Код:
begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
ClearQuarantineEx(true);
SetServiceStart('F06DEFF2-5B9C-490D-910F-35D3A91196222', 4);
StopService('F06DEFF2-5B9C-490D-910F-35D3A91196222');
QuarantineFile('C:\Windows\winstart.bat', '');
QuarantineFileF('C:\ProgramData\107z234z642l860\', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.js*, *.tmp*', true, '', 0, 0);
QuarantineFile('C:\Program Files (x86)\Gptykajetain Controls\local64spl.dll', '');
QuarantineFileF('C:\Program Files (x86)\Gptykajetain Controls\', '*.exe, *.dll, *.sys, *.bat, *.vbs, *.js*, *.tmp*', true, '', 0, 0);
QuarantineFile('C:\Windows\system32\wsaudio.dll', '');
QuarantineFile('C:\Windows\system32\ihctrl32.dll', '');
QuarantineFile('C:\Windows\adobe flash\adobe.exe', '');
DeleteFile('C:\Windows\winstart.bat', '32');
DeleteFile('C:\Program Files (x86)\Gptykajetain Controls\local64spl.dll', '32');
DeleteFile('C:\Program Files (x86)\Settings Manager\systemk\x64\systemkmgrc2.cfg', '32');
DeleteFile('C:\Windows\adobe flash\adobe.exe', '32');
DeleteFile('C:\Windows\system32\ihctrl32.dll', '32');
DeleteFile('C:\Windows\System32\wsaudio.dll', '32');
DeleteService('F06DEFF2-5B9C-490D-910F-35D3A91196222');
DeleteFileMask('C:\ProgramData\107z234z642l860\', '*', true);
DeleteFileMask('C:\Program Files (x86)\Gptykajetain Controls\', '*', true);
DeleteDirectory('C:\ProgramData\107z234z642l860\');
DeleteDirectory('C:\Program Files (x86)\Gptykajetain Controls\');
DelBHO('{8dcb7100-df86-4384-8842-8fa844297b3f}');
DelBHO('{D5FEC983-01DB-414a-9456-AF95AC9ED7B5}');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VKSaver', 'command');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run', 'IME');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\wsaudio\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\ihctrl32\Parameters', 'ServiceDll');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteRepair(3);
ExecuteRepair(4);
ExecuteWizard('SCU', 2, 3, true);
RebootWindows(true);
end.