MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 445cff17f5e8f43bcda08e999a89c25c68c9c4f9599ca12d29d3ec1c82715664. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 2
| SHA256 hash: | 445cff17f5e8f43bcda08e999a89c25c68c9c4f9599ca12d29d3ec1c82715664 |
|---|---|
| SHA3-384 hash: | 03b81d00e4a3663738181d561396e0f17299fd3718a483850e25fa060fcdf3796719863987ee245ee6199ef4bc27e73a |
| SHA1 hash: | 6f3e66ea97cf731c231456e3169241fc932e2aa7 |
| MD5 hash: | f708e319771f9a83311bbfb2f4e72780 |
| humanhash: | carpet-winter-stream-snake |
| File name: | Westpac_Transfer_Receipt.img |
| Download: | download sample |
| File size: | 825'344 bytes |
| First seen: | 2020-10-07 05:03:25 UTC |
| Last seen: | Never |
| File type: | img |
| MIME type: | application/x-iso9660-image |
| ssdeep | 12288:YSivlLBiLXKOkkscfoh/0oxeVdVgY1afKzWlPT4khu:YhLfkscQCDg+EKzWtUkh |
| TLSH | 2C058DB368C2549DCD6A4A715CB580E0F97632CE3F938A0F719E430C0A16E57B75A39E |
| Reporter | |
| Tags: | img |
abuse_ch
Malspam distributing unidentified malware:HELO: mail.cswebservice.de
Sending IP: 46.252.24.25
From: Westpac Bank Australia <elizabward@westpac.com.au>
Reply-To: elizabward.westpac@mail.com
Subject: Your payment swift copy
Attachment: Westpac_Transfer_Receipt.img (contains "Westpac_Transfer_Receipt.img.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
79
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
img 445cff17f5e8f43bcda08e999a89c25c68c9c4f9599ca12d29d3ec1c82715664
(this sample)
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.