| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows, Petite compressed | 442121 |
| N/A | |
| aafd593aa7fcc77b0c743a46fe5c56f9 | |
| 70b6b8d75d2b5d28fd3100bd5d844215f8d417c3 | |
| 2225ca1236dbbf26a5de268fc4abfa7f2ca08e90580796d7a67ab4fc18549c23 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 6.0 | |
| N/A | |
| 61440 | |
| 0.0 | |
| Win32 EXE | |
| 432 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| N/A | |
| 4.0 | |
| 0x2ebd6 | |
| Source: |

| AVG | Generic3.ZD |
| AhnLab-V3 | Win32/Ridnu.worm.92837 |
| AntiVir | TR/Dropper.Gen |
| Antiy-AVL | Worm/Win32.Ridnu.gen |
| Authentium | W32/Trojan.XRD |
| Avast | Win32:Trojan-gen |
| Avast5 | Win32:Malware-gen |
| BitDefender | Trojan.Stpage.Y |
| CAT-QuickHeal | Win32.Email-Worm.Ridnu.e.5.pack |
| ClamAV | PUA.Packed.tElock1.Private |
| Comodo | Heur.Pck.tElock |
| DrWeb | STPAGE.Trojan |
| F-Prot | W32/Trojan.XRD |
| F-Secure | Trojan.Stpage.Y |
| GData | Trojan.Stpage.Y |
| Ikarus | Trojan-Downloader.Win32.Banload |
| Jiangmin | I-Worm/Ridnu.q |
| K7AntiVirus | Email-Worm.Win32.Ridnu |
| Kaspersky | Email-Worm.Win32.Ridnu.e |
| McAfee | W32/Ridnu |
| McAfee+Artemis | W32/Ridnu |
| McAfee-GW-Edition | Trojan.Dropper.Gen |
| Microsoft | Virus:Win32/Ridnu.gen!A |
| NOD32 | a variant of Win32/Ridnu |
| Norman | W32/FaceCool.F |
| PCTools | Trojan.Agent.CFYV |
| Panda | Generic Malware |
| Prevx | High Risk Cloaked Malware |
| Rising | Worm.Agent.na |
| Sophos | Mal/Sily-A |
| Sunbelt | Trojan.Win32.Generic!BT |
| Symantec | W32.Miprinc@mm |
| TheHacker | W32/Ridnu.e |
| TrendMicro | Mal_Banker |
| VBA32 | Email-Worm.Win32.Ridnu.e |
| VirusBuster | Trojan.Agent.CFYV |
| a-squared | Trojan-Downloader.Win32.Banload!IK |
| eTrust-Vet | Win32/Ridnu.D |
| nProtect | Trojan.Stpage.Y |