Смотрите видео ниже, чтобы узнать, как установить наш сайт в качестве веб-приложения на домашнем экране.
Примечание: Эта возможность может быть недоступна в некоторых браузерах.
begin
ShowMessage('Внимание! Перед выполнением скрипта AVZ автоматически закроет все сетевые подключения.' + #13#10 + 'После перезагрузки компьютера подключения к сети будут восстановлены в автоматическом режиме.');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Users\Alexsandr\AppData\Local\Host installer\2562390491_monster.exe','');
QuarantineFile('C:\Program Files (x86)\Torrent Search\IKwnPMS.exe','');
QuarantineFile('C:\Users\ALEXSA~1\AppData\Local\Temp\TorrentSearch_restartonfail_exe\ts_10051.exe','');
QuarantineFile('C:\Users\Alexsandr\AppData\Local\Kometa\kometaup.exe','');
DeleteFile('C:\Users\Alexsandr\AppData\Local\Kometa\kometaup.exe','32');
DeleteFile('C:\Users\ALEXSA~1\AppData\Local\Temp\TorrentSearch_restartonfail_exe\ts_10051.exe','32');
DeleteFile('C:\WINDOWS\Tasks\Rerun service for Torrent Search.job','64');
DeleteFile('C:\Program Files (x86)\Torrent Search\IKwnPMS.exe','32');
DeleteFile('C:\WINDOWS\Tasks\Update Service for Torrent Search.job','64');
DeleteFile('C:\WINDOWS\Tasks\Update Service for Torrent Search2.job','64');
DeleteFile('C:\Users\Alexsandr\AppData\Local\Host installer\2562390491_monster.exe','32');
DeleteFile('C:\WINDOWS\system32\Tasks\Soft installer','64');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','kometaup');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(false);
end.
begin
CreateQurantineArchive('c:\quarantine.zip');
end.
CreateRestorePoint:
HKLM-x32\...\Run: [LManager] => [X]
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
GroupPolicy-x32: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.oursurfing.com/?type=hp&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.oursurfing.com/web/?type=ds&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/?type=hp&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.oursurfing.com/web/?type=ds&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR&q={searchTerms}
HKU\S-1-5-21-3711771842-3811471870-4032655265-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/?type=hp&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.oursurfing.com/web/?type=ds&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.oursurfing.com/web/?type=ds&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.oursurfing.com/web/?type=ds&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.oursurfing.com/web/?type=ds&ts=1437727273&z=c23a52d340a3c404594dadbg4zfcbm1m7ocmcc8zec&from=amt&uid=ST9500325AS_S2WQ9WTRXXXXS2WQ9WTR&q={searchTerms}
BHO-x32: No Name -> {6E727987-C8EA-44DA-8749-310C0FBE3C3E} -> No File
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll No File
BHO-x32: No Name -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll No File
2015-07-30 16:10 - 2015-08-03 08:47 - 00000000 ____D C:\Users\Alexsandr\AppData\Local\Kometa
2015-07-30 16:08 - 2015-07-30 16:18 - 00000000 ____D C:\Program Files (x86)\Torrent Search
Task: {DAAB3D94-12D9-463F-A419-ECEF326E502C} - \Soft installer No Task File <==== ATTENTION
Reboot:
Это скорее от антивируса добавилосьВ chrome добавлено новое расширение (безопасные платежи) после перезагрузки компьютера