Analysis
-
max time kernel
14s -
max time network
151s -
platform
windows10-2004_x64 -
resource
win10v2004-20240611-en -
resource tags
arch:x64arch:x86image:win10v2004-20240611-enlocale:en-usos:windows10-2004-x64system -
submitted
01-07-2024 04:49
Static task
static1
Behavioral task
behavioral1
Sample
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe
Resource
win10v2004-20240611-en
General
-
Target
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe
-
Size
1.8MB
-
MD5
5739315e71b132b6ea380e634bb7ee30
-
SHA1
8a70cb0d163ece05dde8b67dd85e1db1d98a7017
-
SHA256
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae
-
SHA512
03fc3ab1eeb33ab1b5c576e0fd9f7e4b2fc4c2169e3a11b63eaa4625a586b3c7be6ba4e273c1c45672133f12794eedb19b7682ccb5c153b651ed6e248ba505f1
-
SSDEEP
24576:oWpxSC/25QUGibGGNUkT+tK4DMdGvT8x1ZtBNvdn4C3yqJZbH2gwy5uN1je3tRA3:VpPmGibXTMROnTn4CCIZbFY2tRq0qL
Malware Config
Signatures
-
Checks computer location settings 2 TTPs 16 IoCs
Looks up country code configured in the registry, likely geofence.
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription ioc process Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe Key value queried \REGISTRY\USER\S-1-5-21-200405930-3877336739-3533750831-1000\Control Panel\International\Geo\Nation 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Reads user/profile data of web browsers 2 TTPs
Infostealers often target stored browser data, which can include saved credentials etc.
-
Adds Run key to start application 2 TTPs 1 IoCs
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription ioc process Set value (str) \REGISTRY\MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\mssrv32 = "C:\\Windows\\mssrv.exe" 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Enumerates connected drives 3 TTPs 23 IoCs
Attempts to read the root path of hard drives other than the default C: drive.
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription ioc process File opened (read-only) \??\G: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\J: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\K: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\L: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\Q: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\R: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\W: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\E: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\H: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\I: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\U: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\V: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\X: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\Z: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\Y: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\A: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\B: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\M: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\N: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\O: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\P: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\T: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File opened (read-only) \??\S: 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Drops file in System32 directory 12 IoCs
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription ioc process File created C:\Windows\SysWOW64\WindowsPowerShell\v1.0\Modules\PSDesiredStateConfiguration\WebDownloadManager\indian horse trambling masturbation cock .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\config\systemprofile\sperm girls feet .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\WindowsPowerShell\v1.0\Modules\PSDesiredStateConfiguration\WebDownloadManager\japanese kicking beast hot (!) feet .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\System32\DriverStore\Temp\danish fetish lingerie hot (!) glans .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\FxsTmp\trambling public glans ejaculation (Jade).avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\IME\SHARED\brasilian cum lesbian uncut .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\System32\LogFiles\Fax\Incoming\swedish cumshot beast girls (Tatjana).rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\WindowsPowerShell\v1.0\Modules\SmbShare\lingerie several models young .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\FxsTmp\sperm uncut titts high heels (Samantha).mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\IME\SHARED\black porn fucking hidden .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\WindowsPowerShell\v1.0\Modules\SmbShare\black nude beast licking femdom .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SysWOW64\config\systemprofile\bukkake [milf] (Sarah).mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Drops file in Program Files directory 20 IoCs
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription ioc process File created C:\Program Files (x86)\Google\Update\Download\hardcore [bangbus] mature (Sandy,Liz).mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Microsoft\EdgeUpdate\Download\american fetish blowjob several models .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Microsoft\Temp\EU8B19.tmp\danish beastiality lingerie several models 50+ (Christine,Samantha).zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Windows Sidebar\Shared Gadgets\american animal bukkake big YEâPSè& (Anniston,Melissa).avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\IDTemplates\german horse voyeur blondie .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft SQL Server\130\Shared\danish beastiality bukkake girls hole granny .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft SQL Server\130\Shared\fucking big 40+ .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Microsoft Office\Updates\Download\indian nude horse licking shower .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Windows Sidebar\Shared Gadgets\hardcore lesbian feet hairy (Sylvia).zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{012F12C5-F267-46F5-BABE-4C602515640C}\EDGEMITMP_0327D.tmp\russian horse gay girls cock .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Common Files\microsoft shared\tyrkish animal xxx girls young .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\horse full movie leather .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\xxx licking bondage .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\WindowsApps\Microsoft.WindowsMaps_5.1906.1972.0_x64__8wekyb3d8bbwe\Assets\Images\PrintAndShare\swedish action beast voyeur .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\WebResources\Resource0\static\js\plugins\unified-share\swedish beastiality blowjob licking young .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Common Files\Microsoft Shared\american action bukkake [bangbus] cock lady .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\dotnet\shared\tyrkish gang bang sperm licking YEâPSè& .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Google\Temp\blowjob [milf] traffic .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files (x86)\Microsoft\Temp\japanese nude bukkake hidden glans sweet .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Program Files\Microsoft Office\root\Templates\hardcore uncut .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Drops file in Windows directory 62 IoCs
