| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows | 133176 |
| N/A | |
| f045e0c3fcb37a7ca248d94b7fc5d7d8 | |
| a4b9ea75cb7ee74c78226a6ffd295eb903b6aa2c | |
| 1fe89802501fe633588f4eec1b1e015a44617fb1d4c4fe17c6bea2eb424a9beb | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 6.0 | |
| N/A | |
| 8192 | |
| 1.0 | |
| Win32 EXE | |
| 130 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| N/A | |
| 4.0 | |
| 0x14b0 | |
| Source: |

| AVG | VBCrypt.DUM |
| AhnLab-V3 | Win-Trojan/Xema.133176 |
| AntiVir | Worm/Dorkbot.Q |
| Antiy-AVL | Worm/Win32.Ngrbot |
| Avast | Win32:VB-AABH [Trj] |
| BitDefender | Gen:Variant.Barys.425 |
| ByteHero | Trojan.Win32.Heur.Gen |
| CAT-QuickHeal | Worm.Ngrbot.fuv |
| Comodo | TrojWare.Win32.Trojan.Agent.Gen |
| DrWeb | Worm.Siggen.5430 |
| Emsisoft | Worm.Win32.Ngrbot!IK |
| F-Secure | Gen:Variant.Barys.425 |
| Fortinet | W32/Refroso.DZP!tr |
| GData | Gen:Variant.Barys.425 |
| Ikarus | Worm.Win32.Ngrbot |
| Jiangmin | Worm/Ngrbot.as |
| K7AntiVirus | EmailWorm |
| Kaspersky | Worm.Win32.Ngrbot.fuv |
| McAfee | W32/IRCbot.gen.bg |
| McAfee-GW-Edition | W32/IRCbot.gen.bg |
| Microsoft | VirTool:Win32/VBInject.gen!IG |
| NOD32 | Win32/Dorkbot.B |
| Norman | W32/Ircbot.dam |
| Rising | Trojan.Win32.Generic.129A8BF7 |
| SUPERAntiSpyware | Trojan.Agent/Gen-Obfuscated |
| TheHacker | Trojan/Dorkbot.b |
| TrendMicro-HouseCall | TROJ_GEN.USHXK08 |
| VBA32 | Worm.Ngrbot.fuv |
| VIPRE | Trojan.Win32.Generic.pak!cobra |
| VirusBuster | Worm.Ngrbot!a5P1865iHsY |
| eSafe | Win32.Refroso.Agea |