General

  • Target

    4a146f347a1ace213b28b3c9335ce83b38ae60c6fd12c9805815607082e4695f_NeikiAnalytics.exe

  • Size

    70KB

  • Sample

    240701-mbkhvsygnp

  • MD5

    3a5636b4d91ad59a52aff1878a292dd0

  • SHA1

    ad3c72cf8e276527d16c10df1c7e2e3a6cb6af6a

  • SHA256

    4a146f347a1ace213b28b3c9335ce83b38ae60c6fd12c9805815607082e4695f

  • SHA512

    bd45ae71a008d549df0e325e2ac184a3370f5259b5cb1a996d41a09e3a0414faf9222c40038e331c306dde084f70f4d3ef76c729297e71c4ef7d6a0d3589d86b

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIFdJUDbAIdiW6w:ymb3NkkiQ3mdBjFIFdJ8bViW6w

Malware Config

Targets

    • Target

      4a146f347a1ace213b28b3c9335ce83b38ae60c6fd12c9805815607082e4695f_NeikiAnalytics.exe

    • Size

      70KB

    • MD5

      3a5636b4d91ad59a52aff1878a292dd0

    • SHA1

      ad3c72cf8e276527d16c10df1c7e2e3a6cb6af6a

    • SHA256

      4a146f347a1ace213b28b3c9335ce83b38ae60c6fd12c9805815607082e4695f

    • SHA512

      bd45ae71a008d549df0e325e2ac184a3370f5259b5cb1a996d41a09e3a0414faf9222c40038e331c306dde084f70f4d3ef76c729297e71c4ef7d6a0d3589d86b

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIFdJUDbAIdiW6w:ymb3NkkiQ3mdBjFIFdJ8bViW6w

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks