- Backdoor.Win32.Shiz.fsjd -> c:\users\a4f7~1\appdata\local\micros~1\windows\tem por~1\content.ie5\rkil297j\e9e6c9~1.exe
- Backdoor.Win32.Shiz.fsjj -> c:\users\de29~1\appdata\local\micros~1\windows\tem por~1\content.ie5\k3rx3g1k\93e268~1.exe
- not-a-virus:RemoteAdmin.Win32.RAdmin.jh -> c:\windows\system32\config\svchost.exe ( DrWEB: Program.RemoteAdmin, BitDefender: Trojan.Generic.5995439 )
- Trojan-Dropper.Win32.Cidox.yrv -> c:\users\rich boy shawty\appdata\roaming\txt.exe ( DrWEB: Trojan.Mayachok.1, BitDefender: Gen:Variant.Graftor.40620 )
- Trojan-Dropper.Win32.Injector.fqls -> c:\systemhost\24fc2ae375e.exe
- Trojan.Win32.Buzus.lyzm -> c:\users\rich boy shawty\appdata\roaming\ybmiy\gyid.exe ( DrWEB: Trojan.PWS.Panda.2401 )