Код:
begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
TerminateProcessByName('C:\Program Files\WProxy\WinProxy\WinProxy.exe');
TerminateProcessByName('c:\users\joker\appdata\local\controld\ctrld.exe');
StopService('ctrld');
QuarantineFile('c:\users\joker\appdata\local\controld\ctrld.exe', '');
QuarantineFile('C:\Users\joker\AppData\Local\Programs\ivanovsasha224\195858b3ad.msi', '');
QuarantineFileF('c:\programdata\portsmouth-powers', '*', true, '', 0 , 0);
QuarantineFileF('c:\users\joker\appdata\local\chatter interdependency', '*', true, '', 0 , 0);
QuarantineFileF('c:\users\joker\appdata\local\feed blue', '*', true, '', 0 , 0);
QuarantineFileF('c:\users\joker\appdata\local\programs\ivanovsasha224', '*', true, '', 0 , 0);
DeleteFile('C:\ProgramData\portsmouth-powers\bin.exe', '64');
DeleteFile('C:\Users\joker\AppData\Local\Chatter Interdependency\Chatter Interdependency.exe', '64');
DeleteFile('c:\users\joker\appdata\local\controld\ctrld.exe', '');
DeleteFile('C:\Users\joker\AppData\Local\Controld\ctrld.exe', '64');
DeleteFile('C:\Users\joker\AppData\Local\Feed Blue\Feed Blue.exe', '64');
DeleteFile('C:\Users\joker\AppData\Local\Pbrowserupd\Pbrowserupd.exe', '64');
DeleteFile('C:\Users\joker\AppData\Local\Programs\ivanovsasha224\195858b3ad.msi', '64');
DeleteFile('C:\Users\joker\AppData\Roaming\sysinfotool\sitool.exe', '64');
DeleteService('ctrld');
DeleteService('HuaweiHiSuiteService64.exe');
DeleteFileMask('C:\Program Files\WProxy', '*', true);
DeleteFileMask('c:\programdata\portsmouth-powers', '*', true);
DeleteFileMask('c:\users\joker\appdata\local\chatter interdependency', '*', true);
DeleteFileMask('c:\users\joker\appdata\local\controld', '*', true);
DeleteFileMask('c:\users\joker\appdata\local\feed blue', '*', true);
DeleteFileMask('c:\users\joker\appdata\local\pbrowserupd', '*', true);
DeleteFileMask('c:\users\joker\appdata\local\programs\ivanovsasha224', '*', true);
DeleteFileMask('c:\users\joker\appdata\roaming\sysinfotool', '*', false);
DeleteDirectory('"c:\windows\system32\msiexec.exe" /i "c:\users\joker\appdata\local\programs\ivanovsasha224');
DeleteDirectory('C:\Program Files\WProxy');
DeleteDirectory('c:\programdata\portsmouth-powers');
DeleteDirectory('c:\users\joker\appdata\local\chatter interdependency');
DeleteDirectory('c:\users\joker\appdata\local\controld');
DeleteDirectory('c:\users\joker\appdata\local\feed blue');
DeleteDirectory('c:\users\joker\appdata\local\pbrowserupd');
DeleteDirectory('c:\users\joker\appdata\local\programs\ivanovsasha224');
DeleteDirectory('c:\users\joker\appdata\roaming\sysinfotool');
DeleteSchedulerTask('\WProxy\WinProxy');
DeleteSchedulerTask('AdLock Update Task-S-1-5-21-3704478285-959501821-475972896-1001');
DeleteSchedulerTask('Avast Software\Avast Emergency Update');
DeleteSchedulerTask('Chatter Interdependency');
DeleteSchedulerTask('Feed Blue');
DeleteSchedulerTask('Microsoft\Windows\SMB\UninstallSMB1ClientTask');
DeleteSchedulerTask('Microsoft\Windows\SMB\UninstallSMB1ServerTask');
DeleteSchedulerTask('Microsoft\Windows\Windows Error Reporting\TerminalSysInfo');
DeleteSchedulerTask('Pbrowserupd');
DeleteSchedulerTask('prevention-poor');
CreateQurantineArchive(GetAVZDirectory + 'quarantine.zip');
ExecuteSysClean;
ExecuteRepair(21);
ExecuteFile('ipconfig.exe', '/flushdns', 0, 15000, true);
ExecuteWizard('SCU', 2, 2, true);
RebootWindows(false);
end.
Компьютер перезагрузится.