Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
TerminateProcessByName('c:\program files\common files\baidu\baiduprotect1.3\1.3.0.542\baiduprotect.exe');
StopService('bd0001');
StopService('bd0002');
StopService('BDArKit');
StopService('BDEnhanceBoost');
StopService('BDMWrench');
StopService('BDSGRTP');
StopService('{58aaf827-6246-4d80-8213-f02005f6345c}t');
StopService('{96728e9b-774e-43fa-bf44-9e57cbc02dd6}t');
StopService('{ce829092-d2cb-453a-9c09-cdd50fde0e79}t');
StopService('{e2e44ce3-4559-4a54-80cd-b03dde88f37b}t');
DeleteService('bd0001');
DeleteService('bd0002');
DeleteService('BDArKit');
DeleteService('BDEnhanceBoost');
DeleteService('BDMWrench');
DeleteService('BDSGRTP');
DeleteService('{96728e9b-774e-43fa-bf44-9e57cbc02dd6}t');
DeleteService('{e2e44ce3-4559-4a54-80cd-b03dde88f37b}t');
DeleteService('{58aaf827-6246-4d80-8213-f02005f6345c}t');
DeleteService('{ce829092-d2cb-453a-9c09-cdd50fde0e79}t');
QuarantineFile('C:\Documents and Settings\Вадим\Application Data\Browsers\exe.erolpxei.bat','');
QuarantineFile('C:\Documents and Settings\Вадим\Local Settings\Application Data\Kometa\Application\kometa.exe','');
QuarantineFile('C:\Documents and Settings\All Users\AdMunch\Amtrstarter.exe','');
QuarantineFile('C:\Documents and Settings\Application Data\IUKBUKHL.exe','');
QuarantineFile('C:\Program Files\AnyProtectEx\AnyProtect.exe','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\7z.dll','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\ad.dll','');
QuarantineFile('c:\program files\common files\baidu\baiduprotect1.3\1.3.0.542\baiduprotect.exe','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\BDKitUtils.dll','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\BDLogicUtils.dll','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\DriverManager.dll','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\plugins\BaiduRepair.dll','');
QuarantineFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\SafeExplorer.dll','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-1-6.exe','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-1-7.exe','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-10.exe','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-4.exe','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-5.exe','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-6.exe','');
QuarantineFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-7.exe','');
QuarantineFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-1-6.exe','');
QuarantineFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-1-7.exe','');
QuarantineFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-10.exe','');
QuarantineFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-5.exe','');
QuarantineFile('C:\Program Files\MiPony\MiPony.exe','');
QuarantineFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-1-6.exe','');
QuarantineFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-1-7.exe','');
QuarantineFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-4.exe','');
QuarantineFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-5.exe','');
QuarantineFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-6.exe','');
QuarantineFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-7.exe','');
QuarantineFile('C:\Program Files\ShopperPro\ShopperPro.exe','');
QuarantineFile('C:\Program Files\ShopperPro\Updater.exe','');
QuarantineFile('C:\Program Files\ver3BlockAndSurf\J4BlockAndSurfJ52.exe','');
QuarantineFile('C:\Program Files\YTDownloader\Updater.exe','');
QuarantineFile('C:\Program Files\YTDownloader\YTDownloader.exe','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\bd0001.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\bd0002.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\bd0004.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\BDArKit.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\BDEnhanceBoost.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\BDMWrench.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\{96728e9b-774e-43fa-bf44-9e57cbc02dd6}t.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\{b9a19c25-a741-47e5-91a2-0b62bef307ff}t.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\{ce829092-d2cb-453a-9c09-cdd50fde0e79}t.sys','');
DeleteFile('C:\Documents and Settings\Вадим\Application Data\Browsers\exe.erolpxei.bat','32');
DeleteFile('C:\Documents and Settings\Вадим\Local Settings\Application Data\Kometa\Application\kometa.exe','32');
DeleteFile('C:\Documents and Settings\Application Data\IUKBUKHL.exe','32');
DeleteFile('C:\Program Files\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\ad.dll','32');
DeleteFile('c:\program files\common files\baidu\baiduprotect1.3\1.3.0.542\baiduprotect.exe','32');
DeleteFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\BDLogicUtils.dll','32');
DeleteFile('C:\Program Files\Common Files\Baidu\BaiduProtect1.3\1.3.0.542\DriverManager.dll','32');
DeleteFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-10.exe','32');
DeleteFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-4.exe','32');
DeleteFile('C:\Program Files\Ge-Force\351d23af-1ca9-4dae-ae7b-0faf6795fb13-5.exe','32');
DeleteFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-1-6.exe','32');
DeleteFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-10.exe','32');
DeleteFile('C:\Program Files\GoHDV09.03\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-5.exe','32');
DeleteFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-1-6.exe','32');
DeleteFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-1-7.exe','32');
DeleteFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-4.exe','32');
DeleteFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-5.exe','32');
DeleteFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-6.exe','32');
DeleteFile('C:\Program Files\Sense\42e00828-a151-40ec-9147-500b5bb0a596-7.exe','32');
DeleteFile('C:\Program Files\ShopperPro\ShopperPro.exe','32');
DeleteFile('C:\Program Files\ShopperPro\Updater.exe','32');
DeleteFile('C:\Program Files\ver3BlockAndSurf\J4BlockAndSurfJ52.exe','32');
DeleteFile('C:\Program Files\YTDownloader\Updater.exe','32');
DeleteFile('C:\Program Files\YTDownloader\YTDownloader.exe','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\bd0001.sys','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\bd0002.sys','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\bd0004.sys','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\BDArKit.sys','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\BDEnhanceBoost.sys','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\BDMWrench.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\{b9a19c25-a741-47e5-91a2-0b62bef307ff}t.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\{e2e44ce3-4559-4a54-80cd-b03dde88f37b}t.sys','32');
DeleteFile('C:\WINDOWS\Tasks\351d23af-1ca9-4dae-ae7b-0faf6795fb13-4.job','32');
DeleteFile('C:\WINDOWS\Tasks\351d23af-1ca9-4dae-ae7b-0faf6795fb13-5.job','32');
DeleteFile('C:\WINDOWS\Tasks\351d23af-1ca9-4dae-ae7b-0faf6795fb13-6.job','32');
DeleteFile('C:\WINDOWS\Tasks\351d23af-1ca9-4dae-ae7b-0faf6795fb13-7.job','32');
DeleteFile('C:\WINDOWS\Tasks\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-1-6.job','32');
DeleteFile('C:\WINDOWS\Tasks\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-1-7.job','32');
DeleteFile('C:\WINDOWS\Tasks\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-10_user.job','32');
DeleteFile('C:\WINDOWS\Tasks\3f41dd1f-4ab7-47c5-b477-97b75e4a1a74-5.job','32');
DeleteFile('C:\WINDOWS\Tasks\42e00828-a151-40ec-9147-500b5bb0a596-1-6.job','32');
DeleteFile('C:\WINDOWS\Tasks\42e00828-a151-40ec-9147-500b5bb0a596-1-7.job','32');
DeleteFile('C:\WINDOWS\Tasks\42e00828-a151-40ec-9147-500b5bb0a596-4.job','32');
DeleteFile('C:\WINDOWS\Tasks\42e00828-a151-40ec-9147-500b5bb0a596-5.job','32');
DeleteFile('C:\WINDOWS\Tasks\42e00828-a151-40ec-9147-500b5bb0a596-6.job','32');
DeleteFile('C:\WINDOWS\Tasks\42e00828-a151-40ec-9147-500b5bb0a596-7.job','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP1.job','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP3.job','32');
DeleteFile('C:\WINDOWS\Tasks\IUKBUKHL.job','32');
DeleteFile('C:\WINDOWS\Tasks\ShopperPro.job','32');
DeleteFile('C:\WINDOWS\Tasks\ShopperProJSUpd.job','32');
DeleteFile('C:\WINDOWS\Tasks\YTDownloader.job','32');
DeleteFile('C:\WINDOWS\Tasks\YTDownloaderUpd.job','32');
DeleteFileMask('C:\Program Files\ShopperPro', '*', true, ' ');
DeleteDirectory('C:\Program Files\ShopperPro');
DeleteFileMask('C:\Program Files\ver3BlockAndSurf', '*', true, ' ');
DeleteDirectory('C:\Program Files\ver3BlockAndSurf');
DeleteFileMask('C:\Program Files\Sense', '*', true, ' ');
DeleteDirectory('C:\Program Files\Sense');
DeleteFileMask('C:\Program Files\GoHDV09.03', '*', true, ' ');
DeleteDirectory('C:\Program Files\GoHDV09.03');
DeleteFileMask('C:\Program Files\Ge-Force', '*', true, ' ');
DeleteDirectory('C:\Program Files\Ge-Force');
DeleteFileMask('c:\program files\common files\baidu', '*', true, ' ');
DeleteDirectory('c:\program files\common files\baidu');
DeleteFileMask('C:\Documents and Settings\Вадим\Application Data\Browsers', '*', true, ' ');
DeleteDirectory('C:\Documents and Settings\Вадим\Application Data\Browsers');
DeleteFileMask('C:\Documents and Settings\Вадим\Local Settings\Application Data\Kometa', '*', true, ' ');
DeleteDirectory('C:\Documents and Settings\Вадим\Local Settings\Application Data\Kometa');
BC_ImportALL;
ExecuteSysClean;
BC_Activate;
ExecuteRepair(3);
ExecuteRepair(4);
ExecuteWizard('SCU', 2, 3, true);
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.