Collection of Upatre Samples ( alpha version)

Config File for fb0a498367fb7ff0f8731374c50035c9

md5
fb0a498367fb7ff0f8731374c50035c9
source
malwr
link
https://malwr.com/analysis/NjY3NDY5YTZiZTA3NDJhZDg5M2I5NjYwZjU5MTZiZGY/
malware_name
vtools.exe
temp_file
vt148A.txt
scandate
2015-03-23 17:01:21
parsed
2015-06-24 20:49:16
decrypt_keys
3f691467
check_keys
26bf2b5b
c2_server
46.249.3.66
baseport
9587
useragent
Mazilla/5.0
payload_format
reg
old
0
clientip
checkip.dyndns.org
nr_targets
3
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
2303us12
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://distribuidorasimao.com.ve/prueba/mus2.rtf
2
https://divereventos.com.ve/mandoc/mus2.rtf