Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('C:\Program Files (x86)\DPower\359VZB9VET.exe');
TerminateProcessByName('C:\Program Files (x86)\DPower\8VGW3BI7TH.exe');
TerminateProcessByName('C:\Program Files\49I6Q9JR5R\49I6Q9JR5.exe');
TerminateProcessByName('C:\Program Files\6J7E5PNQEN\6J7E5PNQE.exe');
TerminateProcessByName('C:\Program Files\DK7KGKOYUX\Q9EZPJUZT.exe');
TerminateProcessByName('C:\Program Files\JWTHN0NDF9\R28MJBWPO.exe');
TerminateProcessByName('C:\Program Files\NDXLCNSIZ2\2N0C71XD2.exe');
TerminateProcessByName('C:\Program Files\T7EWEILPON\C16PP1TQE.exe');
TerminateProcessByName('C:\Program Files\ZTPOERMVJ9\SA4OABJVA.exe');
TerminateProcessByName('C:\Users\Сергей\AppData\Roaming\vnlgp\vnlgp.exe');
StopService('bfmybhzy');
StopService('ed2kidle');
StopService('hunytuzo');
StopService('Intelabcbeefaab');
StopService('iThemes5');
StopService('p1486558692am');
StopService('p1486632658am');
StopService('serverss');
StopService('serverws');
StopService('SHARPreports');
StopService('vocwrmii');
DeleteFile('vocwrmii.sys','32');
DeleteService('ed2kidle');
DeleteService('hunytuzo');
DeleteService('Intelabcbeefaab');
DeleteService('iSafeService');
DeleteService('iThemes5');
DeleteService('serverss');
DeleteService('serverws');
DeleteService('SHARPreports');
QuarantineFile('C:\Program Files (x86)\a5bcb60e-4ef0-4719-a059-4152377a25b41486204007\Intelabcbeefaab.dll','');
QuarantineFile('C:\Program Files (x86)\a5bcb60e-4ef0-4719-a059-4152377a25b41486204007\kns574.tmp','');
QuarantineFile('C:\Program Files (x86)\amuleC1\ed2k.exe','');
QuarantineFile('C:\Program Files (x86)\Applefat\Application\chrome.dll','');
QuarantineFile('C:\Program Files (x86)\baidu\uc.exe','');
QuarantineFile('C:\Program Files (x86)\Bozoty Agent\local64spl.dll','');
QuarantineFile('C:\Program Files (x86)\Clerack_\rezagh.exe','');
QuarantineFile('C:\Program Files (x86)\Common Files\Quoteex\uninstall.dat','');
QuarantineFile('C:\Program Files (x86)\Common Files\Quoteex\uninstall.exe','');
QuarantineFile('C:\Program Files (x86)\Common Files\Services\iThemes.dll','');
QuarantineFile('C:\Program Files (x86)\DPower\359VZB9VET.exe','');
QuarantineFile('C:\Program Files (x86)\DPower\8VGW3BI7TH.exe','');
QuarantineFile('C:\Program Files (x86)\DPower\9IEJBE.exe','');
QuarantineFile('C:\Program Files (x86)\DPower\DEPVMW.exe','');
QuarantineFile('C:\Program Files (x86)\DPower\DiskPower.exe','');
QuarantineFile('C:\Program Files (x86)\DPower\GI8DBP.exe','');
QuarantineFile('C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe','');
QuarantineFile('C:\Program Files (x86)\Elex-tech\YAC\uninstall.exe','');
QuarantineFile('C:\Program Files (x86)\gamesdesktop\C7BO5U.exe','');
QuarantineFile('C:\Program Files (x86)\gamesdesktop\XLU1SO.exe','');
QuarantineFile('c:\program files (x86)\gubed\gubedzl.dll','');
QuarantineFile('C:\Program Files (x86)\Gub\GubZL.dll','');
QuarantineFile('c:\program files (x86)\gub\gubzl.dll','');
QuarantineFile('C:\Program Files (x86)\ScreenUp\future_helper.exe','');
QuarantineFile('C:\Program Files (x86)\Sterhry\berry.exe','');
QuarantineFile('C:\Program Files (x86)\Stfokchaquy\kogght.exe','');
QuarantineFile('c:\program files (x86)\stfokchaquy_\artdebuger.dll','');
QuarantineFile('C:\Program Files (x86)\Stfokchaquy_\artDebuger.dll','');
QuarantineFile('c:\program files (x86)\winarcher\archer.dll','');
QuarantineFile('C:\Program Files (x86)\WinArcher\Archer.dll','');
QuarantineFile('C:\Program Files\49I6Q9JR5R\49I6Q9JR5.exe','');
QuarantineFile('C:\Program Files\6J7E5PNQEN\6J7E5PNQE.exe','');
QuarantineFile('C:\Program Files\DK7KGKOYUX\Q9EZPJUZT.exe','');
QuarantineFile('C:\Program Files\JWTHN0NDF9\R28MJBWPO.exe','');
QuarantineFile('C:\Program Files\NDXLCNSIZ2\2N0C71XD2.exe','');
QuarantineFile('C:\Program Files\T7EWEILPON\C16PP1TQE.exe','');
QuarantineFile('C:\Program Files\ZTPOERMVJ9\SA4OABJVA.exe','');
QuarantineFile('C:\ProgramData\Microsoft\IdentityCRL\ppcrlui.dll','');
QuarantineFile('c:\programdata\microsoft\identitycrl\ppcrlui.dll','');
QuarantineFile('C:\ProgramData\WinSAPSvc\WinSAP.dll','');
QuarantineFile('c:\programdata\winsapsvc\winsap.dll','');
QuarantineFile('C:\ProgramData\wintools\WintoolUprI.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\FilterStart\FilterStart.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\Hostinstaller\1453266471_monster.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\Root Standart Helper.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\Temp\0EEPE3A5UA.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\Temp\40-41d49-37f-92195-f1db07e139125\CIIXKSOLNC.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\Temp\6IIBMYHR0S.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Local\Temp\Z7CEDBEPGT.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Roaming\Event Monitor\em.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Roaming\vnlgp\vnlgp.exe','');
QuarantineFile('C:\Users\Сергей\AppData\Roaming\WinSnare\WinSnare.dll','');
QuarantineFile('C:\Users\D899~1\AppData\Local\Temp\bk9E5F.tmp\p1486632658am.sys','');
QuarantineFile('C:\Users\D899~1\AppData\Local\Temp\bkCCF7.tmp\p1486558692am.sys','');
QuarantineFile('C:\Windows\system32\drivers\bfmybhzy.sys','');
QuarantineFile('C:\Windows\Temp\8273.tmp','');
QuarantineFile('C:\Windows\Temp\B034.tmp','');
QuarantineFile('vocwrmii.sys','');
DeleteFile('C:\Program Files (x86)\a5bcb60e-4ef0-4719-a059-4152377a25b41486204007\Intelabcbeefaab.dll','32');
DeleteFile('C:\Program Files (x86)\a5bcb60e-4ef0-4719-a059-4152377a25b41486204007\kns574.tmp','32');
DeleteFile('C:\Program Files (x86)\amuleC1\ed2k.exe','32');
DeleteFile('C:\Program Files (x86)\baidu\uc.exe','32');
DeleteFile('C:\Program Files (x86)\Bozoty Agent\local64spl.dll','32');
DeleteFile('C:\Program Files (x86)\Clerack_\rezagh.exe','32');
DeleteFile('C:\Program Files (x86)\Common Files\Quoteex\uninstall.dat','32');
DeleteFile('C:\Program Files (x86)\Common Files\Quoteex\uninstall.exe','32');
DeleteFile('C:\Program Files (x86)\Common Files\Services\iThemes.dll','32');
DeleteFile('C:\Program Files (x86)\DPower\359VZB9VET.exe','32');
DeleteFile('C:\Program Files (x86)\DPower\8VGW3BI7TH.exe','32');
DeleteFile('C:\Program Files (x86)\DPower\9IEJBE.exe','32');
DeleteFile('C:\Program Files (x86)\DPower\DEPVMW.exe','32');
DeleteFile('C:\Program Files (x86)\DPower\DiskPower.exe','32');
DeleteFile('C:\Program Files (x86)\DPower\GI8DBP.exe','32');
DeleteFile('C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe','32');
DeleteFile('C:\Program Files (x86)\Elex-tech\YAC\uninstall.exe','32');
DeleteFile('C:\Program Files (x86)\gamesdesktop\C7BO5U.exe','32');
DeleteFile('C:\Program Files (x86)\gamesdesktop\XLU1SO.exe','32');
DeleteFile('C:\Program Files (x86)\Gubed\GubedZL.dll','32');
DeleteFile('c:\program files (x86)\gubed\gubedzl.dll','32');
DeleteFile('c:\program files (x86)\gub\gubzl.dll','32');
DeleteFile('C:\Program Files (x86)\Gub\GubZL.dll','32');
DeleteFile('C:\Program Files (x86)\reports\SHARPreports.dll','32');
DeleteFile('C:\Program Files (x86)\ScreenUp\future_helper.exe','32');
DeleteFile('C:\Program Files (x86)\Sterhry\berry.exe','32');
DeleteFile('C:\Program Files (x86)\Stfokchaquy\kogght.exe','32');
DeleteFile('c:\program files (x86)\stfokchaquy_\artdebuger.dll','32');
DeleteFile('C:\Program Files (x86)\Stfokchaquy_\artDebuger.dll','32');
DeleteFile('C:\Program Files (x86)\WinArcher\Archer.dll','32');
DeleteFile('c:\program files (x86)\winarcher\archer.dll','32');
DeleteFile('C:\Program Files\49I6Q9JR5R\49I6Q9JR5.exe','32');
DeleteFile('C:\Program Files\6J7E5PNQEN\6J7E5PNQE.exe','32');
DeleteFile('C:\Program Files\DK7KGKOYUX\Q9EZPJUZT.exe','32');
DeleteFile('C:\Program Files\JWTHN0NDF9\R28MJBWPO.exe','32');
DeleteFile('C:\Program Files\NDXLCNSIZ2\2N0C71XD2.exe','32');
DeleteFile('C:\Program Files\T7EWEILPON\C16PP1TQE.exe','32');
DeleteFile('C:\Program Files\ZTPOERMVJ9\SA4OABJVA.exe','32');
DeleteFile('C:\ProgramData\Microsoft\IdentityCRL\ppcrlui.dll','32');
DeleteFile('C:\ProgramData\WinSAPSvc\WinSAP.dll','32');
DeleteFile('C:\ProgramData\wintools\WintoolUprI.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\FilterStart\FilterStart.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\Hostinstaller\1453266471_monster.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\Root Standart Helper.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\Temp\0EEPE3A5UA.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\Temp\40-41d49-37f-92195-f1db07e139125\CIIXKSOLNC.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\Temp\6IIBMYHR0S.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Local\Temp\Z7CEDBEPGT.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Roaming\Event Monitor\em.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Roaming\vnlgp\vnlgp.exe','32');
DeleteFile('C:\Users\Сергей\AppData\Roaming\WinSnare\WinSnare.dll','32');
ExecuteFile('schtasks.exe', '/delete /TN "Bozoty Agent" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Language Standart Manager" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Line Current Helper" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Meophhapusy Adapter" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Milimili" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Pruvught Center" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Root Standart Helper" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "RunAtStartup" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Soft installer" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Vdeghcosily" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "WinTOOL" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{2820C2FF-ABC5-4C90-A0E8-E8BB4099CE8F}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{33302D42-4236-45E8-ADDB-CA76DD05C08C}" /F', 0, 15000, true);
DeleteFile('C:\Windows\Temp\8273.tmp','32');
DeleteFile('C:\Windows\Temp\B034.tmp','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','6APRSOQWPS');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','7I42XK3J4I');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','7PV2JUFVI1');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','apphide');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','CIIXKSOLNC.exe');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','DDDDSRMFJ8');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','EJDSECANS8');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','HV8N73FZIM');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','KJM5UQ0BYT');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','svchost0');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','VN7W0OJN8J');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','XFGORS8IHJ');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','DiskPower');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','vnlgp');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OMEWPRODUCT_0NLKL');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OMEWPRODUCT_3MV88');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OMEWPRODUCT_HXWR7');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OMEWPRODUCT_PTA6K');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OMEWPRODUCT_VQ23Y');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OMEWPRODUCT_WDBXM');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OTUTPRODUCT_ZJLM3');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','OTUTPRODUCT_ZVUR8');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\Archer\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\GubedZL\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\GubZL\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\MSLN\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\Sezght\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\WinSAPSvc\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\WinSnare\Parameters','ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SYSTEM\CurrentControlSet\Services\Eventlog\Application\WinSnare','EventMessageFile');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
ExecuteRepair(3);
ExecuteRepair(4);
ExecuteWizard('SCU', 2, 3, true);
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.