Код:
begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('c:\313232393132323\313232393132323.exe');
TerminateProcessByName('c:\313232393132323\m313232393132323.exe');
TerminateProcessByName('c:\newlifeborn\newlifeborn.exe');
TerminateProcessByName('c:\programdata\eguxljwadb\ultracpuccheccker.exe');
TerminateProcessByName('c:\streamer\streamer.exe');
TerminateProcessByName('c:\streamerdata\hvcvbvcbvcb\superstart.exe');
TerminateProcessByName('c:\streamerdata\streamer.exe');
QuarantineFile('c:\313232393132323\313232393132323.exe', '');
QuarantineFile('C:\313232393132323\313232393132323.txt', '');
QuarantineFile('c:\313232393132323\m313232393132323.exe', '');
QuarantineFile('C:\happynewborn\ultracpuccheccker.exe', '');
QuarantineFile('c:\newlifeborn\newlifeborn.exe', '');
QuarantineFile('C:\newlifeborn\newlifeborn.txt', '');
QuarantineFile('c:\programdata\eguxljwadb\ultracpuccheccker.exe', '');
QuarantineFile('C:\ProgramData\new ProgramData.lnk', '');
QuarantineFile('C:\streamer\stream.txt', '');
QuarantineFile('c:\streamer\streamer.exe', '');
QuarantineFile('C:\streamerdata\dsaldasd.zip', '');
QuarantineFile('C:\streamerdata\hjjhjhkhkj.zip', '');
QuarantineFile('c:\streamerdata\hvcvbvcbvcb\superstart.exe', '');
QuarantineFile('c:\streamerdata\streamer.exe', '');
QuarantineFile('C:\streamerdata\supergamezer.zip', '');
QuarantineFile('C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\aJzYkUZWlX.url', '');
QuarantineFile('C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superstart.exe.vbs', '');
QuarantineFile('C:\Users\Master\AppData\Roaming\wGBUnkP.exe', '');
DeleteFile('c:\313232393132323\313232393132323.exe', '');
DeleteFile('C:\313232393132323\313232393132323.exe', '32');
DeleteFile('C:\313232393132323\313232393132323.exe', '64');
DeleteFile('C:\313232393132323\313232393132323.txt', '32');
DeleteFile('C:\313232393132323\313232393132323.txt', '64');
DeleteFile('c:\313232393132323\m313232393132323.exe', '');
DeleteFile('C:\happynewborn\ultracpuccheccker.exe', '32');
DeleteFile('C:\happynewborn\ultracpuccheccker.exe', '64');
DeleteFile('c:\newlifeborn\newlifeborn.exe', '');
DeleteFile('C:\newlifeborn\newlifeborn.exe', '32');
DeleteFile('C:\newlifeborn\newlifeborn.exe', '64');
DeleteFile('C:\newlifeborn\newlifeborn.txt', '32');
DeleteFile('C:\newlifeborn\newlifeborn.txt', '64');
DeleteFile('c:\programdata\eguxljwadb\ultracpuccheccker.exe', '');
DeleteFile('C:\ProgramData\new ProgramData.lnk');
DeleteFile('C:\streamer\stream.txt', '32');
DeleteFile('C:\streamer\stream.txt', '64');
DeleteFile('c:\streamer\streamer.exe', '');
DeleteFile('C:\streamer\streamer.exe', '32');
DeleteFile('C:\streamer\streamer.exe', '64');
DeleteFile('C:\streamerdata\dsaldasd.zip', '32');
DeleteFile('C:\streamerdata\dsaldasd.zip', '64');
DeleteFile('C:\streamerdata\hjjhjhkhkj.zip', '32');
DeleteFile('C:\streamerdata\hjjhjhkhkj.zip', '64');
DeleteFile('c:\streamerdata\hvcvbvcbvcb\superstart.exe', '');
DeleteFile('c:\streamerdata\streamer.exe', '');
DeleteFile('C:\streamerdata\streamer.exe', '32');
DeleteFile('C:\streamerdata\streamer.exe', '64');
DeleteFile('C:\streamerdata\supergamezer.zip', '32');
DeleteFile('C:\streamerdata\supergamezer.zip', '64');
DeleteFile('C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\aJzYkUZWlX.url', '64');
DeleteFile('C:\Users\Master\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superstart.exe.vbs', '64');
DeleteFile('C:\Users\Master\AppData\Roaming\wGBUnkP.exe', '64');
DeleteFileMask('c:\313232393132323', '*', true);
DeleteFileMask('c:\happynewborn', '*', true);
DeleteFileMask('c:\newlifeborn', '*', true);
DeleteFileMask('c:\programdata\eguxljwadb', '*', true);
DeleteFileMask('c:\streamer', '*', true);
DeleteFileMask('c:\streamerdata', '*', true);
DeleteDirectory('c:\313232393132323');
DeleteDirectory('c:\happynewborn');
DeleteDirectory('c:\newlifeborn');
DeleteDirectory('c:\programdata\eguxljwadb');
DeleteDirectory('c:\streamer');
DeleteDirectory('c:\streamerdata');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '313232393132323', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', '313232393132323', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'asuperloaver', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'asuperloaver', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'flaterem', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'flaterem', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'newlife', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'newlife', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'newyoerkishere', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'newyoerkishere', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'radsuperloaver', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'radsuperloaver', '64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'strdat', 'x64');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'superloaver', '32');
RegKeyParamDel('HKEY_CURRENT_USER', 'Software\Microsoft\Windows\CurrentVersion\Run', 'superloaver', '64');
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1001', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1004', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1201', 3);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '1804', 1);
RegKeyIntParamWrite('HKCU', 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\', '2201', 3);
DeleteSchedulerTask('KMSAutoNet');
DeleteSchedulerTask('Updates\wGBUnkP');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
RebootWindows(true);
end.
Компьютер перезагрузится.