General

  • Target

    2d960e0c19812af58f5c5e02e437a0c0_NeikiAnalytics.exe

  • Size

    122KB

  • Sample

    240605-c482tacf73

  • MD5

    2d960e0c19812af58f5c5e02e437a0c0

  • SHA1

    a8ce61c0ea8ab9b4930b788f52707011ff266c86

  • SHA256

    5d64c884f0bf172a93948a4356ca782a9f47397441214330bf0d75ba8042a5dd

  • SHA512

    265b02a5696e2e7fa078fa551b59b5f242503bc2564f264289494f47aa0df6fa409c5d005260a6611351f0f45e2e0efd72abd611393d851d2077fda0175d4ed1

  • SSDEEP

    1536:lvm1Fu8AjYaFwjRUdW7fmyY7aZYJVmy0KQbj6vbjuKoauGi4p:6u8ANCUdgfmD7zey0KUj6TjR9i4p

Malware Config

Targets

    • Target

      2d960e0c19812af58f5c5e02e437a0c0_NeikiAnalytics.exe

    • Size

      122KB

    • MD5

      2d960e0c19812af58f5c5e02e437a0c0

    • SHA1

      a8ce61c0ea8ab9b4930b788f52707011ff266c86

    • SHA256

      5d64c884f0bf172a93948a4356ca782a9f47397441214330bf0d75ba8042a5dd

    • SHA512

      265b02a5696e2e7fa078fa551b59b5f242503bc2564f264289494f47aa0df6fa409c5d005260a6611351f0f45e2e0efd72abd611393d851d2077fda0175d4ed1

    • SSDEEP

      1536:lvm1Fu8AjYaFwjRUdW7fmyY7aZYJVmy0KQbj6vbjuKoauGi4p:6u8ANCUdgfmD7zey0KUj6TjR9i4p

    • Malware Dropper & Backdoor - Berbew

      Berbew is a backdoor Trojan malware with capabilities to download and install a range of additional malicious software, such as other Trojans, ransomware, and cryptominers.

    • Modifies visibility of file extensions in Explorer

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Hide Artifacts

1
T1564

Hidden Files and Directories

1
T1564.001

Modify Registry

2
T1112

Discovery

System Information Discovery

1
T1082

Tasks