Код:
begin
ClearQuarantine;
SearchRootkit(true, true);
SetAVZGuardStatus(True);
DelCLSID('08223B03-1B38-4A33-A83A-A4D3CC1D6E4E');
DelCLSID('122B901E-493F-4AD9-BC69-7DE8C3E52FCC');
DelCLSID('2EF0D734-21FD-4225-A1A2-BCD296182AAF');
DelCLSID('3F21AA0C-2A9E-4BE9-9083-9E58AB41BA01');
DelCLSID('43ACDCC5-9009-4AF4-B80A-93BC656EF298');
DelCLSID('5243F5FA-75D6-4469-90A8-A181E2AAAA5B');
DelCLSID('58FF3024-8A83-4B1A-88E9-302F47646EEE');
DelCLSID('5934EA2B-B2C4-4BE7-BF7A-FBA781A12E40');
DelCLSID('59964D2B-044A-40AE-8837-0ED9EE8BDA08');
DelCLSID('66AFCB56-FAA9-42D2-8C72-2767A46C7FA8');
DelCLSID('70B0129E-726E-4789-A7C0-5DDC33241E94');
DelCLSID('9CA963CA-107C-4089-B0AB-31380F90D7E3');
DelCLSID('9F684DE8-3E87-4174-9033-E02A3DFD8B61');
DelCLSID('B3721C07-62B3-411A-9DC7-F5F27E3E21FF');
DelCLSID('C8FFD223-C0FB-40C5-94A0-FD7891AC18E9');
DelCLSID('D7C79813-9233-4AE0-832C-99B2E8019673');
DelCLSID('DA63E650-537C-4042-87BB-9D19D844680B');
DelCLSID('E3367679-4775-4244-A62E-4CFE58FC850B');
DelCLSID('E4814792-EFA3-4C20-93D0-8B130A59F9A8');
DelCLSID('F2CBFAC4-6FF9-4DE9-BCB1-0F2FA2AA0B4C');
QuarantineFile('C:\WINDOWS\system32\08223B03.dll','');
QuarantineFile('C:\WINDOWS\system32\122B901E.dll','');
QuarantineFile('C:\WINDOWS\system32\2EF0D734.dll','');
QuarantineFile('C:\WINDOWS\system32\3F21AA0C.dll','');
QuarantineFile('C:\WINDOWS\system32\43ACDCC5.dll','');
QuarantineFile('C:\WINDOWS\system32\5243F5FA.dll','');
QuarantineFile('C:\WINDOWS\system32\58FF3024.dll','');
QuarantineFile('C:\WINDOWS\system32\5934EA2B.dll','');
QuarantineFile('C:\WINDOWS\system32\59964D2B.dll','');
QuarantineFile('C:\WINDOWS\system32\66AFCB56.dll','');
QuarantineFile('C:\WINDOWS\system32\70B0129E.dll','');
QuarantineFile('C:\WINDOWS\system32\9CA963CA.dll','');
QuarantineFile('C:\WINDOWS\system32\9F684DE8.dll','');
QuarantineFile('C:\WINDOWS\system32\Ati2evxx.dll','');
QuarantineFile('C:\WINDOWS\system32\B3721C07.dll','');
QuarantineFile('C:\WINDOWS\system32\C8FFD223.dll','');
QuarantineFile('C:\WINDOWS\system32\D7C79813.dll','');
QuarantineFile('C:\WINDOWS\system32\DA63E650.dll','');
QuarantineFile('C:\WINDOWS\system32\E3367679.dll','');
QuarantineFile('C:\WINDOWS\system32\E4814792.dll','');
QuarantineFile('C:\WINDOWS\system32\F2CBFAC4.dll','');
QuarantineFile('C:\WINDOWS\system32\System.exe','');
QuarantineFile('C:\Program Files\ABIT\BlackBox\WinFlash.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\wpdusb.sys','');
DeleteService('TCCrystalCpuInfo');
QuarantineFile('C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\TCCpuInfo.sys','');
QuarantineFile('C:\WINDOWS\system32\Drivers\RDPWD.sys','');
QuarantineFile('C:\WINDOWS\System32\Drivers\NetPeeker.sys','');
QuarantineFile('C:\WINDOWS\system32\Drivers\aliimz.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\srv.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\uGuru.sys','');
QuarantineFile('C:\WINDOWS\system32\quartz.dll','');
QuarantineFile('C:\WINDOWS\assembly\GAC_MSIL\CCC.Implementation\2.0.3075.39002__90ba9c70f846762e\CCC.Implementation.dll','');
QuarantineFile('C:\WINDOWS\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll','');
QuarantineFile('C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll','');
QuarantineFile('C:\Program Files\MagicTune Premium\IPROFILE.dll','');
QuarantineFile('C:\Program Files\MagicTune Premium\DPROFILE.dll','');
QuarantineFile('C:\Program Files\MagicTune Premium\DEVICEINTERFACE.dll','');
QuarantineFile('C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\clw52hc3.default\extensions\[email protected]\libs\piclens19.dll','');
QuarantineFile('C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\clw52hc3.default\extensions\[email protected]\libs\freetype.dll','');
QuarantineFile('C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\clw52hc3.default\extensions\[email protected]\libs\avutil-49.dll','');
QuarantineFile('C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\clw52hc3.default\extensions\[email protected]\libs\avformat-52.dll','');
QuarantineFile('C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\clw52hc3.default\extensions\[email protected]\libs\avcodec-51.dll','');
QuarantineFile('C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\clw52hc3.default\extensions\[email protected]\components\piclensstub.dll','');
DeleteFile('C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\TCCpuInfo.sys');
DeleteFile('C:\WINDOWS\system32\System.exe');
DeleteFile('C:\WINDOWS\system32\F2CBFAC4.dll');
DeleteFile('C:\WINDOWS\system32\E4814792.dll');
DeleteFile('C:\WINDOWS\system32\E3367679.dll');
DeleteFile('C:\WINDOWS\system32\DA63E650.dll');
DeleteFile('C:\WINDOWS\system32\D7C79813.dll');
DeleteFile('C:\WINDOWS\system32\C8FFD223.dll');
DeleteFile('C:\WINDOWS\system32\B3721C07.dll');
DeleteFile('C:\WINDOWS\system32\Ati2evxx.dll');
DeleteFile('C:\WINDOWS\system32\9F684DE8.dll');
DeleteFile('C:\WINDOWS\system32\9CA963CA.dll');
DeleteFile('C:\WINDOWS\system32\70B0129E.dll');
DeleteFile('C:\WINDOWS\system32\66AFCB56.dll');
DeleteFile('C:\WINDOWS\system32\59964D2B.dll');
DeleteFile('C:\WINDOWS\system32\5934EA2B.dll');
DeleteFile('C:\WINDOWS\system32\58FF3024.dll');
DeleteFile('C:\WINDOWS\system32\5243F5FA.dll');
DeleteFile('C:\WINDOWS\system32\43ACDCC5.dll');
DeleteFile('C:\WINDOWS\system32\3F21AA0C.dll');
DeleteFile('C:\WINDOWS\system32\2EF0D734.dll');
DeleteFile('C:\WINDOWS\system32\122B901E.dll');
DeleteFile('C:\WINDOWS\system32\08223B03.dll');
BC_ImportAll;
ExecuteRepair(1);
ExecuteRepair(2);
ExecuteRepair(3);
ExecuteRepair(5);
ExecuteRepair(6);
ExecuteRepair(8);
ExecuteRepair(9);
ExecuteRepair(12);
ExecuteRepair(16);
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
Please upload quarantine: