MALICIOUS — 552_PotaoExpress.bin

MALICIOUS — 552_PotaoExpress.bin is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (93/100), attributed to the Potao family. 4 of 52 detection engines flagged it, exhibiting 1 ATT&CK technique.

Identification

Detections (4 of 52 engines)

MITRE ATT&CK

Why this verdict

The malicious score of 93/100 is the fusion of 6 weighted signals:

Dynamic analysis (windows)

6537 behavior events · 1 ATT&CK techniques · 5 dropped files.

Runtime network

Dropped files

Embedded URLs

Embedded domains

Embedded IP addresses

File paths

More Potao samples · Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report