Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
end;
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\7.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-917678\nepro0xz.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\1.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\11C.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\11D.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\11E.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\1DE.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\1DF.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\1E0.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\1E2.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\1E4.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\2.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\3.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\3DE.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\3DF.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\3E0.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\3E1.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\577.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\578.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\57A.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\57B.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\57C.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\582.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\583.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\584.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\585.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\6.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\8.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\9.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\temp.bin', 'MBAM: Backdoor.Bot');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP2\A0000129.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP2\A0000146.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP2\A0000147.exe', 'MBAM: Spyware.Zbot.USBV');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001157.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001158.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001229.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001230.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP5\A0001635.exe', 'MBAM: Backdoor.Bot');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001641.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001647.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001648.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001649.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001986.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001987.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001988.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001995.exe', 'MBAM: Trojan.Agent');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001996.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001997.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002008.exe', 'MBAM: Trojan.SpamTool.TED');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002009.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002010.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002021.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002022.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002032.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002033.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002047.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002048.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002059.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002060.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002118.exe', 'MBAM: Trojan.Bublik');
QuarantineFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002125.exe', 'MBAM: Backdoor.Bot');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\4.exe', 'MBAM: Trojan.Downloader');
QuarantineFile('C:\Documents and Settings\Kirill\Application Data\5.exe', 'MBAM: Trojan.Downloader');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\7.exe');
DeleteFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-46689\24naq.exe');
DeleteFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-917678\nepro0xz.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\1.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\11C.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\11D.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\11E.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\1DE.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\1DF.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\1E0.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\1E2.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\1E4.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\2.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\3.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\3DE.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\3DF.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\3E0.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\3E1.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\577.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\578.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\57A.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\57B.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\57C.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\582.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\583.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\584.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\585.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\6.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\8.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\9.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\temp.bin');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP2\A0000129.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP2\A0000146.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP2\A0000147.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001157.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001158.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001229.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP3\A0001230.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP5\A0001635.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001641.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001647.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001648.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP6\A0001649.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001986.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001987.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001988.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001995.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001996.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0001997.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002008.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002009.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002010.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002021.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002022.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002032.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002033.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002047.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002048.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002059.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002060.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002118.exe');
DeleteFile('C:\System Volume Information\_restore{C314EDC3-10AF-4EDC-829B-207420F59508}\RP8\A0002125.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\4.exe');
DeleteFile('C:\Documents and Settings\Kirill\Application Data\5.exe');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.