General

  • Target

    37936f6659f9f0b86a65c4cc268b0d735d5bcf94fce508d04d6b52cd20593c18_NeikiAnalytics.exe

  • Size

    1.2MB

  • Sample

    240701-fse65sxbpa

  • MD5

    acf7c84c4c09174e064701ddf45917f0

  • SHA1

    fbd86abbd4425fecc03608d4c475e141e5cfd9b0

  • SHA256

    37936f6659f9f0b86a65c4cc268b0d735d5bcf94fce508d04d6b52cd20593c18

  • SHA512

    ab5c75d63ea9f666ca765457ef08da76a3fbcccd7dc7cd719bd9a11a6e51e88038290c677ef58879329dbc7276efb6c3415df1a8c3f979c7fe46ee2cd544cb9d

  • SSDEEP

    12288:02xYlc+pFByStv9JRa//inz86NRo1qiRlUWC4kXzVC3:BAc+pFB5z+//ufNRoZW

Score
7/10

Malware Config

Targets

    • Target

      37936f6659f9f0b86a65c4cc268b0d735d5bcf94fce508d04d6b52cd20593c18_NeikiAnalytics.exe

    • Size

      1.2MB

    • MD5

      acf7c84c4c09174e064701ddf45917f0

    • SHA1

      fbd86abbd4425fecc03608d4c475e141e5cfd9b0

    • SHA256

      37936f6659f9f0b86a65c4cc268b0d735d5bcf94fce508d04d6b52cd20593c18

    • SHA512

      ab5c75d63ea9f666ca765457ef08da76a3fbcccd7dc7cd719bd9a11a6e51e88038290c677ef58879329dbc7276efb6c3415df1a8c3f979c7fe46ee2cd544cb9d

    • SSDEEP

      12288:02xYlc+pFByStv9JRa//inz86NRo1qiRlUWC4kXzVC3:BAc+pFB5z+//ufNRoZW

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

Query Registry

1
T1012

Collection

Data from Local System

1
T1005

Tasks