General

  • Target

    32177dacdd9bc6fc7b7e775428d34efa76a64a5171330a9081976fcd546d6792_NeikiAnalytics.exe

  • Size

    214KB

  • Sample

    240701-d1ty6avdpa

  • MD5

    1d595299fd4df0ed4f0fe0fb5b8339f0

  • SHA1

    b1a506da9773302416e745434254a717161b36f4

  • SHA256

    32177dacdd9bc6fc7b7e775428d34efa76a64a5171330a9081976fcd546d6792

  • SHA512

    34f5de4a86ce817a1ffe4ecf541b9518969df479e9615edef4221b95bddcf70fff6cd3291d7b834546bc0d5192d0db634bbd8ec4081e8577e73865334c0c13aa

  • SSDEEP

    3072:q/kXdK5okGIMfHKKwteEAnDlmbGcGFDeaqIsKEYWyPVBweyFve3CFdagBk:q/klj/fTC9a6HYW0VBLyFviCqgBk

Score
10/10

Malware Config

Targets

    • Target

      32177dacdd9bc6fc7b7e775428d34efa76a64a5171330a9081976fcd546d6792_NeikiAnalytics.exe

    • Size

      214KB

    • MD5

      1d595299fd4df0ed4f0fe0fb5b8339f0

    • SHA1

      b1a506da9773302416e745434254a717161b36f4

    • SHA256

      32177dacdd9bc6fc7b7e775428d34efa76a64a5171330a9081976fcd546d6792

    • SHA512

      34f5de4a86ce817a1ffe4ecf541b9518969df479e9615edef4221b95bddcf70fff6cd3291d7b834546bc0d5192d0db634bbd8ec4081e8577e73865334c0c13aa

    • SSDEEP

      3072:q/kXdK5okGIMfHKKwteEAnDlmbGcGFDeaqIsKEYWyPVBweyFve3CFdagBk:q/klj/fTC9a6HYW0VBLyFviCqgBk

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks