| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows | 114688 |
| N/A | |
| 309390d20fadf5a36af39843241ae253 | |
| bd368480f123678a94fbce38eca06287698362aa | |
| 44c4cb8847630313d68ee303c2396631c084301de893fed2f64bf172bd1ecff9 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 7.10 | |
| N/A | |
| 65536 | |
| 0.0 | |
| Win32 EXE | |
| 112 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| 40960 | |
| 4.0 | |
| 0x6d27 | |
| Source: |

| AVG | SHeur2.WDJ |
| AhnLab-V3 | Win-Trojan/Xema.variant |
| AntiVir | TR/Spy.Agent.RA.193 |
| Antiy-AVL | Trojan/Win32.Agent.gen |
| Authentium | W32/Trojan2.HBKM |
| Avast | Win32:Agent-ADXU |
| Avast5 | Win32:Agent-ADXU |
| BitDefender | Trojan.Generic.1559517 |
| CAT-QuickHeal | TrojanSpy.Agent.atpq |
| ClamAV | Trojan.Spy-62181 |
| Comodo | TrojWare.Win32.Trojan.Koblu.~S |
| DrWeb | Trojan.KeyLogger.3400 |
| F-Prot | W32/Trojan2.HBKM |
| F-Secure | Trojan.Generic.1559517 |
| GData | Trojan.Generic.1559517 |
| Ikarus | Trojan.Generic |
| Jiangmin | Trojan/Keylogger.af |
| Kaspersky | Trojan-Spy.Win32.Agent.atpq |
| McAfee-GW-Edition | Heuristic.LooksLike.Win32.Spyware.L |
| Microsoft | TrojanSpy:Win32/Wordapas.A |
| NOD32 | a variant of Win32/Spy.Agent.RA |
| Norman | W32/Smalltroj.YDEC |
| Rising | Trojan.Spy.Win32.Undef.rb |
| Sunbelt | Trojan.Win32.Generic!SB.0 |
| Symantec | Suspicious.Insight |
| VBA32 | Trojan-Spy.Win32.Agent.atpq |
| ViRobot | Trojan.Win32.Agent.106496.AM |
| a-squared | Trojan.Generic!IK |