| N/A | |
| PE32 executable (GUI) Intel 80386, for MS Windows, Petite compressed | 511700 |
| N/A | |
| f4f12a5e02bd1b8f3e8348d25cb4d78a | |
| 1374d1fed86aacd83bcea7cbf1c8c45b376f8c07 | |
| ef13da52045630cfb5c796c2431b3fa9e1b92d32e3beaf8b2caec4cd810eb88d | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 6.0 | |
| N/A | |
| 61440 | |
| 0.0 | |
| Win32 EXE | |
| 500 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| N/A | |
| 4.0 | |
| 0x2ebd6 | |
| Source: |

| AVG | Generic3.ZD |
| AhnLab-V3 | Win32/Ridnu.worm.92837 |
| AntiVir | TR/Dropper.Gen |
| Antiy-AVL | Worm/Win32.Ridnu.gen |
| Authentium | W32/Trojan.XRD |
| Avast | Win32:Trojan-gen |
| Avast5 | Win32:Malware-gen |
| BitDefender | Trojan.Stpage.Y |
| CAT-QuickHeal | Win32.Email-Worm.Ridnu.e.5.pack |
| ClamAV | PUA.Packed.tElock1.Private |
| Comodo | Heur.Pck.tElock |
| DrWeb | STPAGE.Trojan |
| F-Prot | W32/Trojan.XRD |
| F-Secure | Trojan.Stpage.Y |
| GData | Trojan.Stpage.Y |
| Ikarus | Trojan-Downloader.Win32.Banload |
| Jiangmin | I-Worm/Ridnu.q |
| Kaspersky | Email-Worm.Win32.Ridnu.e |
| McAfee | W32/Ridnu |
| McAfee-GW-Edition | Trojan.Dropper.Gen |
| Microsoft | Virus:Win32/Ridnu.gen!A |
| NOD32 | a variant of Win32/Ridnu |
| Norman | W32/FaceCool.F |
| PCTools | Trojan.Agent.CFYV |
| Panda | Generic Malware |
| Prevx | High Risk Cloaked Malware |
| Rising | Worm.Agent.na |
| Sophos | Mal/Sily-A |
| Sunbelt | Trojan.Win32.Generic!BT |
| Symantec | W32.Miprinc@mm |
| TheHacker | W32/Ridnu.e |
| TrendMicro | Mal_Banker |
| VBA32 | Email-Worm.Win32.Ridnu.e |
| VirusBuster | Trojan.Agent.CFYV |
| a-squared | Trojan-Downloader.Win32.Banload!IK |
| eTrust-Vet | Win32/Ridnu.D |
| nProtect | Trojan.Stpage.Y |