begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Windows\SysWOW64\unsecapp.exe','');
QuarantineFile('C:\Programdata\ReaItekHD\taskhostw.exe','');
QuarantineFile('C:\Programdata\Microsoft\qvhvg\script.bat','');
QuarantineFile('C:\Programdata\ReaItekHD\taskhost.exe','');
DeleteFile('C:\Programdata\ReaItekHD\taskhost.exe','64');
DeleteSchedulerTask('Microsoft\Windows\SysFilesB\qvhvg');
DeleteFile('C:\Programdata\Microsoft\qvhvg\script.bat','64');
DeleteSchedulerTask('Microsoft\Windows\SysFilesB\RecoveryHosts');
DeleteFile('C:\Programdata\ReaItekHD\taskhostw.exe','64');
DeleteSchedulerTask('Microsoft\Windows\SysFilesB\RecoveryTask');
DeleteFile('C:\Windows\SysWOW64\unsecapp.exe','64');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\DataBase');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\OfficeCheck');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\OnlogonCheck');
BC_Activate;
ExecuteSysClean;
ExecuteWizard('SCU', 2, 3, true);
BC_ImportALL;
RebootWindows(true);
end.