General

  • Target

    34d16a5e1bc8314fa8f44ee55792e2d723601ce01933936b56da6556fd28cfcd_NeikiAnalytics.exe

  • Size

    1.6MB

  • Sample

    240701-exnhmswcrg

  • MD5

    e250c63b467da0900b1a44ec170de3b0

  • SHA1

    e6a68a0f1850487c2999b897a0dcf8b47c05b416

  • SHA256

    34d16a5e1bc8314fa8f44ee55792e2d723601ce01933936b56da6556fd28cfcd

  • SHA512

    0c79a8d81c2321ab8fc3d2ce4732c9a50879e08585c19e68e926443f653f139a70b20a1b8d9448d7876dbf73d3a0ad48fecef4d122f0248f425fe9d2932490c1

  • SSDEEP

    24576:JanwhSe11QSONCpGJCjETPl+Me7bPMS8Ykgcdt9vvQNs9TJ0qFo9+pP5s7N8WUnC:knw9oUUEEDl+xTMS8Tg3avLom8

Score
10/10

Malware Config

Targets

    • Target

      34d16a5e1bc8314fa8f44ee55792e2d723601ce01933936b56da6556fd28cfcd_NeikiAnalytics.exe

    • Size

      1.6MB

    • MD5

      e250c63b467da0900b1a44ec170de3b0

    • SHA1

      e6a68a0f1850487c2999b897a0dcf8b47c05b416

    • SHA256

      34d16a5e1bc8314fa8f44ee55792e2d723601ce01933936b56da6556fd28cfcd

    • SHA512

      0c79a8d81c2321ab8fc3d2ce4732c9a50879e08585c19e68e926443f653f139a70b20a1b8d9448d7876dbf73d3a0ad48fecef4d122f0248f425fe9d2932490c1

    • SSDEEP

      24576:JanwhSe11QSONCpGJCjETPl+Me7bPMS8Ykgcdt9vvQNs9TJ0qFo9+pP5s7N8WUnC:knw9oUUEEDl+xTMS8Tg3avLom8

    Score
    10/10
    • xmrig

      XMRig is a high performance, open source, cross platform CPU/GPU miner.

    • XMRig Miner payload

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

2
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

2
T1082

Tasks