General

  • Target

    73185d79704fe541cc7048e0c2635ce6692d14c8981e6898ede0dd7bfe810886_NeikiAnalytics.exe

  • Size

    1.7MB

  • Sample

    240629-gwj5yavhmk

  • MD5

    24655c02f67b149239d6d072028ee250

  • SHA1

    8539b3e1cdf33bb7d0209b5dbd02823117e49212

  • SHA256

    73185d79704fe541cc7048e0c2635ce6692d14c8981e6898ede0dd7bfe810886

  • SHA512

    9588f7611743ad57e1ae0c7bef90ed62d257dfc5821565d24772d571bca9384911dd5530782df2367e6acc22d9205a78c5aba8546b990701a44f0798a610fa76

  • SSDEEP

    49152:XWUMv5De9/yG9/ooooERQr0tb6H8RlOuQhR5kvR:XWUMqyGB0Z6H8Rl45k

Score
6/10

Malware Config

Targets

    • Target

      73185d79704fe541cc7048e0c2635ce6692d14c8981e6898ede0dd7bfe810886_NeikiAnalytics.exe

    • Size

      1.7MB

    • MD5

      24655c02f67b149239d6d072028ee250

    • SHA1

      8539b3e1cdf33bb7d0209b5dbd02823117e49212

    • SHA256

      73185d79704fe541cc7048e0c2635ce6692d14c8981e6898ede0dd7bfe810886

    • SHA512

      9588f7611743ad57e1ae0c7bef90ed62d257dfc5821565d24772d571bca9384911dd5530782df2367e6acc22d9205a78c5aba8546b990701a44f0798a610fa76

    • SSDEEP

      49152:XWUMv5De9/yG9/ooooERQr0tb6H8RlOuQhR5kvR:XWUMqyGB0Z6H8Rl45k

    Score
    6/10
    • Checks for any installed AV software in registry

    • Writes to the Master Boot Record (MBR)

      Bootkits write to the MBR to gain persistence at a level below the operating system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Defense Evasion

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Subvert Trust Controls

1
T1553

Install Root Certificate

1
T1553.004

Modify Registry

1
T1112

Discovery

Software Discovery

1
T1518

Security Software Discovery

1
T1518.001

Query Registry

2
T1012

System Information Discovery

1
T1082

Tasks