Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
76
2022-01-27 16:55
c1583e3247.doc
4f0a9b1d482db429d9ac133f2d2b3dfe
VBA_macro
MSOffice File
unpack itself
2
Info
×
tropitron5.ru(5.188.88.97) - mailcious
5.188.88.97 - mailcious
2.6
guest
77
2022-01-27 16:55
T2766D2709.doc
f3f9bbdad3d89e5b4f3c2b2c0f2adde1
VBA_macro
MSOffice File
MachineGuid
Check memory
RWX flags setting
unpack itself
GameoverP2P
Zeus
ComputerName
Trojan
Banking
2
Info
×
tropitron5.ru(5.188.88.97) - mailcious
5.188.88.97 - mailcious
5.4
guest
78
2022-01-27 16:32
A2247c3368.doc
bd7499686bec895c1deaff51b2905958
VBA_macro
MSOffice File
unpack itself
2
Info
×
tropitron5.ru(5.188.88.97) - mailcious
5.188.88.97 - mailcious
2.6
guest
79
2022-01-27 16:31
A2210h3039.doc
4a89ef70c12c52f6ed1fc203da20c128
VBA_macro
MSOffice File
RWX flags setting
unpack itself
DNS
3
Info
×
tropitron5.ru(5.188.88.97) - mailcious
136.144.41.66 - malware
5.188.88.97 - mailcious
3.6
guest
80
2022-01-27 09:27
n2725C2560.doc
9c8f52af04895c5a508fbdd1888dbcbe
VBA_macro
MSOffice File
unpack itself
2
Info
×
tropitron5.ru(5.188.88.97)
5.188.88.97
2.6
guest
81
2022-01-27 09:27
F1736c3168.doc
762261428b27d99007027106d7fef7da
VBA_macro
MSOffice File
Vulnerability
unpack itself
suspicious TLD
2
Info
×
tropitron5.ru(5.188.88.97)
5.188.88.97
3.6
guest
82
2022-01-27 09:26
U2232o1226.doc
2ff7a82ce2cfd50823844a57baae4669
VBA_macro
MSOffice File
MachineGuid
Check memory
RWX flags setting
unpack itself
GameoverP2P
Zeus
ComputerName
Trojan
Banking
2
Info
×
tropitron5.ru(5.188.88.97)
5.188.88.97
5.4
guest
83
2022-01-17 15:16
Circular 01_2022.doc
46b3901c90051526d347703cf299d7dc
MSOffice File
VirusTotal
Malware
RWX flags setting
1.0
13
ZeroCERT
84
2021-12-20 10:06
sigorta.doc
064cdac4e694e37e86e4f6895a3dc983
MSOffice File
unpack itself
1.2
ZeroCERT
85
2021-11-25 08:13
rns63jefark0bRQf.php
77f23fa53bd257f67b435a6dc18cf87e
MSOffice File
RWX flags setting
unpack itself
1.2
M
ZeroCERT
86
2021-11-25 08:00
rns63jefark0bRQf.php
77f23fa53bd257f67b435a6dc18cf87e
MSOffice File
unpack itself
0.8
M
ZeroCERT
87
2021-11-24 12:25
1123_8502303205.doc
1589e5cc918ed4319ff16227c6286619
VBA_macro
Generic Malware
MSOffice File
GIF Format
Malware
Malicious Traffic
Checks debugger
buffers extracted
Creates shortcut
Creates executable files
RWX flags setting
unpack itself
Windows utilities
Check virtual network interfaces
suspicious process
WriteConsoleW
IP Check
Windows
ComputerName
2
Keyword trend analysis
×
Info
×
http://templogio.com/9/forum.php
http://api.ipify.org/
4
Info
×
api.ipify.org(3.220.57.224)
templogio.com(95.47.161.27)
3.232.242.170
95.47.161.27
1
Info
×
ET POLICY External IP Lookup api.ipify.org
8.4
guest
88
2021-11-24 12:23
1123_4206263640.doc
f1c6229f50d427391bc57518e23ddb33
VBA_macro
Generic Malware
MSOffice File
GIF Format
Malware
Malicious Traffic
Checks debugger
buffers extracted
Creates shortcut
Creates executable files
ICMP traffic
RWX flags setting
unpack itself
Windows utilities
Check virtual network interfaces
suspicious process
WriteConsoleW
IP Check
Windows
ComputerName
2
Keyword trend analysis
×
Info
×
http://templogio.com/9/forum.php
http://api.ipify.org/
4
Info
×
api.ipify.org(3.232.242.170)
templogio.com(95.47.161.27)
3.232.242.170
95.47.161.27
1
Info
×
ET POLICY External IP Lookup api.ipify.org
9.2
guest
89
2021-11-12 08:06
%e5%85%b3%e4%ba%8e%e5%bc%80%e5...
a90e6ede67996b3825adb6b8c5b2a204
VBA_macro
Generic Malware
AntiDebug
AntiVM
MSOffice File
VirusTotal
Malware
Code Injection
RWX flags setting
unpack itself
DNS
1
Info
×
101.35.100.211
7.6
40
ZeroCERT
90
2021-10-28 11:02
1027_4830311122.doc
24e1900dfa4cdf71e11dd3f60874d87f
VBA_macro
Generic Malware
MSOffice File
Vulnerability
unpack itself
2.2
guest
First
Previous
1
2
3
4
5
6
7
8
9
10
Next
Last
Total : 279cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword