- HEUR:Trojan-Downloader.Win32.Generic -> c:windowstemp906.exe
- not-a-virus:AdWare.BAT.Clicker.af -> c:iexplore.bat
- not-a-virus:AdWare.BAT.Clicker.af -> c:firefox.bat
- not-a-virus:AdWare.BAT.Clicker.af -> c:iexplore.bat
- not-a-virus:AdWare.Win32.Agent.ihry -> c:documents and settingsall usersapplication dataappmgr6.49.3253971plugin.exe
- not-a-virus:AdWare.Win32.DealPly.brj -> c:usersuserappdataroamingdigita~1update~1update~1. exe
- not-a-virus:AdWare.Win32.Eorezo.fkz -> c:program filesgmsd_ru_235gmsd_ru_235.exe ( DrWEB: Adware.Downware.10601, BitDefender: Adware.Eorezo.BZ )
- not-a-virus:AdWare.Win32.MMag.ri -> c:usersmarinaappdataroamingnewsi_650s_inst.exe ( DrWEB: Trojan.FakeAlert.48112 )
- not-a-virus:AdWare.Win32.PriceGong.a -> c:documents and settingslocalservicelocal settingsapplication datasmartwebsmartwebhelper.exe ( DrWEB: Adware.Shopper.845 )
- not-a-virus:AdWare.Win32.PriceGong.a -> c:documents and settingsnaillocal settingsapplication datasmartwebsmartwebhelper.exe ( DrWEB: Adware.Shopper.845 )
- not-a-virus:AdWare.Win32.PriceGong.a -> c:documents and settingslocalservicelocal settingsapplication datasmartwebsmartwebapp.exe ( DrWEB: Adware.Shopper.845 )
- not-a-virus:AdWare.Win32.PriceGong.a -> c:usersадминистраторappdatalocalsmartwebsmartwebap p.exe ( DrWEB: Adware.Shopper.845 )
- not-a-virus:AdWare.Win32.PriceGong.a -> c:usersадминистраторappdatalocalsmartwebswhk.dll ( DrWEB: Adware.Shopper.845 )
- not-a-virus:AdWare.Win32.SubTab.b -> c:program filesxtabsuptab.dll
- not-a-virus:AdWare.Win32.WProtManager.bb -> c:programdatawindowsmangerprotectprotectwindowsman ager.exe
- not-a-virus:HEUR:Adware.NSIS.ConvertAd.heur -> c:windowstempnsl1e1.tmp
- not-a-virus:HEUR:Adware.NSIS.ConvertAd.heur -> c:windowstempnsf1b3.tmp
- Trojan-Ransom.Win32.Shade.pk -> c:documents and settingsall usersapplication datawindowscsrss.exe ( DrWEB: Trojan.Encoder.858, AVAST4: Win32:Malware-gen )
- Trojan.Win32.Bitminer.it -> c:usersmarinaappdataroamingcppredistx86.exe ( DrWEB: Trojan.KillFiles.21663, BitDefender: Trojan.GenericKD.1975949 )
- Trojan.Win32.Fsysna.bwly -> c:usersmarinaappdatalocaltempcb8b.tmp ( AVAST4: Win32:GenMaliciousA-VFM [Trj] )
- Trojan.Win32.Inject.uthh -> c:usersmarinaappdatalocaltemptemp2436257176.exe
- Trojan.Win32.Kesels.a -> c:usersmarinaappdataroamingssleas.exe