Collection of Upatre Samples ( alpha version)

Config File for c38f57a899721cad4fc60ae0c10599ad

md5
c38f57a899721cad4fc60ae0c10599ad
source
malwr
link
https://malwr.com/analysis/NjFlZDY4NTk5MWJhNGUxODk3NmE5MzY3ZmU2MGM1MWM/
malware_name
EyeIbin.exe
temp_file
Ibin5D38.txt
scandate
2015-06-03 12:21:33
parsed
2015-06-24 21:27:56
decrypt_keys
10be997b
check_keys
ee28c013
c2_server
188.120.194.101
baseport
13920
useragent
Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/43.0.2357.81 Safari/537.36
payload_format
reg
old
0
clientip
icanhazip.com
nr_targets
16
nr_delivery_sites
15
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
SATU11
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://178.214.221.89/status11.pdf
2
https://37.57.144.177/status11.pdf
3
https://173.248.22.227/status11.pdf
4
https://173.248.31.1/status11.pdf
5
https://173.248.31.6/status11.pdf
6
https://173.248.16.79/status11.pdf
7
https://24.240.107.12/status11.pdf
8
https://188.255.236.2/status11.pdf
9
https://188.255.167.4/status11.pdf
10
https://188.255.175.213/status11.pdf
11
https://173.248.27.163/status11.pdf
12
https://173.243.255.79/status11.pdf
13
https://69.9.204.114/status11.pdf
14
https://73.175.203.173/status11.pdf
15
https://188.255.239.34/status11.pdf