MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 465a6743b9a2d17e33f7651bcffff32afdac0cb000885a691ea2aaec54305433. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Matiex


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 465a6743b9a2d17e33f7651bcffff32afdac0cb000885a691ea2aaec54305433
SHA3-384 hash: 367278c368162a92550094d9ed5e4262731a682634bcdfc3210ccb21987b41dc07d787b1c7ba08df74f469f45ad183b1
SHA1 hash: 0198961179578fa86cf69f57dd94555b579f08bd
MD5 hash: 7346a2df65da5e40015040d16db71da6
humanhash: mirror-georgia-green-wolfram
File name:T.HALK BANKASI A.S. 31..07.2020 - 04.08.2020 Hesap Ekstresi.z
Download: download sample
Signature Matiex
File size:745'999 bytes
First seen:2020-08-04 11:06:36 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:2uwjBlGI52G0Wk/HBCyS/+/8tuU6D6CCG3vC+tvX7toPyT5oR45fv7O:2uEBr5J0WgHEKjZmROCCjaPy6z
TLSH FAF423D348D4262B14368E75EC9E2DB5C6FCB813656E847769E306785CCFE4A0CF0A89
Reporter abuse_ch
Tags:geo Halkbank Matiex TUR z


Avatar
abuse_ch
Malspam distributing Matiex:

HELO: halkbank.com.tr
Sending IP: 185.222.57.209
From: HALKBANK E-EKSTRE <Gulsen.AYHANYANAR@halkbank.com.tr>
Subject: T.HALK BANKASI A.S. 31.07.2020 - 04.08.2020 Hesap Ekstresi
Attachment: T.HALK BANKASI A.S. 31..07.2020 - 04.08.2020 Hesap Ekstresi.z (contains "T.HALK BANKASI A.S. 31..07.2020 - 04.08.2020 Hesap Ekstresi.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
81
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Woreflint
Status:
Malicious
First seen:
2020-08-04 11:08:07 UTC
AV detection:
7 of 48 (14.58%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Matiex

zip 465a6743b9a2d17e33f7651bcffff32afdac0cb000885a691ea2aaec54305433

(this sample)

  
Dropping
Matiex
  
Delivery method
Distributed via e-mail attachment

Comments