- HEUR:Trojan.Win32.Generic -> c:usersuserappdataroaminglsass.exe ( BitDefender: Gen:Variant.Zusy.74012, AVAST4: Win32:Ransom-ATZ [Trj] )
- not-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.gen -> c:usersдмтрийappdataroamingcpuminersgminersgminer. exe
- not-a-virus:RiskTool.Win32.BitCoinMiner.moo -> c:windowscore.exe ( DrWEB: Trojan.Starter.2934, BitDefender: Gen:Variant.Symmi.40454 )
- not-a-virus:RiskTool.Win32.SquareNet.dip -> c:program files (x86)baidubaidu.exe ( DrWEB: Trojan.Siggen6.18286 )
- not-a-virus:WebToolbar.Win32.CroRi.fte -> c:usersuserappdataroamingkpgbbj262uktwl.exe
- not-a-virus:WebToolbar.Win32.CroRi.glx -> c:usersuserappdataroaminge6vts9dxue6.exe
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd-1.2v20.076c64da53-b139-49e8-a37a-ae13b1fb86da-4.exe ( BitDefender: Gen:Application.Heur.nv1@kS6pnulO )
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)cinemaplus-4.5vv02.06869fb6be-31cc-4b91-92b4-31de145066df-6.exe ( BitDefender: Gen:Application.Heur.oz1@kyM8mSci )
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd-1.2v20.076c64da53-b139-49e8-a37a-ae13b1fb86da-5.exe ( BitDefender: Gen:Application.Heur.ev1@kytdcnmO )
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd_5.1v08.07b7672d65-0301-436a-804f-3ab3fc98c9af-6.exe
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)cinemaplus-4.5vv03.06b7316054-d839-4eee-b46d-6b62477bdeed-6.exe
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd-1.2v20.076c64da53-b139-49e8-a37a-ae13b1fb86da-1-6.exe ( BitDefender: Gen:Application.Heur.yz1@kKBZTjfi )
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd-1.2v20.076c64da53-b139-49e8-a37a-ae13b1fb86da-6.exe ( BitDefender: Gen:Application.Heur.mz1@kSqv9Lki )
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd_video 3.4v15.06a8fa42c5-3280-4f8c-8c85-15b5ce706c30-6.exe ( BitDefender: Gen:Application.Heur.rz1@k8uf78di )
- not-a-virus:WebToolbar.Win32.CrossRider.amqa -> c:program files (x86)plushd-1.2v20.076c64da53-b139-49e8-a37a-ae13b1fb86da-3.exe ( BitDefender: Gen:Application.Heur.uv1@k8@jhDkO )
- not-a-virus:WebToolbar.Win32.Neobar.a -> c:program files (x86)vk downloaderieefc9ppytag0o.dll
- not-a-virus:WebToolbar.Win32.Neobar.a -> c:program files (x86)vk downloaderieefinterfaces32.dll
- Trojan-Ransom.Win32.Scatter.a -> c:windowssystem32fontcorefontcore.pif ( AVAST4: Win32:Malware-gen )
- Trojan-Spy.Win32.AdLoad.a -> c:program files (x86)vk downloaderieefus6klugees.exe