Analysis
-
max time kernel
126s -
max time network
128s -
platform
windows10-2004_x64 -
resource
win10v2004-20240508-en -
resource tags
arch:x64arch:x86image:win10v2004-20240508-enlocale:en-usos:windows10-2004-x64system -
submitted
02-07-2024 10:43
Static task
static1
1 signatures
Behavioral task
behavioral1
Sample
464aa57daea6b77793b82af94a78e99336deabc088ab9fb324262ef2e44f2cde_NeikiAnalytics.exe
Resource
win7-20240611-en
0 signatures
150 seconds
General
-
Target
464aa57daea6b77793b82af94a78e99336deabc088ab9fb324262ef2e44f2cde_NeikiAnalytics.exe
-
Size
1.1MB
-
MD5
e789752ab2bc54df710e959d51716890
-
SHA1
d213720e47a28cb3f4d3da56bf541f32502d2b0b
-
SHA256
464aa57daea6b77793b82af94a78e99336deabc088ab9fb324262ef2e44f2cde
-
SHA512
c11876bf2978ce81f92c776100fe10259caa2e5681fab2916973eb461b3775ec3a0115b21a17bb55e7b8e24056568df08d4b3d626f4886dd7a433847e65fecee
-
SSDEEP
24576:jlEPj6/6kvfhgJ5LGpeUM94czLY74vXl96P6qIQbf4:KPqJgAb
Malware Config
Extracted
Family
lumma
C2
https://harmfullyelobardek.shop/api
Processes
-
C:\Users\Admin\AppData\Local\Temp\464aa57daea6b77793b82af94a78e99336deabc088ab9fb324262ef2e44f2cde_NeikiAnalytics.exe"C:\Users\Admin\AppData\Local\Temp\464aa57daea6b77793b82af94a78e99336deabc088ab9fb324262ef2e44f2cde_NeikiAnalytics.exe"1⤵
-
C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-US --service-sandbox-type=asset_store_service --no-appcompat-clear --field-trial-handle=3416,i,13879737908471496610,15335851594401413307,262144 --variations-seed-version --mojo-platform-channel-handle=4312 /prefetch:81⤵