General

  • Target

    242858d97ba358768962caf69ea451c50250d4ab7052eaab14c7f956da7cbdf3_NeikiAnalytics.exe

  • Size

    287KB

  • Sample

    240630-3r3mdazamd

  • MD5

    6d56482c9c6206abeb242dd1789a4020

  • SHA1

    06063167960a25601f8820e3c5df038557ad155d

  • SHA256

    242858d97ba358768962caf69ea451c50250d4ab7052eaab14c7f956da7cbdf3

  • SHA512

    439bba89c2df4e2ec24f31aead8c6b6d3f72a946da95b972a821ef222c5885520b0779fdc788ea37b65f0e4b564e260215afccd54bb9339ba5c43fee6e4634fc

  • SSDEEP

    3072:ThOm2sI93UufdC67cipfmCiiiXAQ5lpBoGYwNNhu0CzhKPJF0:Tcm7ImGddXlWrXF5lpKGYV0wh6JO

Malware Config

Targets

    • Target

      242858d97ba358768962caf69ea451c50250d4ab7052eaab14c7f956da7cbdf3_NeikiAnalytics.exe

    • Size

      287KB

    • MD5

      6d56482c9c6206abeb242dd1789a4020

    • SHA1

      06063167960a25601f8820e3c5df038557ad155d

    • SHA256

      242858d97ba358768962caf69ea451c50250d4ab7052eaab14c7f956da7cbdf3

    • SHA512

      439bba89c2df4e2ec24f31aead8c6b6d3f72a946da95b972a821ef222c5885520b0779fdc788ea37b65f0e4b564e260215afccd54bb9339ba5c43fee6e4634fc

    • SSDEEP

      3072:ThOm2sI93UufdC67cipfmCiiiXAQ5lpBoGYwNNhu0CzhKPJF0:Tcm7ImGddXlWrXF5lpKGYV0wh6JO

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks