Analysis
-
max time kernel
118s -
max time network
124s -
platform
windows7_x64 -
resource
win7-20240508-en -
resource tags
arch:x64arch:x86image:win7-20240508-enlocale:en-usos:windows7-x64system -
submitted
30-06-2024 21:11
Behavioral task
behavioral1
Sample
19e192f28af5bf8b4d21a460abcfdc76127312c422d10eac96c378465d8b1ed1_NeikiAnalytics.pdf
Resource
win7-20240508-en
Behavioral task
behavioral2
Sample
19e192f28af5bf8b4d21a460abcfdc76127312c422d10eac96c378465d8b1ed1_NeikiAnalytics.pdf
Resource
win10v2004-20240508-en
General
-
Target
19e192f28af5bf8b4d21a460abcfdc76127312c422d10eac96c378465d8b1ed1_NeikiAnalytics.pdf
-
Size
75KB
-
MD5
e1e3354f448a7eee32ea9764fa4bd390
-
SHA1
8c7f41e3da48e7fe2ec350777abd04de06271218
-
SHA256
19e192f28af5bf8b4d21a460abcfdc76127312c422d10eac96c378465d8b1ed1
-
SHA512
8ea9344a33977227535fee207f318ffa653f67b2c54635beecf7be1855836ee4984523fee851d7c70f8dd0536651381d5cc786129767d338eb2b349e98d012d9
-
SSDEEP
1536:W5e0JcqcJjSQ4KfRh8nSm7rmTyQF5cB/JbyviCxV5rxpV2B5HEtj:KeOcJGORh8SrTyQFi/JELpVM5HEp
Malware Config
Signatures
-
Suspicious behavior: GetForegroundWindowSpam 1 IoCs
Processes:
AcroRd32.exepid process 2032 AcroRd32.exe -
Suspicious use of SetWindowsHookEx 4 IoCs
Processes:
AcroRd32.exepid process 2032 AcroRd32.exe 2032 AcroRd32.exe 2032 AcroRd32.exe 2032 AcroRd32.exe
Processes
-
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\19e192f28af5bf8b4d21a460abcfdc76127312c422d10eac96c378465d8b1ed1_NeikiAnalytics.pdf"1⤵
- Suspicious behavior: GetForegroundWindowSpam
- Suspicious use of SetWindowsHookEx
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEventsFilesize
3KB
MD5fe3aa4adc36852dcc26420d300bd3833
SHA1098773d604ded502a003bf3a9def6b1656b24cf8
SHA2561158f2498cd301776f7daf7526e5408962fdfcbc07eee295498c557befb05adc
SHA5129cc5e601dcee71a360610a8019192f4e8fa28b2ff11553d6a624a10d25935962ad3a0c76de917469b21622e8ab799c7ab5ab508df5dbcb2aa483237d29b3841d