Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2024-09-10 10:26
66dd9b656c6a0_cry.exe#kiscrmet...
3879291a4c9563f65101294045b3b427
RedLine stealer
Malicious Library
.NET framework(MSIL)
PE File
.NET EXE
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
2.0
M
45
ZeroCERT
2
2024-09-04 10:30
66d753b13350c_cry.exe#kiscrypt...
7935a87d35721d1697e50bebcbec125b
Client SW User Data Stealer
ftp Client
info stealer
Malicious Library
.NET framework(MSIL)
UPX
Http API
PWS
AntiDebug
AntiVM
PE File
.NET EXE
PE32
OS Processor Check
Malware download
VirusTotal
Malware
c&c
PDB
suspicious privilege
Code Injection
Malicious Traffic
Check memory
Checks debugger
buffers extracted
unpack itself
Stealc
ComputerName
DNS
2
Keyword trend analysis
×
Info
×
http://45.152.113.10/
http://45.152.113.10/92335b4816f77e90.php
1
Info
×
45.152.113.10
1
Info
×
ET MALWARE [SEKOIA.IO] Win32/Stealc C2 Check-in
9.8
M
34
ZeroCERT
3
2024-08-26 10:53
66bdb58f78c9f_Vidar.exe
a154607fdb9dc1990f91e19b7a983b5e
Generic Malware
Malicious Library
.NET framework(MSIL)
UPX
PE File
.NET EXE
PE32
OS Processor Check
VirusTotal
Malware
Buffer PE
PDB
suspicious privilege
Code Injection
Check memory
Checks debugger
buffers extracted
unpack itself
6.6
M
36
ZeroCERT
4
2024-08-21 13:39
66c4c6ec7d961_crypto.exe#kiscr
2bd4145da31909b2dc0d423a626224a7
Stealc
Client SW User Data Stealer
ftp Client
info stealer
Malicious Library
Http API
PWS
AntiDebug
AntiVM
PE File
.NET EXE
PE32
Malware download
VirusTotal
Malware
c&c
PDB
suspicious privilege
Code Injection
Malicious Traffic
Check memory
Checks debugger
buffers extracted
unpack itself
Stealc
ComputerName
DNS
2
Keyword trend analysis
×
Info
×
http://193.176.190.41/2fa883eebd632382.php - rule_id: 42194
http://193.176.190.41/ - rule_id: 42195
1
Info
×
193.176.190.41 - mailcious
1
Info
×
ET MALWARE [SEKOIA.IO] Win32/Stealc C2 Check-in
2
Info
×
http://193.176.190.41/2fa883eebd632382.php
http://193.176.190.41/
10.2
M
14
ZeroCERT
First
1
Last
Total : 4cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword