General

  • Target

    3221f28db567673b22f6858379ae5bf7e6d63302e0000d62153ba25552cca0ef_NeikiAnalytics.exe

  • Size

    1.2MB

  • Sample

    240701-d14hlavdpe

  • MD5

    5130074b497e8f56235ad2b0dfe64e90

  • SHA1

    b1693ece6d056a05361d30a29c2ad2fb90a7584b

  • SHA256

    3221f28db567673b22f6858379ae5bf7e6d63302e0000d62153ba25552cca0ef

  • SHA512

    aeb57fe22dcae9c1d679c5fac48de4da6c6a236029c4dc1a987fa79a154d55b66019374db52530a86c3cb0b6a8d9b3db21711d3d30c678c61f3905ee44bc9d91

  • SSDEEP

    12288:Rcz2DWUfaZTWuKTY0eBgob0gEE64ZKAQmaZ/W3Ig8CidwRisW:az2DWWUTWuKk0fob0gEEVFQmic8WU

Score
7/10

Malware Config

Targets

    • Target

      3221f28db567673b22f6858379ae5bf7e6d63302e0000d62153ba25552cca0ef_NeikiAnalytics.exe

    • Size

      1.2MB

    • MD5

      5130074b497e8f56235ad2b0dfe64e90

    • SHA1

      b1693ece6d056a05361d30a29c2ad2fb90a7584b

    • SHA256

      3221f28db567673b22f6858379ae5bf7e6d63302e0000d62153ba25552cca0ef

    • SHA512

      aeb57fe22dcae9c1d679c5fac48de4da6c6a236029c4dc1a987fa79a154d55b66019374db52530a86c3cb0b6a8d9b3db21711d3d30c678c61f3905ee44bc9d91

    • SSDEEP

      12288:Rcz2DWUfaZTWuKTY0eBgob0gEE64ZKAQmaZ/W3Ig8CidwRisW:az2DWWUTWuKk0fob0gEEVFQmic8WU

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

3
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks