General

  • Target

    32b252109daa4202a0ee1b81d8d4aa62e410737788eb8dfc0c6ba1e5d635d17b_NeikiAnalytics.exe

  • Size

    41KB

  • Sample

    240701-d7lalavfka

  • MD5

    95d695f02ad5d63cb2bf46fd78d13170

  • SHA1

    36d7c5e12eb2c084a0cc04f69322ebb63e7d7b94

  • SHA256

    32b252109daa4202a0ee1b81d8d4aa62e410737788eb8dfc0c6ba1e5d635d17b

  • SHA512

    d1bdb487a7b4ccae8de6757f8187908db2a274762980054702993957d4604683de59c07dfe6739a1e67e18a317fef9f076e94c86781bd56a74423445b1c1087d

  • SSDEEP

    768:DqPJtsA6C1VqahohtgVRNToV7TtRu8rM0wYVFl2g5coW58dO0xXHV2EfKYfdhNhs:DqMA6C1VqaqhtgVRNToV7TtRu8rM0wYM

Score
7/10

Malware Config

Targets

    • Target

      32b252109daa4202a0ee1b81d8d4aa62e410737788eb8dfc0c6ba1e5d635d17b_NeikiAnalytics.exe

    • Size

      41KB

    • MD5

      95d695f02ad5d63cb2bf46fd78d13170

    • SHA1

      36d7c5e12eb2c084a0cc04f69322ebb63e7d7b94

    • SHA256

      32b252109daa4202a0ee1b81d8d4aa62e410737788eb8dfc0c6ba1e5d635d17b

    • SHA512

      d1bdb487a7b4ccae8de6757f8187908db2a274762980054702993957d4604683de59c07dfe6739a1e67e18a317fef9f076e94c86781bd56a74423445b1c1087d

    • SSDEEP

      768:DqPJtsA6C1VqahohtgVRNToV7TtRu8rM0wYVFl2g5coW58dO0xXHV2EfKYfdhNhs:DqMA6C1VqaqhtgVRNToV7TtRu8rM0wYM

    Score
    7/10
    • Deletes itself

    • Executes dropped EXE

    • Adds Run key to start application

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks