Код:
begin
TerminateProcessByName('C:\Program Files (x86)\DNS Unlocker\dnslockington.exe');
QuarantineFile('C:\Program Files (x86)\DNS Unlocker\dnslockington.exe', '');
QuarantineFile('C:\Program Files (x86)\Kinoroom Browser\krbrowser.exe', '');
QuarantineFile('C:\Users\ASUS\AppData\Local\Microsoft\Macromed\Flash Player\Updater Startup Utility\65C7648A-6515-4257-AE7B-0612A8A4845C.exe', '');
QuarantineFile('C:\Program Files (x86)\Common Files\113D0922-E2CA-4234-959B-1012062C7D6D\FCED62E0-39CE-4557-90EC-847FF05451BF.exe', '');
QuarantineFile('C:\Program Files (x86)\Money Viking\Extensions\c7c5384f-d9e9-4db1-8c72-135ecccbc571.dll', '');
QuarantineFile('C:\Users\ASUS\AppData\Local\Microsoft\Extensions\extsetup.exe', '');
QuarantineFile('C:\ProgramData\KRB Updater Utility\krbupdater.exe', '');
QuarantineFile('C:\Users\ASUS\AppData\Local\SystemDir\nethost.exe', '');
QuarantineFile('C:\PROGRA~3\5ebbeb32\45922530.dll', '');
DeleteFile('C:\Program Files (x86)\DNS Unlocker\dnslockington.exe', '32');
DeleteFile('C:\Program Files (x86)\Kinoroom Browser\krbrowser.exe', '32');
DeleteFile('C:\Users\ASUS\AppData\Local\Microsoft\Macromed\Flash Player\Updater Startup Utility\65C7648A-6515-4257-AE7B-0612A8A4845C.exe', '32');
DeleteFile('C:\Program Files (x86)\Common Files\113D0922-E2CA-4234-959B-1012062C7D6D\FCED62E0-39CE-4557-90EC-847FF05451BF.exe', '32');
DeleteFile('C:\Program Files (x86)\Money Viking\Extensions\c7c5384f-d9e9-4db1-8c72-135ecccbc571.dll', '32');
DeleteFile('C:\Users\ASUS\AppData\Local\Microsoft\Extensions\extsetup.exe', '32');
DeleteFile('C:\ProgramData\KRB Updater Utility\krbupdater.exe', '32');
DeleteFile('C:\Users\ASUS\AppData\Local\SystemDir\nethost.exe', '32');
DeleteFile('C:\PROGRA~3\5ebbeb32\45922530.dll', '32');
DeleteFileMask('C:\Program Files (x86)\DNS Unlocker', '*', true);
DeleteFileMask('C:\Program Files (x86)\Kinoroom Browser', '*', true);
DeleteFileMask('C:\Users\ASUS\AppData\Local\Microsoft\Macromed\Flash Player\Updater Startup Utility', '*', true);
DeleteFileMask('C:\Program Files (x86)\Common Files\113D0922-E2CA-4234-959B-1012062C7D6D', '*', true);
DeleteFileMask('C:\Program Files (x86)\Money Viking\Extensions', '*', true);
DeleteFileMask('C:\Users\ASUS\AppData\Local\Microsoft\Extensions', '*', true);
DeleteFileMask('C:\ProgramData\KRB Updater Utility', '*', true);
DeleteFileMask('C:\Users\ASUS\AppData\Local\SystemDir', '*', true);
DeleteFileMask('C:\PROGRA~3\5ebbeb32', '*', true);
DeleteDirectory('C:\Program Files (x86)\DNS Unlocker');
DeleteDirectory('C:\Program Files (x86)\Kinoroom Browser');
DeleteDirectory('C:\Users\ASUS\AppData\Local\Microsoft\Macromed\Flash Player\Updater Startup Utility');
DeleteDirectory('C:\Program Files (x86)\Common Files\113D0922-E2CA-4234-959B-1012062C7D6D');
DeleteDirectory('C:\Program Files (x86)\Money Viking\Extensions');
DeleteDirectory('C:\Users\ASUS\AppData\Local\Microsoft\Extensions');
DeleteDirectory('C:\ProgramData\KRB Updater Utility');
DeleteDirectory('C:\Users\ASUS\AppData\Local\SystemDir');
DeleteDirectory('C:\PROGRA~3\5ebbeb32');
DelBHO('{c7c5384f-d9e9-4db1-8c72-135ecccbc571}');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "extsetup" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "KRB Updater Utility Service" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "KRBLNKRUN" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "SafeBrowser" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "A1C2774A2-0DFC-45DA-8426-72F03ABA2D87" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "nethost task" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{15C45276-7B95-10C9-6631-962291053F39}" /F', 0, 15000, true);
ExecuteFile('ipconfig.exe', '/flushdns', 0, 15000, true);
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Run', 'Kinoroom Browser');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run', '1C2774A2-0DFC-45DA-8426-72F03ABA2D87');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run', 'AppDownloads');
ExecuteSysClean;
ExecuteRepair(21);
ExecuteRepair(3);
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.