General

  • Target

    25cc12deabdc8cc2deceea55c7b6266974774e95bd773052b3da44465d9723cc_NeikiAnalytics.exe

  • Size

    25KB

  • Sample

    240701-afpxxstbmp

  • MD5

    7576d894f7d63bb52800582b52372f40

  • SHA1

    255a3ac2e1bad40174e8c5cfc36ad6712a5e50e6

  • SHA256

    25cc12deabdc8cc2deceea55c7b6266974774e95bd773052b3da44465d9723cc

  • SHA512

    3313d2c408089485d7921f2f6b2d0103a0076a1eb0783c1ce4a4a769e856b68a7971d89cd0fdbc2bd9cb959298664a40a3aa4a6ad6e59980947ca9aa1cb278df

  • SSDEEP

    384:bK+xKfzQ2XFpOQGR9zos2clAKLHRN74u56/R9zZwu9905:W+xAUiXOQ69zbjlAAX5e9zI5

Score
10/10

Malware Config

Targets

    • Target

      25cc12deabdc8cc2deceea55c7b6266974774e95bd773052b3da44465d9723cc_NeikiAnalytics.exe

    • Size

      25KB

    • MD5

      7576d894f7d63bb52800582b52372f40

    • SHA1

      255a3ac2e1bad40174e8c5cfc36ad6712a5e50e6

    • SHA256

      25cc12deabdc8cc2deceea55c7b6266974774e95bd773052b3da44465d9723cc

    • SHA512

      3313d2c408089485d7921f2f6b2d0103a0076a1eb0783c1ce4a4a769e856b68a7971d89cd0fdbc2bd9cb959298664a40a3aa4a6ad6e59980947ca9aa1cb278df

    • SSDEEP

      384:bK+xKfzQ2XFpOQGR9zos2clAKLHRN74u56/R9zZwu9905:W+xAUiXOQ69zbjlAAX5e9zI5

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks