General

  • Target

    3434d3fa846225eea95a03379fe38ee2790671158bd8b7f4aa1bd84b96647c23_NeikiAnalytics.exe

  • Size

    160KB

  • Sample

    240701-ep385awbme

  • MD5

    fe861f5a84c7af4cccb23c28464f3610

  • SHA1

    5180379dce05072f939ed383f178b13dfdbe95b4

  • SHA256

    3434d3fa846225eea95a03379fe38ee2790671158bd8b7f4aa1bd84b96647c23

  • SHA512

    6e7fad39c239fd15f8c90c30d38799828e8a75d8916f24504595e0ed2253f0fd1abaedc6072f30c8842398493ae816d500ca69a7c7b01c22c27fa6c93ccbb5f5

  • SSDEEP

    1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8OyZ2FdldtTWn1++PJHJXA/OsIZfzc3/i:fnyiQSonyZ2FdldJQSonyZ2Fdldb

Score
9/10

Malware Config

Targets

    • Target

      3434d3fa846225eea95a03379fe38ee2790671158bd8b7f4aa1bd84b96647c23_NeikiAnalytics.exe

    • Size

      160KB

    • MD5

      fe861f5a84c7af4cccb23c28464f3610

    • SHA1

      5180379dce05072f939ed383f178b13dfdbe95b4

    • SHA256

      3434d3fa846225eea95a03379fe38ee2790671158bd8b7f4aa1bd84b96647c23

    • SHA512

      6e7fad39c239fd15f8c90c30d38799828e8a75d8916f24504595e0ed2253f0fd1abaedc6072f30c8842398493ae816d500ca69a7c7b01c22c27fa6c93ccbb5f5

    • SSDEEP

      1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8OyZ2FdldtTWn1++PJHJXA/OsIZfzc3/i:fnyiQSonyZ2FdldJQSonyZ2Fdldb

    Score
    9/10
    • Renames multiple (2851) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks