General

  • Target

    3fdb3a05f70c2fbeb426427300b1abb042642833e81acecbd3d959c208707b47_NeikiAnalytics.exe

  • Size

    206KB

  • Sample

    240701-jdkd4azaja

  • MD5

    c131c970db26c75cd1e6f6b9eb6c2170

  • SHA1

    6e33ffc9a1d57ec0c56e35ced92008534e09b724

  • SHA256

    3fdb3a05f70c2fbeb426427300b1abb042642833e81acecbd3d959c208707b47

  • SHA512

    f8a5ad61050372f40ef143f806a286f0690cda1b1441c804a2e81a354d9e20ce0b45fa03106967795d056e35b8c89334f16b8992c8563774466f89dee7975086

  • SSDEEP

    6144:rcm4FmowdHoStBuhW246lCXb7YpdnSj6KsaD:x4wFHoSLjr0+HsaD

Malware Config

Targets

    • Target

      3fdb3a05f70c2fbeb426427300b1abb042642833e81acecbd3d959c208707b47_NeikiAnalytics.exe

    • Size

      206KB

    • MD5

      c131c970db26c75cd1e6f6b9eb6c2170

    • SHA1

      6e33ffc9a1d57ec0c56e35ced92008534e09b724

    • SHA256

      3fdb3a05f70c2fbeb426427300b1abb042642833e81acecbd3d959c208707b47

    • SHA512

      f8a5ad61050372f40ef143f806a286f0690cda1b1441c804a2e81a354d9e20ce0b45fa03106967795d056e35b8c89334f16b8992c8563774466f89dee7975086

    • SSDEEP

      6144:rcm4FmowdHoStBuhW246lCXb7YpdnSj6KsaD:x4wFHoSLjr0+HsaD

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks