Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
QuarantineFile('C:\Windows\system32\config\systemprofile\AppData\Local\11815\a31914.exe','');
QuarantineFile('C:\Program Files (x86)\HD-Quality-v3\aca8e28b-5a95-472d-beee-10f4202227fd.exe','');
QuarantineFile('C:\Program Files (x86)\HD-Quality-v3\8639b1c0-3e08-4ad8-8fa8-6ecfb0f31714-5.exe','');
QuarantineFile('C:\Program Files (x86)\HD-Quality-v3\826199da-e6d9-4505-8fcd-a9b81f1bf51e-5.exe','');
QuarantineFile('C:\Program Files (x86)\HD-Quality-v3\4ad551d8-e871-48bf-8da2-9b833a0de90b.exe','');
SetServiceStart('screentk', 4);
DeleteService('screentk');
QuarantineFile('GamesRS.sys','');
DeleteService('GamesRS');
QuarantineFile('C:\Windows\SysWOW64\lnsecsl.exe','');
DeleteService('Adobe Licensing Console');
QuarantineFile('C:\Windows\screentk.sys','');
TerminateProcessByName('c:\windows\temp\mrt509e.tmp\stdrt.exe');
QuarantineFile('c:\windows\temp\mrt509e.tmp\stdrt.exe','');
DeleteFile('c:\windows\temp\mrt509e.tmp\stdrt.exe','32');
DeleteFile('C:\Windows\screentk.sys','32');
DeleteFile('C:\Windows\SysWOW64\lnsecsl.exe','32');
DeleteFile('GamesRS.sys','32');
DeleteFile('C:\Program Files (x86)\HD-Quality-v3\4ad551d8-e871-48bf-8da2-9b833a0de90b.exe','32');
DeleteFile('C:\Windows\Tasks\4ad551d8-e871-48bf-8da2-9b833a0de90b.job','64');
DeleteFile('C:\Program Files (x86)\HD-Quality-v3\826199da-e6d9-4505-8fcd-a9b81f1bf51e-5.exe','32');
DeleteFile('C:\Windows\Tasks\826199da-e6d9-4505-8fcd-a9b81f1bf51e-5_user.job','64');
DeleteFile('C:\Windows\Tasks\8639b1c0-3e08-4ad8-8fa8-6ecfb0f31714-5_user.job','64');
DeleteFile('C:\Program Files (x86)\HD-Quality-v3\8639b1c0-3e08-4ad8-8fa8-6ecfb0f31714-5.exe','32');
DeleteFile('C:\Program Files (x86)\HD-Quality-v3\aca8e28b-5a95-472d-beee-10f4202227fd.exe','32');
DeleteFile('C:\Windows\Tasks\aca8e28b-5a95-472d-beee-10f4202227fd.job','64');
DeleteFile('C:\Windows\system32\config\systemprofile\AppData\Local\11815\a31914.exe','32');
DeleteFile('C:\Windows\Tasks\AmiUpdXp.job','64');
DeleteFileMask('C:\Windows\system32\config\systemprofile\AppData\Local\11815', '*', true);
DeleteDirectory('C:\Windows\system32\config\systemprofile\AppData\Local\11815');
DeleteFileMask('C:\Program Files (x86)\HD-Quality-v3', '*', true);
DeleteDirectory('C:\Program Files (x86)\HD-Quality-v3');
DeleteFileMask('c:\windows\temp\mrt509e.tmp', '*', true);
DeleteDirectory('c:\windows\temp\mrt509e.tmp');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Компьютер перезагрузится.