Collection of Upatre Samples ( alpha version)

Config File for b5f9841b6cff61eb36bd453d9e8b1920

md5
b5f9841b6cff61eb36bd453d9e8b1920
source
virusshare
link
download.4n6?sample=c7fbea205dee582f7086a3e65b15dbbe0bbd36ee573658f69281526c08c9259b
malware_name
codler.exe
temp_file
Code3C17.log
scandate
2015-08-06 08:33:18
parsed
2015-10-04 20:54:20
decrypt_keys
7f95d049
check_keys
0c62383b
c2_server
93.185.4.90
baseport
9587
useragent
Mozilla/5.0 (Windows NT 6.1; WOW64; rv:37.0) Gecko/20100101 Firefox/37.0
payload_format
reg
old
0
clientip
icanhazip.com
nr_targets
16
nr_delivery_sites
15
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
SKS11
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://104.36.232.219/soks111.png
2
https://104.174.123.66/soks111.png
3
https://162.255.126.8/soks111.png
4
https://64.203.121.6/soks111.png
5
https://38.75.38.186/soks111.png
6
https://173.248.29.43/soks111.png
7
https://188.255.134.177/soks111.png
8
https://109.86.226.85/soks111.png
9
https://24.220.92.193/soks111.png
10
https://24.159.153.153/soks111.png
11
https://176.36.251.208/soks111.png
12
https://188.255.241.59/soks111.png
13
https://188.255.165.154/soks111.png
14
https://188.231.34.130/soks111.png
15
https://173.216.240.56/soks111.png