Код:
begin
QuarantineFile('C:\Windows\System32\ihctrl32.dll', '');
QuarantineFile('C:\ProgramData\RegisterObject\RegisterObject.exe', '');
DeleteFile('C:\Windows\Tasks\DriverToolkit Autorun.job', '64');
DeleteFile('C:\Windows\SysWOW64\SurfShield.exe', '32');
DeleteFile('C:\Windows\System32\ihctrl32.dll', '32');
DeleteFile('C:\ProgramData\RegisterObject\RegisterObject.exe', '32');
DeleteFile('C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk');
DeleteService('surfshieldsrv');
DeleteFileMask('c:\programdata\registerobject', '*', true);
DeleteDirectory('c:\programdata\registerobject');
ExecuteFile('schtasks.exe', '/delete /TN "Driver Booster Scheduler" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Driver Booster SkipUAC (User)" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "DriverToolkit Autorun" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "hit5newsnetfasd" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "Microsoft\Windows\Media Center\RegisterObject" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{8D3FC721-5F88-4111-AC8C-81DB769FFCE8}" /F', 0, 15000, true);
RegKeyParamDel('HKEY_LOCAL_MACHINE', 'SYSTEM\CurrentControlSet\Services\ihctrl32\Parameters', 'ServiceDll');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\RunOnce-', 'Application Restart #1');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.