MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 347de6bb7d62049399af0bacef77fed4bfcfdd279eec2d2f548bcdc667521584. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



FormBook


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 347de6bb7d62049399af0bacef77fed4bfcfdd279eec2d2f548bcdc667521584
SHA3-384 hash: b718a0359e0ae518c0e3fab3d417918faac5b12ac12d5fa3c02888227cc42db37ff736bb7ea8163824a1dcf222623a57
SHA1 hash: 1cbeaaba1cb498f119f5244176a7e5370e67352c
MD5 hash: 5fe9b152cad3699da78e27117668e94b
humanhash: nineteen-cat-wyoming-kentucky
File name:new order.rar
Download: download sample
Signature FormBook
File size:27'631 bytes
First seen:2020-03-20 15:57:22 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 384:Opayx09K89xbqR2X39JwGvxZpIINS+f0U1bBKb3uqg0aj4+K9067y8tndFAVOjti:O4yUnqElpDIIw+fD43jc4R90Cy8L2c2L
TLSH 72C2E1C1DA76BAEBA0D15236C215DCD123988B2F497435B43DB034E6179B65C84C35E5
Reporter cocaman
Tags:COVID-19 rar

Intelligence


File Origin
# of uploads :
1
# of downloads :
88
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-03-21 02:58:55 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
19 of 45 (42.22%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

FormBook

rar 347de6bb7d62049399af0bacef77fed4bfcfdd279eec2d2f548bcdc667521584

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments