Код:
begin
TerminateProcessByName('c:\programdata\cloudprinter\cloudprinter.exe');
TerminateProcessByName('C:\Program Files\ContentProtector\ContentProtector.exe');
TerminateProcessByName('C:\Program Files\ContentProtector\ContentProtectorUpdate.exe');
TerminateProcessByName('c:\program files (x86)\88a40b40-1466783054-11dc-b970-1c872c5e430f\hnsv1625.tmp');
TerminateProcessByName('c:\program files (x86)\88a40b40-1466783054-11dc-b970-1c872c5e430f\jnsfbf.tmp');
TerminateProcessByName('c:\users\amidoshka\appdata\roaming\randomdeljihereg.exe');
TerminateProcessByName('c:\programdata\logic handler\set.exe');
TerminateProcessByName('c:\program files (x86)\wifisrv\wifiservice.exe');
StopService('backlh');
StopService('CloudPrinter');
StopService('ContentProtector');
StopService('ContentProtectorUpdate');
StopService('WifiSrv');
StopService('dowidoly');
StopService('rijufoze');
StopService('160WifiNetPro');
StopService('blNetFilter');
StopService('ContentProtectorDrv');
StopService('gkernel');
StopService('KuaiZipDrive');
QuarantineFile('c:\programdata\cloudprinter\cloudprinter.exe', '');
QuarantineFile('C:\Program Files\ContentProtector\ContentProtector.exe', '');
QuarantineFile('C:\Program Files\ContentProtector\ContentProtectorUpdate.exe', '');
QuarantineFile('c:\program files (x86)\88a40b40-1466783054-11dc-b970-1c872c5e430f\hnsv1625.tmp', '');
QuarantineFile('c:\program files (x86)\88a40b40-1466783054-11dc-b970-1c872c5e430f\jnsfbf.tmp', '');
QuarantineFile('c:\users\amidoshka\appdata\roaming\randomdeljihereg.exe', '');
QuarantineFile('c:\programdata\logic handler\set.exe', '');
QuarantineFile('c:\program files (x86)\wifisrv\wifiservice.exe', '');
QuarantineFile('C:\ProgramData\Logic Handler\System.Data.SQLite.dll', '');
QuarantineFile('C:\ProgramData\Logic Handler\x86\SQLite.Interop.dll', '');
QuarantineFile('c:\program files\ziptool\ziphost.dll', '');
QuarantineFile('c:\program files\ziptool\ZipUpdater\ZipUpdate.dll', '');
QuarantineFile('c:\program files\ziptool\CheckUpdate.dll', '');
QuarantineFile('c:\program files\ziptool\ZipSubmit\ZipSubmit.dll', '');
QuarantineFile('c:\program files\ziptool\substat.dll', '');
QuarantineFile('c:\program files\ziptool\ZipPlug.dll', '');
QuarantineFile('c:\program files\ziptool\wchsubstat.dll', '');
QuarantineFile('c:\program files\ziptool\tipsdll.dll', '');
QuarantineFile('c:\program files\їмс№\x86\kuaizipupdatechecker.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\DtlCrashCatch.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\libcurl.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\DTLSubmit\substat.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\wchsubstat.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\DtlPlug.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\tipsdll.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\appconfig.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\DTLUpdater\CheckUpdate.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\dstudp.dll', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\udp.dll', '');
QuarantineFile('C:\Program Files (x86)\88A40B40-1466783054-11DC-B970-1C872C5E430F\knspE897.tmpfs', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\160WifiNetPro64.sys', '');
QuarantineFile('C:\Windows\system32\drivers\blNetFilter.sys', '');
QuarantineFile('C:\Windows\system32\drivers\ContentProtectorDrv.sys', '');
QuarantineFile('C:\Users\AMIDOS~1\AppData\Local\Temp\gkernel.sys', '');
QuarantineFile('C:\Windows\system32\drivers\KuaiZipDrive.sys', '');
QuarantineFile('C:\Users\AMIDOS~1\AppData\Local\Temp\supermegabest\setupRun.exe', '');
QuarantineFile('C:\Program Files (x86)\mpck\otutnetwork.exe', '');
QuarantineFile('C:\Program Files (x86)\Hostify\idscservice.exe', '');
QuarantineFile('C:\ProgramData\Lamzap\Trioit.dll', '');
QuarantineFile('C:\Program Files (x86)\badu\uc.exe', '');
QuarantineFile('C:\Program Files (x86)\Hostify\wizzcaster.exe', '');
QuarantineFile('C:\Users\Amidoshka\AppData\Roaming\gplyra\gplyra.exe', '');
QuarantineFile('C:\Users\Amidoshka\AppData\Local\Mail.Ru\MailRuUpdater.exe', '');
QuarantineFile('C:\Users\Amidoshka\AppData\Roaming\UPUpdata\msiql.exe', '');
QuarantineFile('C:\Users\Amidoshka\AppData\Roaming\UPUpdata\service72564.exe', '');
QuarantineFile('C:\Users\Amidoshka\AppData\Roaming\UPUpdata\service90132.exe', '');
QuarantineFile('C:\Program Files (x86)\UCBrowser\Application\UUC0789.exe', '');
QuarantineFile('C:\Program Files (x86)\mpck\wincom_CFT.exe', '');
QuarantineFile('C:\Program Files (x86)\Wifisrv\160WIFI.exe', '');
QuarantineFile('C:\Program Files (x86)\UCBrowser\Application\update_task.exe', '');
QuarantineFile('C:\PROGRA~1\6A8C~1\X86\Update.exe', '');
QuarantineFile('C:\Users\AMIDOS~1\AppData\Local\Temp\VirusRemover.exe', '');
QuarantineFile('C:\Users\AMIDOS~1\AppData\Local\Temp\is-B0JAA.tmp\extract\StubInstallerCleanUp.bat', '');
QuarantineFile('C:\Users\AMIDOS~1\AppData\Local\Temp\is-GH97F.tmp\extract\StubInstallerCleanUp.bat', '');
QuarantineFile('C:\Windows\system32\regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\7336ee6b\6e8582fd.dll"', '');
QuarantineFile('C:\PROGRA~3\7336ee6b\6e8582fd.dll', '');
QuarantineFile('C:\Program Files (x86)\UCBrowser\Application\5.6.12150.8\Installer\chrmstp.exe', '');
QuarantineFile('C:\Users\Amidoshka\appdata\roaming\aspackage\uninstall.exe', '');
QuarantineFile('C:\Program Files\contentprotector\libeay32.dll', '');
QuarantineFile('C:\Program Files\contentprotector\ssleay32.dll', '');
DeleteFile('C:\Windows\Tasks\UCBrowserUpdater.job', '64');
DeleteFile('c:\programdata\cloudprinter\cloudprinter.exe', '32');
DeleteFile('C:\Program Files\ContentProtector\ContentProtector.exe', '32');
DeleteFile('C:\Program Files\ContentProtector\ContentProtectorUpdate.exe', '32');
DeleteFile('c:\program files (x86)\88a40b40-1466783054-11dc-b970-1c872c5e430f\hnsv1625.tmp', '32');
DeleteFile('c:\program files (x86)\88a40b40-1466783054-11dc-b970-1c872c5e430f\jnsfbf.tmp', '32');
DeleteFile('c:\users\amidoshka\appdata\roaming\randomdeljihereg.exe', '32');
DeleteFile('c:\programdata\logic handler\set.exe', '32');
DeleteFile('c:\program files (x86)\wifisrv\wifiservice.exe', '32');
DeleteFile('C:\ProgramData\Logic Handler\System.Data.SQLite.dll', '32');
DeleteFile('C:\ProgramData\Logic Handler\x86\SQLite.Interop.dll', '32');
DeleteFile('c:\program files\ziptool\ziphost.dll', '32');
DeleteFile('c:\program files\ziptool\ZipUpdater\ZipUpdate.dll', '32');
DeleteFile('c:\program files\ziptool\CheckUpdate.dll', '32');
DeleteFile('c:\program files\ziptool\ZipSubmit\ZipSubmit.dll', '32');
DeleteFile('c:\program files\ziptool\substat.dll', '32');
DeleteFile('c:\program files\ziptool\ZipPlug.dll', '32');
DeleteFile('c:\program files\ziptool\wchsubstat.dll', '32');
DeleteFile('c:\program files\ziptool\tipsdll.dll', '32');
DeleteFile('c:\program files\їмс№\x86\kuaizipupdatechecker.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\DtlCrashCatch.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\libcurl.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\DTLSubmit\substat.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\wchsubstat.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\DtlPlug.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\tipsdll.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\appconfig.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\DTLUpdater\CheckUpdate.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\dstudp.dll', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\udp.dll', '32');
DeleteFile('C:\Program Files (x86)\88A40B40-1466783054-11DC-B970-1C872C5E430F\knspE897.tmpfs', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\160WifiNetPro64.sys', '32');
DeleteFile('C:\Windows\system32\drivers\blNetFilter.sys', '32');
DeleteFile('C:\Windows\system32\drivers\ContentProtectorDrv.sys', '32');
DeleteFile('C:\Users\AMIDOS~1\AppData\Local\Temp\gkernel.sys', '32');
DeleteFile('C:\Windows\system32\drivers\KuaiZipDrive.sys', '32');
DeleteFile('C:\Users\AMIDOS~1\AppData\Local\Temp\supermegabest\setupRun.exe', '32');
DeleteFile('C:\Program Files (x86)\mpck\otutnetwork.exe', '32');
DeleteFile('C:\Program Files (x86)\Hostify\idscservice.exe', '32');
DeleteFile('C:\ProgramData\Lamzap\Trioit.dll', '32');
DeleteFile('C:\Program Files (x86)\badu\uc.exe', '32');
DeleteFile('C:\Program Files (x86)\Hostify\wizzcaster.exe', '32');
DeleteFile('C:\Users\Amidoshka\AppData\Roaming\gplyra\gplyra.exe', '32');
DeleteFile('C:\Users\Amidoshka\AppData\Local\Mail.Ru\MailRuUpdater.exe', '32');
DeleteFile('C:\Users\Amidoshka\AppData\Roaming\UPUpdata\msiql.exe', '32');
DeleteFile('C:\Users\Amidoshka\AppData\Roaming\UPUpdata\service72564.exe', '32');
DeleteFile('C:\Users\Amidoshka\AppData\Roaming\UPUpdata\service90132.exe', '32');
DeleteFile('C:\Program Files (x86)\UCBrowser\Application\UUC0789.exe', '32');
DeleteFile('C:\Program Files (x86)\mpck\wincom_CFT.exe', '32');
DeleteFile('C:\Program Files (x86)\Wifisrv\160WIFI.exe', '32');
DeleteFile('C:\Program Files (x86)\UCBrowser\Application\update_task.exe', '32');
DeleteFile('C:\PROGRA~1\6A8C~1\X86\Update.exe', '32');
DeleteFile('C:\Users\AMIDOS~1\AppData\Local\Temp\VirusRemover.exe', '32');
DeleteFile('C:\Users\AMIDOS~1\AppData\Local\Temp\is-B0JAA.tmp\extract\StubInstallerCleanUp.bat', '32');
DeleteFile('C:\Users\AMIDOS~1\AppData\Local\Temp\is-GH97F.tmp\extract\StubInstallerCleanUp.bat', '32');
DeleteFile('C:\Windows\system32\regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\7336ee6b\6e8582fd.dll"', '32');
DeleteFile('C:\PROGRA~3\7336ee6b\6e8582fd.dll', '32');
DeleteFile('C:\Program Files (x86)\UCBrowser\Application\5.6.12150.8\Installer\chrmstp.exe', '32');
DeleteFile('C:\Users\Amidoshka\appdata\roaming\aspackage\uninstall.exe', '32');
DeleteFile('C:\Program Files\contentprotector\libeay32.dll', '32');
DeleteFile('C:\Program Files\contentprotector\ssleay32.dll', '32');
DeleteService('backlh');
DeleteService('CloudPrinter');
DeleteService('ContentProtector');
DeleteService('ContentProtectorUpdate');
DeleteService('WifiSrv');
DeleteService('dowidoly');
DeleteService('rijufoze');
DeleteService('visusypozbt');
DeleteService('160WifiNetPro');
DeleteService('blNetFilter');
DeleteService('ContentProtectorDrv');
DeleteService('gkernel');
DeleteService('KuaiZipDrive');
DeleteFileMask('c:\programdata\cloudprinter', '*', true);
DeleteFileMask('c:\program files\contentprotector', '*', true);
DeleteFileMask('c:\programdata\logic handler', '*', true);
DeleteFileMask('c:\program files (x86)\wifisrv', '*', true);
DeleteFileMask('c:\program files\ziptool', '*', true);
DeleteFileMask('c:\program files\їмс№', '*', true);
DeleteFileMask('c:\users\amidos~1\appdata\local\temp\supermegabest', '*', true);
DeleteFileMask('c:\program files (x86)\mpck', '*', true);
DeleteFileMask('c:\program files (x86)\hostify', '*', true);
DeleteFileMask('c:\programdata\lamzap', '*', true);
DeleteFileMask('c:\program files (x86)\badu', '*', true);
DeleteFileMask('c:\users\amidoshka\appdata\roaming\gplyra', '*', true);
DeleteFileMask('c:\users\amidoshka\appdata\local\mail.ru', '*', true);
DeleteFileMask('c:\users\amidoshka\appdata\roaming\upupdata', '*', true);
DeleteFileMask('c:\program files (x86)\ucbrowser', '*', true);
DeleteFileMask('c:\progra~1\6a8c~1', '*', true);
DeleteFileMask('c:\windows\system32\regsvr32.exe /s /n /i:"/rt" "c:\progra~3\7336ee6b', '*', true);
DeleteFileMask('c:\progra~3\7336ee6b', '*', true);
DeleteFileMask('c:\users\amidoshka\appdata\roaming\aspackage', '*', true);
DeleteDirectory('c:\programdata\cloudprinter');
DeleteDirectory('c:\program files\contentprotector');
DeleteDirectory('c:\programdata\logic handler');
DeleteDirectory('c:\program files (x86)\wifisrv');
DeleteDirectory('c:\program files\ziptool');
DeleteDirectory('c:\program files\їмс№');
DeleteDirectory('c:\users\amidos~1\appdata\local\temp\supermegabest');
DeleteDirectory('c:\program files (x86)\mpck');
DeleteDirectory('c:\program files (x86)\hostify');
DeleteDirectory('c:\programdata\lamzap');
DeleteDirectory('c:\program files (x86)\badu');
DeleteDirectory('c:\users\amidoshka\appdata\roaming\gplyra');
DeleteDirectory('c:\users\amidoshka\appdata\local\mail.ru');
DeleteDirectory('c:\users\amidoshka\appdata\roaming\upupdata');
DeleteDirectory('c:\program files (x86)\ucbrowser');
DeleteDirectory('c:\progra~1\6a8c~1');
DeleteDirectory('c:\windows\system32\regsvr32.exe /s /n /i:"/rt" "c:\progra~3\7336ee6b');
DeleteDirectory('c:\progra~3\7336ee6b');
DeleteDirectory('c:\users\amidoshka\appdata\roaming\aspackage');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "KuaiZip_Update" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "UCBrowserUpdater" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "VirusRemover" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{121B9F7A-A89C-435C-A175-64D86D3713A9}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{35E68735-9AD1-43D5-8AAE-541C0D290692}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{56E66705-554F-4231-5484-40415DA9312B}" /F', 0, 15000, true);
ExecuteFile('ipconfig.exe', '/flushdns', 0, 15000, true);
DelCLSID('{65122CB0-EA0F-47DF-A953-017170ED12F9}');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\RunOnce', 'supermegabest');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\KuaizipUpdateChecker\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\ziphost\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\RunOnce', 'OTUTPRODUCT_GBRIB');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\RunOnce', 'IDSCPRODUCT');
ExecuteSysClean;
ExecuteRepair(13);
ExecuteRepair(21);
ExecuteRepair(3);
ExecuteRepair(4);
RebootWindows(true);
end.
Компьютер перезагрузится.