| N/A | |
| PE32 executable (console) Intel 80386, for MS Windows | 397312 |
| N/A | |
| 84895deeb425d4f87c8c098efbe71dd4 | |
| 1eae187c04bca05116b668e6e891244db1ca72fe | |
| bf6ce35457205c58ffc2f8f0ce8d264864acfa1740105b1d5cd17424178dd272 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| cmd | |
| 388 kB | |
| Intel 386 or later, and compatibles | |
| Windows NT 32-bit | |
| 128512 | |
| 5.1 | |
| 0x5056 | |
| 0x003f | |
| 7.10 | |
| N/A | |
| N/A | |
| 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | |
| 259584 | |
| Windows Command Processor | |
| 5.1.2600.2180 | |
| Microsoft® Windows® Operating System | |
| Microsoft Corporation | |
| application/octet-stream | |
| Unicode | |
| English (U.S.) | |
| 5.1.2600.2180 | |
| Win32 EXE | |
| Cmd.Exe | |
| © Microsoft Corporation. All rights reserved. | |
| Windows command line | |
| Executable application | |
| 5.1 | |
| (none) | |
| 4.0 | |
| 5.1.2600.2180 | |
| Source: |

| AVG | Patched_c.KPM |
| AhnLab-V3 | Win-Trojan/Xema.397312.B |
| Avast | Win32:Trojan-gen |
| CAT-QuickHeal | Win32.Trojan.Agent2.ddly.3.a |
| ClamAV | Trojan.Agent-229257 |
| Commtouch | W32/Patched.Z.gen!Eldorado |
| Comodo | TrojWare.Win32.Agent2.DDLY |
| Emsisoft | Trojan.Damaged.Gen2!IK |
| F-Prot | W32/Patched.Z.gen!Eldorado |
| F-Secure | Trojan:W32/Agent.DSWC |
| Fortinet | W32/Agent.CMD!tr |
| GData | Win32:Trojan-gen |
| Ikarus | Trojan.Damaged.Gen2 |
| K7AntiVirus | Riskware |
| Kaspersky | Trojan.Win32.Agent2.ddly |
| McAfee-GW-Edition | Heuristic.BehavesLike.Win32.Suspicious.H |
| Norman | SmallTroj.ZPJQ |
| Rising | Trojan.Win32.Generic.128DE72B |
| Sophos | Troj/Agent-UBD |
| TheHacker | Trojan/Agent2.ddly |
| TrendMicro | TROJ_VB.SMUJ |
| TrendMicro-HouseCall | TROJ_VB.SMUJ |
| VIPRE | Trojan.Win32.Generic!BT |
| eTrust-Vet | Win32/Agent.AKD |
| nProtect | Trojan/W32.Agent.397312.DU |