Код:
begin
TerminateProcessByName('c:\program files (x86)\gamesrs\gupdater.exe');
TerminateProcessByName('c:\users\1\appdata\local\dockossnapshot\dockossnapshot.exe');
TerminateProcessByName('c:\users\1\appdata\local\dockfreewaremetafile\dockfreewaremetafile.exe');
StopService('{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64');
StopService('{31a2f244-4a67-4367-b593-df9513aea360}w64');
QuarantineFile('C:\Program Files (x86)\HighD-V11\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-3.exe','');
QuarantineFile('C:\Program Files (x86)\HighD-V11\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-11.exe','');
QuarantineFile('C:\Program Files (x86)\HighD-V11\b50faed7-06a1-40cc-8e53-76642b6c67e4.exe','');
QuarantineFile('C:\ProgramData\costmin\51d15c58d70ab.dll','');
QuarantineFile('C:\Users\1\AppData\Local\WinnerDM\wdm.exe','');
QuarantineFile('C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe','');
QuarantineFile('C:\WINDOWS\system32\drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\{31a2f244-4a67-4367-b593-df9513aea360}w64.sys','');
QuarantineFile('c:\program files (x86)\gamesrs\gupdater.exe','');
QuarantineFile('c:\users\1\appdata\local\dockossnapshot\dockossnapshot.exe','');
QuarantineFile('c:\users\1\appdata\local\dockfreewaremetafile\dockfreewaremetafile.exe','');
DeleteFile('C:\Users\1\AppData\Roaming\newnext.me\nengine.dll');
DeleteFile('c:\users\1\appdata\local\dockfreewaremetafile\dockfreewaremetafile.exe','32');
DeleteFile('c:\users\1\appdata\local\dockossnapshot\dockossnapshot.exe','32');
DeleteFile('c:\program files (x86)\gamesrs\gupdater.exe','32');
DeleteFile('C:\WINDOWS\system32\drivers\{31a2f244-4a67-4367-b593-df9513aea360}w64.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64.sys','32');
DeleteFile('C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe','32');
DeleteFile('C:\Users\1\AppData\Local\WinnerDM\wdm.exe','32');
DeleteFile('C:\ProgramData\costmin\51d15c58d70ab.dll','32');
DeleteFile('C:\WINDOWS\Tasks\4401a575-7d8d-47df-b718-ae207fb27823-4.job','64');
DeleteFile('C:\WINDOWS\Tasks\575beae5-c07f-42f6-ab5b-834a14acc091.job','64');
DeleteFile('C:\Program Files (x86)\HighD-V11\b50faed7-06a1-40cc-8e53-76642b6c67e4.exe','32');
DeleteFile('C:\WINDOWS\Tasks\b50faed7-06a1-40cc-8e53-76642b6c67e4.job','64');
DeleteFile('C:\WINDOWS\Tasks\Digital Sites.job','64');
DeleteFile('C:\Program Files (x86)\HighD-V11\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-11.exe','32');
DeleteFile('C:\WINDOWS\Tasks\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-11.job','64');
DeleteFile('C:\Program Files (x86)\HighD-V11\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-3.exe','32');
DeleteFile('C:\WINDOWS\Tasks\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-3.job','64');
DeleteFile('C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job','64');
DeleteFile('C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job','64');
DeleteFile('C:\WINDOWS\Tasks\temp_b50faed7-06a1-40cc-8e53-76642b6c67e4.job','64');
DeleteFile('C:\WINDOWS\system32\Tasks\4401a575-7d8d-47df-b718-ae207fb27823-4','64');
DeleteFile('C:\WINDOWS\system32\Tasks\575beae5-c07f-42f6-ab5b-834a14acc091','64');
DeleteFile('C:\WINDOWS\system32\Tasks\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-11','64');
DeleteFile('C:\WINDOWS\system32\Tasks\fd72f77a-d2e4-4cd7-b9b5-5c5f23be6aa3-3','64');
DeleteFile('C:\WINDOWS\system32\Tasks\globalUpdateUpdateTaskMachineCore','64');
DeleteFile('C:\WINDOWS\system32\Tasks\globalUpdateUpdateTaskMachineUA','64');
DeleteFile('C:\WINDOWS\system32\Tasks\PC Performer Logon Scan','64');
DeleteFile('C:\WINDOWS\system32\Tasks\PC Performer Scheduled Scan','64');
DelBHO('{4BC4CBE1-2827-2107-E4B3-2DA00A936E70}');
DelBHO('{8984B388-A5BB-4DF7-B274-77B879E179DB}');
RegKeyStrParamWrite('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings', 'ProxyServer', '');
RegKeyParamWrite('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings', 'ProxyEnable', 'REG_DWORD', '0');
DeleteService('{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64');
DeleteService('{31a2f244-4a67-4367-b593-df9513aea360}w64');
DeleteService('globalUpdatem');
DeleteService('globalUpdate');
DeleteFileMask('C:\Program Files (x86)\HighD-V11','*',true);
DeleteFileMask('C:\ProgramData\costmin','*',true);
DeleteFileMask('C:\Program Files (x86)\globalUpdate','*',true);
DeleteFileMask('c:\users\1\appdata\local\dockossnapshot','*',true);
DeleteFileMask('c:\users\1\appdata\local\dockfreewaremetafile','*',true);
DeleteFileMask('C:\Users\1\AppData\Roaming\newnext.me','*',true);
DeleteFileMask('C:\Users\1\AppData\Local\WinnerDM','*',true);
DeleteDirectory('C:\Program Files (x86)\HighD-V11');
DeleteDirectory('C:\ProgramData\costmin');
DeleteDirectory('C:\Program Files (x86)\globalUpdate');
DeleteDirectory('c:\users\1\appdata\local\dockossnapshot');
DeleteDirectory('c:\users\1\appdata\local\dockfreewaremetafile');
DeleteDirectory('C:\Users\1\AppData\Roaming\newnext.me');
DeleteDirectory('C:\Users\1\AppData\Local\WinnerDM');
ExecuteSysClean;
ExecuteRepair(3);
ExecuteRepair(4);
ExecuteWizard('SCU',2,2,true);
RebootWindows(true);
end.
Компьютер перезагрузится.