General

  • Target

    355be9ffb447fe5932a5b2862081c31fa45c3b8f920a862d87979cae2069eb8a_NeikiAnalytics.exe

  • Size

    123KB

  • Sample

    240701-e4akcszbnl

  • MD5

    d2ce7ba20895ffee91d9b5df9a86a190

  • SHA1

    0b29e1a06fde84c029a0a0c6b2b3129a9bcf574c

  • SHA256

    355be9ffb447fe5932a5b2862081c31fa45c3b8f920a862d87979cae2069eb8a

  • SHA512

    ec02c7a3f329c42ad6fe72790c408e45434b02da245ada033451d18d784c91a4d4b762d8a117cd9e5762c74cf8345636c7e9c6cd951a27612339bf3a00688e68

  • SSDEEP

    768:W7BlpppARFbhWJq5ovYcTEXBwzEXBw67BlpppARFbhWJq5ovYcTEXBwzEXBwz:W7ZppApF5ovs7ZppApF5ovd

Score
9/10

Malware Config

Targets

    • Target

      355be9ffb447fe5932a5b2862081c31fa45c3b8f920a862d87979cae2069eb8a_NeikiAnalytics.exe

    • Size

      123KB

    • MD5

      d2ce7ba20895ffee91d9b5df9a86a190

    • SHA1

      0b29e1a06fde84c029a0a0c6b2b3129a9bcf574c

    • SHA256

      355be9ffb447fe5932a5b2862081c31fa45c3b8f920a862d87979cae2069eb8a

    • SHA512

      ec02c7a3f329c42ad6fe72790c408e45434b02da245ada033451d18d784c91a4d4b762d8a117cd9e5762c74cf8345636c7e9c6cd951a27612339bf3a00688e68

    • SSDEEP

      768:W7BlpppARFbhWJq5ovYcTEXBwzEXBw67BlpppARFbhWJq5ovYcTEXBwzEXBwz:W7ZppApF5ovs7ZppApF5ovd

    Score
    9/10
    • Renames multiple (5540) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks