| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows | 18432 |
| N/A | |
| 0d1bf1f229d9b7e2135041afc0dc766b | |
| 5fe5ec40dc542494a2d28f96d5ddfe6205b803d5 | |
| e7840de83ed3b7610e1d76408aab7c829f0d83c7b9e21d35e8757dc164413f20 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 5.12 | |
| N/A | |
| 14848 | |
| 0.0 | |
| Win32 EXE | |
| 18 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| 2560 | |
| 4.0 | |
| 0x1000 | |
| Source: |

| AVG | Worm/Generic2.AZAW |
| Agnitum | Worm.Ngrbot!bxY6DW2vFq4 |
| AntiVir | TR/Amokold.A.1 |
| Antiy-AVL | Worm/Win32.Ngrbot.gen |
| Avast | Win32:Rootkit-gen [Rtk] |
| BitDefender | Trojan.Generic.KD.358633 |
| CAT-QuickHeal | Worm.Ngrbot.evd |
| Comodo | UnclassifiedMalware |
| DrWeb | BackDoor.IRC.NgrBot.34 |
| ESET-NOD32 | a variant of Win32/Injector.JFS |
| Emsisoft | Trojan.Generic.KD.358633 (B) |
| F-Secure | Trojan.Generic.KD.358633 |
| Fortinet | W32/Injector.ATB!tr |
| GData | Trojan.Generic.KD.358633 |
| Ikarus | Trojan.Win32.Jorik |
| Jiangmin | Trojan/Jorik.par |
| K7AntiVirus | Riskware |
| K7GW | Riskware |
| Kaspersky | Worm.Win32.Ngrbot.evd |
| Kingsoft | Worm.Ngrbot.(kcloud) |
| Malwarebytes | Trojan.Downloader |
| McAfee | W32/Sdbot.worm!lc |
| McAfee-GW-Edition | W32/Sdbot.worm!lc |
| MicroWorld-eScan | Trojan.Generic.KD.358633 |
| Microsoft | TrojanDownloader:Win32/Dofoil.L |
| NANO-Antivirus | Trojan.Win32.Ngrbot.wfmjt |
| Norman | Suspicious_Gen2.QVPLI |
| PCTools | Trojan.IRCBot!rem |
| Panda | Generic Trojan |
| Sophos | Mal/Generic-S |
| Symantec | W32.IRCBot |
| TheHacker | Trojan/Injector.jfs |
| VBA32 | Worm.Ngrbot |
| VIPRE | Trojan.Win32.Generic!BT |
| ViRobot | Worm.Win32.A.Ngrbot.103936 |
| nProtect | Trojan.Generic.KD.358633 |