| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed | 261651 |
| N/A | |
| 27c5d90155fae3f39d145de2e996ff43 | |
| 871119a31d98e7e948b945ea212146e7d0617bf1 | |
| ac683963b891415c9cf43fa4811e446d6b59d59cc289477e53818ae054a86674 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| 256 kB | |
| Intel 386 or later, and compatibles | |
| Win32 | |
| 225280 | |
| 4.0 | |
| 0x98190 | |
| 0x0017 | |
| 8.0 | |
| N/A | |
| 397312 | |
| 28672 | |
| N/A | |
| 3.2.8.1 | |
| application/octet-stream | |
| Unicode | |
| English (British) | |
| 3.2.8.1 | |
| Win32 EXE | |
| ., ., ., . | |
| Windows GUI | |
| Unknown | |
| 0.0 | |
| (none) | |
| 4.0 | |
| Source: |

| AVG | Worm/Autoit.ATK |
| AhnLab-V3 | Win32/Hybris.worm.261572 |
| AntiVir | TR/Crypt.CFI.Gen |
| Authentium | W32/Worm.MWD |
| Avast | Win32:AutoRun-SF |
| Avast5 | Win32:AutoRun-SF |
| BitDefender | Worm.Generic.53596 |
| CAT-QuickHeal | Worm.AutoIt.r |
| ClamAV | Trojan.KillAV-235 |
| Comodo | Worm.Win32.AutoIt.~AN |
| DrWeb | Win32.HLLW.Texmer.49 |
| F-Prot | W32/Worm.MWD |
| F-Secure | Worm:W32/AutoIt.gen!A |
| Fortinet | W32/Agent.ALS!tr |
| GData | Worm.Generic.53596 |
| Ikarus | Worm.Win32.AutoIt |
| Jiangmin | Worm/AutoIt.gdn |
| Kaspersky | Worm.Win32.AutoIt.r |
| McAfee-GW-Edition | Heuristic.BehavesLike.Win32.Packed.C |
| Microsoft | Worm:Win32/Yuner.A |
| NOD32 | Win32/Yuner.B |
| Norman | W32/Suspicious_Gen.DXPZ |
| PCTools | Worm.Agent.EOVV |
| Panda | W32/Sohanat.GW.worm |
| Prevx | High Risk Worm |
| Rising | Worm.Win32.AutoIt.bz |
| Sophos | W32/Yuner-A |
| Sunbelt | Trojan.Win32.Generic!BT |
| Symantec | W32.Badday.A |
| TheHacker | Trojan/Dropper.gen |
| TrendMicro | WORM_AUTORUN.BWK |
| VBA32 | Worm.Win32.AutoRun.cby |
| ViRobot | Worm.Win32.AutoIt.261440 |
| VirusBuster | Worm.Yuner.A |
| a-squared | Worm.Win32.AutoIt!IK |
| eSafe | Win32.TRCrypt.Cfi |
| eTrust-Vet | Win32/WPad_i |
| nProtect | Trojan/W32.Agent_Packed.261651 |