MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7f6c4bd3d08ae6336af2e59ad2d584fb2cf8c392dc6caa23f3bb9cdfd1dd43fc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



NanoCore


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 7f6c4bd3d08ae6336af2e59ad2d584fb2cf8c392dc6caa23f3bb9cdfd1dd43fc
SHA3-384 hash: 42e30bee2c61e7466d4a5b7113494e8026487055a781b4b2750e79bd5821e2d4c2f18b1556dd6a4fde04ad28ebe7aa07
SHA1 hash: d510ae028bd20b241013636d9c106c96ed705a15
MD5 hash: 5d0480d8a00e76c269d0707aa3e54c36
humanhash: alpha-november-romeo-red
File name:item_sheet_728_2020_PDF.gz
Download: download sample
Signature NanoCore
File size:406'235 bytes
First seen:2020-07-29 05:24:36 UTC
Last seen:2020-07-29 05:33:19 UTC
File type: gz
MIME type:application/x-rar
ssdeep 12288:lzj5qSJtVsASccFKWUa9q/JclpJS7BUr2UB:lJqQPjjWH4BkTSdI7B
TLSH 2E842332CFC6CC87C4D776620BF34CE869C5267265E402544676EFAA5D86EC5FB60382
Reporter jarumlus
Tags:NanoCore

Intelligence


File Origin
# of uploads :
2
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.FormBook
Status:
Malicious
First seen:
2020-07-29 01:46:00 UTC
AV detection:
18 of 29 (62.07%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

NanoCore

gz 7f6c4bd3d08ae6336af2e59ad2d584fb2cf8c392dc6caa23f3bb9cdfd1dd43fc

(this sample)

  
Dropped by
NanoCore
  
Delivery method
Distributed via e-mail attachment

Comments