Код:
begin
QuarantineFile('C:\Users\w10na\AppData\Local\background_fault\bf.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\background_fault\libcef.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\background_fault\chrome_elf.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\background_fault\libglesv2.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\background_fault\libegl.dll', '');
QuarantineFile('c:\users\w10na\appdata\roaming\winsapsvc\winsap.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\glory\glory.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\snare\Snare.dll', '');
QuarantineFile('C:\Users\w10na\AppData\Local\terana\terana.dll', '');
QuarantineFile('C:\Program Files (x86)\Cllathgiy Update\local64spl.dll', '');
QuarantineFile('C:\Program Files (x86)\YoutubeAdBlockU\0vjPplD.dll', '');
QuarantineFile('C:\Program Files (x86)\Solescoohut\nerzepy.exe', '');
QuarantineFile('C:\Program Files (x86)\Clunaryanerhiy\hogock.exe', '');
QuarantineFile('C:\Program Files (x86)\Solescoohut\plergcult.exe', '');
QuarantineFile('C:\Program Files (x86)\Clunaryanerhiy\anerwt.exe', '');
DeleteFile('C:\WINDOWS\Tasks\E3605470-291B-44EB-8648-745EE356599A.job', '64');
DeleteFile('C:\Users\w10na\AppData\Local\background_fault\bf.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\background_fault\libcef.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\background_fault\chrome_elf.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\background_fault\libglesv2.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\background_fault\libegl.dll', '32');
DeleteFile('c:\users\w10na\appdata\roaming\winsapsvc\winsap.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\glory\glory.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\snare\Snare.dll', '32');
DeleteFile('C:\Users\w10na\AppData\Local\terana\terana.dll', '32');
DeleteFile('\iexplore.exe', '32');
DeleteFile('C:\Program Files (x86)\Cllathgiy Update\local64spl.dll', '32');
DeleteFile('C:\Program Files (x86)\YoutubeAdBlockU\0vjPplD.dll', '32');
DeleteFile('C:\Program Files (x86)\Solescoohut\nerzepy.exe', '32');
DeleteFile('C:\Program Files (x86)\Clunaryanerhiy\hogock.exe', '32');
DeleteFile('C:\Program Files (x86)\Solescoohut\plergcult.exe', '32');
DeleteFile('C:\Program Files (x86)\Clunaryanerhiy\anerwt.exe', '32');
DeleteFileMask('c:\users\w10na\appdata\local\background_fault', '*', true);
DeleteFileMask('c:\users\w10na\appdata\local\glory', '*', true);
DeleteFileMask('c:\users\w10na\appdata\local\snare', '*', true);
DeleteFileMask('c:\users\w10na\appdata\local\terana', '*', true);
DeleteFileMask('c:\program files (x86)\cllathgiy update', '*', true);
DeleteFileMask('c:\program files (x86)\youtubeadblocku', '*', true);
DeleteFileMask('c:\program files (x86)\solescoohut', '*', true);
DeleteFileMask('c:\program files (x86)\clunaryanerhiy', '*', true);
DeleteFileMask('"c:\program files (x86)\mio', '*', true);
DeleteDirectory('c:\users\w10na\appdata\local\background_fault');
DeleteDirectory('c:\users\w10na\appdata\local\glory');
DeleteDirectory('c:\users\w10na\appdata\local\snare');
DeleteDirectory('c:\users\w10na\appdata\local\terana');
DeleteDirectory('c:\program files (x86)\cllathgiy update');
DeleteDirectory('c:\program files (x86)\youtubeadblocku');
DeleteDirectory('c:\program files (x86)\solescoohut');
DeleteDirectory('c:\program files (x86)\clunaryanerhiy');
DeleteDirectory('"c:\program files (x86)\mio');
ExecuteFile('schtasks.exe', '/delete /TN "Cllathgiy Update" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "E3605470-291B-44EB-8648-745EE356599A" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "E3605470-291B-44EB-8648-745EE356599A2" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Girgestuzicult Client" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Grihish" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Milimili" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Stermaent Log" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Wiroiedckajcult Verfier" /F', 0, 15000, true);
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'background_fault');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\glory\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\WinSAPSvc\Parameters', 'ServiceDll');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteRepair(9);
ExecuteRepair(4);
ExecuteRepair(3);
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.