Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('c:\program files (x86)\b8a2f780-1459240073-11dd-85a4-7824af9c7639\knsb33f9.tmpfs');
TerminateProcessByName('c:\program files (x86)\homepagedefender\hpdefsrv.exe');
TerminateProcessByName('C:\Program Files (x86)\Max Driver Updater\idscservice.exe');
TerminateProcessByName('c:\users\artem\appdata\roaming\imagecropresize\imageed\imageed.exe');
StopService('HomePageDefender Service');
StopService('kudogotozbt');
DeleteService('HomePageDefender Service');
DeleteService('kudogotozbt');
QuarantineFile('c:\gamexp\accesspoint\accesspoint-bin.exe','');
QuarantineFile('c:\program files (x86)\b8a2f780-1459240073-11dd-85a4-7824af9c7639\knsb33f9.tmpfs','');
QuarantineFile('C:\Program Files (x86)\badu\uc.exe','');
QuarantineFile('c:\program files (x86)\homepagedefender\hpdefsrv.exe','');
QuarantineFile('C:\Program Files (x86)\Max Driver Updater\idscservice.exe','');
QuarantineFile('C:\Program Files (x86)\mpck_en_005030281\mpck_en_005030281.exe','');
QuarantineFile('C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe','');
QuarantineFile('C:\Program Files (x86)\win_en_77\win_en_77.exe','');
QuarantineFile('C:\Program Files\contentprotector\condefclean.exe','');
QuarantineFile('C:\Program Files\contentprotector\conprotsetup.exe','');
QuarantineFile('C:\Program Files\contentprotector\contentprotector.exe','');
QuarantineFile('C:\Program Files\contentprotector\contentprotectorconrol.exe','');
QuarantineFile('C:\Program Files\contentprotector\contentprotectorupdate.exe','');
QuarantineFile('C:\Program Files\contentprotector\import_root_cert.exe','');
QuarantineFile('C:\Program Files\contentprotector\libeay32.dll','');
QuarantineFile('C:\Program Files\contentprotector\nfregdrv.exe','');
QuarantineFile('C:\Program Files\contentprotector\nss\certutil.exe','');
QuarantineFile('C:\Program Files\contentprotector\nss\nspr4.dll','');
QuarantineFile('C:\Program Files\contentprotector\nss\nss3.dll','');
QuarantineFile('C:\Program Files\contentprotector\nss\plc4.dll','');
QuarantineFile('C:\Program Files\contentprotector\nss\plds4.dll','');
QuarantineFile('C:\Program Files\contentprotector\nss\smime3.dll','');
QuarantineFile('C:\Program Files\contentprotector\nss\softokn3.dll','');
QuarantineFile('C:\Program Files\contentprotector\ssleay32.dll','');
QuarantineFile('C:\Program Files\spacesoundpro\idscservice.exe','');
QuarantineFile('C:\Program Files\spacesoundpro\uninstaller.exe','');
QuarantineFile('C:\Users\Artem\AppData\Local\Hostinstaller\1616266342_monster.exe','');
QuarantineFile('C:\Users\Artem\AppData\Local\SaveYouTime\config.json','');
QuarantineFile('C:\Users\Artem\AppData\Local\SaveYouTime\stub.exe','');
QuarantineFile('C:\Users\Artem\appdata\roaming\aspackage\aspackage.exe','');
QuarantineFile('C:\Users\Artem\appdata\roaming\aspackage\uninstall.exe','');
QuarantineFile('C:\Users\Artem\AppData\Roaming\cpuminer\cpm.exe','');
QuarantineFile('C:\Users\Artem\AppData\Roaming\ImageCropResize\ImageEd\ImageEd.exe','');
QuarantineFile('C:\Users\Artem\appdata\roaming\istartpageing\uninstallmanager.exe','');
DeleteFile('c:\program files (x86)\b8a2f780-1459240073-11dd-85a4-7824af9c7639\knsb33f9.tmpfs','32');
DeleteFile('C:\Program Files (x86)\badu\uc.exe','32');
DeleteFile('C:\Program Files (x86)\HomePageDefender\HpDefSrv.exe','32');
DeleteFile('C:\Program Files (x86)\Max Driver Updater\idscservice.exe','32');
DeleteFile('C:\Program Files (x86)\mpck_en_005030281\mpck_en_005030281.exe','32');
DeleteFile('C:\Program Files (x86)\win_en_77\win_en_77.exe','32');
DeleteFile('C:\Program Files\contentprotector\condefclean.exe','32');
DeleteFile('C:\Program Files\contentprotector\conprotsetup.exe','32');
DeleteFile('C:\Program Files\contentprotector\contentprotector.exe','32');
DeleteFile('C:\Program Files\contentprotector\contentprotectorconrol.exe','32');
DeleteFile('C:\Program Files\contentprotector\contentprotectorupdate.exe','32');
DeleteFile('C:\Program Files\contentprotector\import_root_cert.exe','32');
DeleteFile('C:\Program Files\contentprotector\libeay32.dll','32');
DeleteFile('C:\Program Files\contentprotector\nfregdrv.exe','32');
DeleteFile('C:\Program Files\contentprotector\nss\certutil.exe','32');
DeleteFile('C:\Program Files\contentprotector\nss\mozcrt19.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\nspr4.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\nss3.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\plc4.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\plds4.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\smime3.dll','32');
DeleteFile('C:\Program Files\contentprotector\nss\softokn3.dll','32');
DeleteFile('C:\Program Files\contentprotector\ssleay32.dll','32');
DeleteFile('C:\Program Files\spacesoundpro\idscservice.exe','32');
DeleteFile('C:\Program Files\spacesoundpro\uninstaller.exe','32');
DeleteFile('C:\Users\Artem\AppData\Local\Hostinstaller\1616266342_monster.exe','32');
DeleteFile('C:\Users\Artem\AppData\Local\SaveYouTime\config.json','32');
DeleteFile('C:\Users\Artem\AppData\Local\SaveYouTime\stub.exe','32');
DeleteFile('C:\Users\Artem\appdata\roaming\aspackage\aspackage.exe','32');
DeleteFile('C:\Users\Artem\appdata\roaming\aspackage\uninstall.exe','32');
DeleteFile('C:\Users\Artem\AppData\Roaming\cpuminer\cpm.exe','32');
DeleteFile('c:\users\artem\appdata\roaming\imagecropresize\imageed\imageed.exe','32');
DeleteFile('C:\Users\Artem\appdata\roaming\istartpageing\uninstallmanager.exe','32');
DeleteFile('C:\Windows\system32\Tasks\Soft installer','64');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','ImageEd');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','SaveYouTime');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','apphide');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','cpuminer');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','mpck_en_005030281');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','win_en_77');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','IDSCPRODUCT');
BC_ImportALL;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.