- Backdoor.Win32.Zorka.a -> c:usersuserappdatalocaltemp~tmp8278388068473362444 .tmp ( BitDefender: Gen:Variant.Kazy.307373 )
- not-a-virus:RiskTool.Win64.BitCoinMiner.ap -> c:windowsexplorer_1.exe ( BitDefender: Application.Bitcoinminer.DK )
- Worm.Win32.Ngrbot.ykm -> c:users1appdataroaminglw_mcservice.exe ( BitDefender: Gen:Variant.Kazy.328131 )