General

  • Target

    f04f5b372dad9dac6090fa2fae57d510_NeikiAnalytics.exe

  • Size

    19KB

  • Sample

    240519-tstw7afb5z

  • MD5

    f04f5b372dad9dac6090fa2fae57d510

  • SHA1

    188a5f7bf10cb0cc6a4900b9bf4b17ae9d17d30d

  • SHA256

    b3587acb9dbdee77810b11762330880ec54b93b9d4599f219cad87009c4735b6

  • SHA512

    fd1d438f0d296d168a19bc83e1d8ebd97b511dbca09b26e9e881bdc83b8be9df267a2605c613fa607f6f7b9b8206eebe4e46eccf0cf870efad7aba5cdfe815f1

  • SSDEEP

    384:ZKRHBDj1y6sX7d/ZctaQTKfV1T6CSB8Oye3QBYLOU:URHBfCX7PcAD6CC8Oye3QaSU

Score
10/10

Malware Config

Targets

    • Target

      f04f5b372dad9dac6090fa2fae57d510_NeikiAnalytics.exe

    • Size

      19KB

    • MD5

      f04f5b372dad9dac6090fa2fae57d510

    • SHA1

      188a5f7bf10cb0cc6a4900b9bf4b17ae9d17d30d

    • SHA256

      b3587acb9dbdee77810b11762330880ec54b93b9d4599f219cad87009c4735b6

    • SHA512

      fd1d438f0d296d168a19bc83e1d8ebd97b511dbca09b26e9e881bdc83b8be9df267a2605c613fa607f6f7b9b8206eebe4e46eccf0cf870efad7aba5cdfe815f1

    • SSDEEP

      384:ZKRHBDj1y6sX7d/ZctaQTKfV1T6CSB8Oye3QBYLOU:URHBfCX7PcAD6CC8Oye3QaSU

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks