Collection of Upatre Samples ( alpha version)

Config File for 2b4f3a86c54f4d57446791d56a914080

md5
2b4f3a86c54f4d57446791d56a914080
source
malwr
link
https://malwr.com/analysis/YjU3Mjc3NzlhMjk1NDVlYWIzZWE5NzIxNGJkODk1Y2Q/
malware_name
UsqXgL7w.exe
temp_file
ASRUD974.txt
scandate
2015-04-23 09:54:25
parsed
2015-06-24 21:21:34
decrypt_keys
1a7cdfee
check_keys
57a82e33
c2_server
81.7.109.65
baseport
13920
useragent
Mozilla/5.0 (Windows NT 6.1)
payload_format
reg
old
0
clientip
icanhazip.com
nr_targets
10
nr_delivery_sites
9
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
TUSR22
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://80.87.220.102/tusr22.pdf
2
https://46.151.130.90/tusr22.pdf
3
https://91.240.97.71/tusr22.pdf
4
https://91.240.97.36/tusr22.pdf
5
https://91.240.97.38/tusr22.pdf
6
https://109.196.204.142/tusr22.pdf
7
https://188.123.54.111/tusr22.pdf
8
https://85.248.2.228/tusr22.pdf
9
https://217.12.59.234/tusr22.pdf