Collection of Upatre Samples ( alpha version)

Config File for 6357bb1b03774ba260b12255c1877da3

md5
6357bb1b03774ba260b12255c1877da3
source
virusshare
link
download.4n6?sample=ea8d8072b8cbb86952479547e5052596c944dba17e660dce2660039cd0151644
malware_name
ngyep.exe
temp_file
scandate
0000-00-00 00:00:00
parsed
2015-07-07 21:34:44
decrypt_keys
5b86387c
check_keys
c2_server
94.23.247.202
baseport
9587
useragent
Opera
payload_format
sim
old
0
clientip
nr_targets
6
nr_delivery_sites
6
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0608heap, 0608pre, 0608uk2
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://feelgoodframesstore.com/download/68u2.tar
2
https://comeniusjoinoureurope.ro/img/territories/68u2.tar
3
https://beeprana.com/img/h153.tar
4
https://macelleriapari.it/images/images/h153.tar
5
https://upscalebeauty.com/img/about/pb40.tar
6
https://fdsea06.fr/images/pb40.tar