General

  • Target

    34b19967eb0b3e6351eb83879c63887676a941fef0347a72748dbecf3c65666e_NeikiAnalytics.exe

  • Size

    608KB

  • Sample

    240701-ewlyeswcph

  • MD5

    ce7606e59bcc18b1b2efae9354907820

  • SHA1

    47f88ce3fba55e254c4a8555de1ea277e43d5af6

  • SHA256

    34b19967eb0b3e6351eb83879c63887676a941fef0347a72748dbecf3c65666e

  • SHA512

    1dc6e17584401681befbe7403fe0fe5d978e65c1e3ba2f7f7f52634fc21c1280b404b65684e3e7075c2177cd858652b8b5b7589aecbb4719d923264c8d7ca8b4

  • SSDEEP

    12288:NdYkY660fIaDZkY660f8jTK/XhdAwlt01t:NCgsaDZgQjGkwlg

Score
10/10

Malware Config

Targets

    • Target

      34b19967eb0b3e6351eb83879c63887676a941fef0347a72748dbecf3c65666e_NeikiAnalytics.exe

    • Size

      608KB

    • MD5

      ce7606e59bcc18b1b2efae9354907820

    • SHA1

      47f88ce3fba55e254c4a8555de1ea277e43d5af6

    • SHA256

      34b19967eb0b3e6351eb83879c63887676a941fef0347a72748dbecf3c65666e

    • SHA512

      1dc6e17584401681befbe7403fe0fe5d978e65c1e3ba2f7f7f52634fc21c1280b404b65684e3e7075c2177cd858652b8b5b7589aecbb4719d923264c8d7ca8b4

    • SSDEEP

      12288:NdYkY660fIaDZkY660f8jTK/XhdAwlt01t:NCgsaDZgQjGkwlg

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks