General

  • Target

    3382769637ab47fb03fc3a8203852e1b217c442860cedb330bcba7036c280bd9_NeikiAnalytics.exe

  • Size

    889KB

  • Sample

    240701-ehj7nsvhqg

  • MD5

    049b2ab943f44cee4bff14bbe1b15d00

  • SHA1

    e42907fdf7dd8c0d40ffa98083414e1330b0f5ad

  • SHA256

    3382769637ab47fb03fc3a8203852e1b217c442860cedb330bcba7036c280bd9

  • SHA512

    f2729cc4abc2d65ab61b3030443b00b4cd543d22343bd4edc8ca838df3ee3fb87dd025a21d87cf209c537812720ba86a458c672637b7d1ca01d3316fc9ba523e

  • SSDEEP

    24576:WbE+qu/OfDlEUKWflmTP33GiLmqxrt35E3MvZ:WbE+4fU4Uj33i3+Z

Malware Config

Targets

    • Target

      3382769637ab47fb03fc3a8203852e1b217c442860cedb330bcba7036c280bd9_NeikiAnalytics.exe

    • Size

      889KB

    • MD5

      049b2ab943f44cee4bff14bbe1b15d00

    • SHA1

      e42907fdf7dd8c0d40ffa98083414e1330b0f5ad

    • SHA256

      3382769637ab47fb03fc3a8203852e1b217c442860cedb330bcba7036c280bd9

    • SHA512

      f2729cc4abc2d65ab61b3030443b00b4cd543d22343bd4edc8ca838df3ee3fb87dd025a21d87cf209c537812720ba86a458c672637b7d1ca01d3316fc9ba523e

    • SSDEEP

      24576:WbE+qu/OfDlEUKWflmTP33GiLmqxrt35E3MvZ:WbE+4fU4Uj33i3+Z

    • Executes dropped EXE

    • Loads dropped DLL

    • Adds Run key to start application

    • Checks installed software on the system

      Looks up Uninstall key entries in the registry to enumerate software on the system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

Tasks