General

  • Target

    348c31494daab7233e8539dff46fb12919812e653767cfa1cb8d743748b25a47_NeikiAnalytics.exe

  • Size

    256KB

  • Sample

    240701-es89jsyhnl

  • MD5

    4d607a036cb0c88bb744ed4caf88e560

  • SHA1

    9a7384ac2573527a183f83bb0340635f18033073

  • SHA256

    348c31494daab7233e8539dff46fb12919812e653767cfa1cb8d743748b25a47

  • SHA512

    96e59133ed34dd0a63496ebbb09b459ffcd887740efdf2ed3eee81b3e8fc7b2e8bf0141977b4acf140f7947a053a08e5acb63570a7be13587d68743c545d1335

  • SSDEEP

    6144:arg6rMSPXuapoaCPXbo92ynnZlVrtv35CPXbo92ynnH:arg6rRuqFHRD

Score
10/10

Malware Config

Targets

    • Target

      348c31494daab7233e8539dff46fb12919812e653767cfa1cb8d743748b25a47_NeikiAnalytics.exe

    • Size

      256KB

    • MD5

      4d607a036cb0c88bb744ed4caf88e560

    • SHA1

      9a7384ac2573527a183f83bb0340635f18033073

    • SHA256

      348c31494daab7233e8539dff46fb12919812e653767cfa1cb8d743748b25a47

    • SHA512

      96e59133ed34dd0a63496ebbb09b459ffcd887740efdf2ed3eee81b3e8fc7b2e8bf0141977b4acf140f7947a053a08e5acb63570a7be13587d68743c545d1335

    • SSDEEP

      6144:arg6rMSPXuapoaCPXbo92ynnZlVrtv35CPXbo92ynnH:arg6rRuqFHRD

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks