Analysis
-
max time kernel
117s -
max time network
119s -
platform
windows7_x64 -
resource
win7-20240419-en -
resource tags
arch:x64arch:x86image:win7-20240419-enlocale:en-usos:windows7-x64system -
submitted
30-06-2024 20:43
Behavioral task
behavioral1
Sample
182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf_NeikiAnalytics.pdf
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf_NeikiAnalytics.pdf
Resource
win10v2004-20240508-en
General
-
Target
182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf_NeikiAnalytics.pdf
-
Size
90KB
-
MD5
3e0b4b2a1fb83d62ef807fe58e50e8b0
-
SHA1
434c51df7c3c6e6e17284ab27ee2be38019b323c
-
SHA256
182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf
-
SHA512
6b4edc51106178ed2e3e436678fdab04bed092601793c12dd4203f73c019beaa9a87702556c4650738ea2d861b47b3f68dce52eb10c340a2112f5e3f9c4e49c4
-
SSDEEP
1536:l05e0JcqcJjSQ4KfRh8nSm7rmTyQF5cB6PtcKZ8TCDxi7CypHur1zwG1G9ZF:lQeOcJGORh8SrTyQFiacqw67oHi1zwGc
Malware Config
Signatures
-
Suspicious behavior: GetForegroundWindowSpam 1 IoCs
Processes:
AcroRd32.exepid process 2488 AcroRd32.exe -
Suspicious use of SetWindowsHookEx 4 IoCs
Processes:
AcroRd32.exepid process 2488 AcroRd32.exe 2488 AcroRd32.exe 2488 AcroRd32.exe 2488 AcroRd32.exe
Processes
-
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf_NeikiAnalytics.pdf"1⤵
- Suspicious behavior: GetForegroundWindowSpam
- Suspicious use of SetWindowsHookEx
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEventsFilesize
3KB
MD5c45a4594ac540f9680a33a766a610a4c
SHA1b3d6fb508ff84d09333be81ede04f6a0f00fa63c
SHA256da605fdbd836362343e87e5c42ef17a0e0128195d1384a451e24de52131ed4eb
SHA5125a4adc8954eb0ad8f65140e900493a1892294eb609e02a626b6e5d35f0921f949579ec321f4488a6d54562147ca9bd4f93c8284635625f31ee86cd45b4dc57bd