Analysis

  • max time kernel
    117s
  • max time network
    119s
  • platform
    windows7_x64
  • resource
    win7-20240419-en
  • resource tags

    arch:x64arch:x86image:win7-20240419-enlocale:en-usos:windows7-x64system
  • submitted
    30-06-2024 20:43

General

  • Target

    182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf_NeikiAnalytics.pdf

  • Size

    90KB

  • MD5

    3e0b4b2a1fb83d62ef807fe58e50e8b0

  • SHA1

    434c51df7c3c6e6e17284ab27ee2be38019b323c

  • SHA256

    182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf

  • SHA512

    6b4edc51106178ed2e3e436678fdab04bed092601793c12dd4203f73c019beaa9a87702556c4650738ea2d861b47b3f68dce52eb10c340a2112f5e3f9c4e49c4

  • SSDEEP

    1536:l05e0JcqcJjSQ4KfRh8nSm7rmTyQF5cB6PtcKZ8TCDxi7CypHur1zwG1G9ZF:lQeOcJGORh8SrTyQFiacqw67oHi1zwGc

Score
1/10

Malware Config

Signatures

  • Suspicious behavior: GetForegroundWindowSpam 1 IoCs
  • Suspicious use of SetWindowsHookEx 4 IoCs

Processes

  • C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
    "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\182ac7684e6db4bf5cf789659326d64f54476f57f1f35ee523439864396b1caf_NeikiAnalytics.pdf"
    1⤵
    • Suspicious behavior: GetForegroundWindowSpam
    • Suspicious use of SetWindowsHookEx
    PID:2488

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents
    Filesize

    3KB

    MD5

    c45a4594ac540f9680a33a766a610a4c

    SHA1

    b3d6fb508ff84d09333be81ede04f6a0f00fa63c

    SHA256

    da605fdbd836362343e87e5c42ef17a0e0128195d1384a451e24de52131ed4eb

    SHA512

    5a4adc8954eb0ad8f65140e900493a1892294eb609e02a626b6e5d35f0921f949579ec321f4488a6d54562147ca9bd4f93c8284635625f31ee86cd45b4dc57bd