Код:
BEGIN
ClearQuarantine;
QuarantineFile('C:\Users\Пк\appdata\local\microsoft\start menu\вoйти в интeрнeт.exe','');
QuarantineFile('C:\Users\Пк\appdata\local\smartweb\__u.exe','');
QuarantineFile('C:\Users\Пк\Downloads\wm9viz.exe','');
QuarantineFile('C:\Users\Пк\AppData\Roaming\sweet-page\UninstallManager.exe','');
QuarantineFile('C:\Program Files (x86)\WordSurfer_1.10.0.19\Update\WordSurferAutoUpdateClient.exe','');
QuarantineFile('C:\PROGRA~1\COMMON~1\System\SysMenu.dll','');
QuarantineFile('C:\Users\Пк\AppData\Local\SmartWeb\SmartWebHelper.exe','');
QuarantineFile('C:\Program Files (x86)\ShopperPro\ShopperPro.exe','');
QuarantineFile('C:\Users\Пк\AppData\Roaming\newSI_2\s_inst.exe','');
QuarantineFile('C:\Users\Пк\AppData\Roaming\newSI_10\s_inst.exe','');
QuarantineFile('C:\Users\Пк\AppData\Local\SystemDir\nethost.exe','');
QuarantineFile('C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe','');
QuarantineFile('C:\Program Files (x86)\Ge-Force\Ge-Force-codedownloader.exe','');
QuarantineFile('C:\Program Files (x86)\Sense\Sense-codedownloader.exe','');
QuarantineFile('C:\Program Files (x86)\ver1BlockAndSurf\R0BlockAndSurfQ33.exe','');
QuarantineFile('C:\Windows\Sys\taskmgr.vbs','');
QuarantineFile('C:\Users\Пк\AppData\Roaming\Browsers\exe.erolpxei.bat','');
QuarantineFile('C:\Program Files\Internet Explorer\iexplore.bat','');
DeleteService('{b4a69fee-d6ff-4bda-bdd9-f5dbbe57aa69}w64');
DeleteService('{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64');
DeleteService('{79b61d11-93bf-47b8-b6da-03b5d627283b}w64');
DeleteService('{5a175d0d-5539-4e73-8563-80c93aa35313}w64');
DeleteService('{41dd6130-8c97-47b1-a0d4-6ee31608c702}w64');
DeleteService('{09fa4f2a-1385-44cc-a998-dbd7b2d9c562}w64');
QuarantineFile('C:\PROGRA~2\SupTab\SEARCH~2.DLL','');
QuarantineFile('C:\Program Files (x86)\Internet Explorer\iexplore.bat','');
QuarantineFile('C:\Users\Пк\AppData\Roaming\7FEF8F80-1436707370-11E1-B32D-E840F2A6F8B3\knsu9CE3.tmpfs','');
DeleteService('jixoqeku');
DeleteFile('C:\Users\Пк\AppData\Roaming\7FEF8F80-1436707370-11E1-B32D-E840F2A6F8B3\knsu9CE3.tmpfs','32');
DeleteFile('C:\Program Files (x86)\Internet Explorer\iexplore.bat','32');
DeleteFile('C:\PROGRA~2\SupTab\SEARCH~2.DLL','32');
DeleteFile('C:\windows\system32\drivers\{09fa4f2a-1385-44cc-a998-dbd7b2d9c562}w64.sys','32');
DeleteFile('C:\windows\system32\drivers\{41dd6130-8c97-47b1-a0d4-6ee31608c702}w64.sys','32');
DeleteFile('C:\windows\system32\drivers\{5a175d0d-5539-4e73-8563-80c93aa35313}w64.sys','32');
DeleteFile('C:\windows\system32\drivers\{79b61d11-93bf-47b8-b6da-03b5d627283b}w64.sys','32');
DeleteFile('C:\windows\system32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys','32');
DeleteFile('C:\windows\system32\drivers\{b4a69fee-d6ff-4bda-bdd9-f5dbbe57aa69}w64.sys','32');
DeleteFile('C:\Program Files\Internet Explorer\iexplore.bat','32');
DeleteFile('C:\Users\Пк\AppData\Roaming\Browsers\exe.erolpxei.bat','32');
DeleteFile('C:\Windows\Sys\taskmgr.vbs','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\mwrurwltfj','command');
DeleteFile('C:\Program Files (x86)\ver1BlockAndSurf\R0BlockAndSurfQ33.exe','32');
DeleteFile('C:\windows\system32\Tasks\BlockAndSurf Update','64');
DeleteFile('C:\Program Files (x86)\Sense\Sense-codedownloader.exe','32');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-1','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-11','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-2','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-3','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-4','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-5','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-6','64');
DeleteFile('C:\windows\system32\Tasks\c76f373e-ea8f-4bab-8e4c-4b8cf17839cb-7','64');
DeleteFile('C:\Program Files (x86)\Ge-Force\Ge-Force-codedownloader.exe','32');
DeleteFile('C:\windows\system32\Tasks\f32e5db6-25a9-4b56-8d37-375ff228b7dd-1','64');
DeleteFile('C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe','32');
DeleteFile('C:\windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','64');
DeleteFile('C:\windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','64');
DeleteFile('C:\Users\Пк\AppData\Local\SystemDir\nethost.exe','32');
DeleteFile('C:\windows\system32\Tasks\nethost task','64');
DeleteFile('C:\Users\Пк\AppData\Roaming\newSI_10\s_inst.exe','32');
DeleteFile('C:\windows\system32\Tasks\newSI_10','64');
DeleteFile('C:\Users\Пк\AppData\Roaming\newSI_2\s_inst.exe','32');
DeleteFile('C:\windows\system32\Tasks\newSI_2','64');
DeleteFile('C:\Program Files (x86)\ShopperPro\ShopperPro.exe','32');
DeleteFile('C:\windows\system32\Tasks\ShopperPro','64');
DeleteFile('C:\Users\Пк\AppData\Local\SmartWeb\SmartWebHelper.exe','32');
DeleteFile('C:\windows\system32\Tasks\SmartWeb Upgrade Trigger Task','64');
DeleteFile('C:\PROGRA~1\COMMON~1\System\SysMenu.dll','32');
DeleteFile('C:\windows\system32\Tasks\SMupdate1','64');
DeleteFile('C:\windows\system32\Tasks\Microsoft\Windows\Multimedia\SMupdate3','64');
DeleteFile('C:\windows\system32\Tasks\Microsoft\Windows\Maintenance\SMupdate2','64');
DeleteFile('C:\Program Files (x86)\WordSurfer_1.10.0.19\Update\WordSurferAutoUpdateClient.exe','32');
DeleteFile('C:\windows\system32\Tasks\WordSurfer Auto Updater 1.10.0.19 Core','64');
DeleteFile('C:\windows\system32\Tasks\WordSurfer Auto Updater 1.10.0.19 Pending Update','64');
DeleteFile('C:\Users\Пк\AppData\Roaming\sweet-page\UninstallManager.exe','32');
DeleteFile('C:\windows\system32\Tasks\{366DCD0F-38C8-4808-8F59-6BBC40565FFA}','64');
DeleteFile('C:\Users\Пк\Downloads\wm9viz.exe','32');
DeleteFile('C:\windows\system32\Tasks\{8E18B605-8328-434B-B4DE-4D8177BEA84A}','64');
DeleteFile('C:\Users\Пк\appdata\local\smartweb\__u.exe','32');
DeleteFile('C:\Users\Пк\appdata\local\microsoft\start menu\вoйти в интeрнeт.exe','32');
DeleteFileMask('C:\Users\Пк\AppData\Roaming\sweet-page','*',true);
DeleteFileMask('C:\Program Files (x86)\WordSurfer_1.10.0.19','*',true);
DeleteFileMask('C:\Program Files (x86)\globalUpdate','*',true);
DeleteFileMask('C:\Program Files (x86)\Ge-Force','*',true);
DeleteFileMask('C:\PROGRA~2\SupTab','*',true);
DeleteFileMask('C:\Users\Пк\AppData\Roaming\7FEF8F80-1436707370-11E1-B32D-E840F2A6F8B3','*',true);
DeleteDirectory('C:\Users\Пк\AppData\Roaming\sweet-page');
DeleteDirectory('C:\Program Files (x86)\WordSurfer_1.10.0.19');
DeleteDirectory('C:\Program Files (x86)\globalUpdate');
DeleteDirectory('C:\Program Files (x86)\Ge-Force');
DeleteDirectory('C:\PROGRA~2\SupTab');
DeleteDirectory('C:\Users\Пк\AppData\Roaming\7FEF8F80-1436707370-11E1-B32D-E840F2A6F8B3');
ExecuteSysClean;
ExecuteWizard('TSW',2,3,true);
ExecuteWizard('SCU',2,2,true);
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
RebootWindows(true);
END.
Компьютер будет перезагружен.