General

  • Target

    348f9238c9782026abb68a88c6fd28ed8eb6e80eecd67107c267bf48ee752730_NeikiAnalytics.exe

  • Size

    120KB

  • Sample

    240701-eth4rayhpj

  • MD5

    86de1eedff67792f5c3eb8a9c4e38380

  • SHA1

    2a1ceb8c8ff513b2b7e918e4717ddaad411d63ce

  • SHA256

    348f9238c9782026abb68a88c6fd28ed8eb6e80eecd67107c267bf48ee752730

  • SHA512

    03e00293ffa0d1ff5298f3e32e755fa517926d70473aea778a5f9e27d57cc2e17611a969dad1be9f10200bcf12e4e837d6bf4cb04a11e206808e990c0cd15c04

  • SSDEEP

    3072:Jhtw0ud9vmzrxYm7AcE/+EWa6iYBSi/mjRrz3C:Jhtw02mK3WaJ4Si/GC

Score
10/10

Malware Config

Targets

    • Target

      348f9238c9782026abb68a88c6fd28ed8eb6e80eecd67107c267bf48ee752730_NeikiAnalytics.exe

    • Size

      120KB

    • MD5

      86de1eedff67792f5c3eb8a9c4e38380

    • SHA1

      2a1ceb8c8ff513b2b7e918e4717ddaad411d63ce

    • SHA256

      348f9238c9782026abb68a88c6fd28ed8eb6e80eecd67107c267bf48ee752730

    • SHA512

      03e00293ffa0d1ff5298f3e32e755fa517926d70473aea778a5f9e27d57cc2e17611a969dad1be9f10200bcf12e4e837d6bf4cb04a11e206808e990c0cd15c04

    • SSDEEP

      3072:Jhtw0ud9vmzrxYm7AcE/+EWa6iYBSi/mjRrz3C:Jhtw02mK3WaJ4Si/GC

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks