- Backdoor.Win32.Shiz.dodd -> c:\docume~1\f9c2~1\067185~1.exe
- Backdoor.Win32.Shiz.dpin -> c:\users\keo\063450~1.exe ( DrWEB: Trojan.PWS.Ibank.526 )
- Backdoor.Win32.Shiz.dpiz -> c:\windows\apppatch\plmkqi.exe ( DrWEB: Trojan.PWS.Ibank.456, AVAST4: Win32:MalOb-KC [Cryp] )
- not-a-virus:Monitor.Win32.KGBSpy.qh -> c:\windows\system32\mpk.dll ( DrWEB: Program.MPK.3 )
- Trojan-Spy.Win32.Carberp.gjz -> c:\documents and settings\danilina\start menu\programs\startup\a3dl9ih7w84.exe ( DrWEB: Trojan.Carberp.29, AVAST4: Win32:Dropper-gen [Drp] )