Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\User\AppData\Local\Host installer\2865495327_installcube.exe','');
QuarantineFile('C:\Users\User\AppData\Local\SmartWeb\SmartWebHelper.exe','');
QuarantineFile('C:\Program Files (x86)\Microsoft Data\nsi.exe','');
QuarantineFile('C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe','');
QuarantineFile('C:\Users\User\AppData\Local\25507\a7034.exe','');
QuarantineFile('C:\Users\User\AppData\Local\Microsoft\Extensions\safebrowser.exe','');
QuarantineFile('C:\Users\User\AppData\Local\Kometa\kometaup.exe','');
QuarantineFile('C:\Users\User\AppData\Local\Kometa\Panel\KometaLaunchPanel.exe','');
QuarantineFile('C:\Users\User\6762781.exe','');
QuarantineFile('C:\ProgramData\Kbrowser utility\kbrowser-updater-utility.exe','');
TerminateProcessByName('c:\program files (x86)\03000200-1433444335-0500-0006-000700080009\knsec84b.tmp');
QuarantineFile('c:\program files (x86)\03000200-1433444335-0500-0006-000700080009\knsec84b.tmp','');
DeleteFile('c:\program files (x86)\03000200-1433444335-0500-0006-000700080009\knsec84b.tmp','32');
DeleteFile('C:\ProgramData\Kbrowser utility\kbrowser-updater-utility.exe','32');
DeleteFile('C:\Users\User\6762781.exe','32');
DeleteFile('C:\Users\User\AppData\Local\Kometa\Panel\KometaLaunchPanel.exe','32');
DeleteFile('C:\Users\User\AppData\Local\Kometa\kometaup.exe','32');
DeleteFile('C:\Users\User\AppData\Local\Microsoft\Extensions\safebrowser.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GenieoSystemTray','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GenieoUpdaterService','command');
DeleteFile('C:\Windows\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-1-6.job','64');
DeleteFile('C:\Windows\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-1-7.job','64');
DeleteFile('C:\Windows\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-10_user.job','64');
DeleteFile('C:\Windows\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-11.job','64');
DeleteFile('C:\Windows\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-5_user.job','64');
DeleteFile('C:\Windows\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-5.job','64');
DeleteFile('C:\Windows\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-1-6.job','64');
DeleteFile('C:\Windows\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-1-7.job','64');
DeleteFile('C:\Windows\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-11.job','64');
DeleteFile('C:\Windows\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-5.job','64');
DeleteFile('C:\Windows\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-5_user.job','64');
DeleteFile('C:\Users\User\AppData\Local\25507\a7034.exe','32');
DeleteFile('C:\Windows\Tasks\AmiUpdXp.job','64');
DeleteFile('C:\Windows\Tasks\APSnotifierPP1.job','64');
DeleteFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP2.job','64');
DeleteFile('C:\Windows\Tasks\APSnotifierPP3.job','64');
DeleteFile('C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job','64');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job','64');
DeleteFile('C:\Windows\system32\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-1-6','64');
DeleteFile('C:\Windows\system32\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-1-7','64');
DeleteFile('C:\Windows\system32\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-11','64');
DeleteFile('C:\Windows\system32\Tasks\49f2116b-303e-421d-b890-50fcc4cb5084-5','64');
DeleteFile('C:\Windows\system32\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-1-6','64');
DeleteFile('C:\Windows\system32\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-1-7','64');
DeleteFile('C:\Windows\system32\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-11','64');
DeleteFile('C:\Windows\system32\Tasks\824b9efb-e9d0-4a8e-ae5b-80c65d4636cd-5','64');
DeleteFile('C:\Windows\system32\Tasks\AmiUpdXp','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP3','64');
DeleteFile('C:\Program Files (x86)\Microsoft Data\nsi.exe','32');
DeleteFile('C:\Windows\system32\Tasks\chrome5','64');
DeleteFile('C:\Windows\system32\Tasks\chrome5_logon','64');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','64');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','64');
DeleteFile('C:\Windows\system32\Tasks\kbrowser-updater-utility','64');
DeleteFile('C:\Windows\system32\Tasks\Safebrowser','64');
DeleteFile('C:\Users\User\AppData\Local\SmartWeb\SmartWebHelper.exe','32');
DeleteFile('C:\Users\User\AppData\Local\Host installer\2865495327_installcube.exe','32');
DeleteFile('C:\Windows\system32\Tasks\Soft installer','64');
DeleteFile('C:\Windows\system32\Tasks\SmartWeb Upgrade Trigger Task','64');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Будет выполнена перезагрузка компьютера.