+
выполните скрипт AVZ
Код:
Procedure MD5toLog(AFileName : string);
begin
AddToLog(AFileName + '__MD5= ' + CalkFileMD5(AFileName)+ '__Size= '+ IntToStr(GetFileSize(AFileName)));
end;
begin
ClearQuarantineEx(true);
ClearLog;
MD5toLog('C:\Program Files (x86)\Zaxar\ZaxarGameBrowser.exe');
MD5toLog('C:\Program Files (x86)\Zaxar\ZaxarLoader.exe');
MD5toLog('D:\GAMES\wow2\World of Warcraft\Launcher.exe');
MD5toLog('D:\GAMES\wow2\World of Warcraft\Data\enUS\AccountBilling.url');
MD5toLog('D:\GAMES\wow2\World of Warcraft\Data\enUS\TechSupport.url');
MD5toLog('D:\GAMES\wow2\World of Warcraft\Data\enUS\Documentation\ReadMe.html');
MD5toLog('C:\Users\Пользователь\Desktop\Repair.exe');
MD5toLog('D:\Programms\AntiPlagiatKiller\AntiPlagiatKiller.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\docs\vray_changelog.txt');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\docs\readme.rtf');
MD5toLog('C:\Program Files (x86)\Chaos Group\V-Ray\3dsmax 2014 for x64\docs\vrayclasses.chm');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\setvrlservice.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\startvrlservice.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\startvrlservice.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\vrlservice.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\tools\filter_generator.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\tools\imapviewer.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\3dsmax 2014 for x64\tools\lens_analyzer.exe');
MD5toLog('C:\Program Files (x86)\Chaos Group\V-Ray\3dsmax 2014 for x64\uninstall\installer.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\RT for 3ds Max 2014 for x64\docs\vray_rtmax_changelog.txt');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\RT for 3ds Max 2014 for x64\bin\vrayrtspawner.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\RT for 3ds Max 2014 for x64\bin\vrayrtspawner.exe');
MD5toLog('C:\Program Files\Chaos Group\V-Ray\RT for 3ds Max 2014 for x64\bin\ocldeviceselect.exe');
MD5toLog('C:\Program Files (x86)\gmsd_ru_85\gamesdesktop_widget.exe');
MD5toLog('D:\Programms\metaeditor.exe');
MD5toLog('D:\Programms\terminal.exe');
MD5toLog('D:\Programms\Links\mql4.url');
MD5toLog('D:\Programms\Links\mql5.url');
MD5toLog('D:\Programms\Uninstall.exe');
MD5toLog('C:\Program Files\Paint.NET\PaintDotNet.exe');
MD5toLog('D:\Programms\webcamXP5\webcamXP.exe');
MD5toLog('D:\Programms\webcamXP5\webcamXP.exe');
MD5toLog('D:\Programms\webcamXP5\webcamXP.exe');
MD5toLog('C:\Program Files (x86)\Common Files\Blizzard Entertainment\World of Warcraft\Uninstall.exe');
MD5toLog('C:\Program Files (x86)\Google\Chrome\Application\chrome.exe');
MD5toLog('C:\Program Files (x86)\Плагиата.НЕТ\PlagiatNet.exe');
MD5toLog('C:\Program Files (x86)\Плагиата.НЕТ\uninstall.exe');
MD5toLog('C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\coSAStub.exe');
MD5toLog('D:\GAMES\wow2\World of Warcraft\WoW.exe');
MD5toLog('C:\Users\Пользователь\AppData\Local\SmartWeb\__u.exe');
MD5toLog('C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe');
MD5toLog('C:\Users\Пользователь\AppData\Local\SmartWeb\SmartWebHelper.exe');
MD5toLog('C:\Users\Пользователь\AppData\Local\Temp\ICReinstall_nsrF5ED.tmp');
SaveLog(GetAVZDirectory + 'MD5&Size.txt');
QuarantineFile(GetAVZDirectory + 'MD5&Size.txt','');
QuarantineFile('C:\Users\Пользователь\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Lаunсh Intеrnеt Ехplоrеr Вrоwsеr.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\GameExplorer\{21C35C68-A6C5-4A75-8FFD-DB503CE6F67B}\PlayTasks\0\Play.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\GameExplorer\{21C35C68-A6C5-4A75-8FFD-DB503CE6F67B}\PlayTasks\1\Account Billing.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\GameExplorer\{21C35C68-A6C5-4A75-8FFD-DB503CE6F67B}\PlayTasks\2\Technical Support.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\GameExplorer\{21C35C68-A6C5-4A75-8FFD-DB503CE6F67B}\PlayTasks\3\Readme.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\GameExplorer\{21C35C68-A6C5-4A75-8FFD-DB503CE6F67B}\SupportTasks\0\Repair.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiPlagiatKiller\AntiPlagiatKiller.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Documentation\Changelog for V-Ray for 3ds Max 2014 for x64.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Documentation\Readme for V-Ray for 3ds Max 2014 for x64.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Documentation\V-Ray SDK classes index.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Licensing\Administration\Change V-Ray client license settings.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Licensing\Administration\Register V-Ray license service.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Licensing\Administration\Remove V-Ray license service.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Licensing\Launch V-Ray license server.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Tools\Filter generator tool.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Tools\Irradiance map viewer.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Tools\Lens analysis tool.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray Adv for 3ds Max 2014 for x64\Uninstall V-Ray for 3ds Max 2014 for x64.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray RT Adv for 3ds Max 2014 for x64\Documentation\Changelog for V-Ray RT for 3ds Max 2014 for x64.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray RT Adv for 3ds Max 2014 for x64\Register V-Ray RT render server as a service.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray RT Adv for 3ds Max 2014 for x64\Remove V-Ray RT render server as a service.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group\V-Ray RT Adv for 3ds Max 2014 for x64\Select OpenCL devices for V-Ray RT GPU.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP\GamesDesktop.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MMCIS MetaTrader 4 Client Terminal\MetaEditor.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MMCIS MetaTrader 4 Client Terminal\MMCIS MetaTrader.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MMCIS MetaTrader 4 Client Terminal\MQL4 Community.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MMCIS MetaTrader 4 Client Terminal\MQL5 Community.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MMCIS MetaTrader 4 Client Terminal\uninstall.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paint.NET.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\webcamXP 5\webcamXP 5 [IP Camera Mode].lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\webcamXP 5\webcamXP 5 [Windows Media].lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\webcamXP 5\webcamXP 5.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft\World of Warcraft - Удаление.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мастер настройки\домашний интернет.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Плагиата.НЕТ\Плагиата.НЕТ.lnk','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Плагиата.НЕТ\Удаление программы.lnk','');
QuarantineFile('C:\Users\Пользователь\AppData\Local\Microsoft\Windows\GameExplorer\{21C35C68-A6C5-4A75-8FFD-DB503CE6F67B}\PlayTasks\0\Играть.lnk','');
QuarantineFile('C:\Users\Пользователь\AppData\Local\SmartWeb\uninst.lnk','');
QuarantineFile('C:\Users\Пользователь\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtectEx\AnyProtect.lnk','');
QuarantineFile('C:\Users\Пользователь\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk','');
QuarantineFile('C:\Users\Пользователь\Desktop\Continue Live Installation.lnk','');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
end.
Файл MD5&Size.txt из папки AVZ прикрепите к своему сообщению.
Полученный архив quarantine.zip из папки с распакованной утилитой AVZ отправьте с помощью этой формы или (если размер архива превышает 8 MB) на этот почтовый ящик: quarantine <at> safezone.cc (замените <at> на @) с указанием ссылки на тему в теме (заголовке) сообщения и с указанием пароля: virus в теле письма.
|