Показано с 1 по 7 из 7.

Реклама! (заявка № 190560)

  1. #1
    Junior Member Репутация
    Регистрация
    08.07.2009
    Сообщений
    95
    Вес репутации
    32

    Реклама!

    Реклама и переадресация на рекламные сайты всплывающие окна в браузере!

  2. Будь в курсе!
    Реклама на VirusInfo

    Надоело быть жертвой? Стань профи по информационной безопасности, получай самую свежую информацию об угрозах и средствах защиты от ведущего российского аналитического центра Anti-Malware.ru:

    Anti-Malware Telegram
     

  3. #2
    Cyber Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для Info_bot
    Регистрация
    11.05.2011
    Сообщений
    2,457
    Вес репутации
    343
    Уважаемый(ая) login, спасибо за обращение на наш форум!

    Удаление вирусов - абсолютно бесплатная услуга на VirusInfo.Info. Хелперы в самое ближайшее время ответят на Ваш запрос. Для оказания помощи необходимо предоставить логи сканирования утилитами АВЗ и HiJackThis, подробнее можно прочитать в правилах оформления запроса о помощи.

    information

    Информация

    Если вы хотите получить персональную гарантированную помощь в приоритетном режиме, то воспользуйтесь платным сервисом Помогите+.





    Если наш сайт окажется полезен Вам и у Вас будет такая возможность - пожалуйста поддержите проект.

  4. #3
    Helper Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для SQ
    Регистрация
    18.05.2012
    Адрес
    Searching ...
    Сообщений
    9,014
    Вес репутации
    218
    Здравствуйте,

    Удалите savepass 1.1, shop and save up, cinemaplus-4.5vv14.06, Crossbrowse, Kometa, Zaxar через установку программ в панели управления.

    AVZ выполнить следующий скрипт.
    Важно на ОС: Windows Vista/7/8/8.1 AVZ запускайте через контекстное меню проводника от имени Администратора.
    Код:
    begin
    ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
    ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);   
     StopService('ExtTag');
     StopService('exupdateadprodnct');
     StopService('HHandler Service');
     StopService('igfx32');
     StopService('innfd_1_10_0_14');
     StopService('insvc_1.10.0.14');
     StopService('nethfdrv');
     StopService('NetHttpService');
     StopService('scfd_1_10_0_16');
     StopService('ServiceUpdater');
     StopService('SPDRIVER_1.42.1.1950');
     StopService('State Tool for Video Saver');
     StopService('VideoSaverSvc');
     StopService('xoperoze');
     StopService('xysikozi');
     DeleteService('ExtTag');
     DeleteService('exupdateadprodnct');
     DeleteService('HHandler Service');
     DeleteService('igfx32');
     DeleteService('innfd_1_10_0_14');
     DeleteService('insvc_1.10.0.14');
     DeleteService('nethfdrv');
     DeleteService('NetHttpService');
     DeleteService('scfd_1_10_0_16');
     DeleteService('ServiceUpdater');
     DeleteService('SPDRIVER_1.42.1.1950');
     DeleteService('State Tool for Video Saver');
     DeleteService('VideoSaverSvc');
     DeleteService('xoperoze');
     DeleteService('xysikozi');
     TerminateProcessByName('c:\program files (x86)\shop and save up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-6.exe');
     TerminateProcessByName('c:\program files (x86)\shop and save up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-6.exe');
     TerminateProcessByName('c:\program files (x86)\savepass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-1-6.exe');
     TerminateProcessByName('c:\program files (x86)\savepass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-10.exe');
     TerminateProcessByName('c:\program files (x86)\savepass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-6.exe');
     TerminateProcessByName('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439\hnsn8a76.tmp');
     TerminateProcessByName('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439\jnsh732c.tmp');
     TerminateProcessByName('c:\users\admin\appdata\local\kometa\application\kometa.exe');
     TerminateProcessByName('c:\users\admin\appdata\local\kometa\kometaup.exe');
     TerminateProcessByName('c:\windows\syswow64\nethtsrv.exe');
     TerminateProcessByName('c:\windows\syswow64\netupdsrv.exe');
     TerminateProcessByName('c:\program files (x86)\video saver 2\svc\service.exe');
     TerminateProcessByName('c:\program files (x86)\ytdownloader\ytdownloader.exe');
     QuarantineFile('C:\Program Files (x86)\00000011-1433645384-0000-0000-BCEE7B53D439\knsiE73.tmp','');
     QuarantineFile('C:\Program Files (x86)\08c8566a-63c3-489f-bace-e0e37acf4b0b\e6725b27-a666-40f4-a6f6-be8131506080.dll','');
     QuarantineFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','');
     QuarantineFile('c:\program files (x86)\cinemaplus-4.5vv14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-1-6.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-1-7.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-10.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-3.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-5.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-6.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-7.exe','');
     QuarantineFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\7f985c74-d0b0-47cb-a62c-42d61ec6b169.dll','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-6.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-7.exe','');
     QuarantineFile('c:\program files (x86)\ciplus-4.5vv15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-10.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-11.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-3.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-6.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-7.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\eb8663ce-15ec-40cb-8c73-45db659448dc.dll','');
     QuarantineFile('c:\program files (x86)\ciplus-4.5vv18.08\e2943860-5f7d-4983-a277-f2c7c4622ab1-10.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV18.08\e2943860-5f7d-4983-a277-f2c7c4622ab1-11.exe','');
     QuarantineFile('C:\Program Files (x86)\CiPlus-4.5vV18.08\e2943860-5f7d-4983-a277-f2c7c4622ab1-3.exe','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome.dll','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_child.dll','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_elf.dll','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\ffmpegsumo.dll','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libegl.dll','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libglesv2.dll','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\pdf.dll','');
     QuarantineFile('c:\program files (x86)\crossbrowse\crossbrowse\application\crossbrowse.exe','');
     QuarantineFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe','');
     QuarantineFile('C:\Program Files (x86)\e0e71cc5-8fa5-47d5-9991-04e7d41e9c7b\63a39398-1690-47c0-b28c-dd3b5c33b7b9.dll','');
     QuarantineFile('C:\Program Files (x86)\gmsd_ru_005010029\gmsd_ru_005010029.exe','');
     QuarantineFile('C:\Program Files (x86)\HP Defender\HHandler.exe','');
     QuarantineFile('C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe','');
     QuarantineFile('c:\program files (x86)\pluto tv\plutotv.exe','');
     QuarantineFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-1-6.exe','');
     QuarantineFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-1-7.exe','');
     QuarantineFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-10.exe','');
     QuarantineFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-3.exe','');
     QuarantineFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-5.exe','');
     QuarantineFile('c:\program files (x86)\savepass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-6.exe','');
     QuarantineFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-7.exe','');
     QuarantineFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-6.exe','');
     QuarantineFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-7.exe','');
     QuarantineFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-11.exe','');
     QuarantineFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-5.exe','');
     QuarantineFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-6.exe','');
     QuarantineFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-7.exe','');
     QuarantineFile('C:\Program Files (x86)\Shop and Save Up\09918a6c-a1b1-4682-a176-8b5c329c1e37.dll','');
     QuarantineFile('c:\program files (x86)\shop and save up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-6.exe','');
     QuarantineFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-7.exe','');
     QuarantineFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-11.exe','');
     QuarantineFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-5.exe','');
     QuarantineFile('c:\program files (x86)\shop and save up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-6.exe','');
     QuarantineFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-7.exe','');
     QuarantineFile('C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1950\jsdrv.exe','');
     QuarantineFile('C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1950\jsdrv.sys','');
     QuarantineFile('C:\Program Files (x86)\ShopperPro\ShopperPro.exe','');
     QuarantineFile('C:\Program Files (x86)\ShopperPro\updater.exe','');
     QuarantineFile('C:\Program Files (x86)\SuperBrowser\stm\_6rQBuegyE9QAU2.exe  1 http://randow.ru/postback_setting/load 7UIEX6X93XX82O37YPF73DU03JYJHU1 2.0.2.8','');
     QuarantineFile('C:\Program Files (x86)\SuperBrowser\stm\_6rQBuegyE9QAU2.exe 1 http://randow.ru/postback_setting/load 7UIEX6X93XX82O37YPF73DU03JYJHU1 2.0.2.8','');
     QuarantineFile('C:\Program Files (x86)\SuperBrowser\stm\_6rQBuegyE9QAU2.exe','');
     QuarantineFile('C:\Program Files (x86)\SuperBrowser\upd\OFnQxaA4VDhoC30RHTNCg9l.bat','');
     QuarantineFile('C:\Program Files (x86)\Video Saver 2\IEEF\PMOeWx2Cl_.dll','');
     QuarantineFile('C:\Program Files (x86)\Video Saver 2\JR9OGgo.exe','');
     QuarantineFile('c:\program files (x86)\video saver 2\statetool\checker.exe','');
     QuarantineFile('c:\program files (x86)\video saver 2\svc\localserver.exe','');
     QuarantineFile('c:\program files (x86)\video saver 2\svc\service.exe','');
     QuarantineFile('C:\Program Files (x86)\Video Saver 2\tool\recover.exe','');
     QuarantineFile('C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe','');
     QuarantineFile('c:\program files (x86)\webprotectorplus\webprotectorplus.exe','');
     QuarantineFile('C:\Program Files (x86)\WebProtector\WebProtector.dll','');
     QuarantineFile('C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe','');
     QuarantineFile('C:\Program Files (x86)\YTDownloader\updater.exe','');
     QuarantineFile('c:\program files (x86)\ytdownloader\ytdownloader.exe','');
     QuarantineFile('C:\Program Files (x86)\Zaxar\timetasks.exe','');
     QuarantineFile('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe','');
     QuarantineFile('C:\Program Files (x86)\Zaxar\ZaxarLoader.exe','');
     QuarantineFile('C:\Program Files\Content Defender\ContentDefender.exe','');
     QuarantineFile('C:\Program Files\igfx32\igfx32.exe','');
     QuarantineFile('C:\Program Files\igfx32\packages\52d9bb57-c634-4a8b-8beb-f498851699a0\Stanron.exe','');
     QuarantineFile('C:\ProgramData\ExtTag\3h2bunst.dll','');
     QuarantineFile('C:\ProgramData\ExtTag\ExtTag','');
     QuarantineFile('c:\programdata\exttag\exttag.exe','');
     QuarantineFile('C:\ProgramData\ExtTag\o2yuer2x.dll','');
     QuarantineFile('c:\programdata\exttag\qeoe5vki.exe','');
     QuarantineFile('C:\ProgramData\ExtTag\rz2c0e15.dll','');
     QuarantineFile('C:\ProgramData\ShopperPro\ShopperPro.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\00000011-1433674231-0000-0000-BCEE7B53D439\bnssF26D.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\8364\Updater.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\Browsers\browser1.bat','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\chrome.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\chrome_child.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\chrome_elf.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\kometa-client-util.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\libegl.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\libglesv2.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Kometa\Application\kometa.bat','');
     QuarantineFile('c:\users\admin\appdata\local\kometa\application\kometa.exe','');
     QuarantineFile('c:\users\admin\appdata\local\kometa\kometaup.exe','');
     QuarantineFile('C:\Users\admin\appdata\local\microsoft\start menu\вoйти в интeрнeт.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\Ruspromocode\config.json','');
     QuarantineFile('C:\Users\admin\AppData\Local\Ruspromocode\stub.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\Saoranity.exe','');
     QuarantineFile('C:\Users\admin\appdata\local\smartweb\smartwebapp.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\SmartWeb\SmartWebHelper.exe','');
     QuarantineFile('C:\Users\admin\appdata\local\smartweb\swhk.dll','');
     QuarantineFile('C:\Users\admin\appdata\local\smartweb\__u.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\Style Mart\Bin\shjchpk.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Style Mart\Bin\StyleMart.dll','');
     QuarantineFile('C:\Users\admin\AppData\Local\Temp\extra_nsx169B.tmp\installer2.exe','');
     QuarantineFile('c:\users\admin\appdata\local\{2852e673-6af0-409b-bbe4-30e10b09fad8}\offerswizard.exe','');
     QuarantineFile('C:\Users\admin\AppData\Local\{2852E673-6AF0-409B-BBE4-30E10B09FAD8}\OffersWizardDll.dll','');
     QuarantineFile('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439\hnsn8a76.tmp','');
     QuarantineFile('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439\jnsh732c.tmp','');
     QuarantineFile('C:\Users\admin\AppData\Roaming\cpuminer\sgminer\sgminer.cmd','');
     QuarantineFile('C:\Users\admin\AppData\Roaming\Gameo\gameo.dat','');
     QuarantineFile('C:\Users\admin\AppData\Roaming\Gameo\gameo.exe','');
     QuarantineFile('C:\Windows\system32\config\systemprofile\AppData\Local\Sunlight','');
