Код:
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('C:\Program Files\37HEFTSRC6\37HEFTSRC.exe');
TerminateProcessByName('C:\Program Files\380LQ5XX4T\380LQ5XX4.exe');
TerminateProcessByName('C:\Program Files\GDE1N9VM22\GDE1N9VM2.exe');
TerminateProcessByName('C:\Program Files\W360JE50KJ\W360JE50K.exe');
TerminateProcessByName('C:\Program Files\Y96JFOPWQE\Y96JFOPWQ.exe');
TerminateProcessByName('C:\Program Files\YJ8JKK11WJ\YJ8JKK11W.exe');
TerminateProcessByName('C:\Users\sobolev\AppData\Local\Temp\FSYHOM34H\FSYHOM34H.exe');
TerminateProcessByName('C:\Users\sobolev\AppData\Local\Temp\FU2PB01FC\FU2PB01FC.exe');
TerminateProcessByName('C:\Users\sobolev\AppData\Local\Temp\HQJR40MWE\HQJR40MWE.exe');
TerminateProcessByName('C:\Users\sobolev\AppData\Local\Temp\NKC8XC0C7\NKC8XC0C7.exe');
QuarantineFile('C:\Program Files\37HEFTSRC6\37HEFTSRC.exe','');
QuarantineFile('C:\Program Files\380LQ5XX4T\380LQ5XX4.exe','');
QuarantineFile('C:\Program Files\GDE1N9VM22\GDE1N9VM2.exe','');
QuarantineFile('C:\Program Files\W360JE50KJ\W360JE50K.exe','');
QuarantineFile('C:\Program Files\Y96JFOPWQE\Y96JFOPWQ.exe','');
QuarantineFile('C:\Program Files\YJ8JKK11WJ\YJ8JKK11W.exe','');
QuarantineFile('C:\Users\sobolev\AppData\Local\Temp\FSYHOM34H\FSYHOM34H.exe','');
QuarantineFile('C:\Users\sobolev\AppData\Local\Temp\FU2PB01FC\FU2PB01FC.exe','');
QuarantineFile('C:\Users\sobolev\AppData\Local\Temp\HQJR40MWE\HQJR40MWE.exe','');
QuarantineFile('C:\Users\sobolev\AppData\Local\Temp\NKC8XC0C7\NKC8XC0C7.exe','');
QuarantineFile('C:\Users\sobolev\appdata\roaming\adobe\manager.exe','');
QuarantineFile('C:\Users\sobolev\AppData\Roaming\SafeWeb\ml.py','');
QuarantineFile('C:\Users\sobolev\AppData\Roaming\SafeWeb\python\pythonw.exe','');
QuarantineFile('C:\Users\sobolev\AppData\Roaming\SafeWeb\updater.py','');
DeleteFile('C:\Program Files\37HEFTSRC6\37HEFTSRC.exe','32');
DeleteFile('C:\Program Files\380LQ5XX4T\380LQ5XX4.exe','32');
DeleteFile('C:\Program Files\GDE1N9VM22\GDE1N9VM2.exe','32');
DeleteFile('C:\Program Files\W360JE50KJ\W360JE50K.exe','32');
DeleteFile('C:\Program Files\Y96JFOPWQE\Y96JFOPWQ.exe','32');
DeleteFile('C:\Program Files\YJ8JKK11WJ\YJ8JKK11W.exe','32');
DeleteFile('C:\Users\sobolev\AppData\Local\Temp\FSYHOM34H\FSYHOM34H.exe','32');
DeleteFile('C:\Users\sobolev\AppData\Local\Temp\FU2PB01FC\FU2PB01FC.exe','32');
DeleteFile('C:\Users\sobolev\AppData\Local\Temp\HQJR40MWE\HQJR40MWE.exe','32');
DeleteFile('C:\Users\sobolev\AppData\Local\Temp\NKC8XC0C7\NKC8XC0C7.exe','32');
DeleteFile('C:\Users\sobolev\appdata\roaming\adobe\manager.exe','32');
DeleteFile('C:\Users\sobolev\AppData\Roaming\SafeWeb\ml.py','32');
DeleteFile('C:\Users\sobolev\AppData\Roaming\SafeWeb\python\pythonw.exe','32');
DeleteFile('C:\Users\sobolev\AppData\Roaming\SafeWeb\updater.py','32');
ExecuteFile('schtasks.exe', '/delete /TN "Microsoft\Windows\Multimedia\Manager" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "SafeWeb" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "SafeWeb2" /F', 0, 15000, true);
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','2A0T9SMML2');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','5Q2CAYINX2');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','6G7C43DK5T');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','9DWMDHK4FQ');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','IAMCQ8C68X');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','IE38YWGKVC');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','IG6GL9DVRC');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','J2SD8IH8R2');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','ME8Q28HFQK');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','SafeWeb');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','VRH8VSJ233');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
ExecuteWizard('SCU', 2, 3, true);
RebootWindows(true);
end.
После выполнения скрипта компьютер перезагрузится.