Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-214242-820-aqr16j7v7bm.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-214242-660-flbh9ozka.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-214242-366-fg9sd7pp.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205809-698-upv2bcc1.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205808-618-3epf670.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205711-981-zffwrrid.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205710-453-vrrxs66p0fg.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205708-428-tk1aq1hn63u.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205705-766-dttjp60gr.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205703-858-a86hxi1pp1l.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205703-677-70tjp60.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205702-942-1vbg3c6.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205702-601-2hio763.exe','');
QuarantineFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205701-713-0fvb0xx.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Главное меню\Программы\Автозагрузка\lbc0s3ee6l.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Главное меню\Программы\Автозагрузка\g3ms3yy3.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Главное меню\Программы\Автозагрузка\b5w6s81e.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Local Settings\Temporary Internet Files\Content.IE5\VQMLKRNY\vgbwergewfwq5[1].exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Local Settings\Temporary Internet Files\Content.IE5\VQMLKRNY\fdfecdfewq[1].exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Local Settings\Temp\936.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Local Settings\Temp\811.exe','');
QuarantineFile('C:\WINDOWS\system32\sys32_nov.exe','');
QuarantineFile('C:\WINDOWS\system32\regedit.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Application Data\juzjf.exe','');
QuarantineFile('C:\WINDOWS\system32\Drivers\mrxnet.sys','');
QuarantineFile('C:\WINDOWS\system32\Drivers\mrxcls.sys','');
QuarantineFile('C:\WINDOWS\system32\Drivers\cdrdpjpx.sys','');
DeleteService('cdrdpjpx');
QuarantineFile('C:\Documents and Settings\Виталий\Application Data\Microsoft\wahum.exe','');
QuarantineFile('C:\Documents and Settings\Виталий\Application Data\Microsoft\jouguzudoup.exe','');
QuarantineFile('C:\WINDOWS\system32\spoolsv.exe','');
DeleteService('ayz5eiby7ihe9');
DeleteService('uvusqaueiizeqyw');
DeleteFile('C:\Documents and Settings\Виталий\Application Data\Microsoft\jouguzudoup.exe');
DeleteFile('C:\Documents and Settings\Виталий\Application Data\Microsoft\wahum.exe');
DeleteFile('C:\WINDOWS\system32\Drivers\cdrdpjpx.sys');
DeleteFile('C:\Documents and Settings\Виталий\Application Data\juzjf.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','soutegoo');
DeleteFile('C:\WINDOWS\system32\regedit.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','Regedit32');
DeleteFile('C:\WINDOWS\system32\sys32_nov.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','sys64_nov');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','sys32_nov');
DeleteFile('C:\Documents and Settings\Виталий\Local Settings\Temp\811.exe');
DeleteFile('C:\Documents and Settings\Виталий\Local Settings\Temp\936.exe');
DeleteFile('C:\Documents and Settings\Виталий\Local Settings\Temporary Internet Files\Content.IE5\VQMLKRNY\fdfecdfewq[1].exe');
DeleteFile('C:\Documents and Settings\Виталий\Local Settings\Temporary Internet Files\Content.IE5\VQMLKRNY\vgbwergewfwq5[1].exe');
DeleteFile('C:\Documents and Settings\Виталий\Главное меню\Программы\Автозагрузка\b5w6s81e.exe');
DeleteFile('C:\Documents and Settings\Виталий\Главное меню\Программы\Автозагрузка\g3ms3yy3.exe');
DeleteFile('C:\Documents and Settings\Виталий\Главное меню\Программы\Автозагрузка\lbc0s3ee6l.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205701-713-0fvb0xx.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205702-601-2hio763.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205702-942-1vbg3c6.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205703-677-70tjp60.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205703-858-a86hxi1pp1l.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205705-766-dttjp60gr.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205708-428-tk1aq1hn63u.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205710-453-vrrxs66p0fg.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205711-981-zffwrrid.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205808-618-3epf670.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-205809-698-upv2bcc1.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-214242-366-fg9sd7pp.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-214242-660-flbh9ozka.exe');
DeleteFile('C:\Program Files\TrendMicro\HiJackThis\backups\backup-20101026-214242-820-aqr16j7v7bm.exe');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows NT\CurrentVersion\Winlogon','Taskman');
RebootWindows(true);
end.
Компьютер перезагрузится.