MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b72a3f61b90975c1e753aa646d5027c57b47ecb107e956926288e90340aa0f36. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Formbook


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: b72a3f61b90975c1e753aa646d5027c57b47ecb107e956926288e90340aa0f36
SHA3-384 hash: 328cf5d22ef8a875c2c216a16c4a0f116942c06c37b1224625c2f635dbda60253513990cde1f8378b830455d4276555b
SHA1 hash: 982726c7a9cc57bea72250386070f6f2eb966a86
MD5 hash: 18fb21f1b0857a1e0716a721645865be
humanhash: sink-orange-football-stairway
File name:18fb21f1b0857a1e0716a721645865be.exe
Download: download sample
Signature Formbook
File size:1'405'676 bytes
First seen:2021-10-07 08:58:02 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 12288:rnpoKk7n+nc4x0GC6qQg59DOD3fMfebpez15Z86VCEfIw3XZ+mllmTgVuPQuc1zn:l3fMfeogzc6diOTcggjgW44LbX
TLSH T15055B34823542A5BD03D22AE2230304D03F7E61336D5EEDA3DDD67F6EAD6A051F928D6
Reporter abuse_ch
Tags:exe FormBook

Intelligence


File Origin
# of uploads :
1
# of downloads :
133
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
18fb21f1b0857a1e0716a721645865be.exe
Verdict:
No threats detected
Analysis date:
2021-10-07 10:16:10 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Malware
Maliciousness:
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
overlay
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
52 / 100
Signature
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
b72a3f61b90975c1e753aa646d5027c57b47ecb107e956926288e90340aa0f36
MD5 hash:
18fb21f1b0857a1e0716a721645865be
SHA1 hash:
982726c7a9cc57bea72250386070f6f2eb966a86
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Formbook

Executable exe b72a3f61b90975c1e753aa646d5027c57b47ecb107e956926288e90340aa0f36

(this sample)

  
Delivery method
Distributed via web download

Comments