Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Program Files\contentprotector\nss\certutil.exe','');
QuarantineFile('C:\ProgramData\WindowsMsg\osmsg.exe','');
DelCLSID('{754DF2CE-51E8-4895-B53C-6381418B84AE}');
DelCLSID('{63332668-8CE1-445D-A5EE-25929176714E}');
QuarantineFile('C:\ProgramData\tasklist.exe','');
QuarantineFile('C:\Program Files\Caster\wizzcaster.exe','');
SetServiceStart('QMUdisk', 4);
SetServiceStart('QQSysMonX64', 4);
SetServiceStart('softaal', 4);
SetServiceStart('TAOKernelDriver', 4);
SetServiceStart('TFsFlt', 4);
SetServiceStart('TS888x64', 4);
SetServiceStart('tsnethlpx64', 4);
DeleteService('TSSKX64');
DeleteService('TSSysKit');
DeleteService('tsnethlpx64');
DeleteService('TS888x64');
DeleteService('TFsFlt');
DeleteService('TAOKernelDriver');
DeleteService('TAOAccelerator');
DeleteService('softaal');
DeleteService('QQSysMonX64');
DeleteService('QMUdisk');
DeleteService('zygytyvezbt');
QuarantineFile('C:\Program Files (x86)\9381DEEE-1463675236-44EA-6C6E-001B38CCB8A1\knsd64AB.tmpfs','');
SetServiceStart('QQPCRTP', 4);
DeleteService('QQPCRTP');
TerminateProcessByName('c:\users\eugene\appdata\roaming\utorrent\updates\3.4.7_42330\utorrentie.exe');
TerminateProcessByName('c:\users\eugene\appdata\local\temp\nsn620f.tmp\qqphonemanagerbrowserutil.exe');
QuarantineFile('c:\users\eugene\appdata\local\temp\nsn620f.tmp\qqphonemanagerbrowserutil.exe','');
TerminateProcessByName('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\plugin\qqphonemanager-5.5.1_710201.4892.pa.exe');
TerminateProcessByName('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qqpctray.exe');
TerminateProcessByName('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qqpcrtp.exe');
TerminateProcessByName('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qqpcrealtimespeedup.exe');
TerminateProcessByName('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\qqpcnetflow.exe');
TerminateProcessByName('c:\users\eugene\appdata\local\temp\nss3ae0.tmp\plugininstaller.exe');
TerminateProcessByName('C:\Users\Eugene\AppData\Local\Temp\nss3AE0.tmp\PluginInstaller.exe');
TerminateProcessByName('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qmusbguard.exe');
QuarantineFile('C:\Users\Eugene\AppData\Local\Temp\nss3AE0.tmp\PluginInstaller.exe','');
QuarantineFile('c:\users\eugene\appdata\local\temp\nss3ae0.tmp\plugininstaller.exe','');
QuarantineFile('c:\program files (x86)\moshouinput\mohpimyin.exe','');
DeleteFile('c:\users\eugene\appdata\local\temp\nss3ae0.tmp\plugininstaller.exe','32');
DeleteFile('C:\Users\Eugene\AppData\Local\Temp\nss3AE0.tmp\PluginInstaller.exe','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qmusbguard.exe','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\qqpcnetflow.exe','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qqpcrealtimespeedup.exe','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qqpcrtp.exe','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\qqpctray.exe','32');
DeleteFile('c:\program files (x86)\tencent\qqpcmgr\11.5.17490.219\plugin\qqphonemanager-5.5.1_710201.4892.pa.exe','32');
DeleteFile('c:\users\eugene\appdata\local\temp\nsn620f.tmp\qqphonemanagerbrowserutil.exe','32');
DeleteFile('c:\users\eugene\appdata\roaming\utorrent\updates\3.4.7_42330\utorrentie.exe','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\7z.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\AndroidAssistHelper.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\AndroidServer\1.0.0.512\AndroidDevice.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\AndroidServer\1.0.0.512\NetworkMgr.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\AndroidServer\1.0.0.512\QQPMIpc.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\AndroidServer\1.0.0.512\Sdkclient.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\arkGraphic.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\CheckSysHung.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\Common.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\communic.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\DLProtectComm.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\dr.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\qmtrayplugin\QMCmcTrayPlugin\QMCmcTrayPlugin.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\qmtrayplugin\QMDnsMonitor\QMDnsMonitor.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\qmtrayplugin\QMClinicTrayPlugin\QMClinicTrayPlugin.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\qmtrayplugin\QMBJTrayPlugin\QMBJTrayPlugin.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMTrayPlugin\QMAutoTaskPlugin\SubPlugins\SpeedupMsg.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMTrayPlugin\QMAutoTaskPlugin\SubPlugins\OperationFileCloudMgr.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMTrayPlugin\QMAutoTaskPlugin\SubPlugins\GameSpeedupExposure.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TAOBase.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\SXCombase.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\StartupMgrDll.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\sqlite.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\SoftMgr\processlogdll.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMUdisk64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQSysMonX64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\softaal64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMGR\SRepairDrv','32');
DeleteFile('C:\Windows\system32\Drivers\TAOAccelerator64.sys','32');
DeleteFile('C:\Windows\system32\Drivers\TAOKernel64.sys','32');
DeleteFile('C:\Windows\system32\Drivers\TFsFltX64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TS888x64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TsNetHlpX64.sys','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSSysKit64.sys','32');
DeleteFile('C:\Program Files (x86)\9381DEEE-1463675236-44EA-6C6E-001B38CCB8A1\knsd64AB.tmpfs','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','QQPCTray');
DeleteFile('C:\Program Files (x86)\MoshouInput\mohpimyin.exe','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','mohpimyin.exe');
DeleteFile('C:\ProgramData\tasklist.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','tasklist.exe -start');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMContextScan.dll','32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\FileSmash\QMSoftExt.dll','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved','{754DF2CE-51E8-4895-B53C-6381418B84AE}');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved','{63332668-8CE1-445D-A5EE-25929176714E}');
DeleteFile('C:\Windows\system32\Tasks\NetWork\Shell\Input Updater','64');
DeleteFile('C:\ProgramData\WindowsMsg\osmsg.exe','32');
DeleteFile('C:\Windows\system32\Tasks\osTip','64');
DeleteFile('C:\Windows\system32\Tasks\ttwifi','64');
DeleteFile('C:\Users\Eugene\AppData\Local\PPTAssist\utility\uninst.exe','32');
DeleteFile('C:\Windows\system32\Tasks\{B42C3813-97A3-403F-A483-B27BB1CF1AF7}','64');
DeleteFile('C:\Program Files\contentprotector\nss\certutil.exe','32');
DeleteFile('C:\Program Files\contentprotector\nss\mozcrt19.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\nspr4.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\nss3.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\plc4.dll','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Будет выполнена перезагрузка компьютера.