Collection of Upatre Samples ( alpha version)

Config File for 6244d040d105b81bd0bc397624e5c3ff

md5
6244d040d105b81bd0bc397624e5c3ff
source
virusshare
link
download.4n6?sample=3d817a79e0b7524db4ba63175330e985db51b24d935869d59e2a5bdc5987c451
malware_name
ghbai.exe
temp_file
scandate
0000-00-00 00:00:00
parsed
2015-07-09 15:43:28
decrypt_keys
65d47b94
check_keys
c2_server
188.165.198.52
baseport
9587
useragent
Firefox/5.0
payload_format
sim
old
0
clientip
nr_targets
2
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
2209tar
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://mosaikglobal.com/css/2209tar.doc
2
https://comerypasarlabien.com/images/2209tar.doc