General

  • Target

    25391f3ce51192b3b262381e0e539b10_NeikiAnalytics.exe

  • Size

    321KB

  • Sample

    240605-br4qwshh8x

  • MD5

    25391f3ce51192b3b262381e0e539b10

  • SHA1

    bd3cb9aa6514100f18dddb3006949c17b0820bf9

  • SHA256

    0e290b7b446e7cb04f3e184a1e2ee721174a2bb45af2eb9c6072b9b778f10d19

  • SHA512

    0c919d0be78cb7acf5af52621e994a97d63e5a4ccb8a0e6c2529018f57cf07982e881d095d34ea5e9b94804feb79764fd11df435a66f36ffdba24d34af56f4fe

  • SSDEEP

    6144:9cm4FmowdHoSZrv9AEa3F2Y9iE9mJrtMsQBcqNLq3xg:/4wFHoSB969P9mJRMsfqV2q

Malware Config

Targets

    • Target

      25391f3ce51192b3b262381e0e539b10_NeikiAnalytics.exe

    • Size

      321KB

    • MD5

      25391f3ce51192b3b262381e0e539b10

    • SHA1

      bd3cb9aa6514100f18dddb3006949c17b0820bf9

    • SHA256

      0e290b7b446e7cb04f3e184a1e2ee721174a2bb45af2eb9c6072b9b778f10d19

    • SHA512

      0c919d0be78cb7acf5af52621e994a97d63e5a4ccb8a0e6c2529018f57cf07982e881d095d34ea5e9b94804feb79764fd11df435a66f36ffdba24d34af56f4fe

    • SSDEEP

      6144:9cm4FmowdHoSZrv9AEa3F2Y9iE9mJrtMsQBcqNLq3xg:/4wFHoSB969P9mJRMsfqV2q

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Malware Dropper & Backdoor - Berbew

      Berbew is a backdoor Trojan malware with capabilities to download and install a range of additional malicious software, such as other Trojans, ransomware, and cryptominers.

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks