Collection of Upatre Samples ( alpha version)

Config File for 1d38c362198ad67329fdf58b4743165e

md5
1d38c362198ad67329fdf58b4743165e
source
virusshare
link
download.4n6?sample=5387585bc905f6304b190493af158a714bdd0baed1be7e81db40407d4a92af01
malware_name
tubeini.exe
temp_file
tubei560T.txt
scandate
0000-00-00 00:00:00
parsed
2015-06-29 00:48:23
decrypt_keys
307d6d58
check_keys
63b8f08a
c2_server
178.47.141.100
baseport
9587
useragent
Mozilla/5.0
payload_format
reg
old
1
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0602us21
delivered payloads:
no payloads delivered when checked
delivery sites:
1
http://harveyouellet.com/TOXICOUSTIQUE/arrowu.jpg
2
http://cwvancouver.com/cp/images/digits/arrowu.jpg