General

  • Target

    2764f6b439b3910df24cc5432ac2210a38f9f970ed68a49d6b9c3e7285f8e959_NeikiAnalytics.exe

  • Size

    92KB

  • Sample

    240701-axa54a1alb

  • MD5

    04eaf07e6bc9ff50ad35aca49f06ef30

  • SHA1

    a286a9de6c4468286fa77f6a7083ca7d2526ad59

  • SHA256

    2764f6b439b3910df24cc5432ac2210a38f9f970ed68a49d6b9c3e7285f8e959

  • SHA512

    cc09e471edb6be6bfb25e4bcf3225e92a4085a292e97a38d8c9f28776fb3ad9d4a6f9f8b12d0eee5301ed74ff71a13af705f0167f66e913defa7b971f154b076

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDodtzac0Hobv0byLufTJfJvw:ymb3NkkiQ3mdBjFodt27HobvcyLufNfS

Malware Config

Targets

    • Target

      2764f6b439b3910df24cc5432ac2210a38f9f970ed68a49d6b9c3e7285f8e959_NeikiAnalytics.exe

    • Size

      92KB

    • MD5

      04eaf07e6bc9ff50ad35aca49f06ef30

    • SHA1

      a286a9de6c4468286fa77f6a7083ca7d2526ad59

    • SHA256

      2764f6b439b3910df24cc5432ac2210a38f9f970ed68a49d6b9c3e7285f8e959

    • SHA512

      cc09e471edb6be6bfb25e4bcf3225e92a4085a292e97a38d8c9f28776fb3ad9d4a6f9f8b12d0eee5301ed74ff71a13af705f0167f66e913defa7b971f154b076

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDodtzac0Hobv0byLufTJfJvw:ymb3NkkiQ3mdBjFodt27HobvcyLufNfS

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks