| N/A | |
| PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows | 77824 |
| N/A | |
| 532e7924f759aab014dedca651398ce6 | |
| 8f1dd9903815fad8ecfdb55fe277f425e8aa7cfc | |
| 960ed795dca89e50745251adf6712719a1af1aa5fd1a66c9424c777574180548 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| sada.exe | |
| 76 kB | |
| Intel 386 or later, and compatibles | |
| Windows NT 32-bit | |
| 24576 | |
| 4.0 | |
| 0x5d20 | |
| 0x003f | |
| 12.0 | |
| N/A | |
| N/A | |
| 5.04.2600.5312 (xpsp.080413-0845) | |
| 20480 | |
| Microsoft DirectPlay Voice Test | |
| 5.4.2600.5312 | |
| Microsoft® Windows® Operating System | |
| Microsoft Corporation | |
| application/octet-stream | |
| Unicode | |
| English (U.S.) | |
| 5.4.2600.5312 | |
| Win32 EXE | |
| sada.exe | |
| © Microsoft Corporation. All rights reserved. | |
| Windows GUI | |
| Executable application | |
| 0.0 | |
| (none) | |
| 4.0 | |
| 5.04.2600.5312 | |
| Source: |

| AVware | Win32.Malware!Drop |
| Avira | TR/Crypt.ZPACK.95583 |
| Baidu-International | Trojan.Win32.Agent.BQNO |
| Bkav | HW32.Laneul.dcqo |
| ESET-NOD32 | Win32/Agent.QNO |
| Ikarus | Trojan.Crypt |
| Kaspersky | Trojan.Win32.Yakes.fvlh |
| Malwarebytes | Trojan.FakeMS |
| McAfee | Artemis!532E7924F759 |
| McAfee-GW-Edition | BehavesLike.Win32.Trojan.lm |
| Microsoft | TrojanDownloader:Win32/Awavs |
| Qihoo-360 | HEUR/Malware.QVM20.Gen |
| Rising | PE:Malware.XPACK-LNR/Heur!1.5594 |
| Sophos | Troj/Agent-AIRW |
| Symantec | WS.Reputation.1 |
| VIPRE | Win32.Malware!Drop |