Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
end;
QuarantineFile('C:\WINDOWS\system32\cphxwok.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\dravtgj.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\system32\jyogzdd.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\system32\rnwtpsn.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\hemglnb.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\egbwtdg.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\ekbykub.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\mqgxcik.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\ssuuwga.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\RegEx.fne', 'MBAM: Worm.Autorun');
QuarantineFile('C:\WINDOWS\system32\upkvrqn.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\mfueoxe.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\system32\khozeym.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\kmlzxig.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\system32\oeumgfg.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\system32\okudclb.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\xrmxnle.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\xsasrwi.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\ygsizgj.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\system32\xblaqdd.dll', 'MBAM: Trojan.Cidox');
QuarantineFile('C:\WINDOWS\system32\xbopntk.dll', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\WINDOWS\temp\jar_cache7519894211970725289.tmp', 'MBAM: Spyware.Zbot');
QuarantineFile('C:\WINDOWS\temp\abc.exe', 'MBAM: Spyware.Zbot.DGen');
QuarantineFile('C:\Documents and Settings\User\Application Data\111.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\17.exe', 'MBAM: Trojan.Agent.Gen');
QuarantineFile('C:\Documents and Settings\User\Application Data\18E.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\18F.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\190.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\191.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\192.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\1A.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\1B5.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\F.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\F3.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\C3.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\CA.exe', 'MBAM: Trojan.Zbot');
QuarantineFile('C:\Documents and Settings\User\Application Data\E.exe', 'MBAM: Trojan.Agent.Gen');
QuarantineFile('C:\Documents and Settings\User\Application Data\ED.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\37.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\38.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\3B.exe', 'MBAM: Trojan.Agent.Gen');
QuarantineFile('C:\Documents and Settings\User\Application Data\4.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\5C.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\6.exe', 'MBAM: Trojan.Zbot');
QuarantineFile('C:\Documents and Settings\User\Application Data\76.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\9.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\95.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\98.exe', 'MBAM: Trojan.Zbot');
QuarantineFile('C:\Documents and Settings\User\Application Data\9E.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\1DC.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\User\Application Data\1EA.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\1F2.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\1F4.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\2.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\200.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\201.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\217.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\22.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\23C.exe', 'MBAM: Spyware.Zbot.0x');
QuarantineFile('C:\Documents and Settings\User\Application Data\248.exe', 'MBAM: Trojan.Zbot');
QuarantineFile('C:\Documents and Settings\User\Application Data\26E.exe', 'MBAM: Trojan.Zbot');
QuarantineFile('C:\Documents and Settings\User\Application Data\27.exe', 'MBAM: Backdoor.Cidox');
QuarantineFile('C:\Documents and Settings\User\Application Data\28B.exe', 'MBAM: Trojan.Agent.Gen');
QuarantineFile('C:\Documents and Settings\User\Application Data\99.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Documents and Settings\User\Application Data\7.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\3120_3374375_MVM_0.tmp', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Program Files\Common Files\jqyrg4inedzz13m', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Documents and Settings\User\Application Data\5.exe', 'MBAM: Trojan.Agent');
DeleteFile('C:\Qoobox\Quarantine\C\WINDOWS\system32\dp1.fne.vir');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP528\A0260737.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP538\A0264329.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0286828.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0287842.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0287844.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0287850.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0288840.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0289841.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0289861.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0291856.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0291858.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0291885.exe');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0291908.dll');
DeleteFile('C:\System Volume Information\_restore{263011E5-A553-4E20-A76D-1497204F1A24}\RP556\A0291909.exe');
DeleteFile('C:\WINDOWS\system32\cphxwok.dll');
DeleteFile('C:\WINDOWS\system32\dravtgj.dll');
DeleteFile('C:\WINDOWS\system32\jyogzdd.dll');
DeleteFile('C:\WINDOWS\system32\rnwtpsn.dll');
DeleteFile('C:\WINDOWS\system32\hemglnb.dll');
DeleteFile('C:\WINDOWS\system32\egbwtdg.dll');
DeleteFile('C:\WINDOWS\system32\ekbykub.dll');
DeleteFile('C:\WINDOWS\system32\mqgxcik.dll');
DeleteFile('C:\WINDOWS\system32\ssuuwga.dll');
DeleteFile('C:\WINDOWS\system32\RegEx.fne');
DeleteFile('C:\WINDOWS\system32\upkvrqn.dll');
DeleteFile('C:\WINDOWS\system32\mfueoxe.dll');
DeleteFile('C:\WINDOWS\system32\khozeym.dll');
DeleteFile('C:\WINDOWS\system32\kmlzxig.dll');
DeleteFile('C:\WINDOWS\system32\oeumgfg.dll');
DeleteFile('C:\WINDOWS\system32\okudclb.dll');
DeleteFile('C:\WINDOWS\system32\xrmxnle.dll');
DeleteFile('C:\WINDOWS\system32\xsasrwi.dll');
DeleteFile('C:\WINDOWS\system32\ygsizgj.dll');
DeleteFile('C:\WINDOWS\system32\xblaqdd.dll');
DeleteFile('C:\WINDOWS\system32\xbopntk.dll');
DeleteFile('C:\WINDOWS\temp\jar_cache7519894211970725289.tmp');
DeleteFile('C:\WINDOWS\temp\abc.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\111.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\17.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\18E.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\18F.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\190.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\191.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\192.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\1A.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\1B5.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\F.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\F3.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\C3.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\CA.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\E.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\ED.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\37.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\38.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\3B.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\4.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\5C.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\6.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\76.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\9.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\95.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\98.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\9E.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\1DC.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\1EA.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\1F2.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\1F4.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\2.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\200.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\201.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\217.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\22.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\23C.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\248.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\26E.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\27.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\28B.exe');
DeleteFile('C:\Documents and Settings\User\Мои документы\Downloads\AVZ\avz4\Quarantine\2012-11-23\avz00001.dta');
DeleteFile('C:\Documents and Settings\User\Мои документы\Downloads\AVZ\avz4\Quarantine\2012-11-23\avz00002.dta');
DeleteFile('C:\Documents and Settings\User\Мои документы\Downloads\AVZ\avz4\Quarantine\2012-11-23\avz00004.dta');
DeleteFile('C:\Documents and Settings\User\Application Data\99.exe');
DeleteFile('C:\Documents and Settings\User\Application Data\7.exe');
DeleteFile('C:\3120_3374375_MVM_0.tmp');
DeleteFile('C:\WINDOWS\system32\ieunitdrf.inf');
DeleteFile('C:\Program Files\Common Files\jqyrg4inedzz13m');
DeleteFile('C:\Documents and Settings\User\Application Data\5.exe');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
Компьютер перезагрузится.