MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7f5764844ab366849a5c4dc0c5b6af4fce6b96b1f8411a8b6e4484a418aaf1d7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Matiex


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 7f5764844ab366849a5c4dc0c5b6af4fce6b96b1f8411a8b6e4484a418aaf1d7
SHA3-384 hash: f66a79c972ba40a7b2d143b493d9692f6ed2ac86e0b52bd5280b4dceec7ff2c8daaa55b1596bb460e1982fe8e0028418
SHA1 hash: 1a719a0864b00ca16207d391d91c7c1461c6af59
MD5 hash: eca4790af75d4e727b47c93f37642cbd
humanhash: stairway-table-oxygen-north
File name:DEKONT.rar
Download: download sample
Signature Matiex
File size:206'366 bytes
First seen:2020-10-15 13:09:03 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:lqOXi9G8SiW0YoLrea/LMi7PZnxSr3NL3AwbvAX+L:lqOXi9XWGx/LNRxo3pAGvm+L
TLSH 1A1412B1C20DCF750C58D30CE18D8AB7A91A369688C1CDC736385A95D2BBFD0E9A1E17
Reporter abuse_ch
Tags:GarantiBBVA geo Matiex rar TUR


Avatar
abuse_ch
Malspam distributing Matiex:

HELO: hosted-by.rootlayer.net
Sending IP: 185.222.57.209
From: Garanti BBVA Internet <dekont@garantibbva.com.tr>
Subject: DEKONT
Attachment: DEKONT.rar (contains "DEKONT.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
99
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Matiex

zip 7f5764844ab366849a5c4dc0c5b6af4fce6b96b1f8411a8b6e4484a418aaf1d7

(this sample)

  
Dropping
Matiex
  
Delivery method
Distributed via e-mail attachment

Comments