Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
TerminateProcessByName('c:\program files\1zajeqrexl\1zajeqrex.exe');
TerminateProcessByName('c:\program files\pgv7jt06gq\252mst67f.exe');
TerminateProcessByName('c:\program files\tw26j6inx5\2kn47oc1w.exe');
TerminateProcessByName('c:\program files\3fzqb3y4g9\3fzqb3y4g.exe');
TerminateProcessByName('c:\program files\3gp0gn9frd\3gp0gn9fr.exe');
TerminateProcessByName('c:\program files\3ub3ka2l0i\3ub3ka2l0.exe');
TerminateProcessByName('c:\program files\477koe2qsk\477koe2qs.exe');
TerminateProcessByName('c:\program files\avw1ooisdu\49d8gr8b8.exe');
TerminateProcessByName('c:\program files\61rbb9d3zl\61rbb9d3z.exe');
TerminateProcessByName('c:\program files\2iqrbjqeuk\63furoujh.exe');
TerminateProcessByName('c:\program files\md8j6w8e40\653kdzazx.exe');
TerminateProcessByName('c:\program files\6mqpu5y3li\6mqpu5y3l.exe');
TerminateProcessByName('c:\program files\7ld2i0o3w5\7ld2i0o3w.exe');
TerminateProcessByName('c:\program files\youtube adblockie\7m_bvm.exe');
TerminateProcessByName('c:\program files\7vp8v95tb6\7vp8v95tb.exe');
TerminateProcessByName('c:\program files\88cmi9jcjr\88cmi9jcj.exe');
TerminateProcessByName('c:\program files\88lmy41ygp\88lmy41yg.exe');
TerminateProcessByName('c:\program files\9sef4a3yk4\9sef4a3yk.exe');
TerminateProcessByName('c:\program files\aodqf4baoa\aodqf4bao.exe');
TerminateProcessByName('c:\programdata\appxadsulp\appxadsulp.exe');
TerminateProcessByName('c:\program files\aryly3706m\aryly3706.exe');
TerminateProcessByName('c:\program files\b74jzk1r4q\b74jzk1r4.exe');
TerminateProcessByName('c:\program files\bcitw5z5y0\bcitw5z5y.exe');
TerminateProcessByName('c:\program files\bikaqrss\bikaq.exe');
TerminateProcessByName('c:\program files\c7es2ihx9r\c7es2ihx9.exe');
TerminateProcessByName('c:\program files\d0vw15f78p\d0vw15f78.exe');
TerminateProcessByName('c:\program files\d90e0sn5m6\d90e0sn5m.exe');
TerminateProcessByName('c:\program files\dw62f30mtu\dw62f30mt.exe');
TerminateProcessByName('c:\program files\f1kvgoe6za\f1kvgoe6z.exe');
TerminateProcessByName('c:\program files\firefox\bin\firefoxupdate.exe');
TerminateProcessByName('c:\windows\temp\gc20f.tmp.exe');
TerminateProcessByName('c:\program files\ge9tbszj0r\ge9tbszj0.exe');
TerminateProcessByName('c:\program files\gec5jxjq9w\gec5jxjq9.exe');
TerminateProcessByName('c:\program files\i9ojrsrb5i\i9ojrsrb5.exe');
TerminateProcessByName('c:\program files\explorer\iedvutils.exe');
TerminateProcessByName('c:\program files\elex-tech\yac\isafesvc.exe');
TerminateProcessByName('c:\program files\elex-tech\yac\isafesvc2.exe');
TerminateProcessByName('c:\program files\elex-tech\yac\isafetray.exe');
TerminateProcessByName('c:\program files\izc9anczma\izc9anczm.exe');
TerminateProcessByName('c:\program files\j1196q1g1f\j1196q1g1.exe');
TerminateProcessByName('c:\program files\j9kztetx67\j9kztetx6.exe');
TerminateProcessByName('c:\program files\lbz133yvam\ja6bbdsks.exe');
TerminateProcessByName('c:\program files\px2vn7fir5\jbj2fa51m.exe');
TerminateProcessByName('c:\program files\kbzck6vilg\kbzck6vil.exe');
TerminateProcessByName('c:\program files\kdefmbehep\kdefmbehe.exe');
TerminateProcessByName('c:\users\Домашний\appdata\roaming\kyubey\kyubey.exe');
TerminateProcessByName('c:\users\Домашний\appdata\roaming\clean\kyubey.exe');
TerminateProcessByName('c:\program files\loui9qya62\loui9qya6.exe');
TerminateProcessByName('c:\program files\f3aff2s69o\m6y1f5oq3.exe');
TerminateProcessByName('c:\users\Домашний\appdata\local\temp\2mn4qughm\meuidedp0.exe');
TerminateProcessByName('c:\users\41bc~1\appdata\local\temp\is-jh85a.tmp\meuidedp0.tmp');
TerminateProcessByName('c:\program files\s8yn84ex5s\mnfvz84g0.exe');
TerminateProcessByName('c:\program files\mz6ynz3pmr\mz6ynz3pm.exe');
TerminateProcessByName('c:\program files\n7alpirpai\n7alpirpa.exe');
TerminateProcessByName('c:\programdata\prefssecure\nettrans.exe');
TerminateProcessByName('c:\program files\6cjasazr4o\nmfrgfayq.exe');
TerminateProcessByName('c:\program files\c7fm77nv57\nvsbngnkm.exe');
TerminateProcessByName('c:\program files\ob342912dt\ob342912d.exe');
TerminateProcessByName('c:\windows\ДОМАШНИЙ-ПК_080317\oxy.exe');
TerminateProcessByName('c:\program files\pdg1q183u9\pdg1q183u.exe');
TerminateProcessByName('c:\program files\psfwq8l4zf\psfwq8l4z.exe');
TerminateProcessByName('c:\program files\qjks9b297f\qjks9b297.exe');
TerminateProcessByName('c:\program files\qs2xxuk4ny\qs2xxuk4n.exe');
TerminateProcessByName('c:\program files\qz1lv2bllc\qz1lv2bll.exe');
TerminateProcessByName('c:\program files\rb9mhy6cd8\rb9mhy6cd.exe');
TerminateProcessByName('c:\program files\re7x5e7gyr\re7x5e7gy.exe');
TerminateProcessByName('c:\program files\rmq96jmbph\rmq96jmbp.exe');
TerminateProcessByName('c:\program files\rpt0dapagd\rpt0dapag.exe');
TerminateProcessByName('c:\program files\scmtkfia5w\scmtkfia5.exe');
TerminateProcessByName('c:\program files\becleaner\snhnb.exe');
TerminateProcessByName('c:\program files\t16y5fetc1\t16y5fetc.exe');
TerminateProcessByName('c:\program files\m6vbbvw2ml\tajxaysmg.exe');
TerminateProcessByName('c:\program files\twd11txxhz\twd11txxh.exe');
TerminateProcessByName('c:\program files\jlnrreexow\u91f7nen5.exe');
TerminateProcessByName('c:\program files\nttyiyy8mz\uwhki1usg.exe');
TerminateProcessByName('c:\program files\w1p5nc08yk\w1p5nc08y.exe');
TerminateProcessByName('c:\program files\w6gwnakdqn\w6gwnakdq.exe');
TerminateProcessByName('c:\program files\1h1ic1lhlm\wvip44b0f.exe');
TerminateProcessByName('c:\program files\ww4ettcooh\ww4ettcoo.exe');
TerminateProcessByName('c:\program files\yc2pq6y7iy\xezhtn4nf.exe');
TerminateProcessByName('c:\program files\xs1bc0fpxx\xs1bc0fpx.exe');
TerminateProcessByName('c:\program files\y1mnmxk9ar\y1mnmxk9a.exe');
TerminateProcessByName('c:\program files\becleaner\yqsistz69puojw0.exe');
TerminateProcessByName('c:\program files\z0zp69803h\z0zp69803.exe');
StopService('AppxadsulP');
StopService('clean');
StopService('FirefoxU');
StopService('iedvutils');
StopService('iSafeService');
StopService('iThemes5');
StopService('Kyubey');
StopService('Nettrans');
StopService('Telephone');
StopService('iSafeKrnl');
StopService('iSafeKrnlKit');
StopService('iSafeKrnlMon');
StopService('iSafeKrnlR3');
StopService('iSafeNetFilter');
StopService('p1486729756am');
QuarantineFileF('c:\users\домашний\appdata\roaming\forceupdatevof', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.js*, *.tmp*', false, '', 0 , 0);
QuarantineFileF('c:\programdata\krb updater utility', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.js*, *.tmp*', true, '', 0 , 0);
QuarantineFileF('c:\program files\zaxar', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.js*, *.tmp*', true, '', 0 , 0);
QuarantineFileF('c:\users\домашний\appdata\local\systemdir', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.js*, *.tmp*', true, '', 0 , 0);
QuarantineFile('c:\program files\1zajeqrexl\1zajeqrex.exe', '');
QuarantineFile('c:\program files\pgv7jt06gq\252mst67f.exe', '');
QuarantineFile('c:\program files\tw26j6inx5\2kn47oc1w.exe', '');
QuarantineFile('c:\program files\3fzqb3y4g9\3fzqb3y4g.exe', '');
QuarantineFile('c:\program files\3gp0gn9frd\3gp0gn9fr.exe', '');
QuarantineFile('c:\program files\3ub3ka2l0i\3ub3ka2l0.exe', '');
QuarantineFile('c:\program files\477koe2qsk\477koe2qs.exe', '');
QuarantineFile('c:\program files\avw1ooisdu\49d8gr8b8.exe', '');
QuarantineFile('c:\program files\61rbb9d3zl\61rbb9d3z.exe', '');
QuarantineFile('c:\program files\2iqrbjqeuk\63furoujh.exe', '');
QuarantineFile('c:\program files\md8j6w8e40\653kdzazx.exe', '');
QuarantineFile('c:\program files\6mqpu5y3li\6mqpu5y3l.exe', '');
QuarantineFile('c:\program files\7ld2i0o3w5\7ld2i0o3w.exe', '');
QuarantineFile('c:\program files\youtube adblockie\7m_bvm.exe', '');
QuarantineFile('c:\program files\7vp8v95tb6\7vp8v95tb.exe', '');
QuarantineFile('c:\program files\88cmi9jcjr\88cmi9jcj.exe', '');
QuarantineFile('c:\program files\88lmy41ygp\88lmy41yg.exe', '');
QuarantineFile('c:\program files\9sef4a3yk4\9sef4a3yk.exe', '');
QuarantineFile('c:\program files\aodqf4baoa\aodqf4bao.exe', '');
QuarantineFile('c:\programdata\appxadsulp\appxadsulp.exe', '');
QuarantineFile('c:\program files\aryly3706m\aryly3706.exe', '');
QuarantineFile('c:\program files\b74jzk1r4q\b74jzk1r4.exe', '');
QuarantineFile('c:\program files\bcitw5z5y0\bcitw5z5y.exe', '');
QuarantineFile('c:\program files\bikaqrss\bikaq.exe', '');
QuarantineFile('c:\program files\c7es2ihx9r\c7es2ihx9.exe', '');
QuarantineFile('c:\program files\d0vw15f78p\d0vw15f78.exe', '');
QuarantineFile('c:\program files\d90e0sn5m6\d90e0sn5m.exe', '');
QuarantineFile('c:\program files\dw62f30mtu\dw62f30mt.exe', '');
QuarantineFile('c:\program files\f1kvgoe6za\f1kvgoe6z.exe', '');
QuarantineFile('c:\program files\firefox\bin\firefoxupdate.exe', '');
QuarantineFile('c:\windows\temp\gc20f.tmp.exe', '');
QuarantineFile('c:\program files\ge9tbszj0r\ge9tbszj0.exe', '');
QuarantineFile('c:\program files\gec5jxjq9w\gec5jxjq9.exe', '');
QuarantineFile('c:\program files\i9ojrsrb5i\i9ojrsrb5.exe', '');
QuarantineFile('c:\program files\explorer\iedvutils.exe', '');
QuarantineFile('c:\program files\elex-tech\yac\isafesvc.exe', '');
QuarantineFile('c:\program files\elex-tech\yac\isafesvc2.exe', '');
QuarantineFile('c:\program files\elex-tech\yac\isafetray.exe', '');
QuarantineFile('c:\program files\izc9anczma\izc9anczm.exe', '');
QuarantineFile('c:\program files\j1196q1g1f\j1196q1g1.exe', '');
QuarantineFile('c:\program files\j9kztetx67\j9kztetx6.exe', '');
QuarantineFile('c:\program files\lbz133yvam\ja6bbdsks.exe', '');
QuarantineFile('c:\program files\px2vn7fir5\jbj2fa51m.exe', '');
QuarantineFile('c:\program files\kbzck6vilg\kbzck6vil.exe', '');
QuarantineFile('c:\program files\kdefmbehep\kdefmbehe.exe', '');
QuarantineFile('c:\users\Домашний\appdata\roaming\kyubey\kyubey.exe', '');
QuarantineFile('c:\users\Домашний\appdata\roaming\clean\kyubey.exe', '');
QuarantineFile('c:\program files\loui9qya62\loui9qya6.exe', '');
QuarantineFile('c:\program files\f3aff2s69o\m6y1f5oq3.exe', '');
QuarantineFile('c:\users\Домашний\appdata\local\temp\2mn4qughm\meuidedp0.exe', '');
QuarantineFile('c:\users\41bc~1\appdata\local\temp\is-jh85a.tmp\meuidedp0.tmp', '');
QuarantineFile('c:\program files\s8yn84ex5s\mnfvz84g0.exe', '');
QuarantineFile('c:\program files\mz6ynz3pmr\mz6ynz3pm.exe', '');
QuarantineFile('c:\program files\n7alpirpai\n7alpirpa.exe', '');
QuarantineFile('c:\programdata\prefssecure\nettrans.exe', '');
QuarantineFile('c:\program files\6cjasazr4o\nmfrgfayq.exe', '');
QuarantineFile('c:\program files\c7fm77nv57\nvsbngnkm.exe', '');
QuarantineFile('c:\program files\ob342912dt\ob342912d.exe', '');
QuarantineFile('c:\windows\ДОМАШНИЙ-ПК_080317\oxy.exe', '');
QuarantineFile('c:\program files\pdg1q183u9\pdg1q183u.exe', '');
QuarantineFile('c:\program files\psfwq8l4zf\psfwq8l4z.exe', '');
QuarantineFile('c:\program files\qjks9b297f\qjks9b297.exe', '');
QuarantineFile('c:\program files\qs2xxuk4ny\qs2xxuk4n.exe', '');
QuarantineFile('c:\program files\qz1lv2bllc\qz1lv2bll.exe', '');
QuarantineFile('c:\program files\rb9mhy6cd8\rb9mhy6cd.exe', '');
QuarantineFile('c:\program files\re7x5e7gyr\re7x5e7gy.exe', '');
QuarantineFile('c:\program files\rmq96jmbph\rmq96jmbp.exe', '');
QuarantineFile('c:\program files\rpt0dapagd\rpt0dapag.exe', '');
QuarantineFile('c:\program files\scmtkfia5w\scmtkfia5.exe', '');
QuarantineFile('c:\program files\becleaner\snhnb.exe', '');
QuarantineFile('c:\program files\t16y5fetc1\t16y5fetc.exe', '');
QuarantineFile('c:\program files\m6vbbvw2ml\tajxaysmg.exe', '');
QuarantineFile('c:\program files\twd11txxhz\twd11txxh.exe', '');
QuarantineFile('c:\program files\jlnrreexow\u91f7nen5.exe', '');
QuarantineFile('c:\program files\nttyiyy8mz\uwhki1usg.exe', '');
QuarantineFile('c:\program files\w1p5nc08yk\w1p5nc08y.exe', '');
QuarantineFile('c:\program files\w6gwnakdqn\w6gwnakdq.exe', '');
QuarantineFile('c:\program files\1h1ic1lhlm\wvip44b0f.exe', '');
QuarantineFile('c:\program files\ww4ettcooh\ww4ettcoo.exe', '');
QuarantineFile('c:\program files\yc2pq6y7iy\xezhtn4nf.exe', '');
QuarantineFile('c:\program files\xs1bc0fpxx\xs1bc0fpx.exe', '');
QuarantineFile('c:\program files\y1mnmxk9ar\y1mnmxk9a.exe', '');
QuarantineFile('c:\program files\becleaner\yqsistz69puojw0.exe', '');
QuarantineFile('c:\program files\z0zp69803h\z0zp69803.exe', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Vaterentphoser\Kitition.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Cohile\Drevaygunering.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Clupwugack\Ateferry.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Atoderly\Rahitylinied.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Reazaskese\Phoqat.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Chkotprewele\Checuksherjach.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Ckokipy\Ghitapy.dll', '');
QuarantineFile('C:\Program Files\Youtube AdBlockIE\FBcDrjRa.dll', '');
QuarantineFile('C:\Program Files\Youtube AdBlockIE\63IRRk.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iDskDllPatch.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\Vazisefizch\Luhing.dll', '');
QuarantineFile('C:\Program Files\Explorer\iedvtoolex.dll', '');
QuarantineFile('C:\Program Files\Explorer\WINNSI.DLL', '');
QuarantineFile('C:\Windows\TEMP\gA344.tmp', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSvc.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iImportLib.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\sqlite3.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\libcurl.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\LIBEAY32.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\SSLEAY32.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\curlpp.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\isafepxy.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\isaferpt.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iCommu.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\isafeupbiz.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\ipcproxy.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSvc2.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafebs.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeAdless.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafenpf.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlCall.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlMonCall.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeDisp.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeBase.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\isafemc.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\libpng.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iCommon.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPNodisturb.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPProtect.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPDesk.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPFloaty.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPPush.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPMsgCenter.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iTPAutoClean.dll', '');
QuarantineFile('C:\ProgramData\Microsoft\Phone Tools\CoreCon\12.0\addons\SDKFilesVer.dll', '');
QuarantineFile('C:\ProgramData\527f455f903l520\527f455f903l520.dll', '');
QuarantineFile('C:\Program Files\Common Files\Services\iThemes.dll', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeSrvMon.dll', '');
QuarantineFile('C:\Program Files\Cnsythuker Collector\local32spl.dll', '');
QuarantineFile('c:\programdata\microsoft\office\office_updater.dll', '');
QuarantineFile('c:\users\домашний\appdata\roaming\winsapsvc\winsap.dll', '');
QuarantineFile('c:\users\домашний\appdata\roaming\winsnare\winsnare.dll', '');
QuarantineFile('c:\program files\winarcher\archer.dll', '');
QuarantineFile('c:\program files\bilibili\bilibili.dll', '');
QuarantineFile('c:\program files\gubed\gubedzl.dll', '');
QuarantineFile('c:\program files\gub\gubzl.dll', '');
QuarantineFile('AppxadsulP.sys', '');
QuarantineFile('C:\Program Files\amuleC3\ed2k.exe', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeKrnl.sys', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlKit.sys', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlMon.sys', '');
QuarantineFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlR3.sys', '');
QuarantineFile('C:\Windows\system32\DRIVERS\iSafeNetFilter.sys', '');
QuarantineFile('C:\Windows\system32\DRIVERS\iSafeKrnlBoot.sys', '');
QuarantineFile('C:\Users\41BC~1\AppData\Local\Temp\bk6211.tmp\p1486729756am.sys', '');
QuarantineFile('C:\Program Files\BeCleaner\BestCleaner.exe', '');
QuarantineFile('C:\Users\Домашний\AppData\Local\lcoupon\foygnstb.exe', '');
QuarantineFile('C:\Users\Домашний\AppData\Local\lcoupon\config.json', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\SearchAY\ml.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\ekdkbhhhgpgbbhaljkbeihbagmgmeemp\ml.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\ForceUpdateVOF\ml.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\CDManager\ml.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\vofer\ml.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\VOF\ml.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Local\Microsoft\2D8F4B18767968B6BF17123A337EB743\FC96F22F3A1AF73F93CA68FF0ED233DA.exe', '');
QuarantineFile('C:\ProgramData\AppxadsulP\Lottam.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Local\Amigo\Application\amigo.exe', '');
QuarantineFile('C:\Program Files\Meqaculthalek\BoforyMng.dll', '');
QuarantineFile('C:\ProgramData\KRB Updater Utility\krbupdater-utility.exe', '');
QuarantineFile('C:\Program Files\Zaxar\ZaxarLoader.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{89FD9708-DB0A-4E89-ADB6-BA2C13578B1E}.exe', '');
QuarantineFile('C:\Program Files\VK OK AdBlockIE\hbuPJE1q.dll', '');
QuarantineFile('C:\Program Files\DriverToolkit\DriverToolkit.exe', '');
QuarantineFile('C:\ProgramData\869f818f951l306\869f818f951l306.dll', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\CDManager\updater.py', '');
QuarantineFile('C:\Program Files\Microsoft', '');
QuarantineFile('Data\InstallAddons.exe', '');
QuarantineFile('C:\Program Files\Meqaculthalek\simerty.exe', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\ForceUpdateVOF\updater.py', '');
QuarantineFile('C:\Program Files\Arerloph\xufise.exe', '');
QuarantineFile('"C:\Program Files\MIO\MIO.exe" -bindurl http://api.suibianmaimaicom.com/hitachixhds721050cla362_jp1572je0zgelk0zgelkx.dat cmd=', '');
QuarantineFile('C:\Users\Домашний\AppData\Local\SystemDir\nethost.exe', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\SearchAY\app.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\VOF\updater.py', '');
QuarantineFile('C:\Users\Домашний\AppData\Roaming\vofer\app.py', '');
QuarantineFile('C:\ProgramData\wintools\WintoolUprI.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{6DF06257-3133-459F-8CF9-4427C6995772}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{811FADC0-EA37-4CBF-8A47-FC535CBBEE85}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{858023B8-4A15-4AB2-9BAA-630B42A3D42A}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{8E6446A9-6191-4EE4-AB7A-3FBAC146439F}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{A92D77BC-D0CE-4278-8BF0-D2E09FCD9A91}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{B7654156-72F2-4392-82E2-F536AB736630}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{CD7D21E1-1567-4250-B9C6-A8A36BC1919F}.exe', '');
QuarantineFile('C:\Program Files\Common Files\AppDownloads\{F6127DCC-6B24-4669-A41B-C47663CA4478}.exe', '');
QuarantineFile('C:\Users\Домашний\appdata\local\askpartnernetwork\toolbar\updater\idc\idcldr.exe', '');
QuarantineFile('C:\Users\Домашний\appdata\local\askpartnernetwork\toolbar\updater\idc\idcsrv.dll', '');
QuarantineFile('C:\Users\Домашний\appdata\local\askpartnernetwork\toolbar\updater\idc\idcsrvstub.dll', '');
QuarantineFile('C:\Users\Домашний\appdata\local\kometa\kometaup.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\bugreport.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\iddmgr.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\idesk.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\idskdllpatch64.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\ipcdl.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafeadfv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafebugreport.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafechlp.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafeclc.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafeclcv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafe.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafekrnlboot.sys', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafekrnlshell.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafemadwc.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafembp.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafemclv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafemgc.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafemon.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafemoptv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafemsmv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafesmgr.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafesopt.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafesptv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafesv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafetbv.dll', '');
QuarantineFile('C:\Program Files\elex-tech\yac\isafethlp.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\istart.exe', '');
QuarantineFile('C:\Program Files\elex-tech\yac\uninstall.exe', '');
DeleteFile('C:\Windows\Tasks\DriverToolkit Autorun.job', '32');
DeleteFile('c:\program files\1zajeqrexl\1zajeqrex.exe', '32');
DeleteFile('c:\program files\pgv7jt06gq\252mst67f.exe', '32');
DeleteFile('c:\program files\tw26j6inx5\2kn47oc1w.exe', '32');
DeleteFile('c:\program files\3fzqb3y4g9\3fzqb3y4g.exe', '32');
DeleteFile('c:\program files\3gp0gn9frd\3gp0gn9fr.exe', '32');
DeleteFile('c:\program files\3ub3ka2l0i\3ub3ka2l0.exe', '32');
DeleteFile('c:\program files\477koe2qsk\477koe2qs.exe', '32');
DeleteFile('c:\program files\avw1ooisdu\49d8gr8b8.exe', '32');
DeleteFile('c:\program files\61rbb9d3zl\61rbb9d3z.exe', '32');
DeleteFile('c:\program files\2iqrbjqeuk\63furoujh.exe', '32');
DeleteFile('c:\program files\md8j6w8e40\653kdzazx.exe', '32');
DeleteFile('c:\program files\6mqpu5y3li\6mqpu5y3l.exe', '32');
DeleteFile('c:\program files\7ld2i0o3w5\7ld2i0o3w.exe', '32');
DeleteFile('c:\program files\youtube adblockie\7m_bvm.exe', '32');
DeleteFile('c:\program files\7vp8v95tb6\7vp8v95tb.exe', '32');
DeleteFile('c:\program files\88cmi9jcjr\88cmi9jcj.exe', '32');
DeleteFile('c:\program files\88lmy41ygp\88lmy41yg.exe', '32');
DeleteFile('c:\program files\9sef4a3yk4\9sef4a3yk.exe', '32');
DeleteFile('c:\program files\aodqf4baoa\aodqf4bao.exe', '32');
DeleteFile('c:\programdata\appxadsulp\appxadsulp.exe', '32');
DeleteFile('c:\program files\aryly3706m\aryly3706.exe', '32');
DeleteFile('c:\program files\b74jzk1r4q\b74jzk1r4.exe', '32');
DeleteFile('c:\program files\bcitw5z5y0\bcitw5z5y.exe', '32');
DeleteFile('c:\program files\bikaqrss\bikaq.exe', '32');
DeleteFile('c:\program files\c7es2ihx9r\c7es2ihx9.exe', '32');
DeleteFile('c:\program files\d0vw15f78p\d0vw15f78.exe', '32');
DeleteFile('c:\program files\d90e0sn5m6\d90e0sn5m.exe', '32');
DeleteFile('c:\program files\dw62f30mtu\dw62f30mt.exe', '32');
DeleteFile('c:\program files\f1kvgoe6za\f1kvgoe6z.exe', '32');
DeleteFile('c:\program files\firefox\bin\firefoxupdate.exe', '32');
DeleteFile('c:\windows\temp\gc20f.tmp.exe', '32');
DeleteFile('c:\program files\ge9tbszj0r\ge9tbszj0.exe', '32');
DeleteFile('c:\program files\gec5jxjq9w\gec5jxjq9.exe', '32');
DeleteFile('c:\program files\i9ojrsrb5i\i9ojrsrb5.exe', '32');
DeleteFile('c:\program files\explorer\iedvutils.exe', '32');
DeleteFile('c:\program files\elex-tech\yac\isafesvc.exe', '32');
DeleteFile('c:\program files\elex-tech\yac\isafesvc2.exe', '32');
DeleteFile('c:\program files\elex-tech\yac\isafetray.exe', '32');
DeleteFile('c:\program files\izc9anczma\izc9anczm.exe', '32');
DeleteFile('c:\program files\j1196q1g1f\j1196q1g1.exe', '32');
DeleteFile('c:\program files\j9kztetx67\j9kztetx6.exe', '32');
DeleteFile('c:\program files\lbz133yvam\ja6bbdsks.exe', '32');
DeleteFile('c:\program files\px2vn7fir5\jbj2fa51m.exe', '32');
DeleteFile('c:\program files\kbzck6vilg\kbzck6vil.exe', '32');
DeleteFile('c:\program files\kdefmbehep\kdefmbehe.exe', '32');
DeleteFile('c:\users\Домашний\appdata\roaming\kyubey\kyubey.exe', '32');
DeleteFile('c:\users\Домашний\appdata\roaming\clean\kyubey.exe', '32');
DeleteFile('c:\program files\loui9qya62\loui9qya6.exe', '32');
DeleteFile('c:\program files\f3aff2s69o\m6y1f5oq3.exe', '32');
DeleteFile('c:\users\Домашний\appdata\local\temp\2mn4qughm\meuidedp0.exe', '32');
DeleteFile('c:\users\41bc~1\appdata\local\temp\is-jh85a.tmp\meuidedp0.tmp', '32');
DeleteFile('c:\program files\s8yn84ex5s\mnfvz84g0.exe', '32');
DeleteFile('c:\program files\mz6ynz3pmr\mz6ynz3pm.exe', '32');
DeleteFile('c:\program files\n7alpirpai\n7alpirpa.exe', '32');
DeleteFile('c:\programdata\prefssecure\nettrans.exe', '32');
DeleteFile('c:\program files\6cjasazr4o\nmfrgfayq.exe', '32');
DeleteFile('c:\program files\c7fm77nv57\nvsbngnkm.exe', '32');
DeleteFile('c:\program files\ob342912dt\ob342912d.exe', '32');
DeleteFile('c:\windows\ДОМАШНИЙ-ПК_080317\oxy.exe', '32');
DeleteFile('c:\program files\pdg1q183u9\pdg1q183u.exe', '32');
DeleteFile('c:\program files\psfwq8l4zf\psfwq8l4z.exe', '32');
DeleteFile('c:\program files\qjks9b297f\qjks9b297.exe', '32');
DeleteFile('c:\program files\qs2xxuk4ny\qs2xxuk4n.exe', '32');
DeleteFile('c:\program files\qz1lv2bllc\qz1lv2bll.exe', '32');
DeleteFile('c:\program files\rb9mhy6cd8\rb9mhy6cd.exe', '32');
DeleteFile('c:\program files\re7x5e7gyr\re7x5e7gy.exe', '32');
DeleteFile('c:\program files\rmq96jmbph\rmq96jmbp.exe', '32');
DeleteFile('c:\program files\rpt0dapagd\rpt0dapag.exe', '32');
DeleteFile('c:\program files\scmtkfia5w\scmtkfia5.exe', '32');
DeleteFile('c:\program files\becleaner\snhnb.exe', '32');
DeleteFile('c:\program files\t16y5fetc1\t16y5fetc.exe', '32');
DeleteFile('c:\program files\m6vbbvw2ml\tajxaysmg.exe', '32');
DeleteFile('c:\program files\twd11txxhz\twd11txxh.exe', '32');
DeleteFile('c:\program files\jlnrreexow\u91f7nen5.exe', '32');
DeleteFile('c:\program files\nttyiyy8mz\uwhki1usg.exe', '32');
DeleteFile('c:\program files\w1p5nc08yk\w1p5nc08y.exe', '32');
DeleteFile('c:\program files\w6gwnakdqn\w6gwnakdq.exe', '32');
DeleteFile('c:\program files\1h1ic1lhlm\wvip44b0f.exe', '32');
DeleteFile('c:\program files\ww4ettcooh\ww4ettcoo.exe', '32');
DeleteFile('c:\program files\yc2pq6y7iy\xezhtn4nf.exe', '32');
DeleteFile('c:\program files\xs1bc0fpxx\xs1bc0fpx.exe', '32');
DeleteFile('c:\program files\y1mnmxk9ar\y1mnmxk9a.exe', '32');
DeleteFile('c:\program files\becleaner\yqsistz69puojw0.exe', '32');
DeleteFile('c:\program files\z0zp69803h\z0zp69803.exe', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Vaterentphoser\Kitition.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Cohile\Drevaygunering.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Clupwugack\Ateferry.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Atoderly\Rahitylinied.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Reazaskese\Phoqat.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Chkotprewele\Checuksherjach.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Ckokipy\Ghitapy.dll', '32');
DeleteFile('C:\Program Files\Youtube AdBlockIE\FBcDrjRa.dll', '32');
DeleteFile('C:\Program Files\Youtube AdBlockIE\63IRRk.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iDskDllPatch.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\Vazisefizch\Luhing.dll', '32');
DeleteFile('C:\Program Files\Explorer\iedvtoolex.dll', '32');
DeleteFile('C:\Program Files\Explorer\WINNSI.DLL', '32');
DeleteFile('C:\Windows\TEMP\gA344.tmp', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSvc.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iImportLib.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\sqlite3.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\libcurl.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\LIBEAY32.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\SSLEAY32.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\curlpp.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\isafepxy.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\isaferpt.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iCommu.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\isafeupbiz.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\ipcproxy.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSvc2.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafebs.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeAdless.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafenpf.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlCall.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlMonCall.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeDisp.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeBase.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\isafemc.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\libpng.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iCommon.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPNodisturb.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPProtect.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPDesk.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPFloaty.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPPush.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPMsgCenter.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iTPAutoClean.dll', '32');
DeleteFile('C:\ProgramData\Microsoft\Phone Tools\CoreCon\12.0\addons\SDKFilesVer.dll', '32');
DeleteFile('C:\ProgramData\527f455f903l520\527f455f903l520.dll', '32');
DeleteFile('C:\Program Files\Common Files\Services\iThemes.dll', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeSrvMon.dll', '32');
DeleteFile('C:\Program Files\Cnsythuker Collector\local32spl.dll', '32');
DeleteFile('c:\programdata\microsoft\office\office_updater.dll', '32');
DeleteFile('c:\users\домашний\appdata\roaming\winsapsvc\winsap.dll', '32');
DeleteFile('c:\users\домашний\appdata\roaming\winsnare\winsnare.dll', '32');
DeleteFile('c:\program files\winarcher\archer.dll', '32');
DeleteFile('c:\program files\bilibili\bilibili.dll', '32');
DeleteFile('c:\program files\gubed\gubedzl.dll', '32');
DeleteFile('c:\program files\gub\gubzl.dll', '32');
DeleteFile('AppxadsulP.sys', '32');
DeleteFile('C:\Program Files\amuleC3\ed2k.exe', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeKrnl.sys', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlKit.sys', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlMon.sys', '32');
DeleteFile('C:\Program Files\Elex-tech\YAC\iSafeKrnlR3.sys', '32');
DeleteFile('C:\Windows\system32\DRIVERS\iSafeNetFilter.sys', '32');
DeleteFile('C:\Windows\system32\DRIVERS\iSafeKrnlBoot.sys', '32');
DeleteFile('C:\Users\41BC~1\AppData\Local\Temp\bk6211.tmp\p1486729756am.sys', '32');
DeleteFile('C:\Program Files\BeCleaner\BestCleaner.exe', '32');
DeleteFile('C:\Users\Домашний\AppData\Local\lcoupon\foygnstb.exe', '32');
DeleteFile('C:\Users\Домашний\AppData\Local\lcoupon\config.json', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\SearchAY\ml.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\ekdkbhhhgpgbbhaljkbeihbagmgmeemp\ml.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\ForceUpdateVOF\ml.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\CDManager\ml.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\vofer\ml.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\VOF\ml.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Local\Microsoft\2D8F4B18767968B6BF17123A337EB743\FC96F22F3A1AF73F93CA68FF0ED233DA.exe', '32');
DeleteFile('C:\ProgramData\AppxadsulP\Lottam.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Local\Amigo\Application\amigo.exe', '32');
DeleteFile('C:\Program Files\Meqaculthalek\BoforyMng.dll', '32');
DeleteFile('C:\ProgramData\KRB Updater Utility\krbupdater-utility.exe', '32');
DeleteFile('C:\Program Files\Zaxar\ZaxarLoader.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{89FD9708-DB0A-4E89-ADB6-BA2C13578B1E}.exe', '32');
DeleteFile('C:\Program Files\VK OK AdBlockIE\hbuPJE1q.dll', '32');
DeleteFile('C:\Program Files\DriverToolkit\DriverToolkit.exe', '32');
DeleteFile('C:\ProgramData\869f818f951l306\869f818f951l306.dll', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\CDManager\updater.py', '32');
DeleteFile('C:\Program Files\Microsoft', '32');
DeleteFile('Data\InstallAddons.exe', '32');
DeleteFile('C:\Program Files\Meqaculthalek\simerty.exe', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\ForceUpdateVOF\updater.py', '32');
DeleteFile('C:\Program Files\Arerloph\xufise.exe', '32');
DeleteFile('"C:\Program Files\MIO\MIO.exe" -bindurl http://api.suibianmaimaicom.com/hitachixhds721050cla362_jp1572je0zgelk0zgelkx.dat cmd=', '32');
DeleteFile('C:\Users\Домашний\AppData\Local\SystemDir\nethost.exe', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\SearchAY\app.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\VOF\updater.py', '32');
DeleteFile('C:\Users\Домашний\AppData\Roaming\vofer\app.py', '32');
DeleteFile('C:\ProgramData\wintools\WintoolUprI.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{6DF06257-3133-459F-8CF9-4427C6995772}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{811FADC0-EA37-4CBF-8A47-FC535CBBEE85}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{858023B8-4A15-4AB2-9BAA-630B42A3D42A}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{8E6446A9-6191-4EE4-AB7A-3FBAC146439F}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{A92D77BC-D0CE-4278-8BF0-D2E09FCD9A91}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{B7654156-72F2-4392-82E2-F536AB736630}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{CD7D21E1-1567-4250-B9C6-A8A36BC1919F}.exe', '32');
DeleteFile('C:\Program Files\Common Files\AppDownloads\{F6127DCC-6B24-4669-A41B-C47663CA4478}.exe', '32');
DeleteFile('C:\Users\Домашний\appdata\local\askpartnernetwork\toolbar\updater\idc\idcldr.exe', '32');
DeleteFile('C:\Users\Домашний\appdata\local\askpartnernetwork\toolbar\updater\idc\idcsrv.dll', '32');
DeleteFile('C:\Users\Домашний\appdata\local\askpartnernetwork\toolbar\updater\idc\idcsrvstub.dll', '32');
DeleteFile('C:\Users\Домашний\appdata\local\kometa\kometaup.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\bugreport.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\iddmgr.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\idesk.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\idskdllpatch64.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\ipcdl.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafeadfv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafebugreport.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafechlp.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafeclc.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafeclcv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafe.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafekrnlboot.sys', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafekrnlshell.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafemadwc.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafembp.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafemclv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafemgc.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafemon.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafemoptv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafemsmv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafesmgr.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafesopt.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafesptv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafesv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafetbv.dll', '32');
DeleteFile('C:\Program Files\elex-tech\yac\isafethlp.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\istart.exe', '32');
DeleteFile('C:\Program Files\elex-tech\yac\uninstall.exe', '32');
DeleteService('AppxadsulP');
DeleteService('clean');
DeleteService('FirefoxU');
DeleteService('iedvutils');
DeleteService('iSafeService');
DeleteService('iThemes5');
DeleteService('Kyubey');
DeleteService('Nettrans');
DeleteService('Telephone');
DeleteService('ed2kidle');
DeleteService('iSafeKrnl');
DeleteService('iSafeKrnlKit');
DeleteService('iSafeKrnlMon');
DeleteService('iSafeKrnlR3');
DeleteService('iSafeNetFilter');
DeleteService('iSafeKrnlBoot');
DeleteService('p1486729756am');
DeleteFileMask('c:\program files\1zajeqrexl', '*', true);
DeleteFileMask('c:\program files\pgv7jt06gq', '*', true);
DeleteFileMask('c:\program files\tw26j6inx5', '*', true);
DeleteFileMask('c:\program files\3fzqb3y4g9', '*', true);
DeleteFileMask('c:\program files\3gp0gn9frd', '*', true);
DeleteFileMask('c:\program files\3ub3ka2l0i', '*', true);
DeleteFileMask('c:\program files\477koe2qsk', '*', true);
DeleteFileMask('c:\program files\avw1ooisdu', '*', true);
DeleteFileMask('c:\program files\61rbb9d3zl', '*', true);
DeleteFileMask('c:\program files\2iqrbjqeuk', '*', true);
DeleteFileMask('c:\program files\md8j6w8e40', '*', true);
DeleteFileMask('c:\program files\6mqpu5y3li', '*', true);
DeleteFileMask('c:\program files\7ld2i0o3w5', '*', true);
DeleteFileMask('c:\program files\youtube adblockie', '*', true);
DeleteFileMask('c:\program files\7vp8v95tb6', '*', true);
DeleteFileMask('c:\program files\88cmi9jcjr', '*', true);
DeleteFileMask('c:\program files\88lmy41ygp', '*', true);
DeleteFileMask('c:\program files\9sef4a3yk4', '*', true);
DeleteFileMask('c:\program files\aodqf4baoa', '*', true);
DeleteFileMask('c:\programdata\appxadsulp', '*', true);
DeleteFileMask('c:\program files\bikaqrss', '*', true);
DeleteFileMask('c:\program files\f1kvgoe6za', '*', true);
DeleteFileMask('c:\program files\explorer', '*', true);
DeleteFileMask('c:\program files\elex-tech', '*', true);
DeleteFileMask('c:\program files\kbzck6vilg', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\kyubey', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\clean', '*', true);
DeleteFileMask('c:\programdata\prefssecure', '*', true);
DeleteFileMask('c:\program files\rmq96jmbph', '*', true);
DeleteFileMask('c:\program files\becleaner', '*', true);
DeleteFileMask('c:\program files\1h1ic1lhlm', '*', true);
DeleteFileMask('c:\programdata\527f455f903l520', '*', true);
DeleteFileMask('c:\program files\common files\services', '*', true);
DeleteFileMask('c:\program files\cnsythuker collector', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\winsnare', '*', true);
DeleteFileMask('c:\program files\winarcher', '*', true);
DeleteFileMask('c:\program files\bilibili', '*', true);
DeleteFileMask('c:\program files\gubed', '*', true);
DeleteFileMask('c:\program files\gub', '*', true);
DeleteFileMask('c:\program files\amulec3', '*', true);
DeleteFileMask('c:\users\домашний\appdata\local\lcoupon', '*', false);
DeleteFileMask('c:\users\домашний\appdata\roaming\searchay', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\forceupdatevof', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\cdmanager', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\vofer', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\vof', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\vaterentphoser', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\cohile', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\clupwugack', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\atoderly', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\reazaskese', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\chkotprewele', '*', true);
DeleteFileMask('c:\users\домашний\appdata\roaming\ckokipy', '*', true);
DeleteFileMask('c:\users\домашний\appdata\local\microsoft\2d8f4b18767968b6bf17123a337eb743', '*', true);
DeleteFileMask('c:\users\домашний\appdata\local\amigo', '*', true);
DeleteFileMask('c:\program files\meqaculthalek', '*', true);
DeleteFileMask('c:\programdata\krb updater utility', '*', true);
DeleteFileMask('c:\program files\zaxar', '*', true);
DeleteFileMask('c:\program files\common files\appdownloads', '*', true);
DeleteFileMask('c:\program files\vk ok adblockie', '*', false);
DeleteFileMask('c:\program files\drivertoolkit', '*', true);
