General

  • Target

    9cd768015624c55e999f9476068c3db9f037c603000b6e26d9566724ae02e7a7_NeikiAnalytics.exe

  • Size

    1.4MB

  • Sample

    240628-r3j4mavbrg

  • MD5

    8d7840824da89989f68d24be06188030

  • SHA1

    b8b03056e7536074797685b3939c9ca4d0d25306

  • SHA256

    9cd768015624c55e999f9476068c3db9f037c603000b6e26d9566724ae02e7a7

  • SHA512

    bcf8f3ec98c97525038bcc621f0e000ebef1bc0510d45a9898017e40a1dfa54f0438fd23fcf19bd30e69e58bc72070b1783488774310a8afbd98939a94a0bdc5

  • SSDEEP

    12288:JShg1Q6TG04cWMC6wQ4LR+gH3Yxrm3o4CWKKCrZTGF/k8uMxtxPvvznS:f1pTG05RwbLR1boJbKkKF/eMNPjnS

Score
7/10

Malware Config

Targets

    • Target

      9cd768015624c55e999f9476068c3db9f037c603000b6e26d9566724ae02e7a7_NeikiAnalytics.exe

    • Size

      1.4MB

    • MD5

      8d7840824da89989f68d24be06188030

    • SHA1

      b8b03056e7536074797685b3939c9ca4d0d25306

    • SHA256

      9cd768015624c55e999f9476068c3db9f037c603000b6e26d9566724ae02e7a7

    • SHA512

      bcf8f3ec98c97525038bcc621f0e000ebef1bc0510d45a9898017e40a1dfa54f0438fd23fcf19bd30e69e58bc72070b1783488774310a8afbd98939a94a0bdc5

    • SSDEEP

      12288:JShg1Q6TG04cWMC6wQ4LR+gH3Yxrm3o4CWKKCrZTGF/k8uMxtxPvvznS:f1pTG05RwbLR1boJbKkKF/eMNPjnS

    Score
    7/10
    • Unexpected DNS network traffic destination

      Network traffic to other servers than the configured DNS servers was detected on the DNS port.

    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

MITRE ATT&CK Matrix

Tasks