| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows | 114688 |
| N/A | |
| 4d9637d79932a77b15adb0ad2645a321 | |
| aff70c46d0524bb6495f1f110f86373a03031a6f | |
| 850bd21b769e81997ab40eb919eb5bef9bfe8b3058dd1bc3c10b32d1d8935d85 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 6.0 | |
| N/A | |
| 8192 | |
| 4.5 | |
| Win32 EXE | |
| 112 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| 12288 | |
| 4.0 | |
| 0x10ec | |
| Source: |

| AVG | Generic24.CWB |
| AhnLab-V3 | Trojan/Win32.VBKrypt |
| AntiVir | TR/Spy.Agent.afr.1 |
| Avast | Win32:IRCBot-EDF [Trj] |
| BitDefender | Backdoor.Agent.AAYF |
| CAT-QuickHeal | Trojan.Inject.bgvr |
| Comodo | TrojWare.Win32.Inject.dsd |
| DrWeb | Trojan.DownLoader4.32334 |
| Emsisoft | Backdoor.Win32.Ursap!IK |
| F-Secure | Backdoor.Agent.AAYF |
| Fortinet | W32/Refroso.BLC!tr |
| GData | Backdoor.Agent.AAYF |
| Ikarus | Backdoor.Win32.Ursap |
| Jiangmin | Trojan/Inject.wts |
| K7AntiVirus | Trojan |
| Kaspersky | Trojan.Win32.Inject.bgvr |
| McAfee | Generic.dx!bafs |
| McAfee-GW-Edition | Generic.dx!bafs |
| Microsoft | VirTool:Win32/VBInject.gen!DG |
| NOD32 | Win32/Dorkbot.B |
| Norman | Jorik.dam |
| PCTools | Trojan.IRCBot |
| Panda | Trj/Inject.LA |
| SUPERAntiSpyware | Trojan.Agent/Gen-Jorik |
| Sophos | Mal/Generic-L |
| Symantec | W32.IRCBot.NG |
| TheHacker | Trojan/Inject.bgvr |
| TrendMicro | WORM_DORKBOT.P |
| TrendMicro-HouseCall | WORM_DORKBOT.P |
| VBA32 | Trojan.Inject.bgvr |
| VIPRE | Trojan.Win32.Generic!BT |
| ViRobot | Trojan.Win32.Inject.114688.J |
| VirusBuster | Trojan.Inject!tMzX3Bd8l/g |
| nProtect | Trojan/W32.Inject.114688.AN |