Collection of Upatre Samples ( alpha version)

Config File for 0638c6a098d80b9610e59867e2a9883f

md5
0638c6a098d80b9610e59867e2a9883f
source
virusshare
link
download.4n6?sample=12565b92e725468d15dbf5ebf04a82b037da081f9b47d785b919c75408e4694d
malware_name
pinstall.exe
temp_file
t_FBnut.txt
scandate
0000-00-00 00:00:00
parsed
2015-06-29 00:42:11
decrypt_keys
0dd5a502
check_keys
6001b628
c2_server
92.240.99.70
baseport
9587
useragent
Mozilla/5.0
payload_format
reg
old
1
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
1002uk12
delivered payloads:
no payloads delivered when checked
delivery sites:
1
http://caspencer.ca/images/img_b.jpg
2
http://animalwelfare.ro/wp-includes/images/img_b.jpg