General

  • Target

    46c440527c7d4395372773dc8c54bd80_NeikiAnalytics.exe

  • Size

    4KB

  • Sample

    240529-ga56aacb6v

  • MD5

    46c440527c7d4395372773dc8c54bd80

  • SHA1

    65f006375e3d65379df3c1627ce267f8d987ffe7

  • SHA256

    f9f30c96e8beef5d7d0968989a136fedaccab715e97285300288e772b04ddf93

  • SHA512

    4a8edca21b8b8fd98294724171b150a5535803c1f3a870d62460d554448d86401e430089031d11548e4e9ee7f8e7fd3c1063dae404d0e701e5e37b99e1e1b8eb

  • SSDEEP

    48:Zdni+Wyi18DN0nCvTaE6nc9fhXcGEY3sJd9ga91Rs1lnA7B8mOo4jUx7OtKGc3IS:Z0v4mUWKh9ctgC1RUnKymV44ShiD

Score
10/10

Malware Config

Targets

    • Target

      46c440527c7d4395372773dc8c54bd80_NeikiAnalytics.exe

    • Size

      4KB

    • MD5

      46c440527c7d4395372773dc8c54bd80

    • SHA1

      65f006375e3d65379df3c1627ce267f8d987ffe7

    • SHA256

      f9f30c96e8beef5d7d0968989a136fedaccab715e97285300288e772b04ddf93

    • SHA512

      4a8edca21b8b8fd98294724171b150a5535803c1f3a870d62460d554448d86401e430089031d11548e4e9ee7f8e7fd3c1063dae404d0e701e5e37b99e1e1b8eb

    • SSDEEP

      48:Zdni+Wyi18DN0nCvTaE6nc9fhXcGEY3sJd9ga91Rs1lnA7B8mOo4jUx7OtKGc3IS:Z0v4mUWKh9ctgC1RUnKymV44ShiD

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks