Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\Владелец\appdata\local\smartweb\swhk.dll','');
QuarantineFile('C:\Users\Владелец\appdata\roaming\aspackage\aspackage.exe','');
QuarantineFile('C:\Program Files (x86)\YTDownloader\YTDownloader.exe','');
QuarantineFile('C:\Users\Владелец\AppData\Local\SmartWeb\SmartWebHelper.exe','');
QuarantineFile('C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe','');
QuarantineFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','');
QuarantineFile('C:\Program Files (x86)\HQCinema Pro 2.1V16.01\167faadc-09ce-4f7d-bf21-ea0c24ee876e-5.exe','');
QuarantineFile('C:\Program Files (x86)\HQCinema Pro 2.1V16.01\167faadc-09ce-4f7d-bf21-ea0c24ee876e-11.exe','');
QuarantineFile('C:\Users\Владелец\AppData\Local\Yandex\browser.bat','');
SetServiceStart('SPDRIVER_1.42.1.2033', 4);
DeleteService('SPDRIVER_1.42.1.2033');
DeleteService('qrnfd_1_10_0_9');
DeleteService('sbmntr');
DeleteService('SPBIUpdd');
DeleteService('{1026189e-8b04-4d7a-91df-f9418b70f1d2}Gw64');
DeleteService('{13f251db-7466-4fe3-ad78-88f7099961e7}Gw64');
DeleteService('{4230c13d-2ffe-4c9f-8d54-db3912249619}Gw64');
DeleteService('{46feabbc-754a-416e-ab40-48d8a081dbd9}Gw64');
DeleteService('{66e9235b-bb28-4574-a5b4-0bdcef5a2bee}Gw64');
DeleteService('{6f19f6bb-634d-4bee-bd34-ae7a9c664fb8}Gw64');
DeleteService('{9d47f749-4ab3-46c2-b50e-047c431bbcf8}Gw64');
QuarantineFile('C:\Windows\system32\drivers\{9d47f749-4ab3-46c2-b50e-047c431bbcf8}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{6f19f6bb-634d-4bee-bd34-ae7a9c664fb8}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{66e9235b-bb28-4574-a5b4-0bdcef5a2bee}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{46feabbc-754a-416e-ab40-48d8a081dbd9}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{4230c13d-2ffe-4c9f-8d54-db3912249619}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{13f251db-7466-4fe3-ad78-88f7099961e7}Gw64.sys','');
QuarantineFile('C:\Windows\system32\drivers\{1026189e-8b04-4d7a-91df-f9418b70f1d2}Gw64.sys','');
QuarantineFile('C:\Program Files\Common Files\ShopperPro\spbiw.sys','');
QuarantineFile('C:\PROGRA~2\YTDOWN~1\sbmntr.sys','');
QuarantineFile('C:\Windows\system32\drivers\qrnfd_1_10_0_9.sys','');
QuarantineFile('C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2033\jsdrv.sys','');
DeleteFile('C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2033\jsdrv.sys','32');
DeleteFile('C:\Windows\system32\drivers\qrnfd_1_10_0_9.sys','32');
DeleteFile('C:\PROGRA~2\YTDOWN~1\sbmntr.sys','32');
DeleteFile('C:\Program Files\Common Files\ShopperPro\spbiw.sys','32');
DeleteFile('C:\Windows\system32\drivers\{1026189e-8b04-4d7a-91df-f9418b70f1d2}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{13f251db-7466-4fe3-ad78-88f7099961e7}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{4230c13d-2ffe-4c9f-8d54-db3912249619}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{46feabbc-754a-416e-ab40-48d8a081dbd9}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{66e9235b-bb28-4574-a5b4-0bdcef5a2bee}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{6f19f6bb-634d-4bee-bd34-ae7a9c664fb8}Gw64.sys','32');
DeleteFile('C:\Windows\system32\drivers\{9d47f749-4ab3-46c2-b50e-047c431bbcf8}Gw64.sys','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\minecraft-five','command');
DeleteFile('C:\Users\Владелец\AppData\Roaming\5minecraft.ru.url','32');
DeleteFile('C:\Users\Владелец\AppData\Local\Yandex\browser.bat','32');
DeleteFile('C:\Program Files (x86)\HQCinema Pro 2.1V16.01\167faadc-09ce-4f7d-bf21-ea0c24ee876e-11.exe','32');
DeleteFile('C:\Program Files (x86)\HQCinema Pro 2.1V16.01\167faadc-09ce-4f7d-bf21-ea0c24ee876e-5.exe','32');
DeleteFile('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe','32');
DeleteFile('C:\Windows\Tasks\167faadc-09ce-4f7d-bf21-ea0c24ee876e-1.job','32');
DeleteFile('C:\Windows\Tasks\167faadc-09ce-4f7d-bf21-ea0c24ee876e-11.job','32');
DeleteFile('C:\Windows\Tasks\167faadc-09ce-4f7d-bf21-ea0c24ee876e-5.job','32');
DeleteFile('C:\Windows\Tasks\167faadc-09ce-4f7d-bf21-ea0c24ee876e-5_user.job','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP1.job','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP2.job','32');
DeleteFile('C:\Windows\Tasks\APSnotifierPP3.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job','32');
DeleteFile('C:\Windows\Tasks\MJNQWZAR.job','32');
DeleteFile('C:\Windows\Tasks\VGTGXRTJ.job','32');
DeleteFile('C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe','32');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP1','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP2','64');
DeleteFile('C:\Windows\system32\Tasks\APSnotifierPP3','64');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','64');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','64');
DeleteFile('C:\Windows\system32\Tasks\SmartWeb Upgrade Trigger Task','64');
DeleteFile('C:\Windows\system32\Tasks\YTDownloader','64');
DeleteFile('C:\Users\Владелец\AppData\Local\SmartWeb\SmartWebHelper.exe','32');
DeleteFile('C:\Program Files (x86)\YTDownloader\YTDownloader.exe','32');
DeleteFile('C:\Users\Владелец\appdata\roaming\aspackage\aspackage.exe','32');
DeleteFile('C:\Users\Владелец\appdata\local\smartweb\swhk.dll','32');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
Будет выполнена перезагрузка компьютера.