Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2024-06-19 09:58
dd.exe
d27a00984e82dbfc554df8a53e03cbcc
Gen1
XMRig Miner
Generic Malware
Suspicious_Script_Bin
Malicious Library
UPX
Malicious Packer
PE File
PE32
OS Processor Check
PE64
VirusTotal
Cryptocurrency Miner
Malware
Cryptocurrency
AutoRuns
PDB
Creates executable files
unpack itself
Windows utilities
suspicious process
WriteConsoleW
Firewall state off
Windows
DNS
CoinMiner
2
Info
×
pool.hashvault.pro(125.253.92.50) - mailcious
125.253.92.50
2
Info
×
ET COINMINER CoinMiner Domain in DNS Lookup (pool .hashvault .pro)
ET POLICY Cryptocurrency Miner Checkin
6.0
57
ZeroCERT
2
2024-06-19 09:57
c3p.exe
02aa02aee2a6bd93a4a8f4941a0e6310
Gen1
XMRig Miner
Generic Malware
Suspicious_Script_Bin
Malicious Library
UPX
Malicious Packer
PE File
PE32
OS Processor Check
PE64
VirusTotal
Cryptocurrency Miner
Malware
Cryptocurrency
AutoRuns
PDB
Creates executable files
unpack itself
Windows utilities
suspicious process
WriteConsoleW
Firewall state off
Windows
2
Info
×
auto.c3pool.org(47.76.164.119) - mailcious
47.76.164.119 - mailcious
1
Info
×
ET POLICY Cryptocurrency Miner Checkin
6.0
M
60
ZeroCERT
3
2024-06-19 09:51
sky.exe
f0834f7f2daa415fb992d93f549bbfd0
Gen1
XMRig Miner
Generic Malware
Suspicious_Script_Bin
Malicious Library
UPX
Malicious Packer
PE File
PE32
OS Processor Check
PE64
VirusTotal
Cryptocurrency Miner
Malware
Cryptocurrency
AutoRuns
PDB
Creates executable files
unpack itself
Windows utilities
suspicious process
WriteConsoleW
Firewall state off
Windows
2
Info
×
auto.skypool.xyz(18.166.203.32) - mailcious
18.166.203.32
1
Info
×
ET POLICY Cryptocurrency Miner Checkin
6.0
M
62
ZeroCERT
4
2024-06-18 18:24
Radmin2018.exe
6754696a342ef288c4eeac34bddb1ab1
Gen1
Generic Malware
Malicious Library
UPX
Malicious Packer
Admin Tool (Sysinternals etc ...)
Anti_VM
AntiDebug
AntiVM
PE File
PE32
DLL
PE64
OS Processor Check
MZP Format
VirusTotal
Malware
AutoRuns
PDB
suspicious privilege
MachineGuid
Code Injection
Checks debugger
Creates executable files
unpack itself
Windows utilities
Auto service
suspicious process
WriteConsoleW
Firewall state off
Windows
9.8
28
ZeroCERT
5
2024-06-01 09:00
gps_1688.exe
c2c6ca7a9dea1fc9708b57d3ae1d9bc7
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
PDB
Check memory
RWX flags setting
unpack itself
2.2
M
8
guest
6
2024-05-31 10:28
gps_1688.exe
c2c6ca7a9dea1fc9708b57d3ae1d9bc7
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
PDB
Check memory
RWX flags setting
1.8
M
7
ZeroCERT
7
2024-05-29 07:38
UpdateTool_858.exe
d8f99e1587679eac41a5a3954e974613
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
PDB
Check memory
RWX flags setting
unpack itself
1.8
M
ZeroCERT
8
2024-05-05 10:34
cyber2019.exe
813b31f7ee7bbdd8e42890394ea6f16f
Generic Malware
UltraVNC
Malicious Library
UPX
Malicious Packer
VMProtect
Anti_VM
PE File
PE32
OS Processor Check
MZP Format
DLL
ftp
VirusTotal
Malware
PDB
Checks debugger
Creates executable files
unpack itself
sandbox evasion
WriteConsoleW
crashed
5.6
50
ZeroCERT
9
2024-03-17 10:03
1002.exe
0ec7425d2a0ff149d89db3e0347debe3
Generic Malware
Downloader
Malicious Library
UPX
Admin Tool (Sysinternals etc ...)
ASPack
Malicious Packer
ScreenShot
KeyLogger
Anti_VM
AntiDebug
AntiVM
PE32
PE File
OS Processor Check
VirusTotal
Malware
PDB
Code Injection
Check memory
Creates executable files
unpack itself
AppData folder
WriteConsoleW
installed browsers check
Browser
DNS
6
Info
×
ddos.dnsnb8.net(34.174.61.199) - mailcious
172.67.75.166
34.174.61.199
104.21.92.190
104.21.84.71 - malware
51.222.173.101 - mailcious
6.2
M
60
ZeroCERT
10
2024-03-17 10:01
1001.exe
ad2313edc9bc759af4f1b14dfd21cca2
Generic Malware
Downloader
Malicious Library
UPX
ASPack
Admin Tool (Sysinternals etc ...)
Malicious Packer
ScreenShot
KeyLogger
Anti_VM
AntiDebug
AntiVM
PE32
PE File
OS Processor Check
Malware
PDB
Code Injection
Malicious Traffic
Check memory
buffers extracted
Creates executable files
unpack itself
AppData folder
sandbox evasion
WriteConsoleW
human activity check
installed browsers check
Windows
Update
Browser
DNS
3
Info
×
ddos.dnsnb8.net(34.174.61.199) - mailcious
34.174.61.199
51.222.173.101 - mailcious
3
Info
×
ET POLICY Windows 98 User-Agent Detected - Possible Malware or Non-Updated System
ET POLICY Unsupported/Fake Internet Explorer Version MSIE 5.
ET INFO Executable Download from dotted-quad Host
7.0
M
ZeroCERT
11
2023-11-06 09:37
patch.exe
836f7ee9f560b60cd68b2e3b3b6e1a26
Malicious Library
UPX
ASPack
PE File
PE32
ZIP Format
ftp
VirusTotal
Malware
PDB
Creates executable files
unpack itself
AppData folder
2.4
12
ZeroCERT
12
2023-07-05 04:49
3225ce04d0b89652ac6b1f59180eef...
eb26c95e87039bab5984d6cd03cc3ff1
UPX
Malicious Library
OS Processor Check
PE File
PE32
PDB
unpack itself
0.6
guest
13
2022-12-26 22:23
zakrep.exe
8b4ed76bdc73cfee76a35aaf5148867d
Malicious Library
UPX
Malicious Packer
PE32
PE File
OS Processor Check
DLL
PE64
PDB
Check memory
Checks debugger
Creates executable files
unpack itself
WriteConsoleW
2.0
guest
14
2022-05-25 09:46
ideainv.sfx.exe
fa47b24566cb07aa26b215f121cb8758
Emotet
VBA_macro
UPX
Malicious Library
Anti_VM
Admin Tool (Sysinternals etc ...)
PE32
PE File
MSOffice File
VirusTotal
Malware
PDB
Check memory
Creates executable files
RWX flags setting
unpack itself
AppData folder
DNS
1
Info
×
193.142.58.21
3.6
M
16
ZeroCERT
15
2022-04-20 18:28
miner.exe
1d4810932ddefc16e8e43ce05736ebee
Generic Malware
UPX
Malicious Library
Malicious Packer
Anti_VM
PE32
OS Processor Check
PE File
PE64
DLL
VirusTotal
Malware
PDB
Creates executable files
unpack itself
2.6
M
51
ZeroCERT
First
1
2
Last
Total : 30cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword