General

  • Target

    750c3c64b0be8dc817ed59aaff2a6690_NeikiAnalytics

  • Size

    68KB

  • Sample

    240510-fj2nsacb7x

  • MD5

    750c3c64b0be8dc817ed59aaff2a6690

  • SHA1

    5cbead18e004ebb4ed9704bce58df1bd1aae0813

  • SHA256

    80bfc21b7f8292bc24f9ea0b26cdc45073d701113a45590585f9f4cdc0cbfe76

  • SHA512

    203fe77dff0b6639cf533de1068418102adc91665535932d41a4f33ae9df594bd9537be36d61ebe553791b41ed1ebfd736212e6ed28cefde8863fd0db35fa575

  • SSDEEP

    1536:5Y9jw/dUT62rGdiUOWWrMffJ+AxM+I+ceWgP/KmVQ8:5Y9CUT62/UOVMffJ+AW+I+cY

Score
10/10

Malware Config

Targets

    • Target

      750c3c64b0be8dc817ed59aaff2a6690_NeikiAnalytics

    • Size

      68KB

    • MD5

      750c3c64b0be8dc817ed59aaff2a6690

    • SHA1

      5cbead18e004ebb4ed9704bce58df1bd1aae0813

    • SHA256

      80bfc21b7f8292bc24f9ea0b26cdc45073d701113a45590585f9f4cdc0cbfe76

    • SHA512

      203fe77dff0b6639cf533de1068418102adc91665535932d41a4f33ae9df594bd9537be36d61ebe553791b41ed1ebfd736212e6ed28cefde8863fd0db35fa575

    • SSDEEP

      1536:5Y9jw/dUT62rGdiUOWWrMffJ+AxM+I+ceWgP/KmVQ8:5Y9CUT62/UOVMffJ+AW+I+cY

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks