Collection of Upatre Samples ( alpha version)

Config File for 17aac21e24c4206fab353127f1bd22fa

md5
17aac21e24c4206fab353127f1bd22fa
source
malwr
link
https://malwr.com/analysis/NTE5NWFiYTA3NDRhNDBlYjlkOWMxYjQ2NTNkZjE3ZTc/
malware_name
docviewer.exe
temp_file
doc47FA.txt
scandate
2015-03-27 04:31:04
parsed
2015-06-25 23:14:51
decrypt_keys
4454d407
check_keys
0b2ea0ec
c2_server
46.249.3.66
baseport
9587
useragent
Mazilla/5.0
payload_format
reg
old
1
clientip
checkip.dyndns.org
nr_targets
7
nr_delivery_sites
6
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
2703uk22
delivered payloads:
no payloads delivered when checked
delivery sites:
1
http://46.151.48.113/2703uk22.png
2
http://46.151.48.173/2703uk22.png
3
http://46.151.48.121/2703uk22.png
4
http://91.232.157.139/2703uk22.png
5
http://176.107.224.185/2703uk22.png
6
http://194.28.190.167/2703uk22.png