     QuarantineFile('C:\Windows\System32\cpuminer-gw64.exe','');
     QuarantineFile('C:\Windows\system32\drivers\innfd_1_10_0_14.sys','');
     QuarantineFile('C:\Windows\system32\drivers\nethfdrv.sys','');
     QuarantineFile('C:\Windows\system32\drivers\scfd_1_10_0_16.sys','');
     QuarantineFile('C:\Windows\system32\drivers\{ab573ef7-acd0-4715-a5c0-420d2ee2cd93}Gw64.sys','');
     QuarantineFile('C:\Windows\system32\hfnapi.dll','');
     QuarantineFile('C:\Windows\system32\hfpapi.dll','');
     QuarantineFile('C:\Windows\system32\nethtsrv.exe','');
     QuarantineFile('C:\Windows\system32\netupdsrv.exe','');
     QuarantineFile('C:\Windows\SysWOW64\hfnapi.dll','');
     QuarantineFile('C:\Windows\SysWOW64\hfpapi.dll','');
     QuarantineFile('c:\windows\syswow64\nethtsrv.exe','');
     QuarantineFile('C:\Windows\SysWOW64\netupdsrv.exe','');
     DelBHO('{631F9C5D-6307-4E32-BC0D-B1C3A0C064F3}');
     DelBHO('{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}');
     DelBHO('{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}');
     DelBHO('{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}');
     DeleteFile('C:\Program Files (x86)\00000011-1433645384-0000-0000-BCEE7B53D439\knsiE73.tmp','32');
     DeleteFile('C:\Program Files (x86)\08c8566a-63c3-489f-bace-e0e37acf4b0b\e6725b27-a666-40f4-a6f6-be8131506080.dll','32');
     DeleteFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','32');
     DeleteFile('c:\program files (x86)\cinemaplus-4.5vv14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-1-6.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-1-7.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-10.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-11.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-3.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-5.exe','32');
     DeleteFile('c:\program files (x86)\cinemaplus-4.5vv14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-6.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\569ad400-4bee-4f1b-b37a-564f5e948abc-7.exe','32');
     DeleteFile('C:\Program Files (x86)\CinemaPlus-4.5vV14.06\7f985c74-d0b0-47cb-a62c-42d61ec6b169.dll','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-6.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-7.exe','32');
     DeleteFile('c:\program files (x86)\ciplus-4.5vv15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-10.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-11.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-3.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-6.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-7.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV15.07\eb8663ce-15ec-40cb-8c73-45db659448dc.dll','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV18.08\e2943860-5f7d-4983-a277-f2c7c4622ab1-10.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV18.08\e2943860-5f7d-4983-a277-f2c7c4622ab1-11.exe','32');
     DeleteFile('C:\Program Files (x86)\CiPlus-4.5vV18.08\e2943860-5f7d-4983-a277-f2c7c4622ab1-3.exe','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_child.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_elf.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\ffmpegsumo.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libegl.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libglesv2.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\pdf.dll','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe','32');
     DeleteFile('C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe','32');
     DeleteFile('C:\Program Files (x86)\e0e71cc5-8fa5-47d5-9991-04e7d41e9c7b\63a39398-1690-47c0-b28c-dd3b5c33b7b9.dll','32');
     DeleteFile('C:\Program Files (x86)\gmsd_ru_005010029\gmsd_ru_005010029.exe','32');
     DeleteFile('C:\Program Files (x86)\HP Defender\HHandler.exe','32');
     DeleteFile('C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe','32');
     DeleteFile('c:\program files (x86)\savepass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-1-6.exe','32');
     DeleteFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-1-7.exe','32');
     DeleteFile('c:\program files (x86)\savepass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-10.exe','32');
     DeleteFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-11.exe','32');
     DeleteFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-3.exe','32');
     DeleteFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-5.exe','32');
     DeleteFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-6.exe','32');
     DeleteFile('C:\Program Files (x86)\SavePass 1.1\9dbcbf27-f739-449f-b027-f46911963bf4-7.exe','32');
     DeleteFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-6.exe','32');
     DeleteFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-7.exe','32');
     DeleteFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-11.exe','32');
     DeleteFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-5.exe','32');
     DeleteFile('c:\program files (x86)\sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-6.exe','32');
     DeleteFile('C:\Program Files (x86)\Sense\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-7.exe','32');
     DeleteFile('C:\Program Files (x86)\Shop and Save Up\09918a6c-a1b1-4682-a176-8b5c329c1e37.dll','32');
     DeleteFile('c:\program files (x86)\shop and save up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-6.exe','32');
     DeleteFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-7.exe','32');
     DeleteFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-11.exe','32');
     DeleteFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-5.exe','32');
     DeleteFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-6.exe','32');
     DeleteFile('C:\Program Files (x86)\Shop and Save Up\7bc2aaac-95f2-48a4-b572-c6e2311540f9-7.exe','32');
     DeleteFile('C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1950\jsdrv.exe','32');
     DeleteFile('C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1950\jsdrv.sys','32');
     DeleteFile('C:\Program Files (x86)\ShopperPro\ShopperPro.exe','32');
     DeleteFile('C:\Program Files (x86)\ShopperPro\updater.exe','32');
     DeleteFile('C:\Program Files (x86)\SuperBrowser\stm\_6rQBuegyE9QAU2.exe  1 http://randow.ru/postback_setting/load 7UIEX6X93XX82O37YPF73DU03JYJHU1 2.0.2.8','32');
