General

  • Target

    32c5e15e86de2b22abdbc3d226a122c2e780afa3d204280a76b21ce3645a7e6f_NeikiAnalytics.exe

  • Size

    93KB

  • Sample

    240701-d8ngcaycpj

  • MD5

    f4384bdae96c0a64379bdfed09abbe00

  • SHA1

    48524fb4fec9668e2be02926e8e26d0685064a55

  • SHA256

    32c5e15e86de2b22abdbc3d226a122c2e780afa3d204280a76b21ce3645a7e6f

  • SHA512

    82cb65281bfa3fe5bdfb0ad4459a42b204eeea6fb53c180e9861347b05003e7d0724b1ff21b4975f68fde50a89820af3008a38402e7706ebdef2c5c160e5bc73

  • SSDEEP

    1536:r9kkMmr/ZQ2Bv1t7fE6+YvqnkTfjiwg58:r9SmdnBv1t7E6QknY58

Score
10/10

Malware Config

Targets

    • Target

      32c5e15e86de2b22abdbc3d226a122c2e780afa3d204280a76b21ce3645a7e6f_NeikiAnalytics.exe

    • Size

      93KB

    • MD5

      f4384bdae96c0a64379bdfed09abbe00

    • SHA1

      48524fb4fec9668e2be02926e8e26d0685064a55

    • SHA256

      32c5e15e86de2b22abdbc3d226a122c2e780afa3d204280a76b21ce3645a7e6f

    • SHA512

      82cb65281bfa3fe5bdfb0ad4459a42b204eeea6fb53c180e9861347b05003e7d0724b1ff21b4975f68fde50a89820af3008a38402e7706ebdef2c5c160e5bc73

    • SSDEEP

      1536:r9kkMmr/ZQ2Bv1t7fE6+YvqnkTfjiwg58:r9SmdnBv1t7E6QknY58

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks