Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
DeleteService('Yho20');
DeleteService('xgN20');
DeleteService('xgN17');
DeleteService('Winyh64');
DeleteService('Winyg18');
DeleteService('Winwf86');
DeleteService('Winvd07');
DeleteService('Winuc75');
DeleteService('Wintc75');
DeleteService('Wintb07');
DeleteService('Winsa31');
DeleteService('Winry64');
DeleteService('Winry20');
DeleteService('Winra86');
DeleteService('Winqy64');
DeleteService('Winqx20');
DeleteService('Winqx07');
DeleteService('Winpx20');
DeleteService('Winpw42');
DeleteService('Winos75');
DeleteService('Winnu53');
DeleteService('Winmu42');
DeleteService('Winmt20');
DeleteService('Winkr75');
DeleteService('Winkr18');
DeleteService('Winiq07');
DeleteService('Winhp18');
DeleteService('Winho86');
DeleteService('Winho53');
DeleteService('Winfm64');
DeleteService('Winel07');
DeleteService('Windk75');
DeleteService('Wincj64');
DeleteService('Wincj53');
DeleteService('Winbj86');
DeleteService('Winbi64');
DeleteService('Winbi63');
DeleteService('Winbi53');
DeleteService('Winai18');
DeleteService('Winah42');
QuarantineFile('WinCtrl32.dll','');
QuarantineFile('C:\WINDOWS\winlogon.exe','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Yho20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\xgN20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\xgN17.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winyh64.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winyg18.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winwf86.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winvd07.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winuc75.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Wintc75.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Wintb07.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winsa31.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winry64.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winry20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winra86.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winqy64.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winqx20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winqx07.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winpx20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winpw42.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winos75.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winnu53.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winmu42.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winmt20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winkr75.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winkr18.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winiq07.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winhp18.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winho86.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winho53.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winfm64.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winel07.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Windk75.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Wincj64.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Wincj53.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winbj86.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winbi64.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winbi63.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winbi53.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winai18.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Winah42.sys','');
DeleteService('veL07');
QuarantineFile('C:\WINDOWS\System32\Drivers\veL07.sys','');
DeleteService('Ucj75');
QuarantineFile('C:\WINDOWS\System32\Drivers\Ucj75.sys','');
DeleteService('saH31');
DeleteService('raH87');
DeleteService('Qxf86');
QuarantineFile('C:\WINDOWS\System32\Drivers\saH31.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\raH87.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Qxf86.sys','');
DeleteService('nvD20');
DeleteService('Muc86');
QuarantineFile('C:\WINDOWS\System32\Drivers\nvD20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Muc86.sys','');
DeleteService('lsA86');
QuarantineFile('C:\WINDOWS\System32\Drivers\lsA86.sys','');
DeleteService('Gnu86');
QuarantineFile('C:\WINDOWS\System32\Drivers\Gnu86.sys','');
DeleteService('cd20xrnt');
DeleteService('Bip20');
QuarantineFile('C:\WINDOWS\System32\Drivers\Cjq20.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\Bip20.sys','');
QuarantineFile('C:\WINDOWS\system32\WinCtrl32.dll','');
DeleteFile('C:\WINDOWS\system32\WinCtrl32.dll');
DeleteFile('C:\WINDOWS\System32\Drivers\Bip20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Cjq20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Gnu86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\lsA86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Muc86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\nvD20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Qxf86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\raH87.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\saH31.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Ucj75.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\veL07.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winah42.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winai18.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winbi53.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winbi63.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winbi64.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winbj86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Wincj53.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Wincj64.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Windk75.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winel07.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winfm64.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winho53.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winho86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winhp18.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winiq07.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winkr18.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winkr75.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winmt20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winmu42.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winnu53.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winos75.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winpw42.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winpx20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winqx07.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winqx20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winqy64.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winra86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winry20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winry64.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winsa31.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Wintb07.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Wintc75.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winuc75.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winvd07.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winwf86.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winyg18.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Winyh64.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\xgN17.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\xgN20.sys');
DeleteFile('C:\WINDOWS\System32\Drivers\Yho20.sys');
DeleteFile('C:\WINDOWS\winlogon.exe');
DeleteFile('WinCtrl32.dll');
BC_ImportALL;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
Пришлите карантин по правилам и повторите логи.