Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\3\appdata\roaming\searchindexer\moduleinno.exe','');
TerminateProcessByName('c:\program files\mybrowser\mybrowser\application\mybrowser.exe');
QuarantineFile('C:\Program Files\MyBrowser\MyBrowser\Application\utility.exe','');
QuarantineFile('C:\Users\3\AppData\Roaming\JGSRF.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV06.09\91308c7a-6d68-4584-af19-6d416d2c412c-3.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV06.09\91308c7a-6d68-4584-af19-6d416d2c412c-11.exe','');
QuarantineFile('C:\Program Files\CinemaPlus-3.2cV06.09\91308c7a-6d68-4584-af19-6d416d2c412c-10.exe','');
QuarantineFile('C:\Users\Public\Videos\Adobe\upd.exe','');
QuarantineFile('C:\Users\3\AppData\Roaming\ACEStream\engine\ace_engine.exe','');
QuarantineFile('C:\Users\3\AppData\Local\PlayFree Browser\Application\PlayFreeBrowser.exe','');
SetServiceStart('BDEnhanceBoost', 4);
DeleteService('BDEnhanceBoost');
SetServiceStart('wimicixe', 4);
DeleteService('wimicixe');
SetServiceStart('WdsManPro', 4);
DeleteService('WdsManPro');
SetServiceStart('SSFK', 4);
DeleteService('SSFK');
QuarantineFile('C:\Program Files\globalUpdate\Update\globalupdate.exe','');
DeleteService('globalUpdate');
TerminateProcessByName('c:\programdata\zwdsmanproz\wdsmanpro.exe');
QuarantineFile('c:\programdata\zwdsmanproz\wdsmanpro.exe','');
TerminateProcessByName('c:\program files\sfk\ssfk.exe');
QuarantineFile('c:\program files\sfk\ssfk.exe','');
TerminateProcessByName('c:\program files\sfk\sfkex.exe');
QuarantineFile('c:\program files\sfk\sfkex.exe','');
QuarantineFile('c:\program files\mybrowser\mybrowser\application\mybrowser.exe','');
TerminateProcessByName('c:\program files\d4c61d40-1441462688-11d9-842b-5404a6b252d8\knsz530a.tmp');
QuarantineFile('c:\program files\d4c61d40-1441462688-11d9-842b-5404a6b252d8\knsz530a.tmp','');
DeleteFile('c:\program files\d4c61d40-1441462688-11d9-842b-5404a6b252d8\knsz530a.tmp','32');
DeleteFile('c:\program files\sfk\sfkex.exe','32');
DeleteFile('c:\program files\sfk\ssfk.exe','32');
DeleteFile('c:\programdata\zwdsmanproz\wdsmanpro.exe','32');
DeleteFile('C:\Program Files\SFK\SFKEX.dll','32');
DeleteFile('C:\Windows\system32\drivers\BDEnhanceBoost.sys','32');
DeleteFile('C:\Program Files\globalUpdate\Update\globalupdate.exe','32');
DeleteFile('C:\Users\3\AppData\Roaming\ACEStream\engine\ace_engine.exe','32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','AceStream');
DeleteFile('C:\Users\Public\Videos\Adobe\upd.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BaiduAnTray','command');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BaiduSdTray','command');
DeleteFile('C:\Program Files\Baidu\BaiduAn\2.3.0.2225\BaiduAnTray.exe','32');
DeleteFile('C:\Program Files\Baidu\BaiduSd\1.8.0.1255\BaiduSdTray.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GoogleChromeAutoLaunch_7D05F693C9A20EDDF66DA63341EB6689','command');
DeleteFile('C:\Program Files\test\Bind.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\test','command');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV06.09\91308c7a-6d68-4584-af19-6d416d2c412c-10.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV06.09\91308c7a-6d68-4584-af19-6d416d2c412c-11.exe','32');
DeleteFile('C:\Program Files\CinemaPlus-3.2cV06.09\91308c7a-6d68-4584-af19-6d416d2c412c-3.exe','32');
DeleteFile('C:\Windows\Tasks\91308c7a-6d68-4584-af19-6d416d2c412c-3.job','32');
DeleteFile('C:\Windows\Tasks\91308c7a-6d68-4584-af19-6d416d2c412c-11.job','32');
DeleteFile('C:\Windows\Tasks\91308c7a-6d68-4584-af19-6d416d2c412c-10_user.job','32');
DeleteFile('C:\Program Files\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP1.job','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP2.job','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP3.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job','32');
DeleteFile('C:\Users\3\AppData\Roaming\JGSRF.exe','32');
DeleteFile('C:\Windows\Tasks\MyBrowser.job','32');
DeleteFile('C:\Program Files\MyBrowser\MyBrowser\Application\utility.exe','32');
DeleteFile('C:\Windows\Tasks\JGSRF.job','32');
DeleteFile('C:\Windows\system32\Tasks\91308c7a-6d68-4584-af19-6d416d2c412c-10_user','32');
DeleteFile('C:\Windows\system32\Tasks\91308c7a-6d68-4584-af19-6d416d2c412c-11','32');
DeleteFile('C:\Windows\system32\Tasks\91308c7a-6d68-4584-af19-6d416d2c412c-3','32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1','32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2','32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP3','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','32');
DeleteFile('C:\Windows\system32\Tasks\JGSRF','32');
DeleteFile('C:\Windows\system32\Tasks\MyBrowser','32');
DeleteFile('c:\program files\mybrowser\mybrowser\application\mybrowser.exe','32');
DeleteFile('C:\Users\3\AppData\Roaming\mystartsearch\UninstallManager.exe','32');
DeleteFile('C:\Windows\system32\Tasks\{FE5A2FEE-A0B1-4D93-B1CE-B33B5BAD82D4}','32');
DeleteFile('C:\Users\3\AppData\Local\Temp\nsh456A.tmp\blowfish.dll','32');
DeleteFile('C:\Users\3\AppData\Local\Temp\nshFF94.tmp\blowfish.dll','32');
DeleteFile('C:\Users\3\appdata\roaming\searchindexer\moduleinno.exe','32');
DeleteFile('C:\Users\3\appdata\roaming\mystartsearch\uninstallmanager.exe','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Будет выполнена перезагрузка компьютера.