Analysis
-
max time kernel
121s -
max time network
126s -
platform
windows7_x64 -
resource
win7-20240419-en -
resource tags
arch:x64arch:x86image:win7-20240419-enlocale:en-usos:windows7-x64system -
submitted
30-06-2024 10:34
Behavioral task
behavioral1
Sample
07320b289c3cf2bd70cfe757aee49365851fc27fe52d6450b901a15896159b2a_NeikiAnalytics.pdf
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
07320b289c3cf2bd70cfe757aee49365851fc27fe52d6450b901a15896159b2a_NeikiAnalytics.pdf
Resource
win10v2004-20240508-en
General
-
Target
07320b289c3cf2bd70cfe757aee49365851fc27fe52d6450b901a15896159b2a_NeikiAnalytics.pdf
-
Size
77KB
-
MD5
f93d6db465dfacfc1d9f4e42ec8026d0
-
SHA1
4dac477b26e6bf5811fa2a4275fd3f3b33e9d4f7
-
SHA256
07320b289c3cf2bd70cfe757aee49365851fc27fe52d6450b901a15896159b2a
-
SHA512
f67310df9d54a210bf61bd55d60506401c1787ce992349a3abc0292685ef054504c3aecfaf2ec531122052b8eefd38d985e97d45dfd64d4bfe61c4076d71b891
-
SSDEEP
1536:MbdhalVa5m1PFe5DOSKJI6PBFEHcJmcmhODV5thhp1NcixaZxQ5OTjpIhnitnJgA:G4lVa5AFe5JKJNPXT4LG53Ncgv5kChYJ
Malware Config
Signatures
-
Suspicious behavior: GetForegroundWindowSpam 1 IoCs
Processes:
AcroRd32.exepid process 2424 AcroRd32.exe -
Suspicious use of SetWindowsHookEx 3 IoCs
Processes:
AcroRd32.exepid process 2424 AcroRd32.exe 2424 AcroRd32.exe 2424 AcroRd32.exe
Processes
-
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\07320b289c3cf2bd70cfe757aee49365851fc27fe52d6450b901a15896159b2a_NeikiAnalytics.pdf"1⤵
- Suspicious behavior: GetForegroundWindowSpam
- Suspicious use of SetWindowsHookEx
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEventsFilesize
3KB
MD599b18d3ce25d1b2e7b36132abe4af404
SHA16e21b703d639017fc6c9ae7efdd5327495d06d8e
SHA2568bc0d11f112588d2fb764853e8acea9bb2589bbd5ae0490767c24ed1aaa90efa
SHA5122a4e7dacfeac87ad62477d1ede5a342d02230fa72cb16fc788f584fb0063bc0c5d9dea1626e1c73de8342b4c0d11bce07936c739522e619c52c57850337f06d3