- HEUR:Trojan.WinLNK.StartPage.gena -> c:userspublicdesktopgoogle chrome.lnk
- HEUR:Trojan.WinLNK.StartPage.gena -> c:usersfffappdataroamingmicrosoftinternet explorerquick launchuser pinnedtaskbargoogle chrome.lnk
- HEUR:Trojan.WinLNK.StartPage.gena -> c:userspublicdesktopopera.lnk
- HEUR:Trojan.WinLNK.StartPage.gena -> c:usersfffappdataroamingmicrosoftinternet explorerquick launchuser pinnedtaskbaropera.lnk
- not-a-virus:AdWare.Python.PBot.d -> c:usersalappdataroamingsearchaylaunchall.py
- not-a-virus:AdWare.Win32.Esprot.alq -> c:windowssystem32wbiosrvp.dll
- not-a-virus:RiskTool.Win64.BitCoinMiner.ccp -> c:windowsfontslms.exe
- Trojan-Downloader.MSIL.Agent.ipt -> c:usersадминистраторappdataroamingidentitiesappser vices.exe ( DrWEB: Trojan.DownLoader12.17629, BitDefender: Gen:Variant.Kazy.549401, AVAST4: Win32:GenMaliciousA-BC [Trj] )
- Trojan-Dropper.Win32.Injector.smry -> c:windowstempservicis.exe
- Trojan.MSIL.StartPage.bq -> c:usersадминистраторappdataroamingidentitiessmfilt er.exe
- Trojan.Win32.Agent.nfabkt -> 14513876.exe ( BitDefender: Gen:Trojan.Heur.GZ.emW@bOw8NMl )
- Trojan.Win32.Loskad.bso -> c:usersадминистраторappdataroamingmicrosoftmsi.exe ( BitDefender: Gen:Variant.Barys.414 )
- Trojan.Win64.BitMiner.dx -> c:windowsfontswinlogon.exe
- Trojan.Win64.Miner.fd -> c:programdatamicrosoftsvch0st.exe
- UDS:DangerousObject.Multi.Generic -> c:windowsfontsjavaw.exe