| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows, Petite compressed | 513955 |
| N/A | |
| 3e6f2b277e4e58b10d312b323ff0abbc | |
| ff0170ceda07bd3d746a8bcb0062b5f9e42bdc65 | |
| 387ca9b199386e9a4142f74059fc974cd643fac17b48481ac91abbcd0e5469b4 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 6.0 | |
| N/A | |
| 61440 | |
| 0.0 | |
| Win32 EXE | |
| 502 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| N/A | |
| 4.0 | |
| 0x2ebd6 | |
| Source: |

| AVG | Generic3.ZD |
| AhnLab-V3 | Win32/Ridnu.worm.92837 |
| AntiVir | TR/Dropper.Gen |
| Antiy-AVL | Worm/Win32.Ridnu.gen |
| Authentium | W32/Trojan.XRD |
| Avast | Win32:Trojan-gen |
| Avast5 | Win32:Malware-gen |
| BitDefender | Trojan.Stpage.Y |
| CAT-QuickHeal | W32.Ridnu.A |
| ClamAV | PUA.Packed.tElock1.Private |
| Comodo | Heur.Pck.tElock |
| DrWeb | STPAGE.Trojan |
| F-Prot | W32/Trojan.XRD |
| F-Secure | Trojan.Stpage.Y |
| GData | Trojan.Stpage.Y |
| Ikarus | Trojan-Downloader.Win32.Banload |
| Jiangmin | I-Worm/Ridnu.q |
| Kaspersky | Email-Worm.Win32.Ridnu.e |
| McAfee | W32/Ridnu |
| McAfee-GW-Edition | Artemis!3E6F2B277E4E |
| Microsoft | Virus:Win32/Ridnu.gen!A |
| NOD32 | a variant of Win32/Ridnu |
| Norman | W32/FaceCool.F |
| PCTools | Email-Worm.Miprinc |
| Panda | Generic Malware |
| Prevx | High Risk Cloaked Malware |
| Rising | Worm.Agent.na |
| Sophos | Mal/Sily-A |
| Sunbelt | Trojan.Win32.Generic!BT |
| Symantec | W32.Miprinc@mm |
| TheHacker | W32/Ridnu.e |
| TrendMicro | Mal_Banker |
| TrendMicro-HouseCall | Mal_Banker |
| VBA32 | Email-Worm.Win32.Ridnu.e |
| VirusBuster | Trojan.Agent.CFYV |
| a-squared | Trojan-Downloader.Win32.Banload!IK |
| eTrust-Vet | Win32/Ridnu.D |
| nProtect | Trojan.Stpage.Y |