Collection of Upatre Samples ( alpha version)

Config File for 0df753bdbb1b6e27cc219c673b934639

md5
0df753bdbb1b6e27cc219c673b934639
source
virusshare
link
download.4n6?sample=3b9c56b699a29d445a549840e291834c9904deb99b71e11d576394f519fcd2f6
malware_name
kgjwc.exe
temp_file
utt344E.tmp
scandate
0000-00-00 00:00:00
parsed
2015-06-29 22:16:50
decrypt_keys
052f78be
check_keys
35348b6c
c2_server
202.153.35.133
baseport
9587
useragent
Mozilla/4.0
payload_format
reg
old
0
clientip
nr_targets
2
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
1612us12
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://bankruptcyloanmodification.com/wp-includes/images/puss12.pne
2
https://negahdar.info/images/smileys/puss12.pne