Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('c:\program files (x86)\00000000-1441874044-0000-0000-448a5b2f7b4e\hnsf911e.tmp');
TerminateProcessByName('c:\program files (x86)\00000000-1441874044-0000-0000-448a5b2f7b4e\jnsr7ab6.tmp');
TerminateProcessByName('c:\program files (x86)\00000000-1441874044-0000-0000-448a5b2f7b4e\knsm641d.tmp');
TerminateProcessByName('c:\users\kaz\appdata\local\smartweb\smartwebapp.exe');
TerminateProcessByName('c:\users\kaz\appdata\local\smartweb\smartwebhelper.exe');
StopService('gyvixodu');
StopService('lehicewu');
StopService('ppfd_vw_1_10_0_24');
StopService('qipoqewi');
StopService('SSFK');
StopService('WdsManPro');
StopService('wsafd_1_10_0_19');
StopService('wsasvc_1.10.0.19');
QuarantineFile('C:\Program Files (x86)\00000000-1441874044-0000-0000-448A5B2F7B4E\hnsf911E.tmp','');
QuarantineFile('C:\Program Files (x86)\00000000-1441874044-0000-0000-448A5B2F7B4E\jnsr7AB6.tmp','');
QuarantineFile('c:\program files (x86)\00000000-1441874044-0000-0000-448a5b2f7b4e\knsm641d.tmp','');
QuarantineFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','');
QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe','');
QuarantineFile('c:\program files (x86)\gmsd_ru_005010084\gmsd_ru_005010084.exe','');
QuarantineFile('C:\Program Files (x86)\Google\Chrome\Application\chrome.bat','');
QuarantineFile('C:\Program Files (x86)\PlusHD_1.02mV09.08\59acf12a-3c64-4be8-ad9c-16dd07bba4c4-5.exe','');
QuarantineFile('C:\Program Files (x86)\SFK\SFKEX64.exe','');
QuarantineFile('c:\program files (x86)\sfk\ssfk.exe','');
QuarantineFile('C:\Program Files (x86)\Shop and Save Up\d20ae1a2-8376-4798-9f61-354221922dae-5.exe','');
QuarantineFile('C:\Program Files (x86)\WordSurfer_1.10.0.19\Service\wsasvc.exe','');
QuarantineFile('C:\Program Files (x86)\WordSurfer_1.10.0.19\Update\WordSurferAutoUpdateClient.exe','');
QuarantineFile('C:\ProgramData\8WdsManPro8\WdsManPro.exe','');
QuarantineFile('C:\ProgramData\TimeTasks\timetasks.exe','');
QuarantineFile('c:\task.vbs','');
QuarantineFile('C:\Users\Kaz\AppData\Local\gmsd_ru_005010084\upgmsd_ru_005010084.exe','');
QuarantineFile('C:\Users\Kaz\AppData\Local\Hostinstaller\2546265_installspro.exe','');
QuarantineFile('c:\users\kaz\appdata\local\smartweb\smartwebapp.exe','');
QuarantineFile('c:\users\kaz\appdata\local\smartweb\smartwebhelper.exe','');
QuarantineFile('C:\Users\Kaz\appdata\local\smartweb\swhk.dll','');
QuarantineFile('C:\Users\Kaz\appdata\local\smartweb\__u.exe','');
QuarantineFile('C:\Users\Kaz\AppData\Local\Temp\Updater.exe','');
QuarantineFile('C:\Users\Kaz\AppData\Roaming\ASPackage\ASPackage.exe','');
QuarantineFile('C:\WINDOWS\system32\drivers\ppfd_vw_1_10_0_24.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\wsafd_1_10_0_19.sys','');
QuarantineFile('D:\Program Files (x86)\Uninstall Tool\UninstallTool_x64.dat','');
QuarantineFile('d:\program files (x86)\uninstall tool\x64helper.exe','');
DeleteFile('c:\program files (x86)\00000000-1441874044-0000-0000-448a5b2f7b4e\hnsf911e.tmp','32');
DeleteFile('c:\program files (x86)\00000000-1441874044-0000-0000-448a5b2f7b4e\jnsr7ab6.tmp','32');
DeleteFile('C:\Program Files (x86)\00000000-1441874044-0000-0000-448A5B2F7B4E\knsm641D.tmp','32');
DeleteFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe','32');
DeleteFile('C:\Program Files (x86)\gmsd_ru_005010084\gmsd_ru_005010084.exe','32');
DeleteFile('C:\Program Files (x86)\Google\Chrome\Application\chrome.bat','32');
DeleteFile('C:\Program Files (x86)\PlusHD_1.02mV09.08\59acf12a-3c64-4be8-ad9c-16dd07bba4c4-5.exe','32');
DeleteFile('C:\Program Files (x86)\SFK\SFKEX64.exe','32');
DeleteFile('C:\Program Files (x86)\SFK\SSFK.exe','32');
DeleteFile('C:\Program Files (x86)\Shop and Save Up\d20ae1a2-8376-4798-9f61-354221922dae-5.exe','32');
DeleteFile('C:\Program Files (x86)\WordSurfer_1.10.0.19\Update\WordSurferAutoUpdateClient.exe','32');
DeleteFile('C:\ProgramData\8WdsManPro8\WdsManPro.exe','32');
DeleteFile('C:\ProgramData\TimeTasks\timetasks.exe','32');
DeleteFile('C:\Users\Kaz\AppData\Local\gmsd_ru_005010084\upgmsd_ru_005010084.exe','32');
DeleteFile('C:\Users\Kaz\AppData\Local\Hostinstaller\2546265_installspro.exe','32');
DeleteFile('c:\users\kaz\appdata\local\smartweb\smartwebapp.exe','32');
DeleteFile('C:\Users\Kaz\appdata\local\smartweb\smartwebhelper.exe','32');
DeleteFile('C:\Users\Kaz\appdata\local\smartweb\swhk.dll','32');
DeleteFile('C:\Users\Kaz\appdata\local\smartweb\__u.exe','32');
DeleteFile('C:\Users\Kaz\AppData\Local\Temp\Updater.exe','32');
DeleteFile('C:\Users\Kaz\AppData\Roaming\ASPackage\ASPackage.exe','32');
DeleteFile('C:\WINDOWS\system32\drivers\ppfd_vw_1_10_0_24.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\wsafd_1_10_0_19.sys','32');
DeleteFile('C:\WINDOWS\system32\Tasks\59acf12a-3c64-4be8-ad9c-16dd07bba4c4-5','64');
DeleteFile('C:\WINDOWS\system32\Tasks\59acf12a-3c64-4be8-ad9c-16dd07bba4c4-5_user','64');
DeleteFile('C:\WINDOWS\system32\Tasks\APSnotifierPP1','64');
DeleteFile('C:\WINDOWS\system32\Tasks\APSnotifierPP2','64');
DeleteFile('C:\WINDOWS\system32\Tasks\APSnotifierPP3','64');
DeleteFile('C:\WINDOWS\system32\Tasks\Crossbrowse','64');
DeleteFile('C:\WINDOWS\system32\Tasks\d20ae1a2-8376-4798-9f61-354221922dae-5','64');
DeleteFile('C:\WINDOWS\system32\Tasks\d20ae1a2-8376-4798-9f61-354221922dae-5_user','64');
DeleteFile('C:\WINDOWS\system32\Tasks\runTask','64');
DeleteFile('C:\WINDOWS\system32\Tasks\SmartWeb Upgrade Trigger Task','64');
DeleteFile('C:\WINDOWS\system32\Tasks\Soft installer','64');
DeleteFile('C:\WINDOWS\system32\Tasks\WordSurfer Auto Updater 1.10.0.19 Core','64');
DeleteFile('C:\WINDOWS\Tasks\59acf12a-3c64-4be8-ad9c-16dd07bba4c4-5.job','32');
DeleteFile('C:\WINDOWS\Tasks\59acf12a-3c64-4be8-ad9c-16dd07bba4c4-5_user.job','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP1.job','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP3.job','32');
DeleteFile('C:\WINDOWS\Tasks\Crossbrowse.job','32');
DeleteFile('C:\WINDOWS\Tasks\d20ae1a2-8376-4798-9f61-354221922dae-5.job','32');
DeleteFile('C:\WINDOWS\Tasks\d20ae1a2-8376-4798-9f61-354221922dae-5_user.job','32');
DeleteFileMask('C:\Users\Kaz\appdata\local\smartweb', '*', true, ' ');
DeleteDirectory('C:\Users\Kaz\appdata\local\smartweb');
DeleteFileMask('C:\Users\Kaz\AppData\Local\Hostinstaller', '*', true, ' ');
DeleteDirectory('C:\Users\Kaz\AppData\Local\Hostinstaller');
DeleteFileMask('C:\Users\Kaz\AppData\Local\gmsd_ru_005010084', '*', true, ' ');
DeleteDirectory('C:\Users\Kaz\AppData\Local\gmsd_ru_005010084');
DeleteFileMask('C:\ProgramData\TimeTasks', '*', true, ' ');
DeleteDirectory('C:\ProgramData\TimeTasks');
DeleteFileMask('C:\Program Files (x86)\WordSurfer_1.10.0.19', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\WordSurfer_1.10.0.19');
DeleteFileMask('C:\Program Files (x86)\Shop and Save Up', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\Shop and Save Up');
DeleteFileMask('C:\Program Files (x86)\PlusHD_1.02mV09.08', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\PlusHD_1.02mV09.08');
DeleteFileMask('C:\Program Files (x86)\gmsd_ru_005010084', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\gmsd_ru_005010084');
DeleteFileMask('C:\Program Files (x86)\AnyProtectEx', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\AnyProtectEx');
DeleteFileMask('C:\Program Files (x86)\Crossbrowse', '*', true, ' ');
DeleteDirectory('C:\Program Files (x86)\Crossbrowse');
DeleteFileMask('C:\Program Files (x86)\00000000-1441874044-0000-0000-448A5B2F7B4E', '*', true, ' ');
DeleteDirectory('C:\C:\Program Files (x86)\00000000-1441874044-0000-0000-448A5B2F7B4E');
DeleteService('gyvixodu');
DeleteService('lehicewu');
DeleteService('ppfd_vw_1_10_0_24');
DeleteService('WdsManPro');
DeleteService('wsafd_1_10_0_19');
DeleteService('wsasvc_1.10.0.19');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','gmsd_ru_005010084');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','SmartWeb');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','Timestasks');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','Update');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','upgmsd_ru_005010084.exe');
BC_ImportALL;
ExecuteSysClean;
BC_Activate;
ExecuteWizard('SCU', 2, 3, true);
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.