Fedex clearance receipt.img
Classification: Malicious
Fedex clearance receipt.img is a malicious file sample. Linked to Lucifer malware. Reported by 1 threat source, last seen 2020-09-07.
Detection summary
- 44 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: LUCIFER (S0532)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Lucifer | Abuse.ch | 2020-09-07 07:52:45 | 2020-09-07 07:52:45 | malicious-activity | S0532 Lucifer |
Sample information
- Filenames
- Fedex clearance receipt.img
- File type
- application/x-iso9660-image
- MD5
0c4078d4772153dbbedd8f016e36a008- SHA-1
1f53d2b1e075ff1148e478741a7549990dc53b30- SHA-256
48269ac30385584c424e63c11dc76b212250b7ffbdfbc8ee2009bece03991418- First indexed
- 2020-09-07 08:15:05
- Last updated
- 2025-09-16 15:32:08
Antivirus detections
| Engine | Detection |
|---|---|
| FireEye | Gen:Variant.Ursu.417006 |
| Sangfor | Malware |
| BitDefenderTheta | Gen:NN.ZemsilF.34216.Jm0@a45N3De |
| ESET-NOD32 | a variant of MSIL/GenKryptik.ERVA |
| Kaspersky | HEUR:Trojan-PSW.MSIL.Agensla.gen |
| BitDefender | Gen:Variant.Ursu.417006 |
| Tencent | Msil.Trojan-qqpass.Qqrob.Gbo |
| GData | Gen:Variant.Ursu.417006 (2x) |
| Arcabit | Trojan.Ursu.D65CEE |
| ZoneAlarm | HEUR:Trojan-PSW.MSIL.Agensla.gen |
| Microsoft | Trojan:Win32/Woreflint.A!cl |
| MAX | malware (ai score=83) |
| Ikarus | Win32.Outbreak |
| Fortinet | MSIL/Agent.2483!tr |
| AVG | Win32:TrojanX-gen [Trj] |
| Antiy-AVL | Trojan/Generic.ASMalwS.30E68BE |
| Arcabit | Trojan.Generic.D20F7FF2 |
| Avast | Win32:TrojanX-gen [Trj] |
| Avira | TR/Kryptik.lsboz |
| BitDefender | Trojan.GenericKD.34570226 |
| BitDefenderTheta | Gen:NN.ZemsilF.34692.Jm0@a45N3De |
| CAT-QuickHeal | Trojanpws.Msil |
| Cynet | Malicious (score: 99) |
| Cyren | W32/MSIL_Kryptik.BOJ.gen!Eldorado |
| DrWeb | Trojan.Siggen10.12475 |
| ESET-NOD32 | Win32/TrojanDropper.Microjoin.C |
| Emsisoft | Trojan.GenericKD.34570226 (B) |
| FireEye | Trojan.GenericKD.34570226 |
| Fortinet | MSIL/Kryptik.XRP!tr |
| GData | Win32.Trojan-Stealer.AgentTesla.7K6PLF (2x) |
| Gridinsoft | Trojan.U.Kryptik.oa |
| Ikarus | Trojan.MSIL.Krypt |
| Lionic | Trojan.MSIL.Agensla.i!c |
| McAfee-GW-Edition | Fareit-FZD!B362E0F04E71 |
| MicroWorld-eScan | Trojan.GenericKD.34570226 |
| Microsoft | Trojan:MSIL/AgentTesla.MK!MTB |
| NANO-Antivirus | Trojan.Win32.Agensla.hvaaef |
| Rising | Dropper.Microjoin!8.982 (KTSE) |
| Sangfor | Trojan.MSIL.AgentTesla.MK |
| Sophos | Mal/Generic-R + Troj/Bladab-UG |
| VBA32 | TScope.Trojan.MSIL |
| Yandex | Trojan.AvsArher.bTJEKx |
| Zillya | Trojan.Agensla.Win32.9931 |
| Zoner | Trojan.Win32.93605 |