General

  • Target

    369b60c9932f8010e894e59c8e9132ac4016f451f513c6b3a42fa071e33070ec_NeikiAnalytics.exe

  • Size

    2.8MB

  • Sample

    240701-ffsayawhlc

  • MD5

    f2dc9361723637df6c3bcd57d41e8a40

  • SHA1

    4cb9b6521946fd7b6bdceab52c288d5d619f78a9

  • SHA256

    369b60c9932f8010e894e59c8e9132ac4016f451f513c6b3a42fa071e33070ec

  • SHA512

    58d44abf4259deb7425cf36c15976d25f63a32487ab76ca136bf0e7aa72c7de399bcace7515cd174d9585c9f5882fd60f0de1f30398a0485d7e2ec8f3404b84a

  • SSDEEP

    49152:w0wjnJMOWh50kC1/dVFdx6e0EALKWVTffZiPAcRq6jHjcz8Dze7jcq4QXD3xN:w0GnJMOWPClFdx6e0EALKWVTffZiPAc0

Score
10/10

Malware Config

Targets

    • Target

      369b60c9932f8010e894e59c8e9132ac4016f451f513c6b3a42fa071e33070ec_NeikiAnalytics.exe

    • Size

      2.8MB

    • MD5

      f2dc9361723637df6c3bcd57d41e8a40

    • SHA1

      4cb9b6521946fd7b6bdceab52c288d5d619f78a9

    • SHA256

      369b60c9932f8010e894e59c8e9132ac4016f451f513c6b3a42fa071e33070ec

    • SHA512

      58d44abf4259deb7425cf36c15976d25f63a32487ab76ca136bf0e7aa72c7de399bcace7515cd174d9585c9f5882fd60f0de1f30398a0485d7e2ec8f3404b84a

    • SSDEEP

      49152:w0wjnJMOWh50kC1/dVFdx6e0EALKWVTffZiPAcRq6jHjcz8Dze7jcq4QXD3xN:w0GnJMOWPClFdx6e0EALKWVTffZiPAc0

    Score
    10/10
    • xmrig

      XMRig is a high performance, open source, cross platform CPU/GPU miner.

    • XMRig Miner payload

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

2
T1012

System Information Discovery

2
T1082

Tasks