General
-
Target
2ea0a578f8d7d60ce54fd54309e358adce0ba182492459abc7db0d1622ee2302_NeikiAnalytics.exe
-
Size
163KB
-
Sample
240624-ch8txsvckg
-
MD5
1bb6c47981d2b33a8de925cdc6b947c0
-
SHA1
d53639158cb99ddd32637d7a7a4ec6b95b946edc
-
SHA256
2ea0a578f8d7d60ce54fd54309e358adce0ba182492459abc7db0d1622ee2302
-
SHA512
34cf6ebb6a8a4ea98e335dc083f6f1ec025c70ac35316ed85b68db8199d1afa390baeca41ccce13886daa8a9a7c9caf8bcb05e27599c4f113b49e6a670e18b5f
-
SSDEEP
1536:P2dMGLTUsV7d6MtixYSXHT+yhC+8qSlProNVU4qNVUrk/9QbfBr+7GwKrPAsqNVU:udMGjV7FtiCSXdTSltOrWKDBr+yJb
Static task
static1
Behavioral task
behavioral1
Sample
2ea0a578f8d7d60ce54fd54309e358adce0ba182492459abc7db0d1622ee2302_NeikiAnalytics.exe
Resource
win7-20240220-en
Behavioral task
behavioral2
Sample
2ea0a578f8d7d60ce54fd54309e358adce0ba182492459abc7db0d1622ee2302_NeikiAnalytics.exe
Resource
win10v2004-20240508-en
Malware Config
Extracted
gozi
Targets
-
-
Target
2ea0a578f8d7d60ce54fd54309e358adce0ba182492459abc7db0d1622ee2302_NeikiAnalytics.exe
-
Size
163KB
-
MD5
1bb6c47981d2b33a8de925cdc6b947c0
-
SHA1
d53639158cb99ddd32637d7a7a4ec6b95b946edc
-
SHA256
2ea0a578f8d7d60ce54fd54309e358adce0ba182492459abc7db0d1622ee2302
-
SHA512
34cf6ebb6a8a4ea98e335dc083f6f1ec025c70ac35316ed85b68db8199d1afa390baeca41ccce13886daa8a9a7c9caf8bcb05e27599c4f113b49e6a670e18b5f
-
SSDEEP
1536:P2dMGLTUsV7d6MtixYSXHT+yhC+8qSlProNVU4qNVUrk/9QbfBr+7GwKrPAsqNVU:udMGjV7FtiCSXdTSltOrWKDBr+yJb
Score10/10-
Adds autorun key to be loaded by Explorer.exe on startup
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-