General

  • Target

    06ca8a9a19877d6217f38746177d9b99223bd36cac970d0dff615dccaabca2d7_NeikiAnalytics.exe

  • Size

    330KB

  • Sample

    240629-2d749sxhpe

  • MD5

    bbd12ffcdd03f4e707ce2c41d69690a0

  • SHA1

    79b2c7fa180e99efb801db90af09cb61a624e259

  • SHA256

    06ca8a9a19877d6217f38746177d9b99223bd36cac970d0dff615dccaabca2d7

  • SHA512

    3e3d910f53b248eef822110a014dc43649fed9234b30b289530bd2140eb78197d312420249e1e394edfc0d1d91c91b6b9c640c0a4edcdbdaefa76afaff60ea04

  • SSDEEP

    6144:9cm4FmowdHoS4BftapTs8Hoo+6MjTVhRDq0:/4wFHoS4d0G8HoljTVhRDq0

Malware Config

Targets

    • Target

      06ca8a9a19877d6217f38746177d9b99223bd36cac970d0dff615dccaabca2d7_NeikiAnalytics.exe

    • Size

      330KB

    • MD5

      bbd12ffcdd03f4e707ce2c41d69690a0

    • SHA1

      79b2c7fa180e99efb801db90af09cb61a624e259

    • SHA256

      06ca8a9a19877d6217f38746177d9b99223bd36cac970d0dff615dccaabca2d7

    • SHA512

      3e3d910f53b248eef822110a014dc43649fed9234b30b289530bd2140eb78197d312420249e1e394edfc0d1d91c91b6b9c640c0a4edcdbdaefa76afaff60ea04

    • SSDEEP

      6144:9cm4FmowdHoS4BftapTs8Hoo+6MjTVhRDq0:/4wFHoS4d0G8HoljTVhRDq0

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks