Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\User\appdata\roaming\digitalsites\updateproc\updatetask.exe','');
DelBHO('{A18EA34C-6D33-4298-8A54-7F16499904C0}');
DelBHO('{91b8f7a9-1558-40b3-b1e9-824ae5a2089f}');
SetServiceStart('{f1d7e225-e39d-4bcb-8a90-eaa4181b222b}Gw64', 4);
DeleteService('{f1d7e225-e39d-4bcb-8a90-eaa4181b222b}Gw64');
SetServiceStart('{f0aab91b-f97e-4d3d-b745-53663865729c}Gw64', 4);
DeleteService('{f0aab91b-f97e-4d3d-b745-53663865729c}Gw64');
SetServiceStart('{ea73a685-645b-47a8-a8f5-2538cc24ab81}Gw64', 4);
DeleteService('{ea73a685-645b-47a8-a8f5-2538cc24ab81}Gw64');
SetServiceStart('{e761f54c-32c6-465c-ba31-504773457b77}Gw64', 4);
DeleteService('{e761f54c-32c6-465c-ba31-504773457b77}Gw64');
SetServiceStart('{dbe9acb7-ca74-4c18-ad13-f0270d74c42d}Gw64', 4);
DeleteService('{dbe9acb7-ca74-4c18-ad13-f0270d74c42d}Gw64');
SetServiceStart('{cb0b6f3d-aa8b-4a68-acf6-6ff30e1d0243}Gw64', 4);
DeleteService('{cb0b6f3d-aa8b-4a68-acf6-6ff30e1d0243}Gw64');
SetServiceStart('{bf07813e-aac8-4cea-bf69-7178c16076ac}Gw64', 4);
DeleteService('{bf07813e-aac8-4cea-bf69-7178c16076ac}Gw64');
SetServiceStart('{b28b16f8-524c-4f96-b046-1c8f12a5fe03}Gw64', 4);
DeleteService('{b28b16f8-524c-4f96-b046-1c8f12a5fe03}Gw64');
SetServiceStart('{93feeb25-9f23-4de1-b697-6a2c12816bac}Gw64', 4);
DeleteService('{93feeb25-9f23-4de1-b697-6a2c12816bac}Gw64');
SetServiceStart('{9015bae7-cdbb-4473-a5d0-ecfa559b2ca5}Gw64', 4);
DeleteService('{9015bae7-cdbb-4473-a5d0-ecfa559b2ca5}Gw64');
SetServiceStart('{8ca7f150-5454-4b4c-9537-1b831c71d329}Gw64', 4);
DeleteService('{8ca7f150-5454-4b4c-9537-1b831c71d329}Gw64');
SetServiceStart('{70ed362e-6c2f-4f13-9f05-a5b35ff4be55}Gw64', 4);
DeleteService('{70ed362e-6c2f-4f13-9f05-a5b35ff4be55}Gw64');
SetServiceStart('{60fb1691-e7e8-4d48-b26c-c3f85822f710}Gw64', 4);
DeleteService('{60fb1691-e7e8-4d48-b26c-c3f85822f710}Gw64');
SetServiceStart('{16fd1cfd-5f7d-4fb7-ac6e-55eec1f56bf3}Gw64', 4);
DeleteService('{16fd1cfd-5f7d-4fb7-ac6e-55eec1f56bf3}Gw64');
SetServiceStart('ccnfd_1_10_0_2', 4);
DeleteService('ccnfd_1_10_0_2');
SetServiceStart('Util EnterDigital', 4);
DeleteService('Util EnterDigital');
SetServiceStart('Update EnterDigital', 4);
DeleteService('Update EnterDigital');
SetServiceStart('MaintainerSvc6.37.565328', 4);
DeleteService('MaintainerSvc6.37.565328');
SetServiceStart('ccsvc_1.10.0.2', 4);
DeleteService('ccsvc_1.10.0.2');
QuarantineFile('C:\windows\system32\drivers\{f1d7e225-e39d-4bcb-8a90-eaa4181b222b}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{f0aab91b-f97e-4d3d-b745-53663865729c}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{ea73a685-645b-47a8-a8f5-2538cc24ab81}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{e761f54c-32c6-465c-ba31-504773457b77}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{dbe9acb7-ca74-4c18-ad13-f0270d74c42d}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{cb0b6f3d-aa8b-4a68-acf6-6ff30e1d0243}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{bf07813e-aac8-4cea-bf69-7178c16076ac}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{b28b16f8-524c-4f96-b046-1c8f12a5fe03}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{93feeb25-9f23-4de1-b697-6a2c12816bac}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{9015bae7-cdbb-4473-a5d0-ecfa559b2ca5}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{8ca7f150-5454-4b4c-9537-1b831c71d329}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{70ed362e-6c2f-4f13-9f05-a5b35ff4be55}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{60fb1691-e7e8-4d48-b26c-c3f85822f710}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\{16fd1cfd-5f7d-4fb7-ac6e-55eec1f56bf3}Gw64.sys','');
QuarantineFile('C:\windows\system32\drivers\ccnfd_1_10_0_2.sys','');
QuarantineFile('C:\Program Files (x86)\EnterDigital\EnterDigitalBHO.dll','');
QuarantineFile('C:\Program Files (x86)\EnterDigital\bin\70ed362e6c2f4f139f05a5b35ff4be55.dll','');
QuarantineFile('C:\Program Files (x86)\ClickCaption_1.10.0.2\IE\ClickCaptionClientIE.dll','');
TerminateProcessByName('c:\program files (x86)\enterdigital\bin\utilenterdigital.exe');
QuarantineFile('c:\program files (x86)\enterdigital\bin\utilenterdigital.exe','');
TerminateProcessByName('C:\Users\User\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE');
QuarantineFile('C:\Users\User\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE','');
TerminateProcessByName('c:\users\user\appdata\roaming\digita~1\update~1\update~1.exe');
QuarantineFile('c:\users\user\appdata\roaming\digita~1\update~1\update~1.exe','');
TerminateProcessByName('c:\program files (x86)\enterdigital\updateenterdigital.exe');
QuarantineFile('c:\program files (x86)\enterdigital\updateenterdigital.exe','');
TerminateProcessByName('c:\programdata\7bb6df21-8ca8-4eec-965d-8cd2261544c7\maintainer.exe');
QuarantineFile('c:\programdata\7bb6df21-8ca8-4eec-965d-8cd2261544c7\maintainer.exe','');
TerminateProcessByName('C:\Program Files (x86)\EnterDigital\bin\EnterDigital.PurBrowse64.exe');
QuarantineFile('C:\Program Files (x86)\EnterDigital\bin\EnterDigital.PurBrowse64.exe','');
TerminateProcessByName('c:\program files (x86)\enterdigital\bin\enterdigital.expext.exe');
QuarantineFile('c:\program files (x86)\enterdigital\bin\enterdigital.expext.exe','');
TerminateProcessByName('C:\Program Files (x86)\EnterDigital\bin\EnterDigital.BrowserAdapter64.exe');
QuarantineFile('C:\Program Files (x86)\EnterDigital\bin\EnterDigital.BrowserAdapter64.exe','');
TerminateProcessByName('c:\program files (x86)\enterdigital\bin\enterdigital.browseradapter.exe');
QuarantineFile('c:\program files (x86)\enterdigital\bin\enterdigital.browseradapter.exe','');
TerminateProcessByName('c:\program files (x86)\enterdigital\bin\enterdigital.boasprt.exe');
QuarantineFile('c:\program files (x86)\enterdigital\bin\enterdigital.boasprt.exe','');
TerminateProcessByName('c:\program files (x86)\enterdigital\bin\enterdigital.boas.exe');
QuarantineFile('c:\program files (x86)\enterdigital\bin\enterdigital.boas.exe','');
TerminateProcessByName('c:\program files (x86)\enterdigital\bin\enterdigital.boashelper.exe');
QuarantineFile('c:\program files (x86)\enterdigital\bin\enterdigital.boashelper.exe','');
TerminateProcessByName('c:\program files (x86)\clickcaption_1.10.0.2\service\ccsvc.exe');
QuarantineFile('c:\program files (x86)\clickcaption_1.10.0.2\service\ccsvc.exe','');
DeleteFile('c:\program files (x86)\clickcaption_1.10.0.2\service\ccsvc.exe','32');
DeleteFile('c:\program files (x86)\enterdigital\bin\enterdigital.boashelper.exe','32');
DeleteFile('c:\program files (x86)\enterdigital\bin\enterdigital.boas.exe','32');
DeleteFile('c:\program files (x86)\enterdigital\bin\enterdigital.boasprt.exe','32');
DeleteFile('c:\program files (x86)\enterdigital\bin\enterdigital.browseradapter.exe','32');
DeleteFile('C:\Program Files (x86)\EnterDigital\bin\EnterDigital.BrowserAdapter64.exe','32');
DeleteFile('c:\program files (x86)\enterdigital\bin\enterdigital.expext.exe','32');
DeleteFile('C:\Program Files (x86)\EnterDigital\bin\EnterDigital.PurBrowse64.exe','32');
DeleteFile('c:\programdata\7bb6df21-8ca8-4eec-965d-8cd2261544c7\maintainer.exe','32');
DeleteFile('c:\program files (x86)\enterdigital\updateenterdigital.exe','32');
DeleteFile('c:\users\user\appdata\roaming\digita~1\update~1\update~1.exe','32');
DeleteFile('C:\Users\User\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE','32');
DeleteFile('c:\program files (x86)\enterdigital\bin\utilenterdigital.exe','32');
DeleteFile('C:\Program Files (x86)\ClickCaption_1.10.0.2\IE\ClickCaptionClientIE.dll','32');
DeleteFile('C:\Program Files (x86)\EnterDigital\bin\70ed362e6c2f4f139f05a5b35ff4be55.dll','32');
DeleteFile('C:\Program Files (x86)\EnterDigital\EnterDigitalBHO.dll','32');
DeleteFile('C:\windows\system32\drivers\ccnfd_1_10_0_2.sys','32');
DeleteFile('C:\windows\system32\drivers\{16fd1cfd-5f7d-4fb7-ac6e-55eec1f56bf3}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{60fb1691-e7e8-4d48-b26c-c3f85822f710}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{70ed362e-6c2f-4f13-9f05-a5b35ff4be55}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{8ca7f150-5454-4b4c-9537-1b831c71d329}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{9015bae7-cdbb-4473-a5d0-ecfa559b2ca5}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{93feeb25-9f23-4de1-b697-6a2c12816bac}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{b28b16f8-524c-4f96-b046-1c8f12a5fe03}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{bf07813e-aac8-4cea-bf69-7178c16076ac}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{cb0b6f3d-aa8b-4a68-acf6-6ff30e1d0243}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{dbe9acb7-ca74-4c18-ad13-f0270d74c42d}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{e761f54c-32c6-465c-ba31-504773457b77}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{ea73a685-645b-47a8-a8f5-2538cc24ab81}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{f0aab91b-f97e-4d3d-b745-53663865729c}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{f1d7e225-e39d-4bcb-8a90-eaa4181b222b}Gw64.sys','32');
DeleteFile('C:\windows\system32\Tasks\Digital Sites.job','64');
DeleteFile('C:\windows\system32\Tasks\Advanced-System Protector_startup','64');
DeleteFile('C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe','32');
DeleteFile('C:\windows\system32\Tasks\Digital Sites','64');
DeleteFile('C:\Users\User\appdata\roaming\digitalsites\updateproc\updatetask.exe','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Компьютер перезагрузится.