MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7466143aea3247a4b8e352e6300794cb5613cfb7490f4eba27fc836e4d7c6ac5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Formbook


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 7466143aea3247a4b8e352e6300794cb5613cfb7490f4eba27fc836e4d7c6ac5
SHA3-384 hash: 4dad1427441341af2fc2ab0b74446a52a6a2c34404cf45caf965678446407a2ab05b5db4b2f3cba1dda0f1f6cb0f619f
SHA1 hash: 35f19df2012f1d448893ca8659c0a45d585e5c39
MD5 hash: a5ebb08f65046219e8fb3f9cb0c0063b
humanhash: april-may-mobile-oscar
File name:MSC DIANA.zip
Download: download sample
Signature Formbook
File size:474'579 bytes
First seen:2020-08-06 08:01:13 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:ttiGM6ld7GGO45144wnAJwO0kaNgMcZh+gt/Gdrg08pM:t5M6lduW1jwnAB0kWgr/RRGl82
TLSH 7BA4235E33A09625BC713A7DDE8062C9D59FF49AF4D945B8B980783BC80D9CA4CCEB40
Reporter abuse_ch
Tags:FormBook zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: mail.esipooaintl.cf
Sending IP: 161.129.67.157
From: bcjung <bcjung@mscnbs.com>
Subject: FW: MSC DIANA REPAIR REQUIREMENT
Attachment: MSC DIANA.zip (contains "MSC DIANA.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
75
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Wacatac
Status:
Malicious
First seen:
2020-08-06 08:03:06 UTC
AV detection:
9 of 48 (18.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Formbook

zip 7466143aea3247a4b8e352e6300794cb5613cfb7490f4eba27fc836e4d7c6ac5

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments