Collection of Upatre Samples ( alpha version)

Config File for f71c1b41ac2cdbf5d002a2c6eca5b7f0

md5
f71c1b41ac2cdbf5d002a2c6eca5b7f0
source
virusshare
link
download.4n6?sample=8a324c9ea0fbd11b038d4aeb0c3fc0447aab9d20a4b2d21467c30d68f690f2c9
malware_name
livrew.exe
temp_file
liva8BA5.log
scandate
2015-11-04 10:56:38
parsed
2015-11-16 13:28:04
decrypt_keys
28571a75
check_keys
5ff1bd0a
c2_server
141.105.141.87
baseport
9587
useragent
Mazilla/5.0
payload_format
reg
old
0
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
0304uk21
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://eltubazopanama.com/zar3.rtf
2
https://encontrohuambo.com/css/zar3.rtf