General

  • Target

    34c377a5dc99b733b28d2bffd0be393299de848b8f30f6d274257ee193d9f749_NeikiAnalytics.exe

  • Size

    128KB

  • Sample

    240701-ew5qjawcqh

  • MD5

    28a00f2acd907b2cb73a5587fe2d9fa0

  • SHA1

    f443eb64d05669bd7121d2d0da519ddb3577cc83

  • SHA256

    34c377a5dc99b733b28d2bffd0be393299de848b8f30f6d274257ee193d9f749

  • SHA512

    3c625abbfb9bd2adea9afa648fad493806917605d2c187893d6320b6ed5cb102bad80058f939cdcbf67022f062deafa683ce125ed031aeee519269ba25714893

  • SSDEEP

    3072:5DdQbTnRmFZuYVECqKG7UDd0pCrQIFdFtLQ:b6mF43CnG7Ux0ocIPF9Q

Score
10/10

Malware Config

Targets

    • Target

      34c377a5dc99b733b28d2bffd0be393299de848b8f30f6d274257ee193d9f749_NeikiAnalytics.exe

    • Size

      128KB

    • MD5

      28a00f2acd907b2cb73a5587fe2d9fa0

    • SHA1

      f443eb64d05669bd7121d2d0da519ddb3577cc83

    • SHA256

      34c377a5dc99b733b28d2bffd0be393299de848b8f30f6d274257ee193d9f749

    • SHA512

      3c625abbfb9bd2adea9afa648fad493806917605d2c187893d6320b6ed5cb102bad80058f939cdcbf67022f062deafa683ce125ed031aeee519269ba25714893

    • SSDEEP

      3072:5DdQbTnRmFZuYVECqKG7UDd0pCrQIFdFtLQ:b6mF43CnG7Ux0ocIPF9Q

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks