Код:
begin
QuarantineFile('C:\WINDOWS\system32\CCL.dll','');
DelBHO('{b608cc98-54de-4775-96c9-097de398500c}');
DelBHO('{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}');
QuarantineFile('C:\Program Files\WinSent Innocenti\winnosent.exe','');
QuarantineFile('C:\Documents and Settings\timofeev\Local Settings\Application Data\wincheck\wincheck.exe','');
QuarantineFile('C:\Documents and Settings\timofeev\Application Data\Browsers\exe.xoferif.bat','');
QuarantineFile('C:\Documents and Settings\timofeev\Application Data\Browsers\exe.rehcnual.bat','');
QuarantineFile('C:\Documents and Settings\timofeev\Application Data\Browsers\exe.erolpxei.bat','');
StopService('pfnfd_1_10_0_8');
StopService('qrnfd_1_10_0_8');
StopService('qrnfd_1_10_0_9');
DeleteService('qrnfd_1_10_0_9');
DeleteService('qrnfd_1_10_0_8');
DeleteService('pfnfd_1_10_0_8');
DeleteService('sogrMed');
StopService('UpdatingServiceMed');
StopService('servervo');
StopService('medozuxy');
StopService('IHProtect Service');
DeleteService('qrsvc_1.10.0.9');
DeleteService('qrsvc_1.10.0.8');
DeleteService('pfsvc_1.10.0.8');
DeleteService('PCSUService');
DeleteService('BlockAndSurf');
DeleteService('UpdatingServiceMed');
DeleteService('servervo');
DeleteService('medozuxy');
DeleteService('IHProtect Service');
TerminateProcessByName('c:\documents and settings\timofeev\application data\vopackage\vosrv.exe');
QuarantineFile('c:\documents and settings\timofeev\application data\vopackage\vosrv.exe','');
TerminateProcessByName('c:\program files\xtab\protectservice.exe');
QuarantineFile('c:\program files\xtab\protectservice.exe','');
TerminateProcessByName('c:\windows\microsoft\updatingservicemed\media player znewversiondownloader.exe');
QuarantineFile('c:\windows\microsoft\updatingservicemed\media player znewversiondownloader.exe','');
TerminateProcessByName('c:\documents and settings\timofeev\local settings\application data\03000200-1429522907-0500-0006-000700080009\insd95.tmp');
QuarantineFile('c:\documents and settings\timofeev\local settings\application data\03000200-1429522907-0500-0006-000700080009\insd95.tmp','');
TerminateProcessByName('c:\program files\xtab\hpnotify.exe');
QuarantineFile('c:\program files\xtab\hpnotify.exe','');
TerminateProcessByName('c:\program files\xtab\cmdshell.exe');
QuarantineFile('c:\program files\xtab\cmdshell.exe','');
DeleteFile('c:\program files\xtab\cmdshell.exe','32');
DeleteFile('c:\program files\xtab\hpnotify.exe','32');
DeleteFile('c:\documents and settings\timofeev\local settings\application data\03000200-1429522907-0500-0006-000700080009\insd95.tmp','32');
DeleteFile('c:\windows\microsoft\updatingservicemed\media player znewversiondownloader.exe','32');
DeleteFile('c:\program files\xtab\protectservice.exe','32');
DeleteFile('c:\documents and settings\timofeev\application data\vopackage\vosrv.exe','32');
DeleteFile('C:\WINDOWS\system32\drivers\pfnfd_1_10_0_8.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\qrnfd_1_10_0_8.sys','32');
DeleteFile('C:\WINDOWS\system32\drivers\qrnfd_1_10_0_9.sys','32');
DeleteFile('C:\Program Files\XTab\ProtectService.exe','32');
DeleteFile('C:\Documents and Settings\timofeev\Local Settings\Application Data\03000200-1429522907-0500-0006-000700080009\insd95.tmp','32');
DeleteFile('C:\Documents and Settings\timofeev\Application Data\VOPackage\VOsrv.exe','32');
DeleteFile('C:\WINDOWS\Microsoft\UpdatingServiceMed\Media Player ZNewVersionDownloader.exe','32');
DeleteFile('C:\Program Files\ver2BlockAndSurf\b5sH186.exe','32');
DeleteFile('C:\Program Files\PC Speed Up\PCSUService.exe','32');
DeleteFile('C:\Program Files\PhraseFinder_1.10.0.8\Service\pfsvc.exe','32');
DeleteFile('C:\Program Files\QuickRef_1.10.0.8\Service\qrsvc.exe','32');
DeleteFile('C:\Program Files\QuickRef_1.10.0.9\Service\qrsvc.exe','32');
DeleteFile('C:\WINDOWS\Microsoft\sogrMed\Media Player ZUpdater.exe','32');
DeleteFile('C:\Documents and Settings\timofeev\Application Data\Browsers\exe.erolpxei.bat','32');
DeleteFile('C:\Documents and Settings\timofeev\Application Data\Browsers\exe.rehcnual.bat','32');
DeleteFile('C:\Documents and Settings\timofeev\Application Data\Browsers\exe.xoferif.bat','32');
DeleteFile('C:\Documents and Settings\timofeev\Local Settings\Application Data\wincheck\wincheck.exe','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP1.job','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP2.job','32');
DeleteFile('C:\WINDOWS\Tasks\APSnotifierPP3.job','32');
DeleteFile('C:\WINDOWS\Tasks\PC SpeedUp Service Deactivator.job','32');
DeleteFile('C:\WINDOWS\Tasks\SmartWeb Upgrade Trigger Task.job','32');
DeleteFile('C:\WINDOWS\system32\CCL.dll','32');
ExecuteSysClean;
ExecuteRepair(15);
ExecuteRepair(22);
RebootWindows(true);
end.