MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f663a4ad9cc36251114439048169dca1ecd66ce8332eff691133ce718ea4d6ec. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Formbook


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: f663a4ad9cc36251114439048169dca1ecd66ce8332eff691133ce718ea4d6ec
SHA3-384 hash: bc7243d0fb13670484ae905ca013c9665fe1d814a342360ccbb74c635fd192edb9972e587949940e57d02e1e3d99bf7a
SHA1 hash: d790c479aa6b5a82878b32bf66cb5f11c96033a4
MD5 hash: 677b6b5e69dcae8f3b221d461f3c3127
humanhash: virginia-yellow-double-mississippi
File name:EPDA - MT ALPHA MARINE.pdf.arj
Download: download sample
Signature Formbook
File size:350'769 bytes
First seen:2020-06-26 05:40:44 UTC
Last seen:Never
File type: arj
MIME type:application/x-rar
ssdeep 6144:VLhPq7Wszyji6D1yPXaRvmluRKb6wZdKbG8x+4gXB9dbLlRlTpdV6GMe3L7awnxT:3q7WuyByo22wZdKyAMXdbn1PV6GMe3Lp
TLSH 137423A23D09E5E6D632334A0784A81818D8525A86C5DFF1258F9D1ABDDC8EFC32D3D7
Reporter jarumlus
Tags:FormBook

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2020-06-26 05:42:05 UTC
AV detection:
5 of 48 (10.42%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Formbook

arj f663a4ad9cc36251114439048169dca1ecd66ce8332eff691133ce718ea4d6ec

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments