Analysis

  • max time kernel
    122s
  • max time network
    123s
  • platform
    windows7_x64
  • resource
    win7-20240221-en
  • resource tags

    arch:x64arch:x86image:win7-20240221-enlocale:en-usos:windows7-x64system
  • submitted
    01-07-2024 08:14

General

  • Target

    427417924d91dc02a6fd37560db62e8a32ecf0325fae36284b068114dc396254_NeikiAnalytics.exe

  • Size

    417KB

  • MD5

    894f13cffc8eb730cfa9101564542d60

  • SHA1

    b54cdbd4cf70d7377e66cf66627b0b5ae59b4ade

  • SHA256

    427417924d91dc02a6fd37560db62e8a32ecf0325fae36284b068114dc396254

  • SHA512

    a80037be6638e923c3f4cc512d01604a2ca925f991f81f00ea2e47c9b636f42c5e16a081a92ef64e0daf50f66fce0a93eac7eb13461f2b8583059c68527712c9

  • SSDEEP

    12288:GoGjz7YONFt7DtygOJEITNLL3CEJwK/nK0ag4bl3M5NJGYQMor1x38o:GoGPUctFyT

Score
7/10

Malware Config

Signatures

  • Loads dropped DLL 1 IoCs

Processes

  • C:\Users\Admin\AppData\Local\Temp\427417924d91dc02a6fd37560db62e8a32ecf0325fae36284b068114dc396254_NeikiAnalytics.exe
    "C:\Users\Admin\AppData\Local\Temp\427417924d91dc02a6fd37560db62e8a32ecf0325fae36284b068114dc396254_NeikiAnalytics.exe"
    1⤵
    • Loads dropped DLL
    PID:2328

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • \Users\Admin\AppData\Roaming\d3d9.dll
    Filesize

    443KB

    MD5

    72bcb74d6fb1380c8f574cae9bc81ca1

    SHA1

    2110bf6b5285eb6d4d5448436ee2e53aa27eff3d

    SHA256

    9296de0e109032252c8c8d30fff275fc1d39796dfb73701d40f0276ee583de2d

    SHA512

    ca28fd1cf9f02211457a9b38ae652e08fcd3855adf704207e2fe15108f22a23afa56a655edef00f4497702d61be9a5d54c85c78f89dcb8846275c568c2ed4784

  • memory/2328-0-0x00000000744DE000-0x00000000744DF000-memory.dmp
    Filesize

    4KB

  • memory/2328-1-0x0000000000DB0000-0x0000000000E22000-memory.dmp
    Filesize

    456KB

  • memory/2328-2-0x00000000001C0000-0x00000000001C6000-memory.dmp
    Filesize

    24KB

  • memory/2328-7-0x0000000075AD0000-0x0000000075B91000-memory.dmp
    Filesize

    772KB

  • memory/2328-8-0x00000000744D0000-0x0000000074BBE000-memory.dmp
    Filesize

    6.9MB