Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
QuarantineFile('C:\Program Files\movies toolbar\datamngr\iebho.dll','');
QuarantineFile('C:\Users\user\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE','');
QuarantineFile('C:\Program Files\Apps Hat\01f75840-32bf-4f08-896a-9b57888dc740-5.exe','');
QuarantineFile('C:\Program Files\Apps Hat\01f75840-32bf-4f08-896a-9b57888dc740-4.exe','');
QuarantineFile('C:\Program Files\Apps Hat\01f75840-32bf-4f08-896a-9b57888dc740-11.exe','');
DelBHO('{377e5d4d-77e5-476a-8716-7e70a9272da0}');
DelBHO('{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}');
QuarantineFile('C:\PROGRA~1\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll','');
QuarantineFile('C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Extensions\APIHelper.dll','');
QuarantineFile('c:\progra~1\movies~1\datamngr\mgrldr.dll','');
QuarantineFile('c:\program files\movies toolbar\datamngr\x64\apcrtldr.dll','');
QuarantineFile('C:\Users\user\AppData\Local\Temp\Rar$EX00.935\yandex_pp_cheker_by_pe4enbkaaaa.exe','');
QuarantineFile('C:\Users\user\AppData\Local\Temp\Rar$EX00.088\2222.exe','');
QuarantineFile('C:\PROGRA~2\Wincert\WIN32C~1.DLL','');
QuarantineFile('C:\PROGRA~1\SEARCH~1\Datamngr\DATAMN~2.EXE','');
DeleteFile('C:\PROGRA~1\SEARCH~1\Datamngr\DATAMN~2.EXE','32');
DeleteFile('C:\PROGRA~2\Wincert\WIN32C~1.DLL','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','DATAMNGR');
DeleteFile('c:\program files\movies toolbar\datamngr\x64\apcrtldr.dll','32');
DeleteFile('c:\progra~1\movies~1\datamngr\mgrldr.dll','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','CMD');
RegKeyParamDel('HKEY_LOCAL_MACHINE','System\CurrentControlSet\Control\Session Manager\AppCertDlls','x64');
DeleteFile('C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Extensions\APIHelper.dll','32');
DeleteFile('C:\PROGRA~1\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll','32');
DeleteFile('C:\Windows\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-1.job','32');
DeleteFile('C:\Program Files\Apps Hat\01f75840-32bf-4f08-896a-9b57888dc740-11.exe','32');
DeleteFile('C:\Windows\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-11.job','32');
DeleteFile('C:\Windows\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-4.job','32');
DeleteFile('C:\Program Files\Apps Hat\01f75840-32bf-4f08-896a-9b57888dc740-4.exe','32');
DeleteFile('C:\Windows\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-5.job','32');
DeleteFile('C:\Program Files\Apps Hat\01f75840-32bf-4f08-896a-9b57888dc740-5.exe','32');
DeleteFile('C:\Users\user\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE','32');
DeleteFile('C:\Windows\Tasks\DSite.job','32');
DeleteFile('C:\Windows\system32\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-11','32');
DeleteFile('C:\Windows\system32\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-4','32');
DeleteFile('C:\Windows\system32\Tasks\01f75840-32bf-4f08-896a-9b57888dc740-5','32');
DeleteFile('C:\Windows\system32\Tasks\Advanced System Protector','32');
DeleteFile('C:\Program Files\RegClean Pro\SystweakASP.exe','32');
DeleteFile('C:\Windows\system32\Tasks\DSite','32');
DeleteFile('C:\Program Files\movies toolbar\datamngr\iebho.dll','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
Компьютер перезагрузится.