DeleteFileMask('c:\program files\arerloph', '*', false);
DeleteFileMask('"c:\program files\mio', '*', true);
DeleteFileMask('c:\users\домашний\appdata\local\systemdir', '*', true);
DeleteFileMask('c:\programdata\wintools', '*', true);
DeleteFileMask('c:\users\домашний\appdata\local\askpartnernetwork', '*', true);
DeleteFileMask('c:\users\домашний\appdata\local\kometa', '*', true);
DeleteDirectory('c:\program files\1zajeqrexl');
DeleteDirectory('c:\program files\pgv7jt06gq');
DeleteDirectory('c:\program files\tw26j6inx5');
DeleteDirectory('c:\program files\3fzqb3y4g9');
DeleteDirectory('c:\program files\3gp0gn9frd');
DeleteDirectory('c:\program files\3ub3ka2l0i');
DeleteDirectory('c:\program files\477koe2qsk');
DeleteDirectory('c:\program files\avw1ooisdu');
DeleteDirectory('c:\program files\61rbb9d3zl');
DeleteDirectory('c:\program files\2iqrbjqeuk');
DeleteDirectory('c:\program files\md8j6w8e40');
DeleteDirectory('c:\program files\6mqpu5y3li');
DeleteDirectory('c:\program files\7ld2i0o3w5');
DeleteDirectory('c:\program files\youtube adblockie');
DeleteDirectory('c:\program files\7vp8v95tb6');
DeleteDirectory('c:\program files\88cmi9jcjr');
DeleteDirectory('c:\program files\88lmy41ygp');
DeleteDirectory('c:\program files\9sef4a3yk4');
DeleteDirectory('c:\program files\aodqf4baoa');
DeleteDirectory('c:\programdata\appxadsulp');
DeleteDirectory('c:\program files\bikaqrss');
DeleteDirectory('c:\program files\f1kvgoe6za');
DeleteDirectory('c:\program files\explorer');
DeleteDirectory('c:\program files\elex-tech');
DeleteDirectory('c:\program files\kbzck6vilg');
DeleteDirectory('c:\users\домашний\appdata\roaming\kyubey');
DeleteDirectory('c:\users\домашний\appdata\roaming\clean');
DeleteDirectory('c:\programdata\prefssecure');
DeleteDirectory('c:\program files\rmq96jmbph');
DeleteDirectory('c:\program files\becleaner');
DeleteDirectory('c:\program files\1h1ic1lhlm');
DeleteDirectory('c:\programdata\527f455f903l520');
DeleteDirectory('c:\program files\common files\services');
DeleteDirectory('c:\program files\cnsythuker collector');
DeleteDirectory('c:\users\домашний\appdata\roaming\winsnare');
DeleteDirectory('c:\program files\winarcher');
DeleteDirectory('c:\program files\bilibili');
DeleteDirectory('c:\program files\gubed');
DeleteDirectory('c:\program files\gub');
DeleteDirectory('c:\program files\amulec3');
DeleteDirectory('c:\users\домашний\appdata\local\lcoupon');
DeleteDirectory('c:\users\домашний\appdata\roaming\searchay');
DeleteDirectory('c:\users\домашний\appdata\roaming\forceupdatevof');
DeleteDirectory('c:\users\домашний\appdata\roaming\cdmanager');
DeleteDirectory('c:\users\домашний\appdata\roaming\vofer');
DeleteDirectory('c:\users\домашний\appdata\roaming\vof');
DeleteDirectory('c:\users\домашний\appdata\roaming\vaterentphoser');
DeleteDirectory('c:\users\домашний\appdata\roaming\cohile');
DeleteDirectory('c:\users\домашний\appdata\roaming\clupwugack');
DeleteDirectory('c:\users\домашний\appdata\roaming\atoderly');
DeleteDirectory('c:\users\домашний\appdata\roaming\reazaskese');
DeleteDirectory('c:\users\домашний\appdata\roaming\chkotprewele');
DeleteDirectory('c:\users\домашний\appdata\roaming\ckokipy');
DeleteDirectory('c:\users\домашний\appdata\local\microsoft\2d8f4b18767968b6bf17123a337eb743');
DeleteDirectory('c:\users\домашний\appdata\local\amigo');
DeleteDirectory('c:\program files\meqaculthalek');
DeleteDirectory('c:\programdata\krb updater utility');
DeleteDirectory('c:\program files\zaxar');
DeleteDirectory('c:\program files\common files\appdownloads');
DeleteDirectory('c:\program files\vk ok adblockie');
DeleteDirectory('c:\program files\drivertoolkit');
DeleteDirectory('c:\program files\arerloph');
DeleteDirectory('"c:\program files\mio');
DeleteDirectory('c:\users\домашний\appdata\local\systemdir');
DeleteDirectory('c:\programdata\wintools');
DeleteDirectory('c:\users\домашний\appdata\local\askpartnernetwork');
DeleteDirectory('c:\users\домашний\appdata\local\kometa');
DelBHO('{E3605470-291B-44EB-8648-745EE356599A}');
DelBHO('{FF20459C-DA6E-41A7-80BC-8F4FEFD9C575}');
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "527f455f903l520" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "869f818f951l306" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "BikaQ_FetchAndUpgrade_CanBeDel" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "CDManager" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "CDManager2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "chrome5_logon" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Cnsythuker Collector" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "DriverToolkit Autorun" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "ekdkbhhhgpgbbhaljkbeihbagmgmeemp" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "ForceUpdateVOF" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "ForceUpdateVOF2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Jocphckiwert Reports" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "KRB Updater Utility" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Microsoft\D233DAE0FF86AC39F37FA1A3F2FC96F2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Microsoft\D233DAE0FF86AC39F37FA1A3F2FC96F2SB" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Microsoft\Windows\D233DAE0FF86AC39F37FA1A3F2FC96F2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Microsoft\Windows\D233DAE0FF86AC39F37FA1A3F2FC96F2SB" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Milimili" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "nethost task" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "SearchAY" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "SearchAY2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "VOF" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "VOF2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "vofer" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "vofer2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "WinTOOL" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{6DF06257-3133-459F-8CF9-4427C6995772}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{811FADC0-EA37-4CBF-8A47-FC535CBBEE85}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{858023B8-4A15-4AB2-9BAA-630B42A3D42A}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{89FD9708-DB0A-4E89-ADB6-BA2C13578B1E}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{8E6446A9-6191-4EE4-AB7A-3FBAC146439F}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{A92D77BC-D0CE-4278-8BF0-D2E09FCD9A91}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{B7654156-72F2-4392-82E2-F536AB736630}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{CD7D21E1-1567-4250-B9C6-A8A36BC1919F}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{F6127DCC-6B24-4669-A41B-C47663CA4478}" /F', 0, 15000, true);
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Run', 'BestCleaner');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\RunOnce', 'OMEWPRODUCT_FQK2G');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'lcoupon');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '0ZJ9RR5MA1');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'I0NL3SEA18');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'W75CDC5E8X');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'SearchAY');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '8Y8N63R2PP');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'ekdkbhhhgpgbbhaljkbeihbagmgmeemp');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'PPQY7P1KE6');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '75RKLOSC1D');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'YHCBJ7KV1X');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'ForceUpdateVOF');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'CDManager');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'vofer');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'VOF');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'XKSC1JHTRG');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'I9IERDA13Z');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'EMZALUDEZ5');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'WXAZVEYTG8');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'BY4CSEYHZX');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'TKHB8A9A8B');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'ZCUDLKX31J');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'ZD8ZTZ3UZ0');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '7GH9OCCZDC');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'VQKQQI99IW');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'Q144DEQ2Q7');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '1NHCES8GEW');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '5AQK0PNSY6');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '22834UBJAL');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'FMVK8SZFK8');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'TDITHSNGV2');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '0YAEU668U1');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'MW8CKWXPQZ');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'BKEEQAHH47');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '3A4AEPS8JG');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'B5S09XHMSR');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'W2Y7EJ93XK');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'K97VGWURGW');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '5M9PTYVPFZ');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'ISNQRBV76J');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'A5FCE63SFO');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '7BURPJVSLR');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '6FNUQIA4GE');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'YJPFZBOPDZ');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'TYQ3H84DLA');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'SZ1KZT4VN6');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'Y90NA6IXFN');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'AUX84QZ3EA');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'IEBKXOBZQJ');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '2SWKKAFSR5');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'AL6YLS4CD8');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'OE4030PPKT');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'AS28NV66QL');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'P5JLKB8IEX');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '4R674AY868');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'BEKLCZCOUY');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '0BH2IEWRWC');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'N1ONG0E6VE');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '1WS43GO8U6');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '9C0LS45ND6');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '9511ZJ85QR');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'ZWA4UMFIYZ');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '3T1VB3O59Z');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'WJPRRPDLQU');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'FIJ9PQKNVD');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'RX0FWHGI48');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'RKGA5HE8FF');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '3THKG59E1S');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '4XNAJ9V78C');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'DPGIHG0YMY');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'M38XY3LDMU');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'D90QRRJBZH');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'PBDY4KYF5I');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '86LZM0FINL');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'QBCS49WZ0S');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'I6TJDQO3MY');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{17FEF462-DE3D-11E6-96EE-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{DA7AAA88-0D53-11E7-9E24-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{94998030-0D55-11E7-8B10-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{F512BB10-0D58-11E7-989C-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{A65771C6-0D5A-11E7-9DEF-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{DC5AEFE2-0D5C-11E7-9512-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{7261736E-0E31-11E7-9182-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks', '{8A132438-0E32-11E7-9F40-64006A5CFC23}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run', 'D233DAE0FF86AC39F37FA1A3F2FC96F2SB');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\amigo', 'command');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\Archer\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\bilibili\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\Grerzuied\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\GubedZL\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\GubZL\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\MSCFG_SVR\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\WinSAPSvc\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\WinSnare\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\WPDTSrv\Parameters', 'ServiceDll');
BC_ImportALL;
ExecuteSysClean;
BC_DeleteSvc('clean');
BC_DeleteSvc('Kyubey');
BC_DeleteSvc('Telephone');
BC_DeleteSvc('aroductpeo');
ExecuteWizard('SCU', 2, 2, true);
BC_Activate;
RebootWindows(true);
end.
Компьютер перезагрузится.