Код:
begin
SetAVZGuardStatus(True);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced','HideFileExt', 0);
DeleteService('Windows Security');
DeleteService('SSFK');
StopService('Windows Services');
DeleteService('Windows Services');
StopService('Windows RDP');
DeleteService('Windows RDP');
StopService('Windows IE');
DeleteService('Windows IE');
StopService('Windows Host');
DeleteService('Windows Host');
TerminateProcessByName('c:\perflogs\system\win32\wudfhost.exe');
QuarantineFile('c:\perflogs\system\win32\wudfhost.exe','');
TerminateProcessByName('c:\perflogs\system\localhost\ui0detect.exe');
QuarantineFile('c:\perflogs\system\localhost\ui0detect.exe','');
TerminateProcessByName('c:\perflogs\system\intel\safesurf.exe');
QuarantineFile('c:\perflogs\system\intel\safesurf.exe','');
TerminateProcessByName('c:\perflogs\system\microsoft\lsass.exe');
QuarantineFile('c:\perflogs\system\microsoft\lsass.exe','');
DeleteFile('c:\perflogs\system\microsoft\lsass.exe','32');
DeleteFile('c:\perflogs\system\intel\safesurf.exe','32');
DeleteFile('c:\perflogs\system\localhost\ui0detect.exe','32');
DeleteFile('c:\perflogs\system\win32\wudfhost.exe','32');
DeleteFile('C:\Program Files\SFK\SSFK.exe','32');
DeleteFile('C:\PerfLogs\System\win32\WUDFHost.exe','32');
DeleteFile('D:\Distrib\BeTwinServiceXP.exe','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-1-6.job','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-1-7.job','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-10_user.job','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-11.job','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-4.job','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-5.job','32');
DeleteFile('C:\Windows\Tasks\40db1533-f551-4998-8bca-934da85073e3-5_user.job','32');
DeleteFile('C:\Windows\Tasks\9qUQcmdFoYNNW2vgPiFsbvx.job','32');
DeleteFile('C:\Windows\Tasks\AmiUpdXp.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job','32');
DeleteFile('C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job','32');
DeleteFile('C:\Windows\Tasks\newSI_42075.job','32');
DeleteFile('C:\Windows\Tasks\SpeedUpMyPC Maintenance.job','32');
DeleteFile('C:\Windows\Tasks\SpeedUpMyPC Startup.job','32');
DeleteFile('C:\Windows\system32\Tasks\40db1533-f551-4998-8bca-934da85073e3-1-6','32');
DeleteFile('C:\Windows\system32\Tasks\40db1533-f551-4998-8bca-934da85073e3-1-7','32');
DeleteFile('C:\Windows\system32\Tasks\40db1533-f551-4998-8bca-934da85073e3-11','32');
DeleteFile('C:\Windows\system32\Tasks\40db1533-f551-4998-8bca-934da85073e3-4','32');
DeleteFile('C:\Windows\system32\Tasks\40db1533-f551-4998-8bca-934da85073e3-5','32');
DeleteFile('C:\Windows\system32\Tasks\AmiUpdXp','32');
DeleteFile('C:\Windows\system32\Tasks\Browser Balance','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore','32');
DeleteFile('C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA','32');
DeleteFile('C:\Windows\system32\Tasks\newSI_42075','32');
DeleteFile('C:\Windows\system32\Tasks\pcoductpro','32');
DeleteFile('C:\Windows\system32\Tasks\SmartWeb Upgrade Trigger Task','32');
DeleteFile('C:\Windows\system32\Tasks\SpeedUpMyPC Maintenance','32');
DeleteFile('C:\Windows\system32\Tasks\SpeedUpMyPC Startup','32');
DeleteFile('C:\Windows\system32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Core','32');
DeleteFile('C:\Windows\system32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Pending Update','32');
DeleteFile('C:\Windows\system32\Tasks\WindowsUpdater','32');
DeleteFile('C:\Users\Бухгалтер\AppData\Roaming\WindowsUpdater\Updater.exe','32');
ExecuteSysClean;
RebootWindows(true);
end.