Collection of Upatre Samples ( alpha version)

Config File for 6093329dbda17782bb8dc31cf223a188

md5
6093329dbda17782bb8dc31cf223a188
source
malwr
link
https://malwr.com/analysis/MDIyNzQzNWMyODhlNGFmNTgwZmRjNjYwNWFiZTBiMDE/
malware_name
docfree.exe
temp_file
doc296A.tmp
scandate
2015-06-15 14:01:38
parsed
2015-07-01 21:31:12
decrypt_keys
5abed98d
check_keys
6b67ca5e
c2_server
5.141.22.43
baseport
9587
useragent
Mazilla/5.0
payload_format
reg
old
1
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
MONUK14
delivered payloads:
no payloads delivered when checked
delivery sites:
1
http://hitachimriservice.com/images/monuk14.png
2
http://host2fast.ro/wp-includes/images/monuk14.png