Collection of Upatre Samples ( alpha version)

Config File for 9426382756e5ee5a0d756ba9b39d5820

md5
9426382756e5ee5a0d756ba9b39d5820
source
virusshare
link
download.4n6?sample=e83d06425d94a7c928f201e5e883aba4d6ce489a8fc7c2b8ec07199299bfa0b7
malware_name
ztdvl.exe
temp_file
scandate
2015-09-01 18:20:29
parsed
2015-09-28 10:00:44
decrypt_keys
05493bd9
check_keys
c2_server
94.23.247.202
baseport
9587
useragent
Mozilla/5.0
payload_format
sim
old
0
clientip
nr_targets
4
nr_delivery_sites
4
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0708h, 0708uk1
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://alltruckquimicos.com/images/78uu1.zip
2
https://santaclarainmuebles.com/css/78uu1.zip
3
https://energysavingproductsinfo.com/wp-content/uploads/2014/06/hid30.tar
4
https://disanchez.com/images/hid30.tar