General

  • Target

    10a35a2218d325f621306ae3eacddafb4d7a261006db9ffa63128444e95fb32c_NeikiAnalytics.exe

  • Size

    17KB

  • Sample

    240701-2crqwsxejp

  • MD5

    d1d71a548b5208dc95ccd52111536370

  • SHA1

    cbfb95ac2c5a4b77d9762bd62aa181b141043291

  • SHA256

    10a35a2218d325f621306ae3eacddafb4d7a261006db9ffa63128444e95fb32c

  • SHA512

    a90863627d8f65b851c8fdae74f80c602614b42018d84a559ed7ba6d5d6cb2223d7426d899602d70e820651a4e83e335b9d9ceab018f0f92cc85ef2000eb0896

  • SSDEEP

    192:dDMAe4Ckj19RZZ6wpSfu1bKcq5uHj7khBDSeKNH4kkJBUbOj6kxiY:dDMAoKz6WtKEj7aBDitkJbAY

Malware Config

Extracted

Family

cobaltstrike

C2

http://192.168.17.131:80/Rj2o

Attributes
  • user_agent

    User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0; BOIE9;ENUSSEM)

Targets

    • Target

      10a35a2218d325f621306ae3eacddafb4d7a261006db9ffa63128444e95fb32c_NeikiAnalytics.exe

    • Size

      17KB

    • MD5

      d1d71a548b5208dc95ccd52111536370

    • SHA1

      cbfb95ac2c5a4b77d9762bd62aa181b141043291

    • SHA256

      10a35a2218d325f621306ae3eacddafb4d7a261006db9ffa63128444e95fb32c

    • SHA512

      a90863627d8f65b851c8fdae74f80c602614b42018d84a559ed7ba6d5d6cb2223d7426d899602d70e820651a4e83e335b9d9ceab018f0f92cc85ef2000eb0896

    • SSDEEP

      192:dDMAe4Ckj19RZZ6wpSfu1bKcq5uHj7khBDSeKNH4kkJBUbOj6kxiY:dDMAoKz6WtKEj7aBDitkJbAY

MITRE ATT&CK Matrix

Tasks