Malware is highly Sophisticated and injects itself in various process memory and can record keystrokes, Clipboard Contents and HTTP Sessions. It responds to commands from C&C like System reboot, download and installs applications. Malware uses a technique called Lagos Island method which calls ntdll.dll(Windows native API) module from disk into memory and calls its exported functions directly. It also capable of Changing file path, extensions, registry key and much more. It was advertised previously in various hacking forums and it costs between $29 to $299.”]
Source: https://gbhackers.com/malware-formbook-cookies-passwords/