MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e9b466a1b3df2b320aefc4a97d9c8a1f182731a943eea65c4565d85aa4aa7c35. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Formbook


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: e9b466a1b3df2b320aefc4a97d9c8a1f182731a943eea65c4565d85aa4aa7c35
SHA3-384 hash: 0b3d940c53bee8a379f08ab1ce682e310d12a73746c04a20c00462720b5caa8d41bd61dd65ce4d7f0a2ab6ff0f978cf3
SHA1 hash: a62887f76cdaabdfcac5514bb5efcdf7993e6152
MD5 hash: 855b05c57fe4ba924562cc29a7a01209
humanhash: violet-yankee-virginia-uncle
File name:Materials.iso
Download: download sample
Signature Formbook
File size:624'640 bytes
First seen:2021-01-18 11:50:15 UTC
Last seen:2021-01-18 18:31:22 UTC
File type: iso
MIME type:application/x-iso9660-image
ssdeep 12288:i8WvAMYGY5RFNBeU7vgTOz9tCe03udqvKfa02fAPVbAg+KrImM:i8W4T17vgKzFpqvCf+KrI5
TLSH A6D4BE20B880C032C073293689B9E2B2197EA5305E655A8FBBCC19B95F751D1B73977F
Reporter lowmal3
Tags:FormBook

Intelligence


File Origin
# of uploads :
2
# of downloads :
131
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2021-01-18 09:45:08 UTC
AV detection:
9 of 46 (19.57%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Formbook

iso e9b466a1b3df2b320aefc4a97d9c8a1f182731a943eea65c4565d85aa4aa7c35

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments