Collection of Upatre Samples ( alpha version)

Config File for b34d249d82d34773d852e69691420280

md5
b34d249d82d34773d852e69691420280
source
virusshare
link
download.4n6?sample=9437b86a3296e563be279f7a2ee9fdc12d574d78745c5a56397c804bcabe8375
malware_name
livrew.exe
temp_file
liva8BA5.log
scandate
2015-04-16 05:38:10
parsed
2015-10-06 02:36:12
decrypt_keys
28571a75
check_keys
5ff1bd0a
c2_server
141.105.141.87
baseport
9587
useragent
Mazilla/5.0
payload_format
reg
old
0
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0304uk21
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://eltubazopanama.com/zar3.rtf
2
https://encontrohuambo.com/css/zar3.rtf