General

  • Target

    5f06193c9d9ca44996f5c07514ff51ea3ea20ed618d9026acf395fe3301748a7_NeikiAnalytics.exe

  • Size

    24KB

  • Sample

    240623-l6argayaqf

  • MD5

    5c3ccc1e5a8aad0e53012501e8d31c40

  • SHA1

    a0d474611e9be3ff63105cedc19c5a8ab40551f8

  • SHA256

    5f06193c9d9ca44996f5c07514ff51ea3ea20ed618d9026acf395fe3301748a7

  • SHA512

    67d2e5559ea2c9974043110d596156153fdcded1a2fe30abf173d2168e019a67934f7a21a8d97355d72dc81eb4b4bce601a1d0ade1fff835ce5505f06e636a07

  • SSDEEP

    384:bK+xKfzQ2XFpOQGR9zos2clAKLHRN74u56/R9zZwu9oFQ:W+xAUiXOQ69zbjlAAX5e9zmQ

Score
10/10

Malware Config

Targets

    • Target

      5f06193c9d9ca44996f5c07514ff51ea3ea20ed618d9026acf395fe3301748a7_NeikiAnalytics.exe

    • Size

      24KB

    • MD5

      5c3ccc1e5a8aad0e53012501e8d31c40

    • SHA1

      a0d474611e9be3ff63105cedc19c5a8ab40551f8

    • SHA256

      5f06193c9d9ca44996f5c07514ff51ea3ea20ed618d9026acf395fe3301748a7

    • SHA512

      67d2e5559ea2c9974043110d596156153fdcded1a2fe30abf173d2168e019a67934f7a21a8d97355d72dc81eb4b4bce601a1d0ade1fff835ce5505f06e636a07

    • SSDEEP

      384:bK+xKfzQ2XFpOQGR9zos2clAKLHRN74u56/R9zZwu9oFQ:W+xAUiXOQ69zbjlAAX5e9zmQ

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks