- HEUR:Trojan.Win32.Miner.gen -> \.identityservice\accountscontrolhost.exe
- not-a-virus:VHO:AdWare.Win64.Agent.mqk -> c:\programdata\kolnixo\jay-dox.dll
- Trojan.BAT.Agent.bdc -> \.identityservice\runnercontrol2.bat
- Trojan.BAT.Agent.bde -> \.identityservice\runnewday2.bat
- Trojan.BAT.Miner.ha -> \.identityservice\runnercontrol.bat
- Trojan-Ransom.Win32.Crusis.to -> c:\users\охрямкина ею\appdata\roaming\payload.exe ( BitDefender: Gen:Trojan.Heur.FU.fmW@aaAaGKm, AVAST4: Win32:Malware-gen )
- Trojan.VBS.Agent.apv -> \.identityservice\runnercontrol.vbs
- Trojan.VBS.Agent.apv -> \.identityservice\runnewday.vbs
- Trojan.VBS.Agent.apw -> \.identityservice\runnercontrol2.vbs
- Trojan.VBS.Agent.apx -> \.identityservice\runnewday2.vbs