General

  • Target

    35946d85fce79300996c5913eb023b040f3a459fd6a910bdd8fd0b7dd9fdcc12_NeikiAnalytics.exe

  • Size

    648KB

  • Sample

    240701-e5771swfke

  • MD5

    d99a4d42147831c6f1db6e31e3a3d1e0

  • SHA1

    dfc3197b9eb6db088c5230bf4afae9d682f22772

  • SHA256

    35946d85fce79300996c5913eb023b040f3a459fd6a910bdd8fd0b7dd9fdcc12

  • SHA512

    6ff24fbc0f17a6f017fb81733e3bc21e3de9e9ac5b77537bdde258363574b62fafd1ea5f97ba5cf54625b337785c9cd1b03d8e4a99fb551e75332dfa3629db24

  • SSDEEP

    12288:hqz2DWUyOdlI7KcBBxeXZY7Zoxxau7gnijY5C1uP8xwB:cz2DW3ZGXkHu7gi05yu5

Score
7/10

Malware Config

Targets

    • Target

      35946d85fce79300996c5913eb023b040f3a459fd6a910bdd8fd0b7dd9fdcc12_NeikiAnalytics.exe

    • Size

      648KB

    • MD5

      d99a4d42147831c6f1db6e31e3a3d1e0

    • SHA1

      dfc3197b9eb6db088c5230bf4afae9d682f22772

    • SHA256

      35946d85fce79300996c5913eb023b040f3a459fd6a910bdd8fd0b7dd9fdcc12

    • SHA512

      6ff24fbc0f17a6f017fb81733e3bc21e3de9e9ac5b77537bdde258363574b62fafd1ea5f97ba5cf54625b337785c9cd1b03d8e4a99fb551e75332dfa3629db24

    • SSDEEP

      12288:hqz2DWUyOdlI7KcBBxeXZY7Zoxxau7gnijY5C1uP8xwB:cz2DW3ZGXkHu7gi05yu5

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

3
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks