Collection of Upatre Samples ( alpha version)

Config File for 6bc0762f663bfc7f4143bc895c1484f6

md5
6bc0762f663bfc7f4143bc895c1484f6
source
virusshare
link
download.4n6?sample=4be0ed6384b225b3a1e611f6c4ad297c3be13dc997219ada21ab74657f171f4f
malware_name
qlmxb.exe
temp_file
scandate
0000-00-00 00:00:00
parsed
2015-07-26 07:12:33
decrypt_keys
2e220479
check_keys
c2_server
95.141.37.158
baseport
9587
useragent
Opera
payload_format
sim
old
0
clientip
nr_targets
2
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0909uk2
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://werny.org/jscript/jquery/ceebox/js/9k2.cll
2
https://reikiayur.be/cli/9k2.cll