Код:
begin
ClearQuarantine;
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.8.16208.227\QQPCRtp.exe', '');
QuarantineFile('C:\Program Files (x86)\7C99ADE0-1456224827-11E0-B47E-E89A8F758DF2\knsaE834.tmp', '');
QuarantineFile('C:\Program Files (x86)\SFK\SSFK.exe', '');
QuarantineFile('C:\ProgramData\aWdMa\WdMan.exe', '');
QuarantineFile('C:\Program Files (x86)\7C99ADE0-1456224827-11E0-B47E-E89A8F758DF2\knscAC3A.tmp', '');
QuarantineFile('C:\Program Files (x86)\7C99ADE0-1456224827-11E0-B47E-E89A8F758DF2\hnsg1D2A.tmp', '');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.8.16208.227\QMUdisk64.sys', '');
QuarantineFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.8.16208.227\TsDefenseBT64.sys', '');
QuarantineFile('C:\Windows\system32\drivers\tsskx64.sys', '');
QuarantineFile('C:\Program Files\Sound+\idscservice.exe', '');
QuarantineFile('C:\Users\Данила\AppData\Local\Mail.Ru\MailRuUpdater.exe', '');
QuarantineFile('C:\Users\D14E~1\AppData\Local\Temp\1SKKKKKKK.exe', '');
QuarantineFile('C:\Program Files\Sound+\Sound+.exe', '');
QuarantineFile('C:\Users\Данила\AppData\Local\Mail.Ru\Sputnik\IESearchPlugin.dll', '');
QuarantineFile('C:\ProgramData\UpService\UpService.exe', '');
QuarantineFile('C:\Users\Данила\AppData\Roaming\FreeVPN\FreeVPN.exe', '');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.8.16208.227\QQPCRtp.exe', '32');
DeleteFile('C:\Program Files (x86)\7C99ADE0-1456224827-11E0-B47E-E89A8F758DF2\knsaE834.tmp', '32');
DeleteFile('C:\Program Files (x86)\SFK\SSFK.exe', '32');
DeleteFile('C:\ProgramData\aWdMa\WdMan.exe', '32');
DeleteFile('C:\Program Files (x86)\7C99ADE0-1456224827-11E0-B47E-E89A8F758DF2\knscAC3A.tmp', '32');
DeleteFile('C:\Program Files (x86)\7C99ADE0-1456224827-11E0-B47E-E89A8F758DF2\hnsg1D2A.tmp', '32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.8.16208.227\QMUdisk64.sys', '32');
DeleteFile('C:\Program Files (x86)\Tencent\QQPCMgr\10.8.16208.227\TsDefenseBT64.sys', '32');
DeleteFile('C:\Windows\system32\drivers\tsskx64.sys', '32');
DeleteFile('C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe', '32');
DeleteFile('C:\Program Files\Sound+\idscservice.exe', '32');
DeleteFile('C:\Users\Данила\AppData\Local\Mail.Ru\MailRuUpdater.exe', '32');
DeleteFile('C:\Users\D14E~1\AppData\Local\Temp\1SKKKKKKK.exe', '32');
DeleteFile('C:\Program Files\Sound+\Sound+.exe', '32');
DeleteFile('C:\Users\Данила\AppData\Local\Mail.Ru\Sputnik\IESearchPlugin.dll', '32');
DeleteFile('C:\ProgramData\UpService\UpService.exe', '32');
DeleteFile('C:\Users\Данила\AppData\Roaming\FreeVPN\FreeVPN.exe', '32');
DeleteService('QQPCRTP');
DeleteService('quxurifuzbt');
DeleteService('SSFK');
DeleteService('WdMan');
DeleteService('wemetovozbt');
DeleteService('wucotusy');
DeleteService('QMUdisk');
DeleteService('TsDefenseBt');
DeleteService('TSSKX64');
DeleteService('da7d56a62d5d9f4f8ab224813a9232d8');
DeleteFileMask('c:\program files (x86)\tencent', '*', true);
DeleteFileMask('c:\program files (x86)\sfk', '*', true);
DeleteFileMask('c:\programdata\awdma', '*', true);
DeleteFileMask('c:\program files (x86)\iobit', '*', true);
DeleteFileMask('c:\program files\sound+', '*', true);
DeleteFileMask('c:\users\данила\appdata\local\mail.ru', '*', true);
DeleteFileMask('c:\programdata\upservice', '*', true);
DeleteFileMask('c:\users\данила\appdata\roaming\freevpn', '*', true);
DeleteDirectory('c:\program files (x86)\tencent');
DeleteDirectory('c:\program files (x86)\sfk');
DeleteDirectory('c:\programdata\awdma');
DeleteDirectory('c:\program files (x86)\iobit');
DeleteDirectory('c:\program files\sound+');
DeleteDirectory('c:\users\данила\appdata\local\mail.ru');
DeleteDirectory('c:\programdata\upservice');
DeleteDirectory('c:\users\данила\appdata\roaming\freevpn');
DelBHO('{8E8F97CD-60B5-456F-A201-73065652D099}');
ExecuteFile('schtasks.exe', '/delete /TN "UpService" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "FreeVPN" /F', 0, 15000, true);
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 8', 'command');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IDSCPRODUCT', 'command');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MailRuUpdater', 'command');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Shell22', 'command');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Sound+', 'command');
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.