- HEUR:Trojan.Win32.Generic -> c:usersuser_11appdatalocalesrtionrpjgycmm.dll ( BitDefender: Gen:Variant.Symmi.47565 )
- HEUR:Trojan.Win32.Generic -> c:usersuser_11appdatalocalodicsckrsaxcr.dll ( BitDefender: Gen:Variant.Symmi.47565 )
- not-a-virus:HEUR:Downloader.Win32.AdLoad.gen -> c:usersuserappdatalocalhostinstaller3935175497_mon ster.exe
- not-a-virus:HEUR:PSWTool.Win32.NetPass.gen -> c:windowssystem32cpldapuwebbrowserpassview.exe ( DrWEB: Tool.PassView.1771 )
- not-a-virus:RiskTool.NSIS.ExtInstall.a -> c:usersmishkaappdatalocalmicrosoftextensionsextset up.exe ( DrWEB: archive: )
- not-a-virus:WebToolbar.Win32.Neobar.p -> c:usersuserappdataroamingimagecropresizeimageedima geed.exe
- Trojan-Ransom.NSIS.Onion.lzq -> c:users111appdatalocalupxmedia52a000b7.exe
- Trojan-Ransom.NSIS.Onion.lzq -> c:usersuser_11appdatalocalodics*119b296.exe
- Trojan-Ransom.NSIS.Onion.lzq -> quarantinecusersuser_11appdatalocaltemp*119b296.ex e.xbad
- Trojan-Ransom.Win32.Shade.koh -> c:programdatawindowscsrss.exe
- Trojan-Ransom.Win32.Shade.koh -> c:programdatawindowscsrss.exe
- Trojan-Ransom.Win32.Shade.xi -> quarantinecusersвсе пользователиwindowscsrss.exe