General
-
Target
8d23e953e69c20634abab6afcf1d5ec8062d2ed8ece58166b5e690f19332c539_NeikiAnalytics.exe
-
Size
163KB
-
Sample
240628-jldlhs1dkq
-
MD5
ef5a78af5fd0d9a9de04f49d0c2be860
-
SHA1
006c9437035975dcca19e3e7834e1e33266d0ace
-
SHA256
8d23e953e69c20634abab6afcf1d5ec8062d2ed8ece58166b5e690f19332c539
-
SHA512
8fa5392aac55f349d22d04b4a49f36f6322d9ec64010dd8cc3d8e085e7dee2c8f8189fb06ffde2f7488627e5ea3a817976fbd4990a137a165f7caad5fb8daa8f
-
SSDEEP
1536:PyO1ZPwwSV1WyTCKA6rWerLYx02QJjTam97lProNVU4qNVUrk/9QbfBr+7GwKrPb:vjwwelCnwoGae7ltOrWKDBr+yJb
Static task
static1
Behavioral task
behavioral1
Sample
8d23e953e69c20634abab6afcf1d5ec8062d2ed8ece58166b5e690f19332c539_NeikiAnalytics.exe
Resource
win7-20240508-en
Behavioral task
behavioral2
Sample
8d23e953e69c20634abab6afcf1d5ec8062d2ed8ece58166b5e690f19332c539_NeikiAnalytics.exe
Resource
win10v2004-20240611-en
Malware Config
Extracted
gozi
Targets
-
-
Target
8d23e953e69c20634abab6afcf1d5ec8062d2ed8ece58166b5e690f19332c539_NeikiAnalytics.exe
-
Size
163KB
-
MD5
ef5a78af5fd0d9a9de04f49d0c2be860
-
SHA1
006c9437035975dcca19e3e7834e1e33266d0ace
-
SHA256
8d23e953e69c20634abab6afcf1d5ec8062d2ed8ece58166b5e690f19332c539
-
SHA512
8fa5392aac55f349d22d04b4a49f36f6322d9ec64010dd8cc3d8e085e7dee2c8f8189fb06ffde2f7488627e5ea3a817976fbd4990a137a165f7caad5fb8daa8f
-
SSDEEP
1536:PyO1ZPwwSV1WyTCKA6rWerLYx02QJjTam97lProNVU4qNVUrk/9QbfBr+7GwKrPb:vjwwelCnwoGae7ltOrWKDBr+yJb
Score10/10-
Adds autorun key to be loaded by Explorer.exe on startup
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-