- Trojan-Ransom.Win32.Digitala.bmo -> c:\documents and settings\лёха\local settings\application data\{03e16a7b-09e6-499a-ee2e-164e3e1263cd}\.exe ( DrWEB: Trojan.Siggen2.25214, BitDefender: Trojan.Generic.KDV.173765, AVAST4: Win32:Malware-gen )
- Trojan.Win32.Jorik.Shiz.iq -> c:\windows\apppatch\corxzyb.dat
- Trojan.Win32.Qhost.riz -> \mguestsetup.exe