General

  • Target

    2ec3ae13b9bdc2dfdb598e20ae327fd0_NeikiAnalytics

  • Size

    68KB

  • Sample

    240510-awx88sgc6y

  • MD5

    2ec3ae13b9bdc2dfdb598e20ae327fd0

  • SHA1

    601e71150f9440e33570b5baccffd067c1ab2e3c

  • SHA256

    f9578cf7b4915ec42d1f9954299ed34bb85e701101e024e65309c8a7a550ec69

  • SHA512

    e2a5481e21395591db9a42d00e69330c362f44544b74eaedaf6e5fea491005fd2709d7ddaa1dfb57ba5f35302bf1613706c58887e8de3bb246cb95684b30a175

  • SSDEEP

    1536:5Y9jw/dUT62rGdiUOWWrMffJ+AxM+I+ceWgP/KmVQV:5Y9CUT62/UOVMffJ+AW+I+cR

Score
10/10

Malware Config

Targets

    • Target

      2ec3ae13b9bdc2dfdb598e20ae327fd0_NeikiAnalytics

    • Size

      68KB

    • MD5

      2ec3ae13b9bdc2dfdb598e20ae327fd0

    • SHA1

      601e71150f9440e33570b5baccffd067c1ab2e3c

    • SHA256

      f9578cf7b4915ec42d1f9954299ed34bb85e701101e024e65309c8a7a550ec69

    • SHA512

      e2a5481e21395591db9a42d00e69330c362f44544b74eaedaf6e5fea491005fd2709d7ddaa1dfb57ba5f35302bf1613706c58887e8de3bb246cb95684b30a175

    • SSDEEP

      1536:5Y9jw/dUT62rGdiUOWWrMffJ+AxM+I+ceWgP/KmVQV:5Y9CUT62/UOVMffJ+AW+I+cR

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks