Код:
begin
QuarantineFile('c:\pcfiXtraynjynm.lnk','');
QuarantineFile('C:\Users\Светлана\AppData\Roaming\UPUpdata\cessrs.exe','');
QuarantineFile('D:\Documents\systemfile.exe','');
DeleteFile('D:\Documents\systemfile.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','SystemClose');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','cessrs.exe -start');
DeleteFile('C:\Users\Светлана\AppData\Roaming\UPUpdata\cessrs.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','LightGate');
DeleteFile('C:\ProgramData\LightGate.exe','32');
DeleteFile('c:\programdata\homepage.exe','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','HomePageHelper');
DeleteFile('c:\pcfiXtraynjynm.lnk','32');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','PCFIXTRAYUHQPJ');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\RunOnce','360safeuninst_1f0fb7c2d13cc0c07ff2ca40747bc03e');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','EGwatcher');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','msiql');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','taskhost');
RegKeyParamDel('HKEY_CURRENT_USER','Software\Microsoft\Windows\CurrentVersion\Run','Pritc');
DeleteFile('C:\ProgramData\WindowsMsg\675D131108D4FD145B0BFBC68A3E018A.dll','32');
DeleteFile('C:\Windows\TEMP\is-S6J26.tmp\print.exe','32');
DeleteFile('c:\programdata\msiql.exe','32');
DeleteFile('C:\Users\Светлана\AppData\Roaming\e8bce8d7187977c9d0633d143c72b72b\EGupdate.exe','32');
DeleteFile('C:\Users\B215~1\AppData\Local\Temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_remove360.bat','32');
DeleteFile('C:\ProgramData\service.exe','32');
DeleteFile('C:\ProgramData\Windows Update\svrupg.exe','32');
DeleteFile('C:\Windows\system32\Tasks\runTask','64');
DeleteFile('C:\Users\B215~1\AppData\Local\Temp\Updater.exe','32');
DeleteFile('C:\Windows\system32\Tasks\{FD428731-E5DA-45F2-9A75-57847C763AD8}','64');
ExecuteSysClean;
RebootWindows(true);
end.