- Trojan.Win32.Miner.bde -> c:\users\computer\appdata\roaming\microsoft\window s\helper.exe
- Trojan.Win32.Miner.bde -> c:\users\computer\appdata\roaming\microsoft\window s\helper.exe