36368c9fd1e1a36e36b4f3138041c284
Classification: Malicious
36368c9fd1e1a36e36b4f3138041c284 is a malicious file sample. Linked to Lucifer malware. Reported by 1 threat source, last seen 2021-12-06.
Detection summary
- 73 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: LUCIFER (S0532)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Lucifer | Abuse.ch | 2021-12-06 12:49:46 | 2021-12-06 12:49:46 | malicious-activity | S0532 Lucifer |
Sample information
- Filenames
- 36368c9fd1e1a36e36b4f3138041c284
- File type
- application/x-dosexec
- MD5
36368c9fd1e1a36e36b4f3138041c284- SHA-1
e0dc337ef5f736923844788f08cccea3419af8b6- SHA-256
c4e7f9976fa37c7489423ab3c576c4d273f5a53e922e62073fa2fc143a6c65a5- First indexed
- 2021-12-06 13:15:05
- Last updated
- 2025-10-08 16:14:19
Antivirus detections
| Engine | Detection |
|---|---|
| Lionic | Trojan.Win32.Bulz.4!c |
| MicroWorld-eScan | Trojan.GenericKD.47558052 |
| FireEye | Generic.mg.36368c9fd1e1a36e |
| McAfee | RDN/Generic.dx |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Alibaba | Trojan:MSIL/Startun.aa072ea8 |
| K7GW | Trojan-Downloader ( 0058b6431 ) |
| K7AntiVirus | Trojan-Downloader ( 0058b6431 ) |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | MSIL/TrojanDownloader.Agent.JRM |
| APEX | Malicious |
| Paloalto | generic.ml |
| Kaspersky | HEUR:Trojan.MSIL.Startun.gen |
| BitDefender | Trojan.GenericKD.47558052 |
| Avast | Win32:PWSX-gen [Trj] |
| Ad-Aware | Trojan.GenericKD.47558052 |
| Emsisoft | Trojan.GenericKD.47558052 (B) |
| DrWeb | Trojan.DownloaderNET.204 |
| McAfee-GW-Edition | RDN/Generic.dx |
| Sophos | Mal/Generic-S |
| Ikarus | Trojan-Downloader.MSIL.Agent |
| GData | Trojan.GenericKD.47558052 |
| MAX | malware (ai score=88) |
| Gridinsoft | Ransom.Win32.Sabsik.sa |
| Microsoft | Trojan:Win32/Sabsik.FL.B!ml |
| AhnLab-V3 | Trojan/Win.Generic.C4814589 |
| BitDefenderTheta | Gen:NN.ZemsilF.34062.am0@aabto5i |
| ALYac | Trojan.GenericKD.47558052 |
| Malwarebytes | Malware.AI.1854551074 |
| TrendMicro-HouseCall | TROJ_GEN.R002H07L421 |
| SentinelOne | Static AI - Malicious PE |
| MaxSecure | Trojan.Malware.300983.susgen |
| Fortinet | PossibleThreat |
| AVG | Win32:PWSX-gen [Trj] |
| Panda | Trj/GdSda.A |
| ALYac | Trojan.Downloader.MSIL |
| Alibaba | Trojan:MSIL/Startun.efab133d |
| Arcabit | IL:Trojan.MSILZilla.D2DE6 |
| BitDefender | IL:Trojan.MSILZilla.11750 |
| Bkav | W32.AIDetectMalware.CS |
| CAT-QuickHeal | Trojan.YakbeexMSIL.ZZ4 |
| CTX | exe.trojan.msil |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| Elastic | malicious (moderate confidence) |
| Emsisoft | IL:Trojan.MSILZilla.11750 (B) |
| Fortinet | MSIL/Small.COG!tr |
| GData | IL:Trojan.MSILZilla.11750 |
| Detected | |
| Gridinsoft | Ransom.Win32.Sabsik.oa!s1 |
| Jiangmin | Trojan.MSIL.aloxj |
| K7AntiVirus | Trojan ( 700000121 ) |
| K7GW | Trojan ( 700000121 ) |
| Lionic | Trojan.Win32.Startun.4!c |
| Malwarebytes | Malware.AI.3802125534 |
| MaxSecure | Trojan.Malware.74629951.susgen |
| McAfee | Artemis!36368C9FD1E1 |
| McAfeeD | ti!C4E7F9976FA3 |
| MicroWorld-eScan | IL:Trojan.MSILZilla.11750 |
| Microsoft | Trojan:Win32/Fimal!rfn |
| Rising | Downloader.Agent!8.B23 (CLOUD) |
| Sangfor | Suspicious.Win32.Save.a |
| Skyhigh | Artemis!Trojan |
| Tencent | Malware.Win32.Gencirc.13b63628 |
| TrendMicro | TROJ_FRS.0NA103L721 |
| TrendMicro-HouseCall | TROJ_FRS.0NA103L721 |
| VBA32 | Trojan.DownloaderNET |
| VIPRE | IL:Trojan.MSILZilla.11750 |
| Varist | W32/ABTrojan.OZZW-0375 |
| Xcitium | Malware@#nvyre7qyquy1 |
| Zillya | Downloader.Agent.Win32.456532 |
| alibabacloud | Trojan[downloader]:MSIL/Startun.gyf |
| huorong | Trojan/Generic!BF0A0CE42CE3DEFE |