- Backdoor.Win32.Androm.ainr -> c:\progra~3\locals~1\temp\ccqoemqf.com
- HEUR:Trojan.Win32.Generic -> c:\progra~3\mozilla\zxvmcsj.exe ( BitDefender: Trojan.GenericKDZ.17474, AVAST4: Win32:ShipUp-U [Trj] )
- Trojan.Win32.ShipUp.iwz -> c:\progra~3\mozilla\ybidexm.dll ( BitDefender: Gen:Variant.Symmi.23538, AVAST4: Win32:ShipUp-U [Trj] )