- HEUR:Trojan.Win32.Autoit.gen -> c:\programdata\setup\update.exe ( BitDefender: Gen:Trojan.Heur.AutoIT.2, AVAST4: Win32:Malware-gen )
- HEUR:Trojan.Win32.Miner.gen -> c:\programdata\windowstask\microsofthost.exe ( AVAST4: Win64:Malware-gen )
- not-a-virus:RemoteAdmin.Win32.RDPWrap.h -> c:\program files\rdp wrapper\rdpwrap.dll