begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.'+#13#10+'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
SearchRootkit(true, true);
SetAVZGuardStatus(True);
TerminateProcessByName('c:\windows\systemup.exe');
TerminateProcessByName('c:\windows\sysdriver32.exe');
TerminateProcessByName('c:\windows\update.2\svchost.exe');
TerminateProcessByName('c:\windows\update.1\svchost.exe');
TerminateProcessByName('c:\program files\lovivkontakte\lovivkontakte.exe');
TerminateProcessByName('C:\Program Files\LoviVkontakte\VkontakteService.exe');
TerminateProcessByName('c:\windows\l1rezerv.exe');
SetServiceStart('wxpdrivers', 4);
SetServiceStart('srvsysdriver32', 4);
SetServiceStart('srviecheck', 4);
StopService('wxpdrivers');
StopService('srvsysdriver32');
StopService('srviecheck');
QuarantineFile('services32.exe','');
QuarantineFile('C:\WINDOWS\sysdriver32_.exe','');
QuarantineFile('C:\WINDOWS\TEMP\9712451.exe','');
QuarantineFile('C:\WINDOWS\TEMP\9307494.exe','');
QuarantineFile('C:\WINDOWS\TEMP\9080771.exe','');
QuarantineFile('C:\WINDOWS\TEMP\8959818.exe','');
QuarantineFile('C:\WINDOWS\TEMP\8889735.exe','');
QuarantineFile('C:\WINDOWS\TEMP\8721374.exe','');
QuarantineFile('C:\WINDOWS\TEMP\8332326.exe','');
QuarantineFile('C:\WINDOWS\TEMP\828532.exe','');
QuarantineFile('C:\WINDOWS\TEMP\798292.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7824809.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7485788.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7444206.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7397552.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7155372.exe','');
QuarantineFile('C:\WINDOWS\TEMP\7130457.exe','');
QuarantineFile('C:\WINDOWS\TEMP\6391357.exe','');
QuarantineFile('C:\WINDOWS\TEMP\6236797.exe','');
QuarantineFile('C:\WINDOWS\TEMP\6213870.exe','');
QuarantineFile('C:\WINDOWS\TEMP\6022414.exe','');
QuarantineFile('C:\WINDOWS\TEMP\5462463.exe','');
QuarantineFile('C:\WINDOWS\TEMP\535976.exe','');
QuarantineFile('C:\WINDOWS\TEMP\5321535.exe','');
QuarantineFile('C:\WINDOWS\TEMP\4702455.exe','');
QuarantineFile('C:\WINDOWS\TEMP\4442841.exe','');
QuarantineFile('C:\WINDOWS\TEMP\4345523.exe','');
QuarantineFile('C:\WINDOWS\TEMP\4306107.exe','');
QuarantineFile('C:\WINDOWS\TEMP\404177.exe','');
QuarantineFile('C:\WINDOWS\TEMP\399604.exe','');
QuarantineFile('C:\WINDOWS\TEMP\3887069.exe','');
QuarantineFile('C:\WINDOWS\TEMP\3276485.exe','');
QuarantineFile('C:\WINDOWS\TEMP\2503555.exe','');
QuarantineFile('C:\WINDOWS\TEMP\248346.exe','');
QuarantineFile('C:\WINDOWS\TEMP\2418780.exe','');
QuarantineFile('C:\WINDOWS\TEMP\1998799.exe','');
QuarantineFile('C:\WINDOWS\TEMP\1541994.exe','');
QuarantineFile('C:\WINDOWS\TEMP\1372262.exe','');
QuarantineFile('C:\WINDOWS\TEMP\1084748.exe','');
QuarantineFile('C:\WINDOWS\TEMP\1026352.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\9925480.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\9612559.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\9600118.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\9566420.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\9283050.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\873496.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\7964902.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\7894.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\775646.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\6299825.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\5199591.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\1680487.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\1661138.exe','');
QuarantineFile('C:\DOCUME~1\User\LOCALS~1\Temp\1045645.exe','');
QuarantineFile('c:\windows\systemup.exe','');
QuarantineFile('c:\windows\sysdriver32.exe','');
QuarantineFile('c:\windows\update.2\svchost.exe','');
QuarantineFile('c:\windows\update.1\svchost.exe','');
QuarantineFile('c:\program files\lovivkontakte\lovivkontakte.exe','');
QuarantineFile('C:\Program Files\LoviVkontakte\VkontakteService.exe','');
QuarantineFile('c:\windows\l1rezerv.exe','');
QuarantineFile('C:\Documents and Settings\User\Application Data\nsgdpj.exe',' ');
QuarantineFile('C:\WINDOWS\loader2.exe_ok',' ');
DeleteFile('C:\WINDOWS\iecheck_iplist.txt');
DeleteFile('C:\WINDOWS\ddh_iplist.txt');
DeleteFile('C:\WINDOWS\iplist.txt');
DeleteFile('C:\WINDOWS\front_ip_list.txt');
DeleteFile('C:\Documents and Settings\User\Application Data\nsgdpj.exe');
DeleteFile('C:\WINDOWS\loader2.exe_ok');
DeleteFile('C:\WINDOWS\update.2\svchost.exe');
DeleteFile('C:\WINDOWS\sysdriver32.exe');
DeleteFile('C:\WINDOWS\update.1\svchost.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\1045645.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\1661138.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\1680487.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\5199591.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\6299825.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\775646.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\7894.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\7964902.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\873496.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\9283050.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\9566420.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\9600118.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\9612559.exe');
DeleteFile('C:\DOCUME~1\User\LOCALS~1\Temp\9925480.exe');
DeleteFile('C:\Program Files\LoviVkontakte\lovivkontakte.exe');
DeleteFile('C:\Program Files\LoviVkontakte\VkontakteService.exe');
DeleteFile('C:\WINDOWS\TEMP\1026352.exe');
DeleteFile('C:\WINDOWS\TEMP\1084748.exe');
DeleteFile('C:\WINDOWS\TEMP\1372262.exe');
DeleteFile('C:\WINDOWS\TEMP\1541994.exe');
DeleteFile('C:\WINDOWS\TEMP\1998799.exe');
DeleteFile('C:\WINDOWS\TEMP\2418780.exe');
DeleteFile('C:\WINDOWS\TEMP\248346.exe');
DeleteFile('C:\WINDOWS\TEMP\2503555.exe');
DeleteFile('C:\WINDOWS\TEMP\3276485.exe');
DeleteFile('C:\WINDOWS\TEMP\3887069.exe');
DeleteFile('C:\WINDOWS\TEMP\399604.exe');
DeleteFile('C:\WINDOWS\TEMP\404177.exe');
DeleteFile('C:\WINDOWS\TEMP\4306107.exe');
DeleteFile('C:\WINDOWS\TEMP\4345523.exe');
DeleteFile('C:\WINDOWS\TEMP\4442841.exe');
DeleteFile('C:\WINDOWS\TEMP\4702455.exe');
DeleteFile('C:\WINDOWS\TEMP\5321535.exe');
DeleteFile('C:\WINDOWS\TEMP\535976.exe');
DeleteFile('C:\WINDOWS\TEMP\5462463.exe');
DeleteFile('C:\WINDOWS\TEMP\6022414.exe');
DeleteFile('C:\WINDOWS\TEMP\6213870.exe');
DeleteFile('C:\WINDOWS\TEMP\6236797.exe');
DeleteFile('C:\WINDOWS\TEMP\6391357.exe');
DeleteFile('C:\WINDOWS\TEMP\7130457.exe');
DeleteFile('C:\WINDOWS\TEMP\7155372.exe');
DeleteFile('C:\WINDOWS\TEMP\7397552.exe');
DeleteFile('C:\WINDOWS\TEMP\7444206.exe');
DeleteFile('C:\WINDOWS\TEMP\7485788.exe');
DeleteFile('C:\WINDOWS\TEMP\7824809.exe');
DeleteFile('C:\WINDOWS\TEMP\798292.exe');
DeleteFile('C:\WINDOWS\TEMP\828532.exe');
DeleteFile('C:\WINDOWS\TEMP\8332326.exe');
DeleteFile('C:\WINDOWS\TEMP\8721374.exe');
DeleteFile('C:\WINDOWS\TEMP\8889735.exe');
DeleteFile('C:\WINDOWS\TEMP\8959818.exe');
DeleteFile('C:\WINDOWS\TEMP\9080771.exe');
DeleteFile('C:\WINDOWS\TEMP\9307494.exe');
DeleteFile('C:\WINDOWS\TEMP\9712451.exe');
DeleteFile('C:\WINDOWS\l1rezerv.exe');
DeleteFile('C:\WINDOWS\sysdriver32_.exe');
DeleteFile('C:\WINDOWS\systemup.exe');
DeleteFile('services32.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1045645.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1661138.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1680487.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','5199591.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','6299825.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','775646.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7894.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7964902.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','873496.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9283050.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9566420.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9600118.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9612559.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9925480.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','LoviVkontakte');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1026352.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1084748.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1372262.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1541994.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','1998799.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','2418780.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','248346.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','2503555.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','3276485.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','3887069.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','399604.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','404177.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','4306107.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','4345523.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','4442841.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','4702455.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','5321535.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','535976.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','5462463.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','6022414.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','6213870.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','6236797.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','6391357.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7130457.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7155372.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7397552.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7444206.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7485788.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','7824809.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','798292.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','828532.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','8332326.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','8721374.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','8889735.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','8959818.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9080771.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9307494.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','9712451.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','l1rezerv.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','sysdriver32.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','sysdriver32_.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','systemup');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','wxpdrv');
DeleteService('wxpdrivers');
DeleteService('srvsysdriver32');
DeleteService('srviecheck');
DeleteService('LoviVkontakteService');
DeleteFileMask('C:\WINDOWS\update.2', '*.*', true);
DeleteFileMask('C:\WINDOWS\update.1', '*.*', true);
DeleteFileMask('C:\WINDOWS\TEMP\', '*.*', true);
DeleteFileMask('C:\DOCUME~1\User\LOCALS~1\Temp\', '*.*', true);
DeleteFileMask('C:\Program Files\LoviVkontakte\', '*.*', true);
DeleteDirectory('C:\Program Files\LoviVkontakte\');
DeleteDirectory('C:\WINDOWS\update.2');
DeleteDirectory('C:\WINDOWS\update.1');
BC_ImportAll;
ExecuteSysClean;
BC_DeleteSvc('srviecheck');
BC_DeleteSvc('srvsysdriver32');
BC_DeleteSvc('wxpdrivers');
BC_Activate;
ExecuteRepair(13);
RebootWindows(true);
end.