General

  • Target

    1ee3f25dbcbf6190bd943db915d7a3e0_NeikiAnalytics.exe

  • Size

    122KB

  • Sample

    240605-axgb4sgf7v

  • MD5

    1ee3f25dbcbf6190bd943db915d7a3e0

  • SHA1

    c2b5be7fa98eab471e130be6681f3b516bd9cc7f

  • SHA256

    18a0aed2228fa7c8025df9f3dd0a11fc0986254aa9aa8228e0681cf47925e98c

  • SHA512

    77caddc0d92cb3c8be25e9ff4f61348c2a0f70629579f9070baf264b42c6360a50bc9a6268c6c40c18a6ae54db914bf3588649a6115004504881110cbdbdfe29

  • SSDEEP

    1536:lvm1Fu8AjYaFwjRUdW7fmyY7aZYJVmy0KQbj6vbjuKoauGi4W:6u8ANCUdgfmD7zey0KUj6TjR9i4W

Malware Config

Targets

    • Target

      1ee3f25dbcbf6190bd943db915d7a3e0_NeikiAnalytics.exe

    • Size

      122KB

    • MD5

      1ee3f25dbcbf6190bd943db915d7a3e0

    • SHA1

      c2b5be7fa98eab471e130be6681f3b516bd9cc7f

    • SHA256

      18a0aed2228fa7c8025df9f3dd0a11fc0986254aa9aa8228e0681cf47925e98c

    • SHA512

      77caddc0d92cb3c8be25e9ff4f61348c2a0f70629579f9070baf264b42c6360a50bc9a6268c6c40c18a6ae54db914bf3588649a6115004504881110cbdbdfe29

    • SSDEEP

      1536:lvm1Fu8AjYaFwjRUdW7fmyY7aZYJVmy0KQbj6vbjuKoauGi4W:6u8ANCUdgfmD7zey0KUj6TjR9i4W

    • Malware Dropper & Backdoor - Berbew

      Berbew is a backdoor Trojan malware with capabilities to download and install a range of additional malicious software, such as other Trojans, ransomware, and cryptominers.

    • Modifies visibility of file extensions in Explorer

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Hide Artifacts

1
T1564

Hidden Files and Directories

1
T1564.001

Modify Registry

2
T1112

Discovery

System Information Discovery

1
T1082

Tasks