- Backdoor.Win32.Cidox.aixb -> \d7df215f5d87d72f0ec9e5a8be032b1d288a257b.exe._b01 697d20bcbb037ff48085a46ec9483008310b2 ( BitDefender: Gen:Variant.Kazy.408, AVAST4: Win32:Vundo-ABA [Trj] )
- HEUR:Hoax.Win32.ArchSMS.gen -> \freeswfconverter-installer.exe._97ea97682386b58a78db4c0f3d74639f302 74efb ( BitDefender: Gen:Adware.SMSHoax.4 )
- HEUR:Trojan.Win32.Generic -> \zoo\winsyn.exe._8ae5ec63207964eefeeadf15eda7b35e7 c8e7d88 ( DrWEB: Trojan.BtcMine.25, BitDefender: Gen:Variant.Symmi.14049 )
- Trojan.Win32.Patched.pj -> c:\windows\system32\rpcss.dll
- Trojan.Win32.Patched.pj -> c:\windows\system32\rpcss.dll
- Trojan.Win32.Patched.pj -> c:\windows\system32\rpcss.dll
- Trojan.Win32.ShipUp.bpy -> c:\progra~3\mozilla\fbqxyym.exe ( DrWEB: Trojan.Redirect.140, BitDefender: Trojan.Generic.KDZ.12554, AVAST4: Win32:Agent-ARAC [Trj] )
- Trojan.Win32.ShipUp.bpy -> \zoo\aprlwta.exe._1a1f8fb5935a41bbe9c9363488fc687f d2ea630f ( DrWEB: Trojan.Redirect.140, BitDefender: Trojan.Generic.KDZ.12554, AVAST4: Win32:Agent-ARAC [Trj] )
- Trojan.Win32.ShipUp.bpz -> c:\progra~3\mozilla\vmwszgk.dll ( DrWEB: Trojan.Packed.24096, BitDefender: Trojan.Generic.KDV.922559, AVAST4: Win32:Agent-ARAC [Trj] )
- Trojan.Win32.ShipUp.bpz -> \zoo\wyqrcmc.dll._c4664969c5986127b3dbb7d61050a7f5 b70be465 ( DrWEB: Trojan.Packed.24096 )
- Trojan.Win32.ShipUp.bqf -> c:\progra~3\mozilla\latsbjn.dll ( DrWEB: Trojan.Redirect.140, BitDefender: Gen:Variant.Kazy.160016 )
- Trojan.Win32.ShipUp.bqg -> c:\progra~2\mozilla\lfzuucm.dll
- Trojan.Win64.Patched.bj -> c:\windows\system32\rpcss.dll