| MD5 | facc467bf314f35635a7f8c0e0e33aaf |
| SHA1 | c6bfdf643d305ddd13a57aa86e4887700a9d52c7 |
| Filename | nullfication_invoice_report.exe |
| IPs | [104.130.28.231] |
| IPs | [91.211.17.201] |
| IPs | [209.193.86.222] |
| IPs | [184.25.56.181] |
| Domains | [icanhazip.com] [www.download.windowsupdate.com] |
| IP Addresses | [104.130.28.231] [91.211.17.201] [209.193.86.222] [184.25.56.181] [166.78.246.145] [23.253.254.67] |
| Antivirus | [Downloader-FATU!FACC467BF314] |
| [Evilware.Outbreak] | |
| [TR/Kryptik.dhig.33] | |
| [Troj/Wonton-RA] | |
| [Trojan-Downloader.Win32.Upatre.mmb] | |
| [Trojan.Agent.BJPJ] | |
| [Trojan.Upatre] | |
| [Trojan.Upatre.701] | |
| [TrojanDownloader.Upatre.r4] | |
| [TROJ_UPATRE.SMJY] |