ResumeThread
Read documentation
Through official Microsoft Developer Network (MSDN).
Featured in Techniques
| Technique Name | Technique ID's | Categories | Snippet(s) | Rules(s) |
|---|---|---|---|---|
| NtSetInformationThread | U0119 B0001.014 |
|
||
| Process Hollowing, RunPE | U1225 E1055.012 |
|
||
| APC injection | U1221 E1055.004 |
|
||
| Atom Bombing | U1220 |
|
||
| Detecting Online Sandbox | U1338 |
|
||
| Access Token Manipulation: Parent PID Spoofing | U1234 T1134.004 |
|
||
| ProcEnvInjection - Remote code injection by abusing process environment strings | U1235 |
|
Matching Samples 10 most recent
| Sample Name | Matching Techniques | First Seen | Last Seen |
|---|---|---|---|
| PrivWindoze.exe | 2 | 2026-09-18 | 13 hours, 4 minutes ago |
| DoesNotBelong.exe | 2 | 2026-09-18 | 13 hours, 6 minutes ago |
| rlm1611_http.dll | 6 | 2025-11-22 | 1 week, 5 days ago |
| TinyLoad.exe | 4 | 2026-09-04 | 2 weeks ago |
| Sotfgmc.exe | 3 | 2026-08-26 | 3 weeks, 2 days ago |
| enigma.dll | 4 | 2026-08-09 | 1 month, 1 week ago |
| ietabhelper.exe | 5 | 2026-08-01 | 1 month, 2 weeks ago |
| xmrig.exe | 6 | 2026-07-28 | 1 month, 3 weeks ago |
| Adrenalin.exe | 5 | 2026-07-18 | 2 months ago |
| 2m96.exe | 6 | 2026-06-30 | 2 months, 2 weeks ago |