General

  • Target

    3342e2573a9b9b59c4009126e092dec0b24f8b47475ae34877795d50b2b4ef30_NeikiAnalytics.exe

  • Size

    359KB

  • Sample

    240701-edqtnaydqn

  • MD5

    cb4ab12137bdfa2400415a2e18be1810

  • SHA1

    0492c4338c32067e12dc97d4d52f40f4889fbcf6

  • SHA256

    3342e2573a9b9b59c4009126e092dec0b24f8b47475ae34877795d50b2b4ef30

  • SHA512

    379b23a28b4de9d85456a90a15431a1bf32e9f3ef0c58a0bcb57ca5a5525ef8b180c166bcf9ee2926c4dec2b645b4859610966a2cb3f6d731c14f42f066315a6

  • SSDEEP

    3072:H6Zi+U/0ivVErbPI0kQI8Va3CkfUVuyelbvP5lkzmQ1o0Otw44KmfpKivFM6WpqU:ci50ivVErTIprba4Yb31/do

Score
10/10

Malware Config

Targets

    • Target

      3342e2573a9b9b59c4009126e092dec0b24f8b47475ae34877795d50b2b4ef30_NeikiAnalytics.exe

    • Size

      359KB

    • MD5

      cb4ab12137bdfa2400415a2e18be1810

    • SHA1

      0492c4338c32067e12dc97d4d52f40f4889fbcf6

    • SHA256

      3342e2573a9b9b59c4009126e092dec0b24f8b47475ae34877795d50b2b4ef30

    • SHA512

      379b23a28b4de9d85456a90a15431a1bf32e9f3ef0c58a0bcb57ca5a5525ef8b180c166bcf9ee2926c4dec2b645b4859610966a2cb3f6d731c14f42f066315a6

    • SSDEEP

      3072:H6Zi+U/0ivVErbPI0kQI8Va3CkfUVuyelbvP5lkzmQ1o0Otw44KmfpKivFM6WpqU:ci50ivVErTIprba4Yb31/do

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks