General

  • Target

    0318417706053ef922735e72173eff80_NeikiAnalytics.exe

  • Size

    313KB

  • Sample

    240604-zx5gdabd7z

  • MD5

    0318417706053ef922735e72173eff80

  • SHA1

    7b3fbfdfb5e9abb26201e5729064d2e047cb693e

  • SHA256

    2533c02a1150c86916fa9eebdbeca0b2109b58fc9c29ad8c74f3a12f37965bd8

  • SHA512

    59470003bb370ece49581b34935fdb6ddfeaba677a056de29e841a13051251408b53796b029b7604ed90c157b8e67baef0a2745179b9b61d27c96e1dbdfba2ea

  • SSDEEP

    6144:/cm4FmowdHoSyZuo3F2Y9iE9MAkOCOu0EajNVBZr6y2Wff:N4wFHoSMu49P9mif

Malware Config

Targets

    • Target

      0318417706053ef922735e72173eff80_NeikiAnalytics.exe

    • Size

      313KB

    • MD5

      0318417706053ef922735e72173eff80

    • SHA1

      7b3fbfdfb5e9abb26201e5729064d2e047cb693e

    • SHA256

      2533c02a1150c86916fa9eebdbeca0b2109b58fc9c29ad8c74f3a12f37965bd8

    • SHA512

      59470003bb370ece49581b34935fdb6ddfeaba677a056de29e841a13051251408b53796b029b7604ed90c157b8e67baef0a2745179b9b61d27c96e1dbdfba2ea

    • SSDEEP

      6144:/cm4FmowdHoSyZuo3F2Y9iE9MAkOCOu0EajNVBZr6y2Wff:N4wFHoSMu49P9mif

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Malware Dropper & Backdoor - Berbew

      Berbew is a backdoor Trojan malware with capabilities to download and install a range of additional malicious software, such as other Trojans, ransomware, and cryptominers.

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks