| MD5 | fca303684917f844897503f567b63920 |
| SHA1 | 538975a789ea9214a2489c54b60aaf36fd3f634d |
| Filename | FAX_20150301_1425207426_89.exe |
| IPs | [216.146.38.70] |
| IPs | [190.111.9.129] |
| Domains | [ingenieriayahorrodeenergia.com] [checkip.dyndns.org] [dejavuproduction.com] [stun.voipstunt.com] |
| IP Addresses | [216.146.38.70] [190.111.9.129] [216.146.43.70] [192.185.35.68] [202.52.146.46] [77.72.169.210] |
| Antivirus | [Downloader.Upatre] |
| [Downloader.Upatre.Win32.19117] | |
| [Generic.vz] | |
| [HEUR/QVM19.1.Malware.Gen] | |
| [Trj/WLT.A] | |
| [Troj/Agent-ALYH] | |
| [Trojan-Downloader] | |
| [Trojan-Downloader.Win32.Upatre] | |
| [Trojan-Downloader.Win32.Upatre.vhs] |