- not-a-virus:RemoteAdmin.Win32.WinVNC.gc -> c:\windows\system32\svсhost.exe
- Trojan-PSW.Win32.VKont.bjc -> c:\windows\update.tray-7-0\svchost.exe ( DrWEB: BackDoor.VkBase.47, BitDefender: Generic.Malware.SFPYVdPkTkWkg.CB8A86CD, AVAST4: Win32:Delf-QBF [Trj] )
- Trojan-Spy.BAT.ConnSteal.h -> c:\windows\ip.exe
- Trojan.Win32.Agent.dvrh -> c:\recycler\s-1-5-21-1214440339-583907252-1417001333-500\dc67.tmp ( DrWEB: Trojan.Packed.20771, BitDefender: Trojan.Generic.3899553, NOD32: Win32/Spy.Shiz.NAO trojan, AVAST4: Win32:Malware-gen )
- Trojan.Win32.Agent.odst -> c:\windows\system32\dgnoxrd.dll
- Trojan.Win32.Scar.eibh -> c:\sys\userinit.exe ( DrWEB: Trojan.DownLoader4.15953, BitDefender: Trojan.Generic.KDV.292717 )