General

  • Target

    3464397fe5b97bef1dedab8818a3f0679d555b3f0264ce6c539f45941f0b5881_NeikiAnalytics.exe

  • Size

    1.6MB

  • Sample

    240701-ervd1ayhkk

  • MD5

    49ed775e66e2cd74be732cc95bab5ef0

  • SHA1

    9b10b9e0ec21e85e2c0ec8a07c774488abb58cdb

  • SHA256

    3464397fe5b97bef1dedab8818a3f0679d555b3f0264ce6c539f45941f0b5881

  • SHA512

    c290e2bdd9e920378a4698b276e3d43269066ce3d157cb5d16562714715abd5e9903218d0160da18ee145621eb597220d7acc4baf1b028f7ddaa6dbb26462563

  • SSDEEP

    24576:kEoD7eAzxG0Jc0a1VjXsIQRJ5OTJ7hIVymFNlMtRVblP9PIjo3rSAp0sUPYud9m4:kZzju1VbsIQe/I07SAp0sUPYu7Uo7

Malware Config

Targets

    • Target

      3464397fe5b97bef1dedab8818a3f0679d555b3f0264ce6c539f45941f0b5881_NeikiAnalytics.exe

    • Size

      1.6MB

    • MD5

      49ed775e66e2cd74be732cc95bab5ef0

    • SHA1

      9b10b9e0ec21e85e2c0ec8a07c774488abb58cdb

    • SHA256

      3464397fe5b97bef1dedab8818a3f0679d555b3f0264ce6c539f45941f0b5881

    • SHA512

      c290e2bdd9e920378a4698b276e3d43269066ce3d157cb5d16562714715abd5e9903218d0160da18ee145621eb597220d7acc4baf1b028f7ddaa6dbb26462563

    • SSDEEP

      24576:kEoD7eAzxG0Jc0a1VjXsIQRJ5OTJ7hIVymFNlMtRVblP9PIjo3rSAp0sUPYud9m4:kZzju1VbsIQe/I07SAp0sUPYu7Uo7

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Drops startup file

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Tasks