General

  • Target

    301e3e399e78515e26ac1532360c116dca19bf2a61acbf14a90092339f290842_NeikiAnalytics.exe

  • Size

    63KB

  • Sample

    240701-dd2eqaxekj

  • MD5

    464f6a6fbd87ef91df99a9eaac30fb60

  • SHA1

    5680d592eedd3288f2a554ec01d1b9b607f04f7d

  • SHA256

    301e3e399e78515e26ac1532360c116dca19bf2a61acbf14a90092339f290842

  • SHA512

    02a4cfea243261b99b43bac5ab65b5303e1fff710005b74e93457923a779d6858483995f28765c906a713846a492ed6b846db05bdb32ea792d2fbe8cfc9e8761

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDII9ZvHKEKiU:ymb3NkkiQ3mdBjFII9ZvHKEKX

Malware Config

Targets

    • Target

      301e3e399e78515e26ac1532360c116dca19bf2a61acbf14a90092339f290842_NeikiAnalytics.exe

    • Size

      63KB

    • MD5

      464f6a6fbd87ef91df99a9eaac30fb60

    • SHA1

      5680d592eedd3288f2a554ec01d1b9b607f04f7d

    • SHA256

      301e3e399e78515e26ac1532360c116dca19bf2a61acbf14a90092339f290842

    • SHA512

      02a4cfea243261b99b43bac5ab65b5303e1fff710005b74e93457923a779d6858483995f28765c906a713846a492ed6b846db05bdb32ea792d2fbe8cfc9e8761

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDII9ZvHKEKiU:ymb3NkkiQ3mdBjFII9ZvHKEKX

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks