Troj/Dloader-AR downloads a premium rate dialler application to the file sek0.exe and executes the file. The dialler application is detected by Sophos Anti-Virus as
Dial/Dialer-U.
An adware downloader will also be downloaded to the file inst.exe and then executed. This adware downloader will be detected by Sophos Anti-Virus as
Troj/Justfi-A.