MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0127b631f8153cab11f6e747068acd58681a796de0e2e02384b2860fe290ecd8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Matiex


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 0127b631f8153cab11f6e747068acd58681a796de0e2e02384b2860fe290ecd8
SHA3-384 hash: 78ca38e1df277e67123c4a94c90a709dcaeab7f96eae77a39252a9270f03bf101a1fd36b43c96078f59ee34100bd3bd6
SHA1 hash: a999e25f9d5c756c65ae764e65992b2c388275f7
MD5 hash: 320a9f6f760b86523b0a1c001a6ed0ed
humanhash: tennessee-hot-oregon-wolfram
File name:46.IMG
Download: download sample
Signature Matiex
File size:212'157 bytes
First seen:2020-10-18 10:52:29 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:GlEXkjRQmwckaaYqshIXhiROwQW9UO4MsP5XdBQXmjPH1TowLTuZJa:N0wAqGUiRuWxKU4ToQAY
TLSH BA24120CEDC83461A825C5EC86ECDA9817CF9FEF960B90CAC69DE0E574E464106F92DC
Reporter abuse_ch
Tags:img Matiex


Avatar
abuse_ch
Malspam distributing Matiex:

HELO: hosted-by.rootlayer.net
Sending IP: 185.222.57.209
From: fkhalife@poslogistics.com
Subject: Urgent Purchase Order
Attachment: 46.IMG (contains "46.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
138
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Matiex
Status:
Malicious
First seen:
2020-10-18 08:48:44 UTC
AV detection:
26 of 48 (54.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Matiex

zip 0127b631f8153cab11f6e747068acd58681a796de0e2e02384b2860fe290ecd8

(this sample)

  
Dropping
Matiex
  
Delivery method
Distributed via e-mail attachment

Comments