Код:
begin
TerminateProcessByName('C:\Users\Дмитрий\AppData\Everything\SFKEX64.exe');
TerminateProcessByName('c:\users\Дмитрий\appdata\everything\serviceeverything.exe');
TerminateProcessByName('c:\users\Дмитрий\appdata\everything\searchbase.exe');
TerminateProcessByName('c:\program files (x86)\miuitab\protectservice.exe');
TerminateProcessByName('c:\program files (x86)\miuitab\hpnotify.exe');
TerminateProcessByName('c:\users\Дмитрий\appdata\everything\everything.exe');
TerminateProcessByName('c:\program files (x86)\miuitab\cmdshell.exe');
StopService('IHProtect Service');
QuarantineFile('C:\Program Files (x86)\Hold Page\HoldPageBHO.dll', '');
QuarantineFile('C:\WINDOWS\system32\drivers\{8299d9bc-4fe2-4889-9adf-025a0769d461}w64.sys', '');
QuarantineFile('C:\WINDOWS\system32\drivers\{078ad437-dc9f-4228-9edb-b3d1c0246ff8}Gw64.sys', '');
QuarantineFile('C:\WINDOWS\system32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64.sys', '');
QuarantineFile('C:\Users\Дмитрий\AppData\Everything\Patch.dll', '');
QuarantineFile('C:\Users\Дмитрий\AppData\Everything\helper.dll', '');
QuarantineFile('C:\Users\Дмитрий\AppData\Everything\everything.dll', '');
QuarantineFile('C:\Program Files (x86)\MiuiTab\SupTab.dll', '');
QuarantineFile('C:\Program Files (x86)\MiuiTab\IeWatchDog.dll', '');
QuarantineFile('C:\Users\Дмитрий\AppData\Everything\SFKEX64.exe', '');
QuarantineFile('c:\users\Дмитрий\appdata\everything\serviceeverything.exe', '');
QuarantineFile('c:\users\Дмитрий\appdata\everything\searchbase.exe', '');
QuarantineFile('c:\program files (x86)\miuitab\protectservice.exe', '');
QuarantineFile('c:\program files (x86)\miuitab\hpnotify.exe', '');
QuarantineFile('c:\users\Дмитрий\appdata\everything\everything.exe', '');
QuarantineFile('c:\program files (x86)\miuitab\cmdshell.exe', '');
DeleteFile('c:\program files (x86)\miuitab\cmdshell.exe', '32');
DeleteFile('c:\users\Дмитрий\appdata\everything\everything.exe', '32');
DeleteFile('c:\program files (x86)\miuitab\hpnotify.exe', '32');
DeleteFile('c:\users\Дмитрий\appdata\everything\searchbase.exe', '32');
DeleteFile('C:\Users\Дмитрий\AppData\Everything\SFKEX64.exe', '32');
DeleteFile('C:\Program Files (x86)\MiuiTab\IeWatchDog.dll', '32');
DeleteFile('C:\Program Files (x86)\MiuiTab\SupTab.dll', '32');
DeleteFile('C:\Users\Дмитрий\AppData\Everything\everything.dll', '32');
DeleteFile('C:\Users\Дмитрий\AppData\Everything\helper.dll', '32');
DeleteFile('C:\Users\Дмитрий\AppData\Everything\Patch.dll', '32');
DeleteFile('C:\WINDOWS\system32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64.sys', '32');
DeleteFile('C:\Program Files (x86)\MiuiTab\ProtectService.exe', '32');
DeleteFile('C:\Users\Дмитрий\AppData\Everything\ServiceEverything.exe', '32');
DeleteFile('C:\WINDOWS\system32\drivers\{078ad437-dc9f-4228-9edb-b3d1c0246ff8}Gw64.sys', '32');
DeleteFile('C:\WINDOWS\system32\drivers\{8299d9bc-4fe2-4889-9adf-025a0769d461}w64.sys', '32');
DeleteFile('C:\Program Files (x86)\Hold Page\HoldPageBHO.dll', '32');
DeleteFile('C:\WINDOWS\Tasks\Digital Sites.job', '64');
DeleteService('Util Hold Page');
DeleteService('Update Hold Page');
DeleteFileMask('c:\program files (x86)\miuitab', '*', true);
DeleteFileMask('c:\users\Дмитрий\appdata\everything', '*', true);
DeleteDirectory('c:\program files (x86)\miuitab');
DeleteDirectory('c:\users\Дмитрий\appdata\everything');
DelBHO('{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}');
DelBHO('{6c14185e-4de6-4a79-985b-19f23fd1e638}');
ExecuteFile('schtasks.exe', '/delete /TN "Digital Sites" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{5F4C9F74-8AEA-438D-9A44-583FDB549D40}" /F', 0, 15000, true);
ExecuteSysClean;
ExecuteRepair(4);
ExecuteRepair(3);
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.