85d7b39bb88697ed93bd74c516f672cf.exe
Classification: Malicious
85d7b39bb88697ed93bd74c516f672cf.exe is a malicious file sample. Linked to Lucifer malware. Reported by 1 threat source, last seen 2020-05-27.
Detection summary
- 57 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: LUCIFER (S0532)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Lucifer | Abuse.ch | 2020-05-27 11:40:16 | 2020-05-27 11:40:16 | S0532 Lucifer |
Sample information
- Filenames
- 85d7b39bb88697ed93bd74c516f672cf.exe
- File type
- application/x-dosexec
- MD5
85d7b39bb88697ed93bd74c516f672cf- SHA-1
e87423ba179c4cd16dc40110f9efeadea7f329cf- SHA-256
6689bb01faa4b79ccbf36e24360b14f2ee181d2bf305b7ca59fd275109e92dc1- First indexed
- 2020-06-11 19:14:25
- Last updated
- 2026-04-13 04:23:40
Antivirus detections
| Engine | Detection |
|---|---|
| MicroWorld-eScan | Trojan.GenericKD.33912686 |
| VBA32 | TScope.Trojan.Delf |
| FireEye | Generic.mg.85d7b39bb88697ed |
| CAT-QuickHeal | Trojan.Wacatac |
| McAfee | RDN/Generic.grp |
| Cylance | Unsafe |
| VIPRE | Trojan.Win32.Generic!BT |
| K7AntiVirus | Trojan ( 005678511 ) |
| Alibaba | Trojan:Win32/FormBook.4524f852 |
| K7GW | Trojan ( 005678511 ) |
| Cybereason | malicious.a179c4 |
| Arcabit | Trojan.Generic.D205776E |
| TrendMicro | TROJ_GEN.R011C0WES20 |
| F-Prot | W32/Injector.JCY |
| Symantec | ML.Attribute.HighConfidence |
| APEX | Malicious |
| Avast | Win32:Malware-gen |
| ClamAV | Win.Trojan.LokiBot-7908075-0 |
| Kaspersky | HEUR:Trojan.Win32.Kryptik.gen |
| BitDefender | Trojan.GenericKD.33912686 |
| NANO-Antivirus | Trojan.Win32.Stealer.hkqqhs |
| Paloalto | generic.ml |
| AegisLab | Trojan.Win32.Kryptik.4!c |
| Rising | Trojan.Injector!8.C4 (CLOUD) |
| Endgame | malicious (high confidence) |
| Sophos | Mal/Fareit-AA |
| F-Secure | Trojan.TR/Injector.gbmlo |
| DrWeb | Trojan.PWS.Stealer.18836 |
| Zillya | Trojan.Injector.Win32.739536 |
| Invincea | heuristic |
| McAfee-GW-Edition | BehavesLike.Win32.Fareit.jh |
| Fortinet | W32/Injector.ELZG!tr |
| Trapmine | malicious.moderate.ml.score |
| Emsisoft | Trojan.GenericKD.33912686 (B) |
| SentinelOne | DFI - Suspicious PE |
| Cyren | W32/Injector.FYAR-0144 |
| Webroot | W32.Trojan.Gen |
| Avira | TR/Injector.gbmlo |
| Antiy-AVL | Trojan/Win32.Kryptik |
| Microsoft | Trojan:Win32/FormBook.CM!MTB |
| ZoneAlarm | HEUR:Trojan.Win32.Kryptik.gen |
| AhnLab-V3 | Suspicious/Win.Delphiless.X2066 |
| Acronis | suspicious |
| BitDefenderTheta | Gen:NN.ZelphiF.34126.OGW@aCFKN3hi |
| ALYac | Trojan.GenericKD.33912686 |
| TACHYON | Trojan/W32.DP-Agent.661504.K |
| Ad-Aware | Trojan.GenericKD.33912686 |
| Malwarebytes | Trojan.MalPack.DLF |
| ESET-NOD32 | a variant of Win32/Injector.EMGH |
| TrendMicro-HouseCall | TROJ_GEN.R011C0WES20 |
| Tencent | Win32.Trojan.Inject.Auto |
| Ikarus | Trojan.Inject |
| GData | Trojan.GenericKD.33912686 |
| AVG | Win32:Malware-gen |
| Panda | Trj/GdSda.A |
| CrowdStrike | win/malicious_confidence_90% (W) |
| Qihoo-360 | Win32/Trojan.469 |