Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
SetAVZPMStatus(false);
TerminateProcessByName('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\vnsk4c8e.tmp');
TerminateProcessByName('c:\users\Мой\appdata\local\gmsd_ru_204\upgmsd_ru_204.exe');
TerminateProcessByName('c:\program files\xtab\protectservice.exe');
TerminateProcessByName('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\nsvde08.tmpfs');
TerminateProcessByName('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\jnsv1e0a.tmp');
TerminateProcessByName('c:\users\Мой\appdata\local\ec2f0c40-1428861807-11d5-9d99-001bfc711a83\jnsn207e.exe');
TerminateProcessByName('c:\users\Мой\appdata\local\ec2f0c40-1428861807-11d5-9d99-001bfc711a83\insy2687.tmp');
TerminateProcessByName('c:\program files\gmsd_ru_204\gmsd_ru_204.exe');
TerminateProcessByName('c:\program files\igs\ccl.exe');
QuarantineFile('C:\Program Files\GoForFilesUpdater\GoForFilesUpdater.exe', '');
QuarantineFile('C:\Program Files\version57SpeedCheck\a4SpeedCheckJ53.exe', '');
QuarantineFile('C:\Users\Мой\AppData\Local\Host installer\2497880663_installspro.exe', '');
QuarantineFile('c:\programdata\trusted publisher\sw-booster\SW-Booster.exe', '');
QuarantineFile('c:\programdata\trusted publisher\sw-booster\792098896.ini', '');
QuarantineFile('C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe', '');
QuarantineFile('C:\Program Files\AnyProtectEx\AnyProtect.exe', '');
QuarantineFile('C:\Program Files\XTab\SupTab.dll', '');
QuarantineFile('C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe', '');
QuarantineFile('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\vnsk4c8e.tmp', '');
QuarantineFile('c:\users\Мой\appdata\local\gmsd_ru_204\upgmsd_ru_204.exe', '');
QuarantineFile('c:\program files\xtab\protectservice.exe', '');
QuarantineFile('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\nsvde08.tmpfs', '');
QuarantineFile('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\jnsv1e0a.tmp', '');
QuarantineFile('c:\users\Мой\appdata\local\ec2f0c40-1428861807-11d5-9d99-001bfc711a83\jnsn207e.exe', '');
QuarantineFile('c:\users\Мой\appdata\local\ec2f0c40-1428861807-11d5-9d99-001bfc711a83\insy2687.tmp', '');
QuarantineFile('c:\program files\gmsd_ru_204\gmsd_ru_204.exe', '');
QuarantineFile('c:\program files\igs\ccl.exe', '');
DeleteFile('c:\program files\igs\ccl.exe', '32');
DeleteFile('c:\users\Мой\appdata\local\ec2f0c40-1428861807-11d5-9d99-001bfc711a83\insy2687.tmp', '32');
DeleteFile('c:\users\Мой\appdata\local\ec2f0c40-1428861807-11d5-9d99-001bfc711a83\jnsn207e.exe', '32');
DeleteFile('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\jnsv1e0a.tmp', '32');
DeleteFile('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\nsvde08.tmpfs', '32');
DeleteFile('c:\program files\xtab\protectservice.exe', '32');
DeleteFile('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83\vnsk4c8e.tmp', '32');
DeleteFile('C:\Users\9869~1\AppData\Local\Temp\nsb9E52.tmp\IpConfig.dll', '32');
DeleteFile('C:\Program Files\IGS\CCCert.dll', '32');
DeleteFile('C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe', '32');
DeleteFile('C:\Program Files\Kinoroom Browser\kinoroom-browser.exe', '32');
DeleteFile('C:\Program Files\gmsd_ru_204\gmsd_ru_204.exe', '32');
DeleteFile('C:\Users\Мой\AppData\Local\gmsd_ru_204\upgmsd_ru_204.exe', '32');
DeleteFile('C:\Program Files\XTab\SupTab.dll', '32');
DeleteFile('C:\Program Files\AnyProtectEx\AnyProtect.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1.job', '32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2.job', '32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP3.job', '32');
DeleteFile('C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\Crossbrowse.job', '32');
DeleteFile('c:\programdata\trusted publisher\sw-booster\792098896.ini', '32');
DeleteFile('C:\Windows\system32\Tasks\SW-Booster-S-792098896.job', '32');
DeleteFile('c:\programdata\trusted publisher\sw-booster\SW-Booster.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1', '32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2', '32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP3', '32');
DeleteFile('C:\Windows\system32\Tasks\Crossbrowse', '32');
DeleteFile('C:\Windows\system32\Tasks\LuckyTab', '32');
DeleteFile('C:\Windows\system32\Tasks\SmartWeb Upgrade Trigger Task', '32');
DeleteFile('C:\Users\Мой\AppData\Local\Host installer\2497880663_installspro.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\Soft installer', '32');
DeleteFile('C:\Program Files\version57SpeedCheck\a4SpeedCheckJ53.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\SpeedCheck Update', '32');
DeleteFile('C:\Windows\system32\Tasks\SW-Booster-S-792098896', '32');
DeleteFile('C:\Program Files\GoForFilesUpdater\GoForFilesUpdater.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\Update Service GoForFiles', '32');
DeleteService('webTinstMKTN');
DeleteService('storegidfilter');
DeleteService('innfd_1_10_0_13');
DeleteFileMask('C:\Program Files\GoForFilesUpdater', '*', true);
DeleteFileMask('C:\Program Files\version57SpeedCheck', '*', true);
DeleteFileMask('C:\Users\Мой\AppData\Local\Host installer', '*', true);
DeleteFileMask('c:\programdata\trusted publisher\sw-booster', '*', true);
DeleteFileMask('C:\Program Files\Crossbrowse\Crossbrowse', '*', true);
DeleteFileMask('C:\Users\Мой\AppData\Local\gmsd_ru_204', '*', true);
DeleteFileMask('C:\Program Files\AnyProtectEx', '*', true);
DeleteFileMask('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83', '*', true);
DeleteFileMask(''C:\Program Files\IGS', '*', true);
DeleteDirectory('C:\Program Files\GoForFilesUpdater');
DeleteDirectory('C:\Program Files\version57SpeedCheck');
DeleteDirectory('C:\Users\Мой\AppData\Local\Host installer');
DeleteDirectory('c:\programdata\trusted publisher\sw-booster');
DeleteDirectory('C:\Program Files\Crossbrowse\Crossbrowse');
DeleteDirectory('C:\Users\Мой\AppData\Local\gmsd_ru_204');
DeleteDirectory('C:\Program Files\AnyProtectEx');
DeleteDirectory('c:\users\Мой\appdata\roaming\ec2f0c40-1428848926-11d5-9d99-001bfc711a83');
DeleteDirectory(''C:\Program Files\IGS');
DelBHO('{0633EE93-D776-472f-A0FF-E1416B8B2E3D}');
DelBHO('{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Run', 'Adobe Flash Player SU');
BC_ImportDeletedList;
ExecuteSysClean;
ExecuteRepair(2);
ExecuteRepair(4);
ExecuteRepair(3);
ExecuteRepair(14);
ExecuteWizard('SCU', 2, 2, true);
BC_Activate;
RebootWindows(true);
end.
Компьютер перезагрузится.