- HEUR:Trojan.Win32.Miner.gen -> c:\programdata\windowstask\appmodule.exe ( AVAST4: Win64:Malware-gen )
- Trojan.BAT.Agent.bhf -> c:\programdata\windows\install.bat ( AVAST4: Other:Malware-gen [Trj] )
- Trojan.BAT.Zapchast.dx -> c:\programdata\install\del.bat
- Trojan.VBS.Starter.mj -> c:\programdata\windows\install.vbs