begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\ProgramData\windowstask\microsofthost.exe','');
QuarantineFile('C:\ProgramData\windowstask\audiodg.exe','');
QuarantineFile('C:\ProgramData\windowstask\appmodule.exe','');
QuarantineFile('C:\ProgramData\windowstask\amd.exe','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\IpDhvjIdU0Y3bWypcJ\Game.exe','');
QuarantineFile('C:\Programdata\ReaItekHD\taskhostw.exe','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\IpDhvjIdU0Y3bWypcJ\GlobalDataO.bat','');
QuarantineFile('C:\Programdata\ReaItekHD\taskhost.exe','');
DeleteFile('C:\Programdata\ReaItekHD\taskhost.exe','64');
DeleteFile('C:\ProgramData\Microsoft\Windows\IpDhvjIdU0Y3bWypcJ\GlobalDataO.bat','64');
DeleteFile('C:\Programdata\ReaItekHD\taskhostw.exe','64');
DeleteFile('C:\ProgramData\windowstask\amd.exe','32');
DeleteFile('C:\ProgramData\windowstask\appmodule.exe','32');
DeleteFile('C:\ProgramData\windowstask\audiodg.exe','32');
DeleteFile('C:\ProgramData\windowstask\microsofthost.exe','32');
DeleteFile('C:\ProgramData\Microsoft\Windows\IpDhvjIdU0Y3bWypcJ\Game.exe','64');
DeleteSchedulerTask('Microsoft\Windows\Wininet\Hor');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\WinlogonCheck');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\OnlogonCheck');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\ExpressCheckUP');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\CashClean');
DeleteSchedulerTask('Microsoft\Windows\GlobalDataO\RecoveryTask');
DeleteSchedulerTask('Microsoft\Windows\GlobalDataO\RecoveryHosts');
DeleteSchedulerTask('Microsoft\Windows\GlobalDataO\IpDhvjIdU0Y3bWypcJ');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','user','x32');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','user','x64');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.