Код:
begin
ExecuteAVUpdate;
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
end;
ClearQuarantine;
TerminateProcessByName('c:\program files\isafe\isafesvc2.exe');
TerminateProcessByName('c:\program files\isafe\isafesvc.exe');
TerminateProcessByName('c:\program files\isafe\ipcdl.exe');
SetServiceStart('iSafeKrnlR3', 4);
SetServiceStart('iSafeKrnlKit', 4);
SetServiceStart('iSafeKrnl', 4);
SetServiceStart('iSafeService', 4);
StopService('iSafeKrnlR3');
StopService('iSafeKrnlKit');
StopService('iSafeKrnl');
StopService('iSafeService');
QuarantineFile('C:\DOCUME~1\9335~1\LOCALS~1\Temp\h1ovby7w.exe','');
QuarantineFile('C:\Program Files\iSafe\iStart.exe','');
QuarantineFile('C:\Program Files\iSafe\iSafeRKScanShell.dll','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\iSafeKrnlBoot.sys','');
QuarantineFile('C:\Program Files\iSafe\iSafeKrnlR3.sys','');
QuarantineFile('C:\Program Files\iSafe\iSafeKrnlKit.sys','');
QuarantineFile('C:\Program Files\iSafe\iSafeKrnl.sys','');
QuarantineFile('c:\program files\isafe\isafesvc2.exe','');
QuarantineFile('c:\program files\isafe\isafesvc.exe','');
QuarantineFile('c:\program files\isafe\ipcdl.exe','');
DeleteFile('c:\program files\isafe\ipcdl.exe','32');
DeleteFile('c:\program files\isafe\isafesvc2.exe','32');
DeleteFile('C:\Program Files\iSafe\iSafeKrnl.sys','32');
DeleteFile('C:\Program Files\iSafe\iSafeKrnlKit.sys','32');
DeleteFile('C:\Program Files\iSafe\iSafeKrnlR3.sys','32');
DeleteFile('C:\Program Files\iSafe\iSafeSvc.exe','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\iSafeKrnlBoot.sys','32');
DeleteFile('C:\Program Files\iSafe\iSafeRKScanShell.dll','32');
DeleteFile('C:\Program Files\iSafe\iStart.exe','32');
DeleteFile('C:\WINDOWS\Tasks\1f6kq.job','32');
DeleteFile('C:\DOCUME~1\9335~1\LOCALS~1\Temp\h1ovby7w.exe','32');
DeleteFile('C:\WINDOWS\Tasks\At3.job','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved','{5411D116-5A37-47D4-B154-5F7FCD9062F0}');
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
DeleteService('iSafeKrnlBoot');
DeleteService('iSafeKrnlR3');
DeleteService('iSafeKrnlKit');
DeleteService('iSafeKrnl');
DeleteService('iSafeService');
DeleteFileMask('C:\Program Files\iSafe', '*', true, ' ');
DeleteDirectory('C:\Program Files\iSafe');
BC_ImportAll;
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
ExecuteWizard('TSW',2,3,true);
BC_Activate;
RebootWindows(false);
end.