MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 188ea8720540579f6ec633808320ede594eb7efe136084da88795c05eaff6f0d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Matiex


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 188ea8720540579f6ec633808320ede594eb7efe136084da88795c05eaff6f0d
SHA3-384 hash: 567506a89250ef9d8dbc4d1eae959a7572353f3d09a31b8c83059f51c2d84cf07574ab26fe1153352246151eee1893e6
SHA1 hash: e16284d27fd084cfa1a3692ad555742ebfb274b3
MD5 hash: 538a481066fb860b1cff4d5d62a876ba
humanhash: september-pizza-spring-three
File name:Payment receipt.zip
Download: download sample
Signature Matiex
File size:1'167'298 bytes
First seen:2020-08-14 07:59:23 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:y/xWhgWloPLcFYnAvCeclUQI451gMj86ffPaxZ5pncjVTnfYw:exSflojiYAqrlnI4565cjVTnAw
TLSH 0C45233CD3916E71087FB1B68FE69F0FAB0E4E5A0029629AD9B5FB831152D5C933C524
Reporter abuse_ch
Tags:Matiex zip


Avatar
abuse_ch
Malspam distributing Matiex:

HELO: longmao.com
Sending IP: 45.138.172.137
From: 925 Silver Jewelry<david@longmao.com>
Subject: Payment receipt
Attachment: Payment receipt.zip (contains "Payment receipt.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
69
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Wacatac
Status:
Malicious
First seen:
2020-08-14 08:01:04 UTC
AV detection:
6 of 48 (12.50%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Matiex

zip 188ea8720540579f6ec633808320ede594eb7efe136084da88795c05eaff6f0d

(this sample)

  
Dropping
Matiex
  
Delivery method
Distributed via e-mail attachment

Comments