









| MD5 | 1ddd9bc8661f2bb2842a769b1a340152 |
| SHA1 | b0158a50c4e412e042bc3e1910666d51960f1f25 |
| Filename | Savoy.exe |
| IPs | [23.253.254.67] |
| IPs | [91.211.17.201] |
| IPs | [71.45.80.25] |
| IPs | [184.28.188.218] |
| Domains | [icanhazip.com] [www.download.windowsupdate.com] |
| IP Addresses | [23.253.254.67] [91.211.17.201] [71.45.80.25] [184.28.188.218] [166.78.246.145] [184.25.56.149] [104.130.28.231] [184.28.188.217] [184.28.188.35] |
| Antivirus | [Adware.Win32.iBryte.DHFK] |
| [Downloader.Upatre] | |
| [Generic_s.EPR] | |
| [HEUR/QVM07.1.Malware.Gen] | |
| [Trj/Genetic.gen] | |
| [Troj/Bredo-APR] | |
| [Trojan-Downloader.Win32.Upatre] | |
| [Trojan-Downloader.Win32.Upatre.jgz] | |
| [Trojan-Downloader/W32.Upatre.36352.C] | |
| [Trojan.DownLoader13.9527] |