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription ioc process File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost_31bf3856ad364e35_10.0.19041.1202_none_621728fcd3c9d5f6\american handjob blowjob uncut hole wifey (Jade).mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\assembly\NativeImages_v4.0.30319_32\Temp\gay [bangbus] .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.GroupPolicy.AdmTmplEditor\japanese cum sperm licking glans .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SoftwareDistribution\Download\bukkake big sweet .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SystemResources\Windows.UI.ShellCommon\SharePickerUI\russian action horse public 40+ .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-composable-sharepicker_31bf3856ad364e35_10.0.19041.1_none_c87e96327faffd0e\russian handjob xxx full movie redhair (Anniston,Samantha).avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_it-it_bdb6c49fcea35732\black horse gay sleeping .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\ServiceProfiles\NetworkService\Downloads\swedish animal trambling [free] glans .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SoftwareDistribution\Download\SharedFileCache\italian gang bang lesbian [free] hole black hairunshaved .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.1_it-it_adfc5e0bfca53431\bukkake full movie hole 40+ (Karin).zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..utionservice-shared_31bf3856ad364e35_10.0.19041.928_none_33e0d5558cdd7c61\blowjob lesbian stockings .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_ja-jp_5fdc43acc1be690d\gang bang trambling hot (!) feet blondie .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..ashared-filemanager_31bf3856ad364e35_10.0.19041.844_none_855aff45853749ef\cumshot lesbian [milf] young .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..ces-ime-eashared-lm_31bf3856ad364e35_10.0.19041.1_none_3d0229d17c310f10\gay uncut feet leather .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SystemApps\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\webapps\inclusiveOobe\view\templates\horse public (Sarah).avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.1_de-de_7860bee9439c3ae7\italian cumshot horse full movie glans balls .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.1_es-es_211cf1c632a13851\sperm uncut hole .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_fr-fr_d38ece58f77171b4\chinese sperm [bangbus] 50+ .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\assembly\temp\italian porn lesbian public boots .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\brasilian beastiality lingerie full movie boots .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.1_en-us_215194e2327a46ac\nude trambling hot (!) stockings .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..ashared-candidateui_31bf3856ad364e35_10.0.19041.1_none_833abdc06c68d338\sperm hidden hole YEâPSè& (Melissa).mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..ashared-candidateui_31bf3856ad364e35_10.0.19041.746_none_ab42fb092bda9182\german lesbian big glans granny (Sarah).mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SystemApps\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\webapps\templates\xxx [bangbus] .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.1_ja-jp_5021dd18efc0460c\asian xxx girls glans redhair .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-a..gement-uevtemplates_31bf3856ad364e35_10.0.19041.1_none_0d66b54875835a49\british trambling full movie beautyfull .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..-eashared-imebroker_31bf3856ad364e35_10.0.19041.84_none_81616275259e37fe\american action horse sleeping gorgeoushorny .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\security\templates\danish beastiality hardcore licking hole .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\hardcore voyeur fishy .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.1_fr-fr_c3d467c525734eb3\xxx [bangbus] cock .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..e-eashared-moimeexe_31bf3856ad364e35_10.0.19041.1_none_a80cea873b2a6772\bukkake girls stockings (Gina,Sylvia).rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\american handjob fucking licking hairy .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.789_en-us_58ebf9ecc407e3c0\action sperm uncut cock .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..e-eashared-kjshared_31bf3856ad364e35_10.0.19041.1_none_f3b35d713ce0fc7f\horse sperm several models .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..e-eashared-kjshared_31bf3856ad364e35_10.0.19041.746_none_1bbb9ab9fc52bac9\action lingerie girls young .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\japanese gang bang lesbian catfight young .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\InputMethod\SHARED\danish beastiality blowjob [bangbus] .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Templates\sperm catfight high heels .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\Downloaded Program Files\norwegian beast uncut ash .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\PLA\Templates\swedish animal horse big cock .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..utionservice-shared_31bf3856ad364e35_10.0.19041.1_none_0bc0f3d4cd7dc8fd\swedish cumshot horse big high heels .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..ashared-filemanager_31bf3856ad364e35_10.0.19041.1_none_5d54c0aac5c3c12c\british fucking several models .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.GroupPolicy.AdmTmplEditor\xxx masturbation cock (Christine,Curtney).rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\ServiceProfiles\LocalService\Downloads\russian action beast catfight black hairunshaved .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..-ime-eashared-proxy_31bf3856ad364e35_10.0.19041.1_none_4c786ae2f508e6d5\fucking [milf] cock .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\mssrv.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Templates\american fetish sperm hot (!) hole (Sonja,Samantha).mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\SystemResources\Windows.ShellCommon.SharedResources\american cumshot fucking hot (!) .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost_31bf3856ad364e35_10.0.19041.264_none_cb389cf57d74d691\animal fucking public (Jade).mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-b..-bcdtemplate-client_31bf3856ad364e35_10.0.19041.1_none_de1581e9a275faf8\swedish kicking horse hot (!) balls .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\CbsTemp\trambling several models glans ìó (Liz).avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.GroupPolicy.AdmTmplEditor.Resources\japanese nude bukkake hidden .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_hyperv-compute-cont..ce-shared.resources_31bf3856ad364e35_10.0.19041.867_en-us_49453482f1fb5356\kicking gay uncut femdom .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_de-de_881b257d159a5de8\beastiality xxx [bangbus] .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.GroupPolicy.AdmTmplEditor.Resources\beast licking hotel .rar.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_en-us_310bfb76047869ad\british lingerie catfight ejaculation .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_es-es_30d7585a049f5b52\swedish animal lesbian big .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-onecore-sharehost.resources_31bf3856ad364e35_10.0.19041.1_uk-ua_5b152a8d329397ec\norwegian trambling sleeping hole 40+ .avi.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..-eashared-imebroker_31bf3856ad364e35_10.0.19041.844_none_67b5915b5651dd8a\lesbian sleeping glans .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\assembly\NativeImages_v4.0.30319_64\Temp\russian action sperm several models .mpg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\assembly\tmp\danish cum lingerie sleeping titts .zip.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe File created C:\Windows\WinSxS\amd64_microsoft-windows-d..e-eashared-moimeexe_31bf3856ad364e35_10.0.19041.746_none_d01527cffa9c25bc\african bukkake voyeur glans beautyfull .mpeg.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Enumerates physical storage devices 1 TTPs
Attempts to interact with connected storage/optical drive(s).
-
Suspicious behavior: EnumeratesProcesses 64 IoCs
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exepid process 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 1756 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 1756 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3464 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3464 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3600 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3600 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 1228 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 1228 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2308 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2308 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3192 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3192 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4740 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4740 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4216 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4216 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3768 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 3768 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe -
Suspicious use of WriteProcessMemory 64 IoCs
Processes:
369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exedescription pid process target process PID 3968 wrote to memory of 4180 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 4180 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 4180 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3836 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3836 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3836 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 2076 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 2076 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 2076 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 4544 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 4544 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 4544 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3640 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3640 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3640 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 4196 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 4196 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 4196 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 2076 wrote to memory of 4404 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 2076 wrote to memory of 4404 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 2076 wrote to memory of 4404 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3640 wrote to memory of 1756 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3640 wrote to memory of 1756 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3640 wrote to memory of 1756 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 3464 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 3464 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 3464 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3600 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3600 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 3600 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 1228 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 1228 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 1228 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4544 wrote to memory of 2308 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4544 wrote to memory of 2308 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4544 wrote to memory of 2308 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 2076 wrote to memory of 4740 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 2076 wrote to memory of 4740 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 2076 wrote to memory of 4740 2076 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4196 wrote to memory of 3192 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4196 wrote to memory of 3192 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4196 wrote to memory of 3192 4196 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4404 wrote to memory of 4216 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4404 wrote to memory of 4216 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4404 wrote to memory of 4216 4404 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 1736 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 1736 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4180 wrote to memory of 1736 4180 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3640 wrote to memory of 3768 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3640 wrote to memory of 3768 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3640 wrote to memory of 3768 3640 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 1792 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 1792 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3836 wrote to memory of 1792 3836 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4544 wrote to memory of 1860 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4544 wrote to memory of 1860 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 4544 wrote to memory of 1860 4544 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3464 wrote to memory of 2712 3464 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3464 wrote to memory of 2712 3464 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3464 wrote to memory of 2712 3464 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 1220 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 1220 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 3968 wrote to memory of 1220 3968 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe PID 1756 wrote to memory of 3920 1756 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe 369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe
Processes
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"1⤵
- Checks computer location settings
- Adds Run key to start application
- Enumerates connected drives
- Drops file in System32 directory
- Drops file in Program Files directory
- Drops file in Windows directory
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"9⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"8⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
- Suspicious use of WriteProcessMemory
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"7⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"6⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
- Checks computer location settings
- Suspicious behavior: EnumeratesProcesses
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"5⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"4⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"3⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
-
C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\369d33eff7d9a89c54965b2c02e273f7c5dfb7c417a731f5f8e748ba829b2aae_NeikiAnalytics.exe"2⤵
Network
MITRE ATT&CK Matrix ATT&CK v13
Replay Monitor
Loading Replay Monitor...
Downloads
-
C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\xxx licking bondage .mpeg.exeFilesize
1.6MB
MD563cb8e3107bf7b7409f12c22f0e6f2e7
SHA1ebae30705d9e6084912ca61c6870e7975d3ff1d8
SHA256d62b898e07bc0d9f69f802b5e6a201d40283ff23e6b15d6c6c402989618d89ac
SHA512cbe0e3113a2ad75d850ae09d59cdd29582603677b33dae21801b87154414c1b5ee673b0518ced512f492973fd76afba0f7034e993a772a293565de5730a9f094