General

  • Target

    3419ec503bab3c822a7f3439ec9f49f63b5031962191decd2d498edd75174913_NeikiAnalytics.exe

  • Size

    56KB

  • Sample

    240701-ens2rsygmn

  • MD5

    051ac7fcd68e0c3b69a87f1ead94d710

  • SHA1

    1d93b4dc232bfeb6c503ceac6a8d7663f11b6305

  • SHA256

    3419ec503bab3c822a7f3439ec9f49f63b5031962191decd2d498edd75174913

  • SHA512

    3feac3b35d9b09054b9dcf0f4e0f04a24ed5a15016b4a447f7fda40fd7122ba766e7bd01e196cfb37889e8998f98257c06e5dbe4ee7b39e55e7b0792fea7c3c9

  • SSDEEP

    768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAFzs:CTWn1++PJHJXA/OsIZfzc3/Q8zx5858k

Score
9/10

Malware Config

Targets

    • Target

      3419ec503bab3c822a7f3439ec9f49f63b5031962191decd2d498edd75174913_NeikiAnalytics.exe

    • Size

      56KB

    • MD5

      051ac7fcd68e0c3b69a87f1ead94d710

    • SHA1

      1d93b4dc232bfeb6c503ceac6a8d7663f11b6305

    • SHA256

      3419ec503bab3c822a7f3439ec9f49f63b5031962191decd2d498edd75174913

    • SHA512

      3feac3b35d9b09054b9dcf0f4e0f04a24ed5a15016b4a447f7fda40fd7122ba766e7bd01e196cfb37889e8998f98257c06e5dbe4ee7b39e55e7b0792fea7c3c9

    • SSDEEP

      768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAFzs:CTWn1++PJHJXA/OsIZfzc3/Q8zx5858k

    Score
    9/10
    • Renames multiple (200) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks