- not-a-virus:AdWare.Win32.ConvertAd.bgw -> d:docume~1adminlocals~1tempnsw1250.tmp ( DrWEB: Adware.ClickMeIn.4309, AVAST4: Win32:Adware-gen [Adw] )
- not-a-virus:Downloader.Win32.MediaGet.emb -> c:documents and settingsадминистраторlocal settingsapplication datamediaplaymediaplay.exe ( DrWEB: Program.Mediaget.135 )
- not-a-virus:HEUR:AdWare.Win32.Generic -> d:documents and settingsall usersapplication data5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15plugincontainer.exe ( DrWEB: Trojan.Yontoo.1757 )
- not-a-virus:RiskTool.Win64.BitCoinMiner.aaz -> c:usersskyversusappdataroamingwafflectfhostctfhost .exe ( DrWEB: Tool.BtcMine.667 )
- Trojan-Downloader.JS.Agent.hku -> invoice_dgtalp.js
- Trojan-Ransom.Win32.Shade.vp -> c:documents and settingsall usersapplication datadriverscsrss.exe ( DrWEB: Trojan.DownLoader16.31036, BitDefender: Gen:Trojan.Heur.2mKfX4T81vac, AVAST4: Win32:Malware-gen )
- Trojan-Ransom.Win32.Shade.wc -> c:documents and settingsall usersapplication datawindowscsrss.exe ( DrWEB: Trojan.Encoder.858, AVAST4: Win32:Dropper-gen [Drp] )
- Trojan.Win32.Crypt.eag -> c:documents and settingsadminlocal settingsapplication dataummediaurlglnotifier54.dll ( AVAST4: Win32:Malware-gen )
- Trojan.Win32.Fsysna.clxb -> c:programdatawindowscsrss.exe ( DrWEB: Trojan.Inject2.10202, AVAST4: Win32:Dropper-gen [Drp] )