General

  • Target

    33f9d819fbac4666447640038bbb1a0f95051001d2e54b8fd236a5d366fa28ec_NeikiAnalytics.exe

  • Size

    118KB

  • Sample

    240701-emkzrsward

  • MD5

    b07c37d92fbbd0260dc27363bd099860

  • SHA1

    0f80fe9fafd74a5d61857a0d4a8d034746c15569

  • SHA256

    33f9d819fbac4666447640038bbb1a0f95051001d2e54b8fd236a5d366fa28ec

  • SHA512

    6c35faf191f9b8d79358e349cbd423c38a6f8163126c1976c2233a5def7a59f793ac429529e7c506aeaa21a7936e7a187dabcdbd717df70ba7d27576046eb674

  • SSDEEP

    1536:nEGh0oCl2unMxVS3HgdoKjhLJh731xvsr:nEGh0oClvMUyNjhLJh731xvsr

Score
8/10

Malware Config

Targets

    • Target

      33f9d819fbac4666447640038bbb1a0f95051001d2e54b8fd236a5d366fa28ec_NeikiAnalytics.exe

    • Size

      118KB

    • MD5

      b07c37d92fbbd0260dc27363bd099860

    • SHA1

      0f80fe9fafd74a5d61857a0d4a8d034746c15569

    • SHA256

      33f9d819fbac4666447640038bbb1a0f95051001d2e54b8fd236a5d366fa28ec

    • SHA512

      6c35faf191f9b8d79358e349cbd423c38a6f8163126c1976c2233a5def7a59f793ac429529e7c506aeaa21a7936e7a187dabcdbd717df70ba7d27576046eb674

    • SSDEEP

      1536:nEGh0oCl2unMxVS3HgdoKjhLJh731xvsr:nEGh0oClvMUyNjhLJh731xvsr

    Score
    8/10
    • Boot or Logon Autostart Execution: Active Setup

      Adversaries may achieve persistence by adding a Registry key to the Active Setup of the local machine.

    • Deletes itself

    • Executes dropped EXE

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Active Setup

1
T1547.014

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Active Setup

1
T1547.014

Defense Evasion

Modify Registry

1
T1112

Tasks