Analysis

  • max time kernel
    130s
  • max time network
    124s
  • platform
    windows10-2004_x64
  • resource
    win10v2004-20240611-en
  • resource tags

    arch:x64arch:x86image:win10v2004-20240611-enlocale:en-usos:windows10-2004-x64system
  • submitted
    04-07-2024 06:44

General

  • Target

    2024-07-04_0056f03426d1ed21da540fb14b603616_hacktools_icedid_nymaim.exe

  • Size

    23.9MB

  • MD5

    0056f03426d1ed21da540fb14b603616

  • SHA1

    f4091545444750563130c31d5a7c83b538e8dfb8

  • SHA256

    9d1ac8fb3c6dd2df5e143e506ba036e18e9b375ca5ffe3375893005e9f6c2c8a

  • SHA512

    2b5af5c9073da4e61b424ced9aecebff3ab56bb2424c7222ef9ab5ef243e16ec72dff63a84f821b8358f0ed85de39774496b00a999d5574921f2c34c5fc0ab58

  • SSDEEP

    393216:5jXPSZ4zuFMc3kh1CPwv3uzYqh8IpU7H94KwWQQqpfVsYzjECIKfO3OynMR:1PSKz1c0JqhduH9JmNaYttfO3DMR

Score
1/10

Malware Config

Signatures

  • Suspicious use of SetWindowsHookEx 2 IoCs

Processes

  • C:\Users\Admin\AppData\Local\Temp\2024-07-04_0056f03426d1ed21da540fb14b603616_hacktools_icedid_nymaim.exe
    "C:\Users\Admin\AppData\Local\Temp\2024-07-04_0056f03426d1ed21da540fb14b603616_hacktools_icedid_nymaim.exe"
    1⤵
    • Suspicious use of SetWindowsHookEx
    PID:540

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads