Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
QuarantineFile('C:\Program Files\pcdapp\starthelp.exe','');
DelBHO('{92780B25-18CC-41C8-B9BE-3C9C571A8263}');
DelBHO('{c0caa5fe-7c9c-4dca-a265-63cf55379d1a}');
QuarantineFile('C:\PROGRA~1\MOVIES~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll','');
QuarantineFile('c:\program files\movies app\datamngr\x64\apcrtldr.dll','');
QuarantineFile('C:\Program Files\Movies App\Datamngr\apcrtldr.dll','');
QuarantineFile('C:\WINDOWS\system32\drivers\tStLibG.sys','');
DeleteService('tStLibG');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\BDEnhanceBoost.sys','');
SetServiceStart('BDEnhanceBoost', 4);
DeleteService('BDEnhanceBoost');
SetServiceStart('F06DEFF2-5B9C-490D-910F-35D3A9119622', 4);
DeleteService('F06DEFF2-5B9C-490D-910F-35D3A9119622');
SetServiceStart('DatamngrCoordinator', 4);
DeleteService('DatamngrCoordinator');
QuarantineFile('C:\Program Files\PCDApp\StartHelp.exe','');
QuarantineFile('C:\Program Files\Movies App\Datamngr\setmgrc2.cfg','');
TerminateProcessByName('c:\windows\temp\nsj2.tmp\ns3.tmp');
QuarantineFile('c:\windows\temp\nsj2.tmp\ns3.tmp','');
TerminateProcessByName('c:\program files\movies app\datamngr\datamngrui.exe');
QuarantineFile('c:\program files\movies app\datamngr\datamngrui.exe','');
TerminateProcessByName('c:\program files\movies app\datamngr\datamngrcoordinator.exe');
QuarantineFile('c:\program files\movies app\datamngr\datamngrcoordinator.exe','');
TerminateProcessByName('c:\program files\test\bind.exe');
QuarantineFile('c:\program files\test\bind.exe','');
DeleteFile('c:\program files\test\bind.exe','32');
DeleteFile('c:\program files\movies app\datamngr\datamngrcoordinator.exe','32');
DeleteFile('c:\program files\movies app\datamngr\datamngrui.exe','32');
DeleteFile('c:\windows\temp\nsj2.tmp\ns3.tmp','32');
DeleteFile('C:\Program Files\Movies App\Datamngr\setmgrc2.cfg','32');
DeleteFile('C:\WINDOWS\system32\DRIVERS\BDEnhanceBoost.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\tStLibG.sys','32');
DeleteFile('C:\Program Files\Movies App\Datamngr\apcrtldr.dll','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','System\CurrentControlSet\Control\Session Manager\AppCertDlls','x86');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','test');
DeleteFile('c:\program files\movies app\datamngr\x64\apcrtldr.dll','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','System\CurrentControlSet\Control\Session Manager\AppCertDlls','x64');
DeleteFile('C:\PROGRA~1\MOVIES~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll','32');
DeleteFile('C:\Program Files\pcdapp\starthelp.exe','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
ExecuteREpair(9);
RebootWindows(false);
end.
Компьютер перезагрузится.