nx

Classification: Malicious

nx is a malicious file sample. Linked to Bitter activity. Reported by 2 threat sources, last seen 2024-07-28.

Detection summary

  • 0 antivirus detections
  • 2 IDS alerts
  • 3 processes observed
  • 2 contacted hosts
  • 1 DNS requests

MITRE ATT&CK associations

Intrusion sets: BITTER (G1002)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-07-26 07:30:04 2024-07-28 20:45:09
Bitter MalwareBazaar Abuse.ch 2022-05-13 07:44:06 2022-05-13 07:44:06 malicious-activity G1002 BITTER
Generic.Malware MalwareBazaar Abuse.ch 2022-05-13 07:44:06 2022-05-13 07:44:06 malicious-activity

Tags

banker downloader emotet maldoc suspicious

Sample information

Filenames
nx, fa0ed2faa3da831976fee90860ac39d50484b20bee692ce7f0ec35a15670fa92
File type
application/x-dosexec
Size
51200 bytes
MD5
b9025eca96614a473e204e9e8a873e1d
SHA-1
2360e4cff14fbfb2af6c80dbd7028d682fe2634e
SHA-256
fa0ed2faa3da831976fee90860ac39d50484b20bee692ce7f0ec35a15670fa92
First indexed
2022-05-13 09:15:10
Last updated
2026-02-13 19:47:37

Network contacts

120.26.240.121 114.55.89.54

DNS requests

helpdesk.autodefragapp.com

Process list

NameCommand line
nx.exe
nx.exe
nx.exe