General

  • Target

    3034eee1688b94b89ef42c0f3e7bf4e6431f95faffac4165fc2f135f195bcf3b_NeikiAnalytics.exe

  • Size

    989KB

  • Sample

    240701-de1vksxelp

  • MD5

    33089695484dfe2334501029eb8c9e80

  • SHA1

    89ac3c7b38333357c32966e49c9183df2ff1c24d

  • SHA256

    3034eee1688b94b89ef42c0f3e7bf4e6431f95faffac4165fc2f135f195bcf3b

  • SHA512

    8a3d85841d47f049d1460715d6808ff41c89777567458dd44a1bc42e53696d9b2d90879d4169d2dcda85352aa92a712cee8c6fbe971bbda06f1532a633be3273

  • SSDEEP

    24576:GezaTnG99Q8FcNrpyNdfE0bLBgDOp2iSLz9LbBwlKenUT5J+Il/hzL:GezaTF8FcNkNdfE0pZ9oztFwIHT5JpxZ

Malware Config

Targets

    • Target

      3034eee1688b94b89ef42c0f3e7bf4e6431f95faffac4165fc2f135f195bcf3b_NeikiAnalytics.exe

    • Size

      989KB

    • MD5

      33089695484dfe2334501029eb8c9e80

    • SHA1

      89ac3c7b38333357c32966e49c9183df2ff1c24d

    • SHA256

      3034eee1688b94b89ef42c0f3e7bf4e6431f95faffac4165fc2f135f195bcf3b

    • SHA512

      8a3d85841d47f049d1460715d6808ff41c89777567458dd44a1bc42e53696d9b2d90879d4169d2dcda85352aa92a712cee8c6fbe971bbda06f1532a633be3273

    • SSDEEP

      24576:GezaTnG99Q8FcNrpyNdfE0bLBgDOp2iSLz9LbBwlKenUT5J+Il/hzL:GezaTF8FcNkNdfE0pZ9oztFwIHT5JpxZ

    • xmrig

      XMRig is a high performance, open source, cross platform CPU/GPU miner.

    • XMRig Miner payload

    • Executes dropped EXE

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Event Triggered Execution

1
T1546

Accessibility Features

1
T1546.008

Privilege Escalation

Event Triggered Execution

1
T1546

Accessibility Features

1
T1546.008

Discovery

Query Registry

2
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

2
T1082

Tasks