Код:
begin
QuarantineFile('C:\Users\User\AppData\Local\YYgc.exe', '');
QuarantineFile('C:\Users\User\NiipuC.exe', '');
QuarantineFile('C:\Windows\Clean\CleanTemp.vbs', '');
QuarantineFile('C:\Windows\SysWOW64\cuigyfny\fngwbyqa.exe', '');
DeleteFile('C:\Users\User\AppData\Local\YYgc.exe', '32');
DeleteFile('C:\Users\User\NiipuC.exe', '32');
DeleteFile('C:\Windows\system32\drivers\pgewucxq.sys', '32');
DeleteFile('C:\Windows\SysWOW64\cuigyfny\fngwbyqa.exe', '32');
ExecuteFile('schtasks.exe', '/delete /TN "{935C01C0-7055-4910-8293-F706BE809464}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "{9E6A9851-BA3E-48D2-84AE-3C8378A4C2AF}" /F', 0, 15000, true);
ExecuteFile('schtasks.exe', '/delete /TN "hlatomernetkolc" /F', 0, 15000, true);
DeleteService('cuigyfny');
DeleteService('pgewucxq');
DeleteFileMask('c:\windows\syswow64\cuigyfny', '*', true);
DeleteDirectory('c:\windows\syswow64\cuigyfny');
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(true);
end.
Компьютер перезагрузится.