General

  • Target

    35618d71ab02efd2ecb930aea2d4029fe4d44d8636824227eb4dc42ff2521b62_NeikiAnalytics.exe

  • Size

    625KB

  • Sample

    240701-e4n3rawepf

  • MD5

    d7495cc4f92b8895458086fc0a6f4950

  • SHA1

    cb5302052e7b7e72c3d96c408829838ab10627a0

  • SHA256

    35618d71ab02efd2ecb930aea2d4029fe4d44d8636824227eb4dc42ff2521b62

  • SHA512

    0c7ee3fa6d0efcd9c47faddb142294120574ef53ff7df6ed3833f27f6d30db7f8eb8f0a6a6ff9e40a5037ed2a94bfd2214a2131d63bd1515be0063a1282430b7

  • SSDEEP

    12288:k2dqZiMwQJXx6a/YvRcFKBsX9Da2XbJda3Q93i8OPowY79pk/DCWN:R0ZiUJXca/VQBIe2dhi8OP3YGv

Score
7/10

Malware Config

Targets

    • Target

      35618d71ab02efd2ecb930aea2d4029fe4d44d8636824227eb4dc42ff2521b62_NeikiAnalytics.exe

    • Size

      625KB

    • MD5

      d7495cc4f92b8895458086fc0a6f4950

    • SHA1

      cb5302052e7b7e72c3d96c408829838ab10627a0

    • SHA256

      35618d71ab02efd2ecb930aea2d4029fe4d44d8636824227eb4dc42ff2521b62

    • SHA512

      0c7ee3fa6d0efcd9c47faddb142294120574ef53ff7df6ed3833f27f6d30db7f8eb8f0a6a6ff9e40a5037ed2a94bfd2214a2131d63bd1515be0063a1282430b7

    • SSDEEP

      12288:k2dqZiMwQJXx6a/YvRcFKBsX9Da2XbJda3Q93i8OPowY79pk/DCWN:R0ZiUJXca/VQBIe2dhi8OP3YGv

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

3
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks