General

  • Target

    53b89ee31e95bc541586d24ad433b007cd162ed42dbe11831879f81e2cf6eb55_NeikiAnalytics.exe

  • Size

    276KB

  • Sample

    240701-p4vkmswdmp

  • MD5

    fb9119025acc290ea00c9b00d7cf8a30

  • SHA1

    06ec4575cb0af3883cefc51f839917db33ccc4f1

  • SHA256

    53b89ee31e95bc541586d24ad433b007cd162ed42dbe11831879f81e2cf6eb55

  • SHA512

    1c1c46fb56d3d87714153db33ae4c1e01a831f8b24d012dfe62b7ffb29cd8e3a862aa0ff198d0e04f9917743651223376f3cdeab09689489426a52278aba952b

  • SSDEEP

    3072:8hOm2sI93UufdC67cimD5t251UrRE9TTFf/n:8cm7ImGddXmNt251UriZFf/n

Malware Config

Targets

    • Target

      53b89ee31e95bc541586d24ad433b007cd162ed42dbe11831879f81e2cf6eb55_NeikiAnalytics.exe

    • Size

      276KB

    • MD5

      fb9119025acc290ea00c9b00d7cf8a30

    • SHA1

      06ec4575cb0af3883cefc51f839917db33ccc4f1

    • SHA256

      53b89ee31e95bc541586d24ad433b007cd162ed42dbe11831879f81e2cf6eb55

    • SHA512

      1c1c46fb56d3d87714153db33ae4c1e01a831f8b24d012dfe62b7ffb29cd8e3a862aa0ff198d0e04f9917743651223376f3cdeab09689489426a52278aba952b

    • SSDEEP

      3072:8hOm2sI93UufdC67cimD5t251UrRE9TTFf/n:8cm7ImGddXmNt251UriZFf/n

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks