General

  • Target

    34b5062f1cfc5476622b0bcd4e7f299b70dcbe74199ba812f8660ab3f6b292cd_NeikiAnalytics.exe

  • Size

    94KB

  • Sample

    240701-ewqavawcqb

  • MD5

    b63dd4500e4c3cb57f9b72a7247aeda0

  • SHA1

    77710e9b78d000b9b66ff56a5650ae283f488b0f

  • SHA256

    34b5062f1cfc5476622b0bcd4e7f299b70dcbe74199ba812f8660ab3f6b292cd

  • SHA512

    e2064e8a4b8497bb740a16f749d31494bbf11e627fbd0015922f3147c87d3b278aabcfb3b6dac928ead5b0fd31fbc944250edbaf72ace1d052c1cc1de1edaebf

  • SSDEEP

    1536:qgWMe+QIezX6y6IaK8nt/7JEo/2LmaIZTJ+7LhkiB0MPiKeEAgv:T7edIezX6y6IaK8nZJ7EmaMU7uihJ5v

Score
10/10

Malware Config

Targets

    • Target

      34b5062f1cfc5476622b0bcd4e7f299b70dcbe74199ba812f8660ab3f6b292cd_NeikiAnalytics.exe

    • Size

      94KB

    • MD5

      b63dd4500e4c3cb57f9b72a7247aeda0

    • SHA1

      77710e9b78d000b9b66ff56a5650ae283f488b0f

    • SHA256

      34b5062f1cfc5476622b0bcd4e7f299b70dcbe74199ba812f8660ab3f6b292cd

    • SHA512

      e2064e8a4b8497bb740a16f749d31494bbf11e627fbd0015922f3147c87d3b278aabcfb3b6dac928ead5b0fd31fbc944250edbaf72ace1d052c1cc1de1edaebf

    • SSDEEP

      1536:qgWMe+QIezX6y6IaK8nt/7JEo/2LmaIZTJ+7LhkiB0MPiKeEAgv:T7edIezX6y6IaK8nZJ7EmaMU7uihJ5v

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks