MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 55595411c1ca2c2157ce7cdf090e4d2f976dfb0efec241e1a4070a6fb436f912. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Matiex


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 55595411c1ca2c2157ce7cdf090e4d2f976dfb0efec241e1a4070a6fb436f912
SHA3-384 hash: 3354935b3ac29c40cac96b79d31b0639eccf96347e824d0424c194ee5d0d610b0335117f4dc41e35faf7f652c43e379e
SHA1 hash: 6c22644ac82130acdda619f17471ad857f5d0c00
MD5 hash: 22de5cf44b8e5b2030a3d502713caabc
humanhash: freddie-hotel-moon-pip
File name:DEKONT.zip
Download: download sample
Signature Matiex
File size:245'383 bytes
First seen:2020-10-15 13:01:50 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:i/6j4cZtLi7i4Sqr0zd/pkMcjIWuW5lO3TW5tMeeu40P6s9nmw:AmByeNZ+U1Wlv4eFdiKF
TLSH DE34238CDB0B5B78C00FB5A7BC1557091C8BCB6D2D6ACB27BD94E89B8357042A079E47
Reporter abuse_ch
Tags:GarantiBBVA geo Matiex TUR zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: hosted-by.rootlayer.net
Sending IP: 185.222.57.209
From: Garanti BBVA Internet <dekont@garantibbva.com.tr>
Subject: DEKONT
Attachment: DEKONT.zip (contains "DEKONT.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
105
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Matiex

zip 55595411c1ca2c2157ce7cdf090e4d2f976dfb0efec241e1a4070a6fb436f912

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments