Код:
begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
ClearQuarantineEx(true);
SetServiceStart('BDFileDefend', 4);
SetServiceStart('BDMWrench_x64', 4);
SetServiceStart('BDDefense', 4);
SetServiceStart('BDArKit', 4);
SetServiceStart('bd0003', 4);
SetServiceStart('bd0002', 4);
SetServiceStart('bd0001', 4);
SetServiceStart('BaiduHips', 4);
StopService('BdSandBox');
StopService('BDFileDefend');
StopService('BDMWrench_x64');
StopService('BDDefense');
StopService('BDArKit');
StopService('bd0003');
StopService('bd0002');
StopService('bd0001');
StopService('BDKVRTP');
StopService('BaiduHips');
QuarantineFile('C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk', '');
QuarantineFile('C:\Users\postgres\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk', '');
QuarantineFile('C:\Users\postgres.ANDREYBOROVIKOV\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk', '');
QuarantineFile('C:\Users\postgres.ANDREYBOROVIKOV.000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk', '');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quаkе Livе.lnk', '');
QuarantineFile('C:\Users\Public\Desktop\Quаkе Livе.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Lаunсh Intеrnеt Ехplоrеr Вrоwsеr.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Intеrnеt Ехplоrеr (Nо Аdd-оns).lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICCup Launcher\IССup Lаunсhеr.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICCup Launcher\Uninstаll Lаunсhеr.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Intеrnеt Ехplоrеr.lnk', '');
QuarantineFile('C:\Users\Андрейблять\Desktop\IССup Lаunсhеr.lnk', '');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Gооglе Сhrоmе.lnk', '');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Оpеrа 26.lnk', '');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Оpеrа.lnk', '');
QuarantineFile('C:\Users\Public\Desktop\Gооglе Сhrоmе.lnk', '');
QuarantineFile('C:\Users\Public\Desktop\Оpеrа 26.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Gооglе Сhrоmе.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gооglе Сhrоmе.lnk', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Оpеrа 26.lnk', '');
QuarantineFile('C:\Launcher.bat', '');
QuarantineFile('E:\Launcher.bat', '');
QuarantineFile('E:\unins000.bat', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\VOPackage\VOsrv.exe', '');
QuarantineFile('C:\Program Files (x86)\Microsoft Data\InstallAddons.exe', '');
QuarantineFile('C:\iexplore.bat', '');
QuarantineFile('C:\Users\Андрейблять\AppData\Roaming\et\21\bd.exe', '');
QuarantineFile('C:\Program Files (x86)\Google\chrome.bat', '');
QuarantineFile('C:\Program Files (x86)\BaiduSd3.0\BaiduSd\3.0.0.4605\BaiduSdTray.exe', '');
QuarantineFile('C:\Program Files (x86)\BaiduSd3.0\BaiduSd\3.0.0.4605\BDShellExt64.dll', '');
QuarantineFile('C:\Windows\system32\DRIVERS\BdSandBox.sys', '');
QuarantineFile('C:\Program Files (x86)\BaiduSd3.0\BaiduSd\3.0.0.4605\BaiduSdSvc.exe', '');
QuarantineFile('C:\Program Files (x86)\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe', '');
QuarantineFile('C:\Windows\system32\DRIVERS\BDMWrench_x64.sys', '');
QuarantineFile('C:\Windows\system32\drivers\BDDefense.sys', '');
QuarantineFile('C:\Windows\system32\DRIVERS\BDArKit.sys', '');
QuarantineFile('C:\Windows\system32\DRIVERS\bd0003.sys', '');
QuarantineFile('C:\Windows\system32\DRIVERS\bd0002.sys', '');
QuarantineFile('C:\Windows\system32\DRIVERS\bd0001.sys', '');
DeleteFile('C:\Launcher.bat', '');
DeleteFile('C:\iexplore.bat', '');
DeleteFile('E:\Launcher.bat', '');
DeleteFile('E:\unins000.bat', '');
DeleteFile('C:\Program Files (x86)\Google\chrome.bat', '');
DeleteFile('C:\Windows\system32\DRIVERS\bd0001.sys', '32');
DeleteFile('C:\Windows\system32\DRIVERS\bd0002.sys', '32');
DeleteFile('C:\Windows\system32\DRIVERS\bd0003.sys', '32');
DeleteFile('C:\Windows\system32\DRIVERS\BDArKit.sys', '32');
DeleteFile('C:\Windows\system32\drivers\BDDefense.sys', '32');
DeleteFile('C:\Windows\system32\DRIVERS\BDMWrench_x64.sys', '32');
DeleteFile('C:\Program Files (x86)\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe', '32');
DeleteFile('C:\Program Files (x86)\BaiduSd3.0\BaiduSd\3.0.0.4605\BaiduSdSvc.exe', '32');
DeleteFile('C:\Windows\system32\DRIVERS\BdSandBox.sys', '32');
DeleteFile('C:\Program Files (x86)\BaiduSd3.0\BaiduSd\3.0.0.4605\BDShellExt64.dll', '32');
DeleteFile('C:\Program Files (x86)\BaiduSd3.0\BaiduSd\3.0.0.4605\BaiduSdTray.exe', '32');
DeleteFile('C:\Program Files (x86)\Google\chrome.bat', '32');
DeleteFile('C:\iexplore.bat', '32');
DeleteFile('C:\Program Files (x86)\Microsoft Data\InstallAddons.exe', '32');
DeleteFile('C:\Windows\system32\Tasks\chrome5_logon', '64');
DeleteFile('C:\Windows\system32\Tasks\chrome5', '64');
DeleteService('BdSandBox');
DeleteService('BDMWrench_x64');
DeleteService('BDDefense');
DeleteService('BDArKit');
DeleteService('bd0003');
DeleteService('bd0002');
DeleteService('bd0001');
DeleteService('BDKVRTP');
DeleteService('BaiduHips');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved', '{00890530-6A9F-4be2-B1BB-73F01E2BB986}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Run', 'BaiduSdTray');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteRepair(2);
ExecuteRepair(3);
ExecuteRepair(4);
ExecuteWizard('SCU', 2, 3, true);
ExecuteWizard('TSW', 2, 2, true);
RebootWindows(true);
end.