Analysis

  • max time kernel
    118s
  • max time network
    121s
  • platform
    windows7_x64
  • resource
    win7-20240508-en
  • resource tags

    arch:x64arch:x86image:win7-20240508-enlocale:en-usos:windows7-x64system
  • submitted
    01-07-2024 02:11

General

  • Target

    2dc1842c935583a38bf3e77c93974b6890a9093068e200912513b4e3b64295e2_NeikiAnalytics.pdf

  • Size

    79KB

  • MD5

    1aa2611d050251ee983a1c8b50050660

  • SHA1

    832ef16e4eb939977659130dc97712edfbc0cfb6

  • SHA256

    2dc1842c935583a38bf3e77c93974b6890a9093068e200912513b4e3b64295e2

  • SHA512

    1b3fe289815c7dd8c55cd2783796b8a54ae2a784a7c5fb712d3371584071e984239e8273b6d73d019fd9b88f2392545f39d7781042cae9346e84b5071967417e

  • SSDEEP

    1536:tw1iEWnsibKh0m7haj9VGqqg7F5vPK/afZUU1CUqGImQvYegACd+enH03Z34h:LE2YP7ha7Gqqg73ZFHqGImregb3U3ZO

Score
1/10

Malware Config

Signatures

  • Suspicious behavior: GetForegroundWindowSpam 1 IoCs
  • Suspicious use of SetWindowsHookEx 3 IoCs

Processes

  • C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
    "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\2dc1842c935583a38bf3e77c93974b6890a9093068e200912513b4e3b64295e2_NeikiAnalytics.pdf"
    1⤵
    • Suspicious behavior: GetForegroundWindowSpam
    • Suspicious use of SetWindowsHookEx
    PID:3044

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents
    Filesize

    3KB

    MD5

    9f7eb8b7e9c2c18e207efb09d992c1c0

    SHA1

    2a8f485022f7444fce6c3d8dd84d0574f7af0774

    SHA256

    9eaf3ed964b8c439d10afba33b46c230b8e03c58f7adc9010b816cd8941d5976

    SHA512

    320cf4ab9c76c839cda30c382cfd8e1dadf24bcf1cf96a01a1d0f90743d453418ec1e5f1dbf55c23820d1623e7cce038d0bd94c187970b5da78421b1211badab