General

  • Target

    318cb522868627c08a1f26ce4d269d2068fe8afe953a7eda160272e494724835_NeikiAnalytics.exe

  • Size

    73KB

  • Sample

    240701-dvmynaxhnl

  • MD5

    381d1d35fb04051abf2aacd8f41daee0

  • SHA1

    f6fe137074b975fd6bb4dab42d6f3e6a107fa040

  • SHA256

    318cb522868627c08a1f26ce4d269d2068fe8afe953a7eda160272e494724835

  • SHA512

    78c9c7f30df28956b7913d49929b8b374ecdbdd3b167c91a652bd08b77f55efde2923aadd32f6c00e6c773fd67a65f02bc23323c1f43990fc6ef9444f76766aa

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND0yUwcsbYs0:ymb3NkkiQ3mdBjF0yjcsMs0

Malware Config

Targets

    • Target

      318cb522868627c08a1f26ce4d269d2068fe8afe953a7eda160272e494724835_NeikiAnalytics.exe

    • Size

      73KB

    • MD5

      381d1d35fb04051abf2aacd8f41daee0

    • SHA1

      f6fe137074b975fd6bb4dab42d6f3e6a107fa040

    • SHA256

      318cb522868627c08a1f26ce4d269d2068fe8afe953a7eda160272e494724835

    • SHA512

      78c9c7f30df28956b7913d49929b8b374ecdbdd3b167c91a652bd08b77f55efde2923aadd32f6c00e6c773fd67a65f02bc23323c1f43990fc6ef9444f76766aa

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND0yUwcsbYs0:ymb3NkkiQ3mdBjF0yjcsMs0

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks