Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe','');
QuarantineFile('C:\Users\HP\local settings\application data\ExtensionInstaller_14\config.json','');
QuarantineFile('C:\Users\HP\local settings\application data\ExtensionInstaller_14\extinst.exe','');
QuarantineFile('C:\ProgramData\Service1104\Service1104.exe','');
QuarantineFile('C:\Users\HP\AppData\Roaming\vhu3tSvqrBkUMnMwxd7Vz74X5.exe','');
QuarantineFile('C:\Users\HP\AppData\Roaming\fvnXaIvOJTfwWyDjHHTtQCE.exe','');
QuarantineFile('C:\ProgramData\TomorrowGames\TomorrowGames.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-7.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-6.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-5.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-4.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-3.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-7.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-10.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-11.exe','');
QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-6.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-7.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-6.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-5.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-4.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-11.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-1-6.exe','');
QuarantineFile('C:\Users\HP\AppData\Local\2348\Updater.exe','');
DelBHO('{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}');
DelBHO('{b18906df-1dfa-4d50-8a1f-7d076a8c87b7}');
QuarantineFile('C:\Program Files (x86)\Sale Clipper\Extensions\b18906df-1dfa-4d50-8a1f-7d076a8c87b7.dll','');
QuarantineFile('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe','');
SetServiceStart('innfd_1_10_0_14', 4);
DeleteService('innfd_1_10_0_14');
QuarantineFile('C:\Program Files (x86)\MiuiTab\ProtectService.exe','');
QuarantineFile('C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe','');
QuarantineFile('C:\Users\HP\AppData\Roaming\C387BEFB-1435495447-E111-B57C-28924A1F6E10\hnsyB191.tmp','');
DeleteService('vicoqudu');
DeleteService('globalUpdatem');
DeleteService('globalUpdate');
SetServiceStart('IHProtect Service', 4);
DeleteService('IHProtect Service');
QuarantineFile('C:\Windows\system32\drivers\innfd_1_10_0_14.sys','');
QuarantineFile('C:\Program Files (x86)\MiuiTab\IeWatchDog.dll','');
QuarantineFile('C:\Program Files (x86)\MiuiTab\BrowerWatchFF.dll','');
QuarantineFile('C:\Program Files (x86)\MiuiTab\BrowerWatchCH.dll','');
TerminateProcessByName('c:\program files (x86)\miuitab\protectservice.exe');
QuarantineFile('c:\program files (x86)\miuitab\protectservice.exe','');
TerminateProcessByName('c:\program files (x86)\maxcomputercleaner_v17.848\maxcomputercleaner_maintenance.exe');
QuarantineFile('c:\program files (x86)\maxcomputercleaner_v17.848\maxcomputercleaner_maintenance.exe','');
TerminateProcessByName('c:\program files (x86)\miuitab\hpnotify.exe');
QuarantineFile('c:\program files (x86)\miuitab\hpnotify.exe','');
TerminateProcessByName('c:\program files (x86)\miuitab\cmdshell.exe');
QuarantineFile('c:\program files (x86)\miuitab\cmdshell.exe','');
DeleteFile('c:\program files (x86)\miuitab\cmdshell.exe','32');
DeleteFile('c:\program files (x86)\miuitab\hpnotify.exe','32');
DeleteFile('c:\program files (x86)\maxcomputercleaner_v17.848\maxcomputercleaner_maintenance.exe','32');
DeleteFile('c:\program files (x86)\miuitab\protectservice.exe','32');
DeleteFile('C:\Program Files (x86)\MiuiTab\BrowerWatchCH.dll','32');
DeleteFile('C:\Program Files (x86)\MiuiTab\BrowerWatchFF.dll','32');
DeleteFile('C:\Program Files (x86)\MiuiTab\IeWatchDog.dll','32');
DeleteFile('C:\Windows\system32\drivers\innfd_1_10_0_14.sys','32');
DeleteFile('C:\Users\HP\AppData\Roaming\C387BEFB-1435495447-E111-B57C-28924A1F6E10\hnsyB191.tmp','32');
DeleteFile('C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe','32');
DeleteFile('C:\Program Files (x86)\MiuiTab\ProtectService.exe','32');
DeleteFile('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ZaxarGameBrowser','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ZaxarLoader','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Timestasks','command');
DeleteFile('C:\Program Files (x86)\Zaxar\timetasks.exe','32');
DeleteFile('C:\Program Files (x86)\Zaxar\ZaxarLoader.exe','32');
DeleteFile('C:\Users\HP\AppData\Local\Kometa\kometaup.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\kometaup','command');
DeleteFile('C:\Users\HP\AppData\Roaming\eTranslator\eTranslator.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\eTranslator Automatic Update','command');
DeleteFile('C:\Program Files (x86)\Sale Clipper\Extensions\b18906df-1dfa-4d50-8a1f-7d076a8c87b7.dll','32');
DeleteFile('C:\Users\HP\AppData\Local\2348\Updater.exe','32');
DeleteFile('C:\Windows\Tasks\AmiUpdXp.job','64');
DeleteFile('C:\Windows\Tasks\APSnotifierPP1.job','64');
DeleteFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP2.job','64');
DeleteFile('C:\Windows\Tasks\APSnotifierPP3.job','64');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-1-6.job','64');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-1-6.exe','32');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-1-7.exe','32');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-11.exe','32');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-11.job','64');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-1-7.job','64');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-4.exe','32');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-5.exe','32');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-4.job','64');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-5.job','64');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-5_user.job','64');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-6.exe','32');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-6.job','64');
DeleteFile('C:\Windows\Tasks\be4344f5-abab-4a71-8356-ec8d1e0eb34b-7.job','64');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\be4344f5-abab-4a71-8356-ec8d1e0eb34b-7.exe','32');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-6.exe','32');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-6.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-7.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-10_user.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-11.job','64');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-11.exe','32');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-10.exe','32');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-7.exe','32');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-3.exe','32');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-4.exe','32');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-5.exe','32');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-5_user.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-5.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-4.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-3.job','64');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-6.exe','32');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-6.job','64');
DeleteFile('C:\Windows\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-7.job','64');
DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV27.06\dbe178dc-aa40-4f0a-8e54-eb3df3766423-7.exe','32');
DeleteFile('C:\ProgramData\TomorrowGames\TomorrowGames.exe','32');
DeleteFile('C:\Windows\Tasks\DWCSYTTKQ1.job','64');
DeleteFile('C:\Windows\Tasks\fvnXaIvOJTfwWyDjHHTtQCE.job','64');
DeleteFile('C:\Users\HP\AppData\Roaming\fvnXaIvOJTfwWyDjHHTtQCE.exe','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job','64');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job','64');
DeleteFile('C:\Windows\Tasks\vhu3tSvqrBkUMnMwxd7Vz74X5.job','64');
DeleteFile('C:\Users\HP\AppData\Roaming\vhu3tSvqrBkUMnMwxd7Vz74X5.exe','32');
DeleteFile('C:\ProgramData\Service1104\Service1104.exe','32');
DeleteFile('C:\Windows\Tasks\YIKFBVICXVDILSIW.job','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-6','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-1-7','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-10_user','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-11','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-3','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-4','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-5','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-5_user','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-6','64');
DeleteFile('C:\Windows\system32\Tasks\dbe178dc-aa40-4f0a-8e54-eb3df3766423-7','64');
DeleteFile('C:\Windows\system32\Tasks\DWCSYTTKQ1','64');
DeleteFile('C:\Windows\system32\Tasks\ExtensionInstallerX_14','64');
DeleteFile('C:\Windows\system32\Tasks\fvnXaIvOJTfwWyDjHHTtQCE','64');
DeleteFile('C:\Users\HP\local settings\application data\ExtensionInstaller_14\extinst.exe','32');
DeleteFile('C:\Users\HP\local settings\application data\ExtensionInstaller_14\config.json','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','64');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','64');
DeleteFile('C:\Windows\system32\Tasks\Super Optimizer Schedule','64');
DeleteFile('C:\Windows\system32\Tasks\vhu3tSvqrBkUMnMwxd7Vz74X5','64');
DeleteFile('C:\Windows\system32\Tasks\YIKFBVICXVDILSIW','64');
DeleteFile('C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Компьютер перезагрузится.