MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 e014a966b4b4f8ab4cee62c13b10c0eb3e20c900bd1b13012067590f2ca97acc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Matiex
Vendor detections: 5
| SHA256 hash: | e014a966b4b4f8ab4cee62c13b10c0eb3e20c900bd1b13012067590f2ca97acc |
|---|---|
| SHA3-384 hash: | d46feaa5cedc088e420bf52208cc0986968f777da531bdb86940eca366cb7645c1e0622b0ee01ed6fde2a1d61d335037 |
| SHA1 hash: | f810f52388f92cce9961016616a256b386804447 |
| MD5 hash: | 8389b94cf4be666f00f5864b4067cdd4 |
| humanhash: | item-alabama-india-carpet |
| File name: | DEKONT.rar |
| Download: | download sample |
| Signature | Matiex |
| File size: | 555'365 bytes |
| First seen: | 2020-11-09 15:51:26 UTC |
| Last seen: | Never |
| File type: | zip |
| MIME type: | application/zip |
| ssdeep | 12288:lqYJQfOqF0GJkhr1NNGjAewkLP1+yIGuAAGkIjxQfmHcDXf/w:l/QmqF0YcNN8LP1+y9GjfFDv4 |
| TLSH | 28C423317BF79B05D1EAD6505DD4A203238908BD6DDC278714F3D09ECB0B7A6170AA7A |
| Reporter | |
| Tags: | Matiex rar |
abuse_ch
Malspam distributing Matiex:HELO: host.etrade.kiev.ua
Sending IP: 185.203.241.24
From: Abduallah, Moataz <frolova@etrade.kiev.ua>
Reply-To: ikrns999@gmail.com
Subject: DEKONT
Attachment: DEKONT.rar (contains "09800000000080.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
96
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Result
Verdict:
SUSPICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-11-09 10:24:17 UTC
AV detection:
21 of 29 (72.41%)
Threat level:
5/5
Detection(s):
Malicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Kryptik
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Dropping
Matiex
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.