MALICIOUS — bttvvhv.exe

MALICIOUS — bttvvhv.exe is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (99/100), attributed to the Dinwod family. 11 of 55 detection engines flagged it, exhibiting 3 ATT&CK techniques.

Identification

Detections (11 of 55 engines)

MITRE ATT&CK

YARA

Why this verdict

The malicious score of 99/100 is the fusion of 10 weighted signals:

Dynamic analysis (windows)

543 behavior events · 0 ATT&CK techniques · 15 dropped files.

Runtime network

Dropped files

Embedded URLs

Embedded IP addresses

More Dinwod samples · Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report