Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
end;
ClearQuarantine;
QuarantineFile('C:\Documents and Settings\Dum_Dum\Application Data\Microsoft\Mzjsje.exe','');
QuarantineFile('C:\Documents and Settings\Dum_Dum\Application Data\Microsoft\Czjsju.exe','');
QuarantineFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-111715\h1oba.exe','');
QuarantineFile('C:\Documents and Settings\Dum_Dum\Application Data\8.exe','');
QuarantineFile('C:\Documents and Settings\Dum_Dum\Application Data\Microsoft\Pzjsjh.exe','');
QuarantineFile('C:\Documents and Settings\Dum_Dum\Application Data\ScreenSaverPro.scr','');
QuarantineFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-119559\tcdail.exe','');
QuarantineFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-129551\tprepl.exe','');
QuarantineFile('C:\WINDOWS\hpbmdl01.dat','');
QuarantineFile('C:\WINDOWS\hpbins01.dat','');
QuarantineFile('C:\WINDOWS\system32\Scrubber.exe','');
DeleteFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-111715\h1oba.exe','32');
DeleteFile('C:\Documents and Settings\Dum_Dum\Application Data\8.exe','32');
DeleteFile('C:\Documents and Settings\Dum_Dum\Application Data\Microsoft\Pzjsjh.exe','32');
DeleteFile('C:\Documents and Settings\Dum_Dum\Application Data\ScreenSaverPro.scr','32');
DeleteFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-119559\tcdail.exe','32');
DeleteFile('C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-129551\tprepl.exe','32');
DeleteFile('C:\Documents and Settings\Dum_Dum\Application Data\Microsoft\Czjsju.exe','32');
DeleteFile('C:\Documents and Settings\Dum_Dum\Application Data\Microsoft\Mzjsje.exe','32');
RegKeyParamDel('HKEY_USERS','S-1-5-21-1960408961-1383384898-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Run','Czjsju');
RegKeyParamDel('HKEY_USERS','S-1-5-21-1960408961-1383384898-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Run','Mzjsje');
RegKeyParamDel('HKEY_LOCAL_MACHINE','software\microsoft\shared tools\msconfig\startupreg','h1dljoba');
RegKeyParamDel('HKEY_LOCAL_MACHINE','software\microsoft\shared tools\msconfig\startupreg','MSNetDKNowiz');
RegKeyParamDel('HKEY_LOCAL_MACHINE','software\microsoft\shared tools\msconfig\startupreg','Pzjsjh');
RegKeyParamDel('HKEY_LOCAL_MACHINE','software\microsoft\shared tools\msconfig\startupreg','Screen Saver Pro 3.1');
RegKeyParamDel('HKEY_LOCAL_MACHINE','software\microsoft\shared tools\msconfig\startupreg','tsexta');
RegKeyParamDel('HKEY_LOCAL_MACHINE','software\microsoft\shared tools\msconfig\startupreg','tsfffa');
RegKeyStrParamWrite('HKLM', 'SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer','NoDriveTypeAutoRun','221');
BC_ImportALL;
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
BC_Activate;
RebootWindows(true);
end.