begin
ExecuteFile('net.exe', 'stop tcpip /y', 0, 15000, true);
if not IsWOW64
then
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
end;
QuarantineFile('C:\Windows\SysWOW64\unsecapp.exe','');
QuarantineFile('C:\Programdata\ReaItekHD\taskhost.exe','');
QuarantineFile('C:\Programdata\ReaItekHD\taskhostw.exe','');
DeleteFile('C:\Programdata\ReaItekHD\taskhostw.exe','64');
DeleteFile('C:\Programdata\ReaItekHD\taskhost.exe','64');
DeleteFile('C:\Windows\SysWOW64\unsecapp.exe','64');
DeleteSchedulerTask('Microsoft\Windows\RecoveryManagerX\RecoveryTask');
DeleteSchedulerTask('Microsoft\Windows\RecoveryManagerX\xiwdu');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\ExpressCheckUP');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\Filesystem');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\OnlogonCheck');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\SystemSupport');
DeleteSchedulerTask('Microsoft\Windows\WindowsBackup\WinlogonCheck');
BC_Activate;
ExecuteSysClean;
ExecuteWizard('SCU', 2, 3, true);
BC_ImportALL;
RebootWindows(true);
end.