- Backdoor.Win32.Androm.akur -> c:\users\пользователь\ijbzztly.exe
- HEUR:Trojan.Win32.Generic -> c:\users\пользователь\appdata\roaming\xorue\omib.e xe ( BitDefender: Gen:Variant.Zusy.60152, AVAST4: Win32:Trustezeb-J [Cryp] )
- Trojan-Ransom.Win32.Foreign.gwht -> c:\docume~1\user\locals~1\temp\guutgqsofuadmxguhti .bfg