Collection of Upatre Samples ( alpha version)

Config File for 1ea7af5c1214aa8ed3cccfa844785b30

md5
1ea7af5c1214aa8ed3cccfa844785b30
source
malwr
link
https://malwr.com/analysis/OWE4MTRlNGZmNTIyNDQ3Y2FmNmY0ZTU3N2IxMzAzOTk/
malware_name
livrew.exe
temp_file
liva8BA5.log
scandate
2015-04-10 10:50:42
parsed
2015-07-26 12:25:48
decrypt_keys
28571a75
check_keys
5ff1bd0a
c2_server
141.105.141.87
baseport
9587
useragent
Mazilla/5.0
payload_format
reg
old
0
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0304uk21
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://eltubazopanama.com/zar3.rtf
2
https://encontrohuambo.com/css/zar3.rtf