Код:
begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('c:\programdata\securityessentials\securityhealthtray.exe');
TerminateProcessByName('c:\Вильямсбург\dwm.exe');
QuarantineFile('c:\programdata\securityessentials\securityhealthtray.exe', '');
QuarantineFile('C:\Recovery\OEM\Log\svchost.exe', '');
QuarantineFile('C:\SWSETUP\SP79095\Version\opera.exe', '');
QuarantineFile('C:\Wowangames\Hermes 2 War of the Gods CE RUS\Assets\Resources\Common\WmiPrvSE.exe', '');
QuarantineFile('c:\Вильямсбург\dwm.exe', '');
QuarantineFile('C:\Марина\csrss.exe', '');
QuarantineFileF('c:\programdata\securityessentials', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.ps1, *.js*, *.tmp*', false, '', 0 , 0);
DeleteFile('c:\programdata\securityessentials\securityhealthtray.exe', '');
DeleteFile('C:\ProgramData\SecurityEssentials\SecurityHealthTray.exe', '64');
DeleteFile('C:\Recovery\OEM\Log\svchost.exe', '32');
DeleteFile('C:\Recovery\OEM\Log\svchost.exe', '64');
DeleteFile('C:\SWSETUP\SP79095\Version\opera.exe', '32');
DeleteFile('C:\SWSETUP\SP79095\Version\opera.exe', '64');
DeleteFile('C:\Wowangames\Hermes 2 War of the Gods CE RUS\Assets\Resources\Common\WmiPrvSE.exe', '32');
DeleteFile('C:\Wowangames\Hermes 2 War of the Gods CE RUS\Assets\Resources\Common\WmiPrvSE.exe', '64');
DeleteFile('c:\Вильямсбург\dwm.exe', '');
DeleteFile('C:\Вильямсбург\dwm.exe', '32');
DeleteFile('C:\Вильямсбург\dwm.exe', '64');
DeleteFile('C:\Марина\csrss.exe', '32');
DeleteFile('C:\Марина\csrss.exe', '64');
DeleteFileMask('c:\programdata\securityessentials', '*', true);
DeleteFileMask('c:\swsetup', '*', true);
DeleteDirectory('c:\programdata\securityessentials');
DeleteDirectory('c:\swsetup');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'csrss', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'csrss', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'dwm', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'dwm', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'opera', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'opera', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'svchost', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'svchost', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'SystemSettings', 'x32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'SystemSettings', 'x64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'WmiPrvSE', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'WmiPrvSE', '64');
DeleteSchedulerTask('csrss');
DeleteSchedulerTask('dwm');
DeleteSchedulerTask('Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA)');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\PC Health Analysis Install');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\PC Health Analysis Restart');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\PC Health Analysis');
DeleteSchedulerTask('Hewlett-Packard\HP Support Assistant\Product Configurator');
DeleteSchedulerTask('HPAudioSwitch');
DeleteSchedulerTask('HPJumpStartProvider');
DeleteSchedulerTask('Microsoft\Windows\UpdateAssistant\UpdateAssistant');
DeleteSchedulerTask('Microsoft\Windows\UpdateAssistant\UpdateAssistantAllUsersRun');
DeleteSchedulerTask('Microsoft\Windows\UpdateAssistant\UpdateAssistantCalendarRun');
DeleteSchedulerTask('Microsoft\Windows\UpdateAssistant\UpdateAssistantWakeupRun');
DeleteSchedulerTask('OneDrive Standalone Update Task-S-1-5-21-2622264850-502117334-3278164138-500');
DeleteSchedulerTask('opera');
DeleteSchedulerTask('svchost');
DeleteSchedulerTask('SystemSettings');
DeleteSchedulerTask('Windows\x86_microsoft-windows-fsrm-common_31bf3256ad364e35_10.0.18372.1_none_3fed101f25aae892\MicrosoftSecurityEssentials');
DeleteSchedulerTask('WmiPrvSE');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.