General

  • Target

    35a28496c41b8cc599f5e1f1784a3415d1125a295e4ba37f28ab39e60b8d69a9_NeikiAnalytics.exe

  • Size

    54KB

  • Sample

    240701-e7ch5azcnk

  • MD5

    65512d72ed3012bd8d9470bb61c113b0

  • SHA1

    628966932d3ecf3b6eebb7244821cabfa957f0d0

  • SHA256

    35a28496c41b8cc599f5e1f1784a3415d1125a295e4ba37f28ab39e60b8d69a9

  • SHA512

    1a913f669f5a7cdfcd126938d5b781a468ccb5b46b8d9bcdbc566a6ac0225f8fa8caf8b0b25f8a5c7e648377da638165e3fae6839ac3b6f2d0b624de2b08d13b

  • SSDEEP

    1536:CTWn1++PJHJXA/OsIZfzc3/Q8zx1ev1wcw6RHR9:KQSo/1wcw6RHR9

Score
9/10

Malware Config

Targets

    • Target

      35a28496c41b8cc599f5e1f1784a3415d1125a295e4ba37f28ab39e60b8d69a9_NeikiAnalytics.exe

    • Size

      54KB

    • MD5

      65512d72ed3012bd8d9470bb61c113b0

    • SHA1

      628966932d3ecf3b6eebb7244821cabfa957f0d0

    • SHA256

      35a28496c41b8cc599f5e1f1784a3415d1125a295e4ba37f28ab39e60b8d69a9

    • SHA512

      1a913f669f5a7cdfcd126938d5b781a468ccb5b46b8d9bcdbc566a6ac0225f8fa8caf8b0b25f8a5c7e648377da638165e3fae6839ac3b6f2d0b624de2b08d13b

    • SSDEEP

      1536:CTWn1++PJHJXA/OsIZfzc3/Q8zx1ev1wcw6RHR9:KQSo/1wcw6RHR9

    Score
    9/10
    • Renames multiple (3683) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks