MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 7f6c4bd3d08ae6336af2e59ad2d584fb2cf8c392dc6caa23f3bb9cdfd1dd43fc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
NanoCore
Vendor detections: 4
| SHA256 hash: | 7f6c4bd3d08ae6336af2e59ad2d584fb2cf8c392dc6caa23f3bb9cdfd1dd43fc |
|---|---|
| SHA3-384 hash: | 42e30bee2c61e7466d4a5b7113494e8026487055a781b4b2750e79bd5821e2d4c2f18b1556dd6a4fde04ad28ebe7aa07 |
| SHA1 hash: | d510ae028bd20b241013636d9c106c96ed705a15 |
| MD5 hash: | 5d0480d8a00e76c269d0707aa3e54c36 |
| humanhash: | alpha-november-romeo-red |
| File name: | item_sheet_728_2020_PDF.gz |
| Download: | download sample |
| Signature | NanoCore |
| File size: | 406'235 bytes |
| First seen: | 2020-07-29 05:24:36 UTC |
| Last seen: | 2020-07-29 05:33:19 UTC |
| File type: | gz |
| MIME type: | application/x-rar |
| ssdeep | 12288:lzj5qSJtVsASccFKWUa9q/JclpJS7BUr2UB:lJqQPjjWH4BkTSdI7B |
| TLSH | 2E842332CFC6CC87C4D776620BF34CE869C5267265E402544676EFAA5D86EC5FB60382 |
| Reporter | |
| Tags: | NanoCore |
Intelligence
File Origin
# of uploads :
2
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Threat name:
Win32.Trojan.FormBook
Status:
Malicious
First seen:
2020-07-29 01:46:00 UTC
AV detection:
18 of 29 (62.07%)
Threat level:
5/5
Detection(s):
Malicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Farheyt
Score:
0.80
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Dropped by
NanoCore
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.