| N/A | |
| PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows | 815104 |
| N/A | |
| f6efddf22cb10f5ad5c681427c8b5144 | |
| 8f2e532ea0d81f206b1fd267387d4494dff74c28 | |
| 29d9788ee17b3fe6b4218933225fc492276c5ba7b2eaf269aa4a5288e01d50d9 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| PE32 | |
| application/octet-stream | |
| 0.255 | |
| N/A | |
| N/A | |
| 0.0 | |
| Win32 EXE | |
| 796 kB | |
| Intel 386 or later, and compatibles | |
| 4.0 | |
| Windows GUI | |
| 1024 | |
| 4.0 | |
| 0x136d | |
| Source: |

| AhnLab-V3 | Trojan/Win32.Tepfer |
| AntiVir | BDS/Kelihos.F.8485 |
| Avast | Win32:Malware-gen |
| BitDefender | Trojan.GenericKDV.1089865 |
| DrWeb | Trojan.Packed.196 |
| ESET-NOD32 | a variant of Win32/Kryptik.BEZJ |
| Emsisoft | Trojan.GenericKDV.1089865 (B) |
| F-Secure | Trojan.GenericKDV.1089865 |
| Fortinet | W32/EncPK.ABD |
| GData | Trojan.GenericKDV.1089865 |
| Ikarus | Backdoor.Win32.Kelihos |
| K7AntiVirus | Trojan |
| K7GW | Trojan |
| Kaspersky | HEUR:Trojan.Win32.Generic |
| Malwarebytes | Malware.Packer.rf |
| McAfee | PWS-Zbot-FBDT!F6EFDDF22CB1 |
| McAfee-GW-Edition | PWS-Zbot-FBDT!F6EFDDF22CB1 |
| MicroWorld-eScan | Trojan.GenericKDV.1089865 |
| Microsoft | Backdoor:Win32/Kelihos.F |
| NANO-Antivirus | Trojan.Win32.Kryptik.bwibmh |
| Norman | Hlux.ZY |
| Panda | Trj/CI.A |
| SUPERAntiSpyware | Trojan.Agent/Gen-Dropper |
| Sophos | Troj/Agent-ACMG |
| TrendMicro | TROJ_MOSERAN.SMB |
| TrendMicro-HouseCall | TROJ_GEN.R047H01G413 |
| VBA32 | Malware-Cryptor.Mystig |
| VIPRE | Trojan.Win32.Generic!BT |
| nProtect | Trojan.FakeAlert.DGW |