MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 dd2daa1f70321c9e2d0087fc8fd54d7703cc83a06a2383cf9fced3d33dfa4c0a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Matiex


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: dd2daa1f70321c9e2d0087fc8fd54d7703cc83a06a2383cf9fced3d33dfa4c0a
SHA3-384 hash: 45f0a1114909332f25456bf0d988cb6bdb021a00bd3fcdaa11ff480b9029634c734968a9ca7291370522295af5655bf6
SHA1 hash: 9da22b30ed35138ed903a59ca3f43ef18435eab4
MD5 hash: c9d153f16bc14e615dc42d05dbef199b
humanhash: maryland-early-utah-spaghetti
File name:4797508E2-20F2-4C2C-879A-1C358G.zip
Download: download sample
Signature Matiex
File size:258'611 bytes
First seen:2020-10-16 17:48:08 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:7PS+Cnypyc9K/eKtxQDw/6oO+Ml8Tbw1NjY6yb03QUrK7gW:WPn0ymDExQ8HO+MGa9H/3O7gW
TLSH 4144238CA53C5D8273B3396097029257061DD02FFD956C04B75DEF69614A23CA83B7FA
Reporter abuse_ch
Tags:Matiex zip


Avatar
abuse_ch
Malspam distributing Matiex:

HELO: hosted-by.rootlayer.net
Sending IP: 185.222.57.209
From: fkhalife@poslogistics.com
Subject: Urgent Purchase Order
Attachment: 4797508E2-20F2-4C2C-879A-1C358G.zip (contains "4797508E2-20F2-4C2C-879A-1C358G.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
87
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Matiex

zip dd2daa1f70321c9e2d0087fc8fd54d7703cc83a06a2383cf9fced3d33dfa4c0a

(this sample)

  
Dropping
Matiex
  
Delivery method
Distributed via e-mail attachment

Comments