| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed | 261525 |
| N/A | |
| ab7683bb742aed54a0c8067c3c852526 | |
| 5825b9d043f2832aa18fc7ddb83876d0e9f5f7a9 | |
| f016436bd8dcb2e2d71d2ad2bb99a42efb0b7702b8783b887a8cd7a3e562bb02 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| 255 kB | |
| Intel 386 or later, and compatibles | |
| Win32 | |
| 225280 | |
| 4.0 | |
| 0x98190 | |
| 0x0017 | |
| 8.0 | |
| N/A | |
| 397312 | |
| 28672 | |
| N/A | |
| 3.2.8.1 | |
| application/octet-stream | |
| Unicode | |
| English (British) | |
| 3.2.8.1 | |
| Win32 EXE | |
| ., ., ., . | |
| Windows GUI | |
| Unknown | |
| 0.0 | |
| (none) | |
| 4.0 | |
| Source: |

| AVG | Worm/Autoit.ATK |
| AhnLab-V3 | Win32/Hybris.worm.261572 |
| AntiVir | TR/Autoit.SB |
| Authentium | W32/Worm.MWD |
| Avast | Win32:AutoRun-SF |
| BitDefender | Win32.Worm.AutoIt.Z |
| CAT-QuickHeal | Worm.AutoIt.r |
| ClamAV | Trojan.KillAV-235 |
| Comodo | Worm.Win32.AutoIt.~AN |
| DrWeb | Win32.HLLW.Texmer.49 |
| F-Prot | W32/Worm.MWD |
| F-Secure | Worm.Win32.AutoIt.r |
| Fortinet | W32/Agent.ALS!tr |
| GData | Win32.Worm.AutoIt.Z |
| Ikarus | Worm.Win32.AutoIt |
| K7AntiVirus | Worm.Win32.AutoRun |
| Kaspersky | Worm.Win32.AutoIt.r |
| McAfee | W32/YahLover.worm |
| McAfee+Artemis | W32/YahLover.worm |
| McAfee-GW-Edition | Trojan.Autoit.SB |
| Microsoft | Worm:Win32/Yuner.A |
| NOD32 | Win32/Yuner.B |
| NOD32Beta | Win32/Yuner.B |
| PCTools | Worm.Agent.EOVV |
| Panda | W32/Sohanat.GW.worm |
| Prevx1 | Email High Risk Worm |
| Sophos | W32/Yuner-A |
| Symantec | W32.Badday.A |
| TheHacker | W32/AutoRun.cbd |
| TrendMicro | WORM_UTOTI.BU |
| VBA32 | Worm.Win32.AutoRun.buu |
| ViRobot | Worm.Win32.AutoIt.261440 |
| VirusBuster | Worm.Agent.EOVV |
| a-squared | Worm.Win32.AutoIt!IK |
| eSafe | Suspicious File |