General

  • Target

    39347ac0ac3c4ec11e394744a75d7afe740f313fb5d8b6cee2d084f7aaafbc4b_NeikiAnalytics.exe

  • Size

    66KB

  • Sample

    240701-gawlvaxelh

  • MD5

    53c59035631b58fc99410fff0082a440

  • SHA1

    070a84fab10bf6d6c95326fbe33595cc9b46c9f6

  • SHA256

    39347ac0ac3c4ec11e394744a75d7afe740f313fb5d8b6cee2d084f7aaafbc4b

  • SHA512

    8b2c3153479c27c8202181d93c8c359161425280dea999ebae730f38fa91f301c2dc65b5c8e30f3aed8a075b625082e6267cc4699511e147abab8ee9da13fe95

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6Mu/ePS3A9:ymb3NkkiQ3mdBjFI46TQ9

Malware Config

Targets

    • Target

      39347ac0ac3c4ec11e394744a75d7afe740f313fb5d8b6cee2d084f7aaafbc4b_NeikiAnalytics.exe

    • Size

      66KB

    • MD5

      53c59035631b58fc99410fff0082a440

    • SHA1

      070a84fab10bf6d6c95326fbe33595cc9b46c9f6

    • SHA256

      39347ac0ac3c4ec11e394744a75d7afe740f313fb5d8b6cee2d084f7aaafbc4b

    • SHA512

      8b2c3153479c27c8202181d93c8c359161425280dea999ebae730f38fa91f301c2dc65b5c8e30f3aed8a075b625082e6267cc4699511e147abab8ee9da13fe95

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6Mu/ePS3A9:ymb3NkkiQ3mdBjFI46TQ9

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks