- HEUR:Trojan.Win32.Generic -> c:docume~1alluse~1locals~1tempcccbva.cmd ( DrWEB: BackDoor.Andromeda.178, BitDefender: Trojan.Generic.9494255, AVAST4: Win32:Malware-gen )
- not-a-virus:NetTool.Win32.Tor.d -> c:usersd899~1appdatalocaltemponion.exe ( DrWEB: Tool.Tor.1 )
- not-a-virus:RiskTool.Win32.BitCoinMiner.lkl -> c:usersd899~1appdatalocaltempsvchost.exe ( BitDefender: Gen:Variant.Application.Graftor.120316 )
- Trojan-PSW.Win32.Tepfer.svxi -> c:documents and settingsдиректор гпшцapplication dataeqycpeezmuc.exe ( BitDefender: Trojan.Encpk.Gen.4, AVAST4: Sf:Bancos-D [Trj] )
- Trojan.Win32.Agent.adijc -> c:users1f43~1appdatalocaltemp~tmp82390153461576735 70.tmp ( BitDefender: Gen:Variant.Zusy.72980, AVAST4: Win32:Malware-gen )
- Trojan.Win32.DNSChanger.xli -> at1.job
- Trojan.Win32.DNSChanger.xlj -> at1.job
- Trojan.Win32.DNSChanger.xlj -> at2.job