MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7d4a8179d8424f6a0c4ed80cd491857d9b284aa2f9b3d33b0991d2573d39d376. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



NetWire


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 7d4a8179d8424f6a0c4ed80cd491857d9b284aa2f9b3d33b0991d2573d39d376
SHA3-384 hash: 81c8894114cc4c9985c2949a92f2bce0aed33db13dd4d8113f9506fc11eba4596e914bf47c3137315722e4c70431afed
SHA1 hash: 0e055a409a800c6f92507751d58a8701c8716438
MD5 hash: f1c8f74d3a0d2a4a489aecb059767683
humanhash: kentucky-comet-wolfram-romeo
File name:TNT TRACKING DETAILS.PDF.z
Download: download sample
Signature NetWire
File size:267'296 bytes
First seen:2021-01-07 17:37:53 UTC
Last seen:Never
File type: z
MIME type:application/x-rar
ssdeep 6144:9X0XAW7xBC9ukZiyJynIZo+1avaW5eu5HcVhKx:Mw/zcnIa+1ajGvk
TLSH 8F4423EE972D6241DB926333F35854547B9CC9AB4D1D623F948EB018C262D01E33BADD
Reporter abuse_ch
Tags:TNT z


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: server.amandianaeze.ga
Sending IP: 37.77.106.252
From: TNT EXPRESS INC <tnt@amandianaeze.ga>
Subject: Consignment Notification: You have A Package With Us
Attachment: TNT TRACKING DETAILS.PDF.z (contains "TNT TRACKING DETAILS.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
208
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Binary.Trojan.Generic
Status:
Suspicious
First seen:
2021-01-07 17:38:06 UTC
AV detection:
5 of 46 (10.87%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

NetWire

z 7d4a8179d8424f6a0c4ed80cd491857d9b284aa2f9b3d33b0991d2573d39d376

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments