The detected objects: NaverAdminApi.exe, Registry Victor Schedule.job NaverAdminApi.exe -> http://naver.com (the popular korean portal site) Registry Victor Schedule.job > http://www.registryvictor.com (this software is equal to registry winner.) I think that due to heuristics scanning. You will need to exclude following files. The results on Virustotal.com: C:\Documents and Settings\user\Local Settings\Temp\NVC\NaverAdminApi.exe (Spyware.OnlineGames) https://www.virustot...sis/1335233679/ C:\WINDOWS\Tasks\Registry Victor Schedule.job (Rogue.RegistryVictor) https://www.virustot...sis/1335233647/