     DeleteFile('C:\Program Files (x86)\SuperBrowser\stm\_6rQBuegyE9QAU2.exe 1 http://randow.ru/postback_setting/load 7UIEX6X93XX82O37YPF73DU03JYJHU1 2.0.2.8','32');
     DeleteFile('C:\Program Files (x86)\SuperBrowser\stm\_6rQBuegyE9QAU2.exe','32');
     DeleteFile('C:\Program Files (x86)\SuperBrowser\upd\OFnQxaA4VDhoC30RHTNCg9l.bat','32');
     DeleteFile('C:\Program Files (x86)\Video Saver 2\IEEF\PMOeWx2Cl_.dll','32');
     DeleteFile('C:\Program Files (x86)\Video Saver 2\JR9OGgo.exe','32');
     DeleteFile('c:\program files (x86)\video saver 2\statetool\checker.exe','32');
     DeleteFile('c:\program files (x86)\video saver 2\svc\localserver.exe','32');
     DeleteFile('C:\Program Files (x86)\Video Saver 2\svc\Service.exe','32');
     DeleteFile('C:\Program Files (x86)\Video Saver 2\tool\recover.exe','32');
     DeleteFile('C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe','32');
     DeleteFile('C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlus.exe','32');
     DeleteFile('C:\Program Files (x86)\WebProtector\WebProtector.dll','32');
     DeleteFile('C:\Program Files (x86)\YTDownloader\updater.exe','32');
     DeleteFile('c:\program files (x86)\ytdownloader\ytdownloader.exe','32');
     DeleteFile('C:\Program Files (x86)\Zaxar\timetasks.exe','32');
     DeleteFile('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe','32');
     DeleteFile('C:\Program Files (x86)\Zaxar\ZaxarLoader.exe','32');
     DeleteFile('C:\Program Files\Content Defender\ContentDefender.exe','32');
     DeleteFile('C:\Program Files\igfx32\igfx32.exe','32');
     DeleteFile('C:\Program Files\igfx32\packages\52d9bb57-c634-4a8b-8beb-f498851699a0\Stanron.exe','32');
     DeleteFile('C:\ProgramData\ExtTag\3h2bunst.dll','32');
     DeleteFile('C:\ProgramData\ExtTag\ExtTag','32');
     DeleteFile('C:\ProgramData\ExtTag\mrripbwz.dll','32');
     DeleteFile('C:\ProgramData\ExtTag\o2yuer2x.dll','32');
     DeleteFile('c:\programdata\exttag\qeoe5vki.exe','32');
     DeleteFile('C:\ProgramData\ExtTag\rz2c0e15.dll','32');
     DeleteFile('C:\ProgramData\ShopperPro\ShopperPro.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\00000011-1433674231-0000-0000-BCEE7B53D439\bnssF26D.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\8364\Updater.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\Browsers\browser1.bat','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\chrome.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\chrome_child.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\chrome_elf.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\kometa-client-util.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\libegl.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\45.0.2454.93\libglesv2.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Kometa\Application\kometa.bat','32');
     DeleteFile('c:\users\admin\appdata\local\kometa\application\kometa.exe','32');
     DeleteFile('C:\Users\admin\appdata\local\kometa\kometaup.exe','32');
     DeleteFile('C:\Users\admin\appdata\local\microsoft\start menu\вoйти в интeрнeт.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\Ruspromocode\config.json','32');
     DeleteFile('C:\Users\admin\AppData\Local\Ruspromocode\stub.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\Saoranity.exe','32');
     DeleteFile('C:\Users\admin\appdata\local\smartweb\smartwebapp.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\SmartWeb\SmartWebHelper.exe','32');
     DeleteFile('C:\Users\admin\appdata\local\smartweb\swhk.dll','32');
     DeleteFile('C:\Users\admin\appdata\local\smartweb\__u.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\Style Mart\Bin\StyleMart.dll','32');
     DeleteFile('C:\Users\admin\AppData\Local\Temp\extra_nsx169B.tmp\installer2.exe','32');
     DeleteFile('c:\users\admin\appdata\local\{2852e673-6af0-409b-bbe4-30e10b09fad8}\offerswizard.exe','32');
     DeleteFile('C:\Users\admin\AppData\Local\{2852E673-6AF0-409B-BBE4-30E10B09FAD8}\OffersWizardDll.dll','32');
     DeleteFile('C:\Users\admin\AppData\Roaming\00000011-1433645384-0000-0000-BCEE7B53D439\hnsn8A76.tmp','32');
     DeleteFile('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439\jnsh732c.tmp','32');
     DeleteFile('C:\Users\admin\AppData\Roaming\cpuminer\sgminer\sgminer.cmd','32');
     DeleteFile('C:\Windows\system32\config\systemprofile\AppData\Local\Sunlight','32');
     DeleteFile('C:\Windows\System32\cpuminer-gw64.exe','32');
     DeleteFile('C:\Windows\system32\drivers\innfd_1_10_0_14.sys','32');
     DeleteFile('C:\Windows\system32\drivers\nethfdrv.sys','32');
     DeleteFile('C:\Windows\system32\drivers\scfd_1_10_0_16.sys','32');
     DeleteFile('C:\Windows\system32\drivers\{ab573ef7-acd0-4715-a5c0-420d2ee2cd93}Gw64.sys','32');
     DeleteFile('C:\Windows\system32\hfnapi.dll','32');
     DeleteFile('C:\Windows\system32\hfpapi.dll','32');
     DeleteFile('C:\Windows\system32\nethtsrv.exe','32');
     DeleteFile('C:\Windows\system32\netupdsrv.exe','32');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-6','64');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-7','64');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-11','64');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-5','64');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-5_user','64');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-6','64');
     DeleteFile('C:\Windows\system32\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-7','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-1-6','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-1-7','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-11','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-3','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-5','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-5_user','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-6','64');
     DeleteFile('C:\Windows\system32\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-7','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-6','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-7','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-11','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-5','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-5_user','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-6','64');
     DeleteFile('C:\Windows\system32\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-7','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-6','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-7','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-10_user','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-11','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-3','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5_user','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-6','64');
     DeleteFile('C:\Windows\system32\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-7','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-1-6','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-1-7','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-10_user','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-11','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-3','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-5','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-5_user','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-6','64');
     DeleteFile('C:\Windows\system32\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-7','64');
     DeleteFile('C:\Windows\system32\Tasks\AmiUpdXp','64');
     DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1','64');
     DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2','64');
     DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP3','64');
     DeleteFile('C:\Windows\system32\Tasks\Crossbrowse','64');
     DeleteFile('C:\Windows\system32\Tasks\downioadwi','64');
     DeleteFile('C:\Windows\system32\Tasks\e2943860-5f7d-4983-a277-f2c7c4622ab1-10_user','64');
     DeleteFile('C:\Windows\system32\Tasks\e2943860-5f7d-4983-a277-f2c7c4622ab1-11','64');
     DeleteFile('C:\Windows\system32\Tasks\e2943860-5f7d-4983-a277-f2c7c4622ab1-3','64');
     DeleteFile('C:\Windows\system32\Tasks\Recovery Tool for Video Saver 2','64');
     DeleteFile('C:\Windows\system32\Tasks\Recovery Tool for Video Saver 22','64');
     DeleteFile('C:\Windows\system32\Tasks\ShopperPro','64');
     DeleteFile('C:\Windows\system32\Tasks\ShopperProJSUpd','64');
     DeleteFile('C:\Windows\system32\Tasks\SmartWeb Upgrade Trigger Task','64');
     DeleteFile('C:\Windows\system32\Tasks\SPDriver','64');
     DeleteFile('C:\Windows\system32\Tasks\Style Mart','64');
     DeleteFile('C:\Windows\system32\Tasks\SuperBrowserHelper','64');
     DeleteFile('C:\Windows\system32\Tasks\temp_569ad400-4bee-4f1b-b37a-564f5e948abc-1-6','64');
     DeleteFile('C:\Windows\system32\Tasks\temp_569ad400-4bee-4f1b-b37a-564f5e948abc-10_user','64');
     DeleteFile('C:\Windows\system32\Tasks\temp_569ad400-4bee-4f1b-b37a-564f5e948abc-6','64');
     DeleteFile('C:\Windows\system32\Tasks\Update Service for SuperBrowser','64');
     DeleteFile('C:\Windows\system32\Tasks\Update Service for SuperBrowser2','64');
     DeleteFile('C:\Windows\system32\Tasks\Update Service for Video Saver 2','64');
     DeleteFile('C:\Windows\system32\Tasks\Update Service for Video Saver 22','64');
     DeleteFile('C:\Windows\system32\Tasks\Web Protector Plus Server','64');
     DeleteFile('C:\Windows\system32\Tasks\Web Protector Plus','64');
     DeleteFile('C:\Windows\system32\Tasks\YTDownloader','64');
     DeleteFile('C:\Windows\system32\Tasks\YTDownloaderUpd','64');
     DeleteFile('C:\Windows\syswow64\hfnapi.dll','32');
     DeleteFile('C:\Windows\SysWOW64\hfpapi.dll','32');
     DeleteFile('C:\Windows\syswow64\nethtsrv.exe','32');
     DeleteFile('c:\windows\syswow64\netupdsrv.exe','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-6.job','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-1-7.job','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-11.job','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-5.job','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-5_user.job','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-6.job','32');
     DeleteFile('C:\Windows\Tasks\0dc92cb0-3fc8-4369-8279-afdbd03bedb7-7.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-1-6.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-1-7.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-10_user.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-11.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-3.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-5.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-5_user.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-6.job','32');
     DeleteFile('C:\Windows\Tasks\569ad400-4bee-4f1b-b37a-564f5e948abc-7.job','32');
     DeleteFile('C:\Windows\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-6.job','32');
     DeleteFile('C:\Windows\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-1-7.job','32');
     DeleteFile('C:\Windows\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-11.job','32');
     DeleteFile('C:\Windows\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-5.job','32');
     DeleteFile('C:\Windows\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-5_user.job','32');
     DeleteFile('C:\Windows\Tasks\7bc2aaac-95f2-48a4-b572-c6e2311540f9-7.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-6.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-1-7.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-10_user.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-11.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-3.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-5_user.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-6.job','32');
     DeleteFile('C:\Windows\Tasks\8b408616-dc51-45d9-b2e8-eb1cf5ee6de9-7.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-1-6.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-1-7.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-10_user.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-11.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-3.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-5.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-5_user.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-6.job','32');
     DeleteFile('C:\Windows\Tasks\9dbcbf27-f739-449f-b027-f46911963bf4-7.job','32');
     DeleteFile('C:\Windows\Tasks\AmiUpdXp.job','32');
     DeleteFile('C:\Windows\Tasks\APSnotifierPP2.job','32');
     DeleteFile('C:\Windows\Tasks\APSnotifierPP3.job','32');
     DeleteFile('C:\Windows\Tasks\Crossbrowse.job','32');
     DeleteFile('C:\Windows\Tasks\e2943860-5f7d-4983-a277-f2c7c4622ab1-10_user.job','32');
     DeleteFile('C:\Windows\Tasks\e2943860-5f7d-4983-a277-f2c7c4622ab1-11.job','32');
     DeleteFile('C:\Windows\Tasks\e2943860-5f7d-4983-a277-f2c7c4622ab1-3.job','32');
     DeleteFile('C:\Windows\Tasks\Recovery Tool for Video Saver 2.job','32');
     DeleteFile('C:\Windows\Tasks\Recovery Tool for Video Saver 22.job','32');
     DeleteFile('C:\Windows\Tasks\SuperBrowserHelper.job','32');
     DeleteFile('C:\Windows\Tasks\Update Service for SuperBrowser.job','32');
     DeleteFile('C:\Windows\Tasks\Update Service for SuperBrowser2.job','32');
     DeleteFile('C:\Windows\Tasks\Update Service for Video Saver 2.job','32');
     DeleteFile('C:\Windows\Tasks\Update Service for Video Saver 22.job','32');
     DeleteFileMask('C:\Users\admin\appdata\local\kometa', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\appdata\local\kometa');
     DeleteFileMask('C:\Users\admin\AppData\Roaming\cpuminer', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\AppData\Roaming\cpuminer');
     DeleteFileMask('C:\Users\admin\appdata\local\smartweb', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\appdata\local\smartweb');
     DeleteFileMask('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439', '*', true, ' ');
     DeleteDirectory('c:\users\admin\appdata\roaming\00000011-1433645384-0000-0000-bcee7b53d439');
     DeleteFileMask('C:\Users\admin\AppData\Local\Ruspromocode', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\AppData\Local\Ruspromocode');
     DeleteFileMask('C:\Users\admin\AppData\Local\Browsers', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\AppData\Local\Browsers');
     DeleteFileMask('C:\Program Files (x86)\00000011-1433645384-0000-0000-BCEE7B53D439', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\00000011-1433645384-0000-0000-BCEE7B53D439'); 
     DeleteFileMask('C:\Program Files (x86)\08c8566a-63c3-489f-bace-e0e37acf4b0b', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\08c8566a-63c3-489f-bace-e0e37acf4b0b'); 
     DeleteFileMask('C:\Program Files (x86)\SuperBrowser', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\SuperBrowser');
     DeleteFileMask('C:\Program Files (x86)\Sense', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\Sense');
     DeleteFileMask('C:\Program Files (x86)\Shop and Save Up', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\Shop and Save Up');
     DeleteFileMask('C:\Program Files (x86)\gmsd_ru_005010029', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\gmsd_ru_005010029');
     DeleteFileMask('C:\Program Files (x86)\HP Defender', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\HP Defender');
     DeleteFileMask('C:\Program Files (x86)\Infonaut_1.10.0.14', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\Infonaut_1.10.0.14');
     DeleteFileMask('C:\Program Files (x86)\CiPlus-4.5vV18.08', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\CiPlus-4.5vV18.08');
     DeleteFileMask('C:\Program Files (x86)\AnyProtectEx', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\AnyProtectEx'); 
     DeleteFileMask('C:\Users\admin\AppData\Local\8364', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\AppData\Local\8364');
     DeleteFileMask('C:\Users\admin\AppData\Local\00000011-1433674231-0000-0000-BCEE7B53D439', '*', true, ' ');
     DeleteDirectory('C:\Users\admin\AppData\Local\00000011-1433674231-0000-0000-BCEE7B53D439'); 
     DeleteFileMask('C:\Program Files (x86)\Zaxar', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\Zaxar');
     DeleteFileMask('C:\ProgramData\ExtTag', '*', true, ' ');
     DeleteDirectory('C:\ProgramData\ExtTag');
     DeleteFileMask('C:\ProgramData\ShopperPro', '*', true, ' ');
     DeleteDirectory('C:\ProgramData\ShopperPro');
     DeleteFileMask('C:\Program Files\igfx32', '*', true, ' ');
     DeleteDirectory('C:\Program Files\igfx32');
     DeleteFileMask('c:\program files (x86)\ytdownloader', '*', true, ' ');
     DeleteDirectory('c:\program files (x86)\ytdownloader');
     DeleteFileMask('C:\Program Files (x86)\WebProtector', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\WebProtector');
     DeleteFileMask('C:\Program Files (x86)\WebProtectorPlus', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\WebProtectorPlus');
     DeleteFileMask('C:\Program Files (x86)\Video Saver 2', '*', true, ' ');
     DeleteDirectory('C:\Program Files (x86)\Video Saver 2');   
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','Daemon');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','GoogleChromeAutoLaunch_35F47CA955883AC80F45949DB9B0CAE0');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','jcclbcqgcm');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','KometaAutoLaunch_5900B72B30FA0A1ACC8900BEE77E9884');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','kometaup');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','Ruspromocode');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','SPDriver');
     RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','YTDownloader');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','cpuminer');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','gmsd_ru_005010029');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','gpuminer');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','SPDriver');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','Timestasks');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','WinCheck');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','Windesk Winsearch');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','YTDownloader');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','ZaxarGameBrowser');
     RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','ZaxarLoader');
    BC_ImportALL;
    ExecuteSysClean;
    BC_Activate;
     ExecuteRepair(2);
     ExecuteRepair(3);
     ExecuteRepair(4);
     ExecuteWizard('SCU', 2, 3, true);
    RebootWindows(true);
    end.
    После выполнения скрипта компьютер перезагрузится.

    После перезагрузки:
    - Выполните в AVZ:
    Код:
    Код:
    begin
     CreateQurantineArchive(GetAVZDirectory+'quarantine.zip'); 
    end.
    Файл quarantine.zip из папки AVZ загрузите по ссылке "Прислать запрошенный карантин" вверху темы.

    - Подготовьте лог AdwCleaner и приложите его в теме.


    - Сделайте лог Check Browsers' LNK и приложите его в теме.
    CCNA, CCNP, CCNA Security, CCDA, CCDP
    MCP, Microsoft Specialist: Srv Virtualization with WinSrv Hyper-V and System Center

  5. #4
    Junior Member Репутация
    Регистрация
    08.07.2009
    Сообщений
    95
    Вес репутации
    32
    очень долго нет ответа. подскажите может не те файлы вложены?

  6. #5
    Невымерший Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для thyrex
    Регистрация
    07.03.2009
    Адрес
    Soligorsk, Belarus
    Сообщений
    96,693
    Вес репутации
    3028
    Ответ есть в сообщении над Вашим
    Microsoft MVP 2012-2016 Consumer Security
    Microsoft MVP 2016 Reconnect

  7. #6
    Junior Member Репутация
    Регистрация
    08.07.2009
    Сообщений
    95
    Вес репутации
    32
    Вложение 593660
    не удаляются! shop and save up, Crossbrowse

    - - - - -Добавлено - - - - -

    AdwCleaner[S1] quarantine
    Не отправляет файлы!

  8. #7
    Helper Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для SQ
    Регистрация
    18.05.2012
    Адрес
    Searching ...
    Сообщений
    9,014
    Вес репутации
    218
    Удалите в AdwCleaner всё, кроме папок с названиями программ которыми вы пользуетесь (если ничем из перечисленного в логе не пользуетесь, то удалите всё). Отчет после удаления прикрепите.

    Цитата Сообщение от SQ Посмотреть сообщение
    Здравствуйте,

    - Сделайте лог Check Browsers' LNK и приложите его в теме.
    Где указанный выше лог?
    CCNA, CCNP, CCNA Security, CCDA, CCDP
    MCP, Microsoft Specialist: Srv Virtualization with WinSrv Hyper-V and System Center

Похожие темы

  1. Ответов: 13
    Последнее сообщение: 05.09.2015, 20:51
  2. Ответов: 9
    Последнее сообщение: 01.08.2015, 21:30
  3. Ответов: 4
    Последнее сообщение: 26.06.2015, 01:20
  4. Ответов: 6
    Последнее сообщение: 07.03.2015, 21:51
  5. Ответов: 5
    Последнее сообщение: 23.04.2014, 20:59

Свернуть/Развернуть Ваши права в разделе

  • Вы не можете создавать новые темы
  • Вы не можете отвечать в темах
  • Вы не можете прикреплять вложения
  • Вы не можете редактировать свои сообщения
  •  
Page generated in 0.00748 seconds with 16 queries