- HEUR:Trojan.WinLNK.StartPage.genc -> c:usersdeple_000appdataroamingmicrosoftinternet explorerquick launchlаunсh internet еxplorer brоwsеr.lnk
- HEUR:Trojan.WinLNK.StartPage.genc -> c:usersdeple_000appdataroamingmicrosoftinternet explorerquick launchyаndеx.lnk
- not-a-virus:AdWare.Win32.ConvertAd.azl -> c:usersuserappdatalocal802aee00-1442400614-81e3-3f3f-bcee7b14a2a1snsk3eb6.tmp ( AVAST4: Win32:Rootkit-gen [Rtk] )
- not-a-virus:AdWare.Win32.ConvertAd.wmw -> c:program files (x86)802aee00-1442278153-81e3-3f3f-bcee7b14a2a1knsc97e9.tmp ( AVAST4: Win32:Dropper-gen [Drp] )
- not-a-virus:AdWare.Win32.ConvertAd.wtt -> c:program files (x86)802aee00-1442364564-81e3-3f3f-bcee7b14a2a1knsbada2.tmp ( AVAST4: Win32:Dropper-gen [Drp] )
- not-a-virus:AdWare.Win32.PriceGong.a -> c:usersuserappdatalocalsmartweb__u.exe ( DrWEB: archive:, AVAST4: Win32:Malware-gen )
- not-a-virus:WebToolbar.Win32.Agent.bhv -> c:program files (x86)torrent searchbasementextensionupdaterservice.exe
- Trojan-Ransom.Win32.Shade.ut -> c:documents and settingsaleksandrlocal settingstemporary internet filescontent.ie5f21ka5kqc__users_a90b~1_appdata_lo cal_temp_akt_-21092015-powerpoint[1].exe ( AVAST4: Win32:Dropper-gen [Drp] )
- Trojan.Win32.BitMin.ms -> c:usersadminappdataroamingsearchindexerdesktopsear chservice.exe ( BitDefender: Gen:Variant.Zusy.74837 )