Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2021-07-27 09:16
skla.exe
3c9ce581ee50de2ca3ad5f73b5666424
Emotet
Gen1
RAT
BitCoin
Generic Malware
Themida Packer
UPX
Malicious Library
Anti_VM
Admin Tool (Sysinternals etc ...)
DGA
DNS
Socket
Create Service
Sniff Audio
Escalate priviledges
KeyLogger
Code injection
HTTP
Internet API
FTP
ScreenShot
Http API
Steal
Browser Info Stealer
FTP Client Info Stealer
VirusTotal
Malware
AutoRuns
PDB
suspicious privilege
Code Injection
Malicious Traffic
Check memory
Checks debugger
buffers extracted
Creates executable files
unpack itself
Checks Bios
Collect installed applications
Detects VMWare
Check virtual network interfaces
AppData folder
VMware
anti-virtualization
installed browsers check
Tofsee
Windows
Browser
ComputerName
RCE
Firmware
Cryptographic key
Software
crashed
2
Keyword trend analysis
×
Info
×
http://verecalina.xyz/ - rule_id: 2140
https://api.ip.sb/geoip
4
Info
×
api.ip.sb(104.26.13.31)
verecalina.xyz(141.136.0.96) - mailcious
104.26.12.31
141.136.0.96 - mailcious
2
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
SURICATA HTTP unable to match response to request
1
Info
×
http://verecalina.xyz/
13.4
M
14
ZeroCERT
First
1
Last
Total : 1cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword