Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 15:55:14 UTC Tool: Nymaim Names Nymaim nymain Category Malware Type Banking trojan, Downloader Description (Digital Forensics Corp) Nymaim was discovered in 2013 and is a downloader. It recently teamed up with the banking trojan Gozi ISFB, so there was a new family of malware called GozNym. However, the original version Nymaim still continues to be used as the boot various other threats. Information Malpedia AlienVault OTX Last change to this tool card: 14 May 2020 Download this tool card in JSON format All groups using tool Nymaim Changed Name Country Observed APT groups https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=4817d735-637c-4953-bb38-d670cb411228 Page 1 of 2 TA530 [Unknown] 2016-Nov 2016   Other groups   Bamboo Spider, TA544 [Unknown] 2016-Apr 2022 2 groups listed (1 APT, 1 other, 0 unknown) ↑ Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=4817d735-637c-4953-bb38-d670cb411228 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=4817d735-637c-4953-bb38-d670cb411228 Page 2 of 2