General

  • Target

    34affc78e7c420b097575a9c1ff16a72c985f07f63e060e68cdd95f1796a0e61_NeikiAnalytics.exe

  • Size

    622KB

  • Sample

    240701-ewffmswcpe

  • MD5

    e4dc2446808136dc44c49e95ae3b0ef0

  • SHA1

    bc60fb0ab7b175a0f00e67f2b9a88c36a0327b5f

  • SHA256

    34affc78e7c420b097575a9c1ff16a72c985f07f63e060e68cdd95f1796a0e61

  • SHA512

    ebea7fd9cb0a75cfdde949c91bfed1c4e682af2bc7208776e0b80cba61e9304f3d4d3b2802f452abb9a1aebb6b5028310b348c8875644e463e8e2f9ef1a14d3f

  • SSDEEP

    12288:6uL8+Tn6VMP5CPU6EkUw6XvV2NlLiwXmVmMdpx7TjLNFtA2byK9CTIb77:6uY+L6VMRCPU6CENltmVVdpx7fLrQWd

Score
7/10

Malware Config

Targets

    • Target

      34affc78e7c420b097575a9c1ff16a72c985f07f63e060e68cdd95f1796a0e61_NeikiAnalytics.exe

    • Size

      622KB

    • MD5

      e4dc2446808136dc44c49e95ae3b0ef0

    • SHA1

      bc60fb0ab7b175a0f00e67f2b9a88c36a0327b5f

    • SHA256

      34affc78e7c420b097575a9c1ff16a72c985f07f63e060e68cdd95f1796a0e61

    • SHA512

      ebea7fd9cb0a75cfdde949c91bfed1c4e682af2bc7208776e0b80cba61e9304f3d4d3b2802f452abb9a1aebb6b5028310b348c8875644e463e8e2f9ef1a14d3f

    • SSDEEP

      12288:6uL8+Tn6VMP5CPU6EkUw6XvV2NlLiwXmVmMdpx7TjLNFtA2byK9CTIb77:6uY+L6VMRCPU6CENltmVVdpx7fLrQWd

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

3
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks