlbnj.sys','32');
DeleteFile('C:\Windows\system32\drivers\iskyjxrv.sys','32');
DeleteFile('C:\Windows\system32\drivers\ishenomw.sys','32');
DeleteFile('C:\Windows\system32\drivers\ishebuds.sys','32');
DeleteFile('C:\Windows\system32\drivers\isgnkhcr.sys','32');
DeleteFile('C:\Windows\system32\drivers\isgduijw.sys','32');
DeleteFile('C:\Windows\system32\drivers\irvuwhoj.sys','32');
DeleteFile('C:\Windows\system32\drivers\irjhhnfk.sys','32');
DeleteFile('C:\Windows\system32\drivers\irdytbzc.sys','32');
DeleteFile('C:\Windows\system32\drivers\irdhrhgv.sys','32');
DeleteFile('C:\Windows\system32\drivers\iqutrgxr.sys','32');
DeleteFile('C:\Windows\system32\drivers\iqgslkja.sys','32');
DeleteFile('C:\Windows\system32\drivers\iphppwfx.sys','32');
DeleteFile('C:\Windows\system32\drivers\ipfqucmf.sys','32');
DeleteFile('C:\Windows\system32\drivers\ijqrpedi.sys','32');
DeleteFile('C:\Windows\system32\drivers\ijtzgtyt.sys','32');
DeleteFile('C:\Windows\system32\drivers\ikkdvzzr.sys','32');
DeleteFile('C:\Windows\system32\drivers\ikqxjwqy.sys','32');
DeleteFile('C:\Windows\system32\drivers\ikuzhemd.sys','32');
DeleteFile('C:\Windows\system32\drivers\ilddwqlr.sys','32');
DeleteFile('C:\Windows\system32\drivers\ilqvposl.sys','32');
DeleteFile('C:\Windows\system32\drivers\ilrmftfu.sys','32');
DeleteFile('C:\Windows\system32\drivers\ilwujeam.sys','32');
DeleteFile('C:\Windows\system32\drivers\imuqjyio.sys','32');
DeleteFile('C:\Windows\system32\drivers\ineihwgq.sys','32');
DeleteFile('C:\Windows\system32\drivers\ioaayswe.sys','32');
DeleteFile('C:\Windows\system32\drivers\iodjrcoc.sys','32');
DeleteFile('C:\Windows\system32\drivers\ioumuktx.sys','32');
DeleteFile('C:\Windows\system32\drivers\ipakyspd.sys','32');
DeleteFile('C:\Windows\system32\drivers\ifmaczic.sys','32');
DeleteFile('C:\Windows\system32\drivers\ifnnpykq.sys','32');
DeleteFile('C:\Windows\system32\drivers\ifsestsp.sys','32');
DeleteFile('C:\Windows\system32\drivers\igchcrzr.sys','32');
DeleteFile('C:\Windows\system32\drivers\igqiyzsb.sys','32');
DeleteFile('C:\Windows\system32\drivers\iguxjnte.sys','32');
DeleteFile('C:\Windows\system32\drivers\ihhewcby.sys','32');
DeleteFile('C:\Windows\system32\drivers\iidfisqi.sys','32');
DeleteFile('C:\Windows\system32\drivers\iidnasmb.sys','32');
DeleteFile('C:\Windows\system32\drivers\iiukfjqq.sys','32');
DeleteFile('C:\Windows\system32\drivers\ijabvsnv.sys','32');
DeleteFile('C:\Windows\system32\drivers\ijdudhii.sys','32');
DeleteFile('C:\Windows\system32\drivers\ijjwdwnu.sys','32');
DeleteFile('C:\Windows\system32\drivers\ijkezkhi.sys','32');
DeleteFile('C:\Windows\system32\drivers\iaeoqaco.sys','32');
DeleteFile('C:\Windows\system32\drivers\iafxehqq.sys','32');
DeleteFile('C:\Windows\system32\drivers\iagyvoat.sys','32');
DeleteFile('C:\Windows\system32\drivers\iammjyqu.sys','32');
DeleteFile('C:\Windows\system32\drivers\iauraplh.sys','32');
DeleteFile('C:\Windows\system32\drivers\iavemgyd.sys','32');
DeleteFile('C:\Windows\system32\drivers\ibdrkpxs.sys','32');
DeleteFile('C:\Windows\system32\drivers\ibfhokgl.sys','32');
DeleteFile('C:\Windows\system32\drivers\ibkllcia.sys','32');
DeleteFile('C:\Windows\system32\drivers\ibtoaqyc.sys','32');
DeleteFile('C:\Windows\system32\drivers\ibvwcfuq.sys','32');
DeleteFile('C:\Windows\system32\drivers\ibwgkbli.sys','32');
DeleteFile('C:\Windows\system32\drivers\idjenhyi.sys','32');
DeleteFile('C:\Windows\system32\drivers\idsprzdk.sys','32');
DeleteFile('C:\Windows\system32\drivers\ieaspwyc.sys','32');
DeleteFile('C:\Windows\system32\drivers\ieqcwher.sys','32');
DeleteFile('C:\Windows\system32\drivers\ieweouko.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новые логи
Новый лог..
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('hutdabid');
DeleteService('huvaavft');
DeleteService('hvgecuqt');
DeleteService('hvnedyte');
DeleteService('hvrlznzh');
DeleteService('hvuvljrf');
DeleteService('hwewzrbh');
DeleteService('hwgzkifm');
DeleteService('hxarglcs');
DeleteService('hxepwedt');
DeleteService('hxgrjrmp');
DeleteService('hxivkzge');
DeleteService('hxmgztgc');
DeleteService('hxnvelqc');
DeleteService('hxpphqnp');
DeleteService('hxxsxuqg');
DeleteService('hxxtewyw');
DeleteService('hyalnqdt');
DeleteService('hyizfqop');
DeleteService('hyqvwnxc');
DeleteService('hyzwlbjj');
DeleteService('hzinukeb');
DeleteService('hzkfbnzt');
DeleteService('hzxiqcyj');
DeleteService('iuflwqff');
DeleteService('iupjuqoa');
DeleteService('hdkzcjar');
DeleteService('hdipntch');
DeleteService('hdensscb');
DeleteService('hdcmxyqm');
DeleteService('hcteovxo');
DeleteService('hcjedtqf');
DeleteService('hcexvelz');
DeleteService('hbtimcnr');
DeleteService('hbtdlihc');
DeleteService('hbmcblce');
DeleteService('hbgqjbod');
DeleteService('hakcmycx');
DeleteService('hagdexqx');
DeleteService('hafxqypz');
DeleteService('hacrfaoy');
DeleteService('gzobborl');
DeleteService('gysopiou');
DeleteService('gynxrkrk');
DeleteService('gyloprca');
DeleteService('gyadtfok');
DeleteService('gxmlhvdd');
DeleteService('gxkzmpnu');
DeleteService('gxhonobe');
DeleteService('gxfebyzj');
DeleteService('gxccsukb');
DeleteService('gwjuznum');
DeleteService('gwihvvpk');
DeleteService('gvlmpdfn');
DeleteService('gvjlbhwh');
DeleteService('gvincsyk');
DeleteService('gvhcjhxj');
DeleteService('gudwnccy');
DeleteService('gtlzrgmx');
DeleteService('gtkghmqf');
DeleteService('gtjzibvd');
DeleteService('gtgaawme');
DeleteService('gteaxafc');
DeleteService('gsxvowvw');
DeleteService('gsoampwa');
DeleteService('gsenazzm');
DeleteService('grobdfcr');
DeleteService('grdgyjfh');
DeleteService('gqrzeelq');
DeleteService('gqqsqavx');
DeleteService('gqnbgkwv');
DeleteService('gpzkwypv');
DeleteService('gpxgkolj');
DeleteService('gpcslrbp');
DeleteService('gpareduc');
DeleteService('goppsauh');
DeleteService('gomsfxft');
DeleteService('gnzbqesa');
DeleteService('gnyfepou');
DeleteService('gnxkomrm');
DeleteService('gnuqjvpp');
DeleteService('gntelmbz');
DeleteService('gnelktec');
DeleteService('gnbcjuvr');
DeleteService('gmxmmruj');
DeleteService('gmfhtpzj');
DeleteService('glzfwcwj');
DeleteService('glvdsibl');
DeleteService('glsujtfj');
DeleteService('glioafye');
DeleteService('gkwzhmqk');
DeleteService('gkptmsrx');
DeleteService('gkkhuwjq');
DeleteService('gkgvktss');
DeleteService('gjyssvsq');
DeleteService('gjrekmwx');
DeleteService('gjoxuqoe');
DeleteService('gjosurgr');
DeleteService('gjnliyst');
DeleteService('gjlaiqlh');
DeleteService('gjjnobbw');
DeleteService('gjimtplw');
DeleteService('gjdjwxql');
DeleteService('gioemsjd');
DeleteService('gimibjvh');
DeleteService('gidiiiqx');
DeleteService('gdfevwhm');
DeleteFile('C:\Windows\system32\drivers\gkwzhmqk.sys','32');
DeleteFile('C:\Windows\system32\drivers\gkptmsrx.sys','32');
DeleteFile('C:\Windows\system32\drivers\gkkhuwjq.sys','32');
DeleteFile('C:\Windows\system32\drivers\gkgvktss.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjyssvsq.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjrekmwx.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjoxuqoe.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjosurgr.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjnliyst.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjlaiqlh.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjjnobbw.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjimtplw.sys','32');
DeleteFile('C:\Windows\system32\drivers\gjdjwxql.sys','32');
DeleteFile('C:\Windows\system32\drivers\gioemsjd.sys','32');
DeleteFile('C:\Windows\system32\drivers\gimibjvh.sys','32');
DeleteFile('C:\Windows\system32\drivers\gidiiiqx.sys','32');
DeleteFile('C:\Windows\system32\drivers\gdfevwhm.sys','32');
DeleteFile('C:\Windows\system32\drivers\gnzbqesa.sys','32');
DeleteFile('C:\Windows\system32\drivers\gnyfepou.sys','32');
DeleteFile('C:\Windows\system32\drivers\gnxkomrm.sys','32');
DeleteFile('C:\Windows\system32\drivers\gnuqjvpp.sys','32');
DeleteFile('C:\Windows\system32\drivers\gntelmbz.sys','32');
DeleteFile('C:\Windows\system32\drivers\gnelktec.sys','32');
DeleteFile('C:\Windows\system32\drivers\gnbcjuvr.sys','32');
DeleteFile('C:\Windows\system32\drivers\gmxmmruj.sys','32');
DeleteFile('C:\Windows\system32\drivers\gmfhtpzj.sys','32');
DeleteFile('C:\Windows\system32\drivers\glzfwcwj.sys','32');
DeleteFile('C:\Windows\system32\drivers\glvdsibl.sys','32');
DeleteFile('C:\Windows\system32\drivers\glsujtfj.sys','32');
DeleteFile('C:\Windows\system32\drivers\glioafye.sys','32');
DeleteFile('C:\Windows\system32\drivers\grobdfcr.sys','32');
DeleteFile('C:\Windows\system32\drivers\grdgyjfh.sys','32');
DeleteFile('C:\Windows\system32\drivers\gqrzeelq.sys','32');
DeleteFile('C:\Windows\system32\drivers\gqqsqavx.sys','32');
DeleteFile('C:\Windows\system32\drivers\gqnbgkwv.sys','32');
DeleteFile('C:\Windows\system32\drivers\gpzkwypv.sys','32');
DeleteFile('C:\Windows\system32\drivers\gpxgkolj.sys','32');
DeleteFile('C:\Windows\system32\drivers\gpcslrbp.sys','32');
DeleteFile('C:\Windows\system32\drivers\gpareduc.sys','32');
DeleteFile('C:\Windows\system32\drivers\goppsauh.sys','32');
DeleteFile('C:\Windows\system32\drivers\gomsfxft.sys','32');
DeleteFile('C:\Windows\system32\drivers\gocsbsjm.sys','32');
DeleteFile('C:\Windows\system32\drivers\gudwnccy.sys','32');
DeleteFile('C:\Windows\system32\drivers\gtlzrgmx.sys','32');
DeleteFile('C:\Windows\system32\drivers\gtkghmqf.sys','32');
DeleteFile('C:\Windows\system32\drivers\gtjzibvd.sys','32');
DeleteFile('C:\Windows\system32\drivers\gtgaawme.sys','32');
DeleteFile('C:\Windows\system32\drivers\gteaxafc.sys','32');
DeleteFile('C:\Windows\system32\drivers\gsxvowvw.sys','32');
DeleteFile('C:\Windows\system32\drivers\gsoampwa.sys','32');
DeleteFile('C:\Windows\system32\drivers\gsenazzm.sys','32');
DeleteFile('C:\Windows\system32\drivers\gzobborl.sys','32');
DeleteFile('C:\Windows\system32\drivers\gysopiou.sys','32');
DeleteFile('C:\Windows\system32\drivers\gynxrkrk.sys','32');
DeleteFile('C:\Windows\system32\drivers\gyloprca.sys','32');
DeleteFile('C:\Windows\system32\drivers\gyadtfok.sys','32');
DeleteFile('C:\Windows\system32\drivers\gxmlhvdd.sys','32');
DeleteFile('C:\Windows\system32\drivers\gxkzmpnu.sys','32');
DeleteFile('C:\Windows\system32\drivers\gxhonobe.sys','32');
DeleteFile('C:\Windows\system32\drivers\gxfebyzj.sys','32');
DeleteFile('C:\Windows\system32\drivers\gxccsukb.sys','32');
DeleteFile('C:\Windows\system32\drivers\gwjuznum.sys','32');
DeleteFile('C:\Windows\system32\drivers\gwihvvpk.sys','32');
DeleteFile('C:\Windows\system32\drivers\gvlmpdfn.sys','32');
DeleteFile('C:\Windows\system32\drivers\gvjlbhwh.sys','32');
DeleteFile('C:\Windows\system32\drivers\gvincsyk.sys','32');
DeleteFile('C:\Windows\system32\drivers\gvhcjhxj.sys','32');
DeleteFile('C:\Windows\system32\drivers\hdkzcjar.sys','32');
DeleteFile('C:\Windows\system32\drivers\hdipntch.sys','32');
DeleteFile('C:\Windows\system32\drivers\hdensscb.sys','32');
DeleteFile('C:\Windows\system32\drivers\hdcmxyqm.sys','32');
DeleteFile('C:\Windows\system32\drivers\hcteovxo.sys','32');
DeleteFile('C:\Windows\system32\drivers\hcjedtqf.sys','32');
DeleteFile('C:\Windows\system32\drivers\hcexvelz.sys','32');
DeleteFile('C:\Windows\system32\drivers\hbtimcnr.sys','32');
DeleteFile('C:\Windows\system32\drivers\hbtdlihc.sys','32');
DeleteFile('C:\Windows\system32\drivers\hbmcblce.sys','32');
DeleteFile('C:\Windows\system32\drivers\hbgqjbod.sys','32');
DeleteFile('C:\Windows\system32\drivers\hakcmycx.sys','32');
DeleteFile('C:\Windows\system32\drivers\hagdexqx.sys','32');
DeleteFile('C:\Windows\system32\drivers\hafxqypz.sys','32');
DeleteFile('C:\Windows\system32\drivers\hacrfaoy.sys','32');
DeleteFile('C:\Windows\system32\drivers\hyalnqdt.sys','32');
DeleteFile('C:\Windows\system32\drivers\hyizfqop.sys','32');
DeleteFile('C:\Windows\system32\drivers\hyqvwnxc.sys','32');
DeleteFile('C:\Windows\system32\drivers\hyzwlbjj.sys','32');
DeleteFile('C:\Windows\system32\drivers\hzinukeb.sys','32');
DeleteFile('C:\Windows\system32\drivers\hzkfbnzt.sys','32');
DeleteFile('C:\Windows\system32\drivers\hzxiqcyj.sys','32');
DeleteFile('C:\Windows\system32\drivers\iuflwqff.sys','32');
DeleteFile('C:\Windows\system32\drivers\iupjuqoa.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxpphqnp.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxxsxuqg.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxxtewyw.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxarglcs.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxepwedt.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxgrjrmp.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxivkzge.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxmgztgc.sys','32');
DeleteFile('C:\Windows\system32\drivers\hxnvelqc.sys','32');
DeleteFile('C:\Windows\system32\drivers\hutdabid.sys','32');
DeleteFile('C:\Windows\system32\drivers\huvaavft.sys','32');
DeleteFile('C:\Windows\system32\drivers\hvgecuqt.sys','32');
DeleteFile('C:\Windows\system32\drivers\hvnedyte.sys','32');
DeleteFile('C:\Windows\system32\drivers\hvrlznzh.sys','32');
DeleteFile('C:\Windows\system32\drivers\hvuvljrf.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новые логи
новый лог..
Удалите SpyHunter и следы всех других использованных антивирусных продуктов и утилита
Выполните скрипт в AVZ
[code]begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
DeleteService('htjurwcz');
DeleteService('htaeimwh');
DeleteService('hsoqcvbo');
DeleteService('hsnqxcwj');
DeleteService('hsjtucri');
DeleteService('hsjjabky');
DeleteService('hsiwcoou');
DeleteService('hsdobkxl');
DeleteService('hrxribul');
DeleteService('hresyyid');
DeleteService('hrcznhsx');
DeleteService('hqvgufkw');
DeleteService('hqcdylwx');
DeleteService('hqbaskkg');
DeleteService('hpzgggxu');
DeleteService('hpkpqzzd');
DeleteService('hpguwujj');
DeleteService('hpazuzrh');
DeleteService('howcgvuk');
DeleteService('hotvucyb');
DeleteService('hopyecyn');
DeleteService('hnxjyoxp');
DeleteService('hnvcwdoz');
DeleteService('hnsuaatq');
DeleteService('hnmisnqm');
DeleteService('hmypavlo');
DeleteService('hmnhfwar');
DeleteService('hmkbnsks');
DeleteService('hmfalohs');
DeleteService('hlpszyyk');
DeleteService('hllzzpbc');
DeleteService('hljdidht');
DeleteService('hlcwpjis');
DeleteService('hkxlxpeh');
DeleteService('hkncfnjf');
DeleteService('hkitrktp');
DeleteService('hjqwyhvk');
DeleteService('hjpoatau');
DeleteService('hjpgtnok');
DeleteService('hjcmldim');
DeleteService('hiqqgfdl');
DeleteService('hiorlgud');
DeleteService('hhzicowh');
DeleteService('hhhxkxnv');
DeleteService('hhgwqekz');
DeleteService('hhdpxsks');
DeleteService('hgunaukb');
DeleteService('hgrcuvmg');
DeleteService('hfymudpe');
DeleteService('hfjzmbia');
DeleteService('hfdrptlg');
DeleteService('hfcpxmhu');
DeleteService('heuzudtq');
DeleteService('herelijc');
DeleteService('hekqtddf');
DeleteService('hebfjrmw');
DeleteFile('C:\Windows\system32\drivers\hhzicowh.sys','32');
DeleteFile('C:\Windows\system32\drivers\hhhxkxnv.sys','32');
DeleteFile('C:\Windows\system32\drivers\hhgwqekz.sys','32');
DeleteFile('C:\Windows\system32\drivers\hhdpxsks.sys','32');
DeleteFile('C:\Windows\system32\drivers\hgunaukb.sys','32');
DeleteFile('C:\Windows\system32\drivers\hgrcuvmg.sys','32');
DeleteFile('C:\Windows\system32\drivers\hfymudpe.sys','32');
DeleteFile('C:\Windows\system32\drivers\hfjzmbia.sys','32');
DeleteFile('C:\Windows\system32\drivers\hfdrptlg.sys','32');
DeleteFile('C:\Windows\system32\drivers\hfcpxmhu.sys','32');
DeleteFile('C:\Windows\system32\drivers\heuzudtq.sys','32');
DeleteFile('C:\Windows\system32\drivers\herelijc.sys','32');
DeleteFile('C:\Windows\system32\drivers\hekqtddf.sys','32');
DeleteFile('C:\Windows\system32\drivers\hebfjrmw.sys','32');
DeleteFile('C:\Windows\system32\drivers\hmypavlo.sys','32');
DeleteFile('C:\Windows\system32\drivers\hmnhfwar.sys','32');
DeleteFile('C:\Windows\system32\drivers\hmkbnsks.sys','32');
DeleteFile('C:\Windows\system32\drivers\hmfalohs.sys','32');
DeleteFile('C:\Windows\system32\drivers\hlpszyyk.sys','32');
DeleteFile('C:\Windows\system32\drivers\hllzzpbc.sys','32');
DeleteFile('C:\Windows\system32\drivers\hljdidht.sys','32');
DeleteFile('C:\Windows\system32\drivers\hlcwpjis.sys','32');
DeleteFile('C:\Windows\system32\drivers\hkxlxpeh.sys','32');
DeleteFile('C:\Windows\system32\drivers\hkncfnjf.sys','32');
DeleteFile('C:\Windows\system32\drivers\hkitrktp.sys','32');
DeleteFile('C:\Windows\system32\drivers\hjqwyhvk.sys','32');
DeleteFile('C:\Windows\system32\drivers\hjpoatau.sys','32');
DeleteFile('C:\Windows\system32\drivers\hjpgtnok.sys','32');
DeleteFile('C:\Windows\system32\drivers\hjcmldim.sys','32');
DeleteFile('C:\Windows\system32\drivers\hiqqgfdl.sys','32');
DeleteFile('C:\Windows\system32\drivers\hiorlgud.sys','32');
DeleteFile('C:\Windows\system32\drivers\hqvgufkw.sys','32');
DeleteFile('C:\Windows\system32\drivers\hqcdylwx.sys','32');
DeleteFile('C:\Windows\system32\drivers\hqbaskkg.sys','32');
DeleteFile('C:\Windows\system32\drivers\hpzgggxu.sys','32');
DeleteFile('C:\Windows\system32\drivers\hpkpqzzd.sys','32');
DeleteFile('C:\Windows\system32\drivers\hpguwujj.sys','32');
DeleteFile('C:\Windows\system32\drivers\hpazuzrh.sys','32');
DeleteFile('C:\Windows\system32\drivers\howcgvuk.sys','32');
DeleteFile('C:\Windows\system32\drivers\hotvucyb.sys','32');
DeleteFile('C:\Windows\system32\drivers\hopyecyn.sys','32');
DeleteFile('C:\Windows\system32\drivers\hnxjyoxp.sys','32');
DeleteFile('C:\Windows\system32\drivers\hnvcwdoz.sys','32');
DeleteFile('C:\Windows\system32\drivers\hnsuaatq.sys','32');
DeleteFile('C:\Windows\system32\drivers\hnmisnqm.sys','32');
DeleteFile('C:\Windows\system32\drivers\htjurwcz.sys','32');
DeleteFile('C:\Windows\system32\drivers\htaeimwh.sys','32');
DeleteFile('C:\Windows\system32\drivers\hsoqcvbo.sys','32');
DeleteFile('C:\Windows\system32\drivers\hsnqxcwj.sys','32');
DeleteFile('C:\Windows\system32\drivers\hsjtucri.sys','32');
DeleteFile('C:\Windows\system32\drivers\hsjjabky.sys','32');
DeleteFile('C:\Windows\system32\drivers\hsiwcoou.sys','32');
DeleteFile('C:\Windows\system32\drivers\hsdobkxl.sys','32');
DeleteFile('C:\Windows\system32\drivers\hrxribul.sys','32');
DeleteFile('C:\Windows\system32\drivers\hresyyid.sys','32');
DeleteFile('C:\Windows\system32\drivers\hrcznhsx.sys','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.[/code]Компьютер перезагрузится.
Сделайте новые логи
Лог..
Больше в логах ничего непонятного не видно
К сожалению, при установке KAV 2015 выдает все такую же ошибку..
Зато встал KAV 2014. Спасибо за помощь.