- HEUR:Trojan.Script.Generic -> c:\program files\i chaya\telochka\zeloboika_karen.vbs ( AVAST4: VBS:Bicololo-DL [Trj] )
- HEUR:Trojan.Win32.Generic -> c:\progra~3\mozilla\gytrxsd.dll ( BitDefender: Gen:Variant.Kazy.162062, AVAST4: Win32:Kryptik-LKL [Trj] )
- HEUR:Trojan.Win32.Generic -> \update\update\updater.exe ( BitDefender: Gen:Variant.Zusy.43545, AVAST4: Win32:Trojan-gen )
- HEUR:Trojan.Win32.Generic -> \update\update\svchost.exe ( AVAST4: Win32:Trojan-gen )
- not-a-virus:RiskTool.VBS.BitCoinMiner.a -> c:\documents and settings\buh6\application data\flash\update.vbs ( AVAST4: Unix:Malware-gen )
- not-a-virus:RiskTool.Win32.BitCoinMiner.cmf -> c:\users\shaio\appdata\roaming\flash\cgminer.exe ( BitDefender: Gen:Variant.Application.Graftor.74420 )
- Trojan.BAT.Qhost.sz -> c:\program files\chetireh_sten\temni\otosri_malenkuu_kakasku. vbs
- Trojan.BAT.Qhost.sz -> c:\program files\chetireh_sten\temni\litsa_rot.vbs ( AVAST4: VBS:Bicololo-DK [Trj] )
- Trojan-Dropper.Win32.Baky.c -> c:\docume~1\alluse~1\applic~1\mozilla\ememcdf.dll ( BitDefender: Gen:Variant.Dropper.84, AVAST4: Win32:Dropper-MQL [Drp] )
- Trojan-Dropper.Win32.Baky.c -> c:\docume~1\alluse~1\applic~1\mozilla\kklczcm.dll ( BitDefender: Trojan.GenericKDZ.15381, AVAST4: Win32:Dropper-MQL [Drp] )
- Trojan-Dropper.Win32.Baky.c -> c:\progra~2\mozilla\vuguvef.dll ( BitDefender: Gen:Variant.Dropper.84, AVAST4: Win32:Dropper-MQL [Drp] )
- Trojan.Win32.Agentb.zaw -> c:\progra~2\mozilla\rdeltje.exe ( BitDefender: Gen:Variant.Dropper.81, AVAST4: Win32:Malware-gen )
- Trojan.Win32.Agentb.zfr -> c:\docume~1\alluse~1\applic~1\mozilla\kojnfpg.exe ( BitDefender: Gen:Variant.Dropper.81, AVAST4: Win32:Dofoil-CV [Trj] )
- Trojan.Win32.BitMin.l -> c:\documents and settings\1\application data\java\update\download\cache\jsheded.exe
- Trojan.Win32.Cidox.afaq -> c:\users\mr.gizmous\documents\application data\explorer.exe
- Trojan.Win32.Qhost.afpk -> c:\program files\i chaya\telochka\taktakanton.vbs
- Trojan.Win32.ShipUp.iwa -> c:\progra~3\mozilla\dupacuj.exe ( BitDefender: Trojan.GenericKDZ.13228, AVAST4: Win32:Kryptik-LKL [Trj] )