General

  • Target

    3516480558e15faa3deb24e935a7491d9472681e92e148621e2465e304570867_NeikiAnalytics.exe

  • Size

    5.5MB

  • Sample

    240701-ez56gawdqb

  • MD5

    b22ac5b8fc507db801b2782ffd2f8190

  • SHA1

    8480ecf75a64bf8cdb07c2c1a18638310f234284

  • SHA256

    3516480558e15faa3deb24e935a7491d9472681e92e148621e2465e304570867

  • SHA512

    e1dc3e4880f5aefb3c11882afe611afbbeb244cef68e662eef520b1c14af64039b7b6deb87a000e6256027771786211f17aff169ebca983726ec8bd31933ead4

  • SSDEEP

    98304:hAI5pAdVJn9tbnR1VgBVm+70uMhSBrkNq:hAsCh7XY5IoQ

Score
7/10

Malware Config

Targets

    • Target

      3516480558e15faa3deb24e935a7491d9472681e92e148621e2465e304570867_NeikiAnalytics.exe

    • Size

      5.5MB

    • MD5

      b22ac5b8fc507db801b2782ffd2f8190

    • SHA1

      8480ecf75a64bf8cdb07c2c1a18638310f234284

    • SHA256

      3516480558e15faa3deb24e935a7491d9472681e92e148621e2465e304570867

    • SHA512

      e1dc3e4880f5aefb3c11882afe611afbbeb244cef68e662eef520b1c14af64039b7b6deb87a000e6256027771786211f17aff169ebca983726ec8bd31933ead4

    • SSDEEP

      98304:hAI5pAdVJn9tbnR1VgBVm+70uMhSBrkNq:hAsCh7XY5IoQ

    Score
    7/10
    • Executes dropped EXE

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

4
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks