| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive | 90484 |
| N/A | |
| d18e02ec56305b6eb5ffc6cbb93438eb | |
| 174db73e9805f0d3028fc099b0643fc36b1ef47d | |
| f464f619fef1f0e50e14648ed2f3bdcad1bc22ee8f95a8b4cbfd522236875686 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 6.0 | |
| 1024 | |
| 119808 | |
| 6.0 | |
| Win32 EXE | |
| 88 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| 23040 | |
| 4.0 | |
| 0x30cb | |
| Source: |

| McAfee-GW-Edition | BehavesLike.Win32.Tool.mc |
| VBA32 | suspected of Trojan.Downloader.gen.h |