Collection of Upatre Samples ( alpha version)

Config File for da538479e99aaf50101af2b730bb6a88

md5
da538479e99aaf50101af2b730bb6a88
source
virusshare
link
download.4n6?sample=2008078314022b0bf08cc1e2a23420ec4f7caab95e00e020ecf07b7c01dbfa35
malware_name
roqws.exe
temp_file
scandate
0000-00-00 00:00:00
parsed
2015-07-09 15:54:04
decrypt_keys
3d3b11b7
check_keys
c2_server
188.165.198.52
baseport
9587
useragent
Mozilla/4.0
payload_format
sim
old
0
clientip
nr_targets
2
nr_delivery_sites
2
nr_delivery_sites_online
0
nr_payloads
0
ksa
pdir
2309uk1
delivered payloads:
no payloads delivered when checked
delivery sites:
1
https://very-english.co.uk/images/2309uk1.doc
2
https://lady-riccarda.de/scripts/2309uk1.doc