






| MD5 | c290126e419ff58678c3e490d89d7343 |
| SHA1 | c7dfc71fb6d70b2b528eacd8d02473478f94d94a |
| Filename | new_payment_document.exe |
| IPs | [104.130.28.231] |
| IPs | [81.7.109.65] |
| IPs | [91.240.97.45] |
| IPs | [184.25.56.204] |
| Domains | [icanhazip.com] [www.download.windowsupdate.com] |
| IP Addresses | [104.130.28.231] [81.7.109.65] [91.240.97.45] [184.25.56.204] [184.25.56.125] [23.253.254.67] [166.78.246.145] |
| Antivirus | [Downloader-FASG!C290126E419F] |
| [Downloader.Upatre] | |
| [Downloader.Upatre.Win32.22492] | |
| [HEUR/QVM06.1.Malware.Gen] | |
| [Trj/Genetic.gen] | |
| [Troj/Dyreza-EG] | |
| [Troj/Dyreza-ET] | |
| [Trojan-Downloader.Win32.Upatre] |