| N/A | |
| PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows | 74272 |
| N/A | |
| 3e21ce08c3556fb9ef0375fdef6a9b2c | |
| 361493397264afe267231c5665713d2891b71a61 | |
| 795fcbbed36d74d658c64fb1da2ed0ec162706e9513e4fb879a03da80da215ad | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 2.56 | |
| 512 | |
| 66560 | |
| 1.0 | |
| Win32 EXE | |
| 73 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| 8704 | |
| 4.0 | |
| 0x1140 | |
| Source: |

| AVG | Generic_s.AD |
| Ad-Aware | Gen:Application.LoadMoney.1 |
| AhnLab-V3 | PUP/Win32.LoadMoney |
| AntiVir | APPL/Downloader.Gen7 |
| Avast | Win32:LoadMoney-CH [PUP] |
| BitDefender | Gen:Application.LoadMoney.1 |
| Comodo | TrojWare.Win32.Kryptik.AXJX |
| DrWeb | Trojan.LoadMoney.1 |
| ESET-NOD32 | a variant of Win32/Kryptik.BWAI |
| F-Secure | Gen:Application.LoadMoney.1 |
| Fortinet | Adware/LoadMoney |
| GData | Gen:Application.LoadMoney.1 |
| Ikarus | Virus.Win32.Cryptor |
| Jiangmin | Trojan/Generic.bedbi |
| K7AntiVirus | Trojan ( 0040f53f1 ) |
| K7GW | Trojan ( 0040f53f1 ) |
| Kaspersky | not-a-virus:HEUR:Downloader.Win32.LMN.a |
| Kingsoft | Win32.Troj.Generic.a.(kcloud) |
| Malwarebytes | PUP.Optional.RuBar.A |
| McAfee | Adware-FFL!3E21CE08C355 |
| McAfee-GW-Edition | Heuristic.BehavesLike.Win32.Suspicious.D |
| MicroWorld-eScan | Gen:Application.LoadMoney.1 |
| NANO-Antivirus | Riskware.Win32.Lmn.cgadbh |
| Panda | Trj/Genetic.gen |
| Qihoo-360 | HEUR/Malware.QVM01.Gen |
| Sophos | Troj/LdMon-A |
| Symantec | Suspicious.Cloud.5 |
| VBA32 | Downware.LMN.gen |
| VIPRE | Trojan-Downloader.Win32.LoadMoney.u (v) |