FormBook Malware Being Distributed as .NET - ASEC BLOG
Common Information
Type Value
UUID 931dce37-7f1d-4e6e-9dc2-6a38616205ab
Fingerprint c3167ec98ddf0597
Analysis status DONE
Considered CTI value 0
Text language
Published Oct. 27, 2022, 8:52 a.m.
Added to db Nov. 7, 2022, 7:40 p.m.
Last updated Nov. 17, 2024, 6:53 p.m.
Headline FormBook Malware Being Distributed as .NET
Title FormBook Malware Being Distributed as .NET - ASEC BLOG
Detected Hints/Tags/Attributes 18/2/10
Source URLs
RSS Feed
Attributes
Details Type #Events CTI Value
Details Domain 45
paste.ee
Details Domain 4
www.gastries.info
Details File 1260
explorer.exe
Details File 13
addinprocess32.exe
Details File 533
ntdll.dll
Details File 1
%windir%\system32 folder is executed as a subprocess of explorer.exe
Details File 2
gastries.inf
Details md5 2
45ab0352a69644eb2305982585fa53f8
Details Url 2
http://paste.ee/8iodo/0
Details Url 2
http://www.gastries.info/keb5