General
-
Target
1f838b557097cec534811e2e047195c457308376f4473def74e0435af5728f0e_NeikiAnalytics.exe
-
Size
363KB
-
Sample
240702-a6qxxazfnd
-
MD5
40b62a37b08c7e9495295796f2fe46d0
-
SHA1
9d75529123230660661a1e4f439691368ed7f4b3
-
SHA256
1f838b557097cec534811e2e047195c457308376f4473def74e0435af5728f0e
-
SHA512
46250e3a89fdfcec72ff1cb840fde15f03779a75cfafa2e1d063c2b0e4233e0827565659527219e82963868823168115485a37aff91ce686676574b2e25e5652
-
SSDEEP
6144:lAFehJ5tT6rkOM0hbFY5tT2m29fbv25tT6rkOM0hbFY5tT:l55turkWhbi5tR2di5turkWhbi5t
Static task
static1
Behavioral task
behavioral1
Sample
1f838b557097cec534811e2e047195c457308376f4473def74e0435af5728f0e_NeikiAnalytics.exe
Resource
win7-20240221-en
Behavioral task
behavioral2
Sample
1f838b557097cec534811e2e047195c457308376f4473def74e0435af5728f0e_NeikiAnalytics.exe
Resource
win10v2004-20240508-en
Malware Config
Extracted
gozi
Targets
-
-
Target
1f838b557097cec534811e2e047195c457308376f4473def74e0435af5728f0e_NeikiAnalytics.exe
-
Size
363KB
-
MD5
40b62a37b08c7e9495295796f2fe46d0
-
SHA1
9d75529123230660661a1e4f439691368ed7f4b3
-
SHA256
1f838b557097cec534811e2e047195c457308376f4473def74e0435af5728f0e
-
SHA512
46250e3a89fdfcec72ff1cb840fde15f03779a75cfafa2e1d063c2b0e4233e0827565659527219e82963868823168115485a37aff91ce686676574b2e25e5652
-
SSDEEP
6144:lAFehJ5tT6rkOM0hbFY5tT2m29fbv25tT6rkOM0hbFY5tT:l55turkWhbi5tR2di5turkWhbi5t
Score10/10-
Adds autorun key to be loaded by Explorer.exe on startup
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-