Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2021-09-02 10:28
ACV.exe
ee35165feed0bd0e639e3719015c6803
Generic Malware
UPX
PE File
PE32
Malware download
VirusTotal
Malware
AutoRuns
Malicious Traffic
Check memory
RWX flags setting
unpack itself
suspicious process
anti-virtualization
Windows
DNS
keylogger
1
Keyword trend analysis
×
Info
×
http://103.133.111.149/Gee_remcos%202020_eborUv118.bin - rule_id: 4704
4
Info
×
swryijgrvcsgkopnmcdertvgdswbvmophtfdczxs.ydns.eu(78.129.249.105) - mailcious
91.243.44.5 - malware
78.129.249.105 - mailcious
103.133.111.149 - malware
1
Info
×
ET MALWARE Generic .bin download from Dotted Quad
1
Info
×
http://103.133.111.149/Gee_remcos%202020_eborUv118.bin
9.8
M
36
ZeroCERT
2
2021-09-02 09:44
XNO.exe
36909bb88f91e69d271e206ab3fa8f00
Generic Malware
UPX
DGA
DNS
Socket
Create Service
Sniff Audio
Escalate priviledges
KeyLogger
Code injection
HTTP
Internet API
FTP
ScreenShot
Http API
Steal credential
Downloader
P2P
AntiDebug
AntiVM
PE File
PE32
Malware download
Remcos
NetWireRC
VirusTotal
Malware
AutoRuns
Code Injection
Malicious Traffic
Check memory
RWX flags setting
unpack itself
Windows utilities
WriteConsoleW
anti-virtualization
Windows
RAT
DNS
DDNS
keylogger
1
Keyword trend analysis
×
Info
×
http://103.133.111.149/XP-remcos_mXwRejN225.bin
3
Info
×
xp19.ddns.net(103.133.111.221)
103.133.111.221
103.133.111.149 - malware
3
Info
×
ET POLICY DNS Query to DynDNS Domain *.ddns .net
ET MALWARE Generic .bin download from Dotted Quad
ET MALWARE Remcos RAT Checkin 23
8.0
M
36
ZeroCERT
3
2021-08-31 10:53
AXC.exe
75fc478585b12d3a8f0216b1b28c6944
Generic Malware
UPX
PE File
PE32
Malware download
VirusTotal
Malware
AutoRuns
Malicious Traffic
Check memory
RWX flags setting
unpack itself
suspicious process
anti-virtualization
Windows
DNS
keylogger
3
Info
×
swryijgrvcsgkopnmcdertvgdswbvmophtfdczxs.ydns.eu(78.129.249.105) - mailcious
78.129.249.105 - mailcious
103.133.111.149 - malware
1
Info
×
ET MALWARE Generic .bin download from Dotted Quad
8.0
M
28
r0d
4
2021-08-31 07:58
AXC.exe
75fc478585b12d3a8f0216b1b28c6944
UPX
PE File
PE32
Malware download
VirusTotal
Malware
AutoRuns
Malicious Traffic
Check memory
RWX flags setting
unpack itself
suspicious process
anti-virtualization
Windows
DNS
keylogger
3
Info
×
swryijgrvcsgkopnmcdertvgdswbvmophtfdczxs.ydns.eu(78.129.249.105) - mailcious
78.129.249.105 - mailcious
103.133.111.149 - malware
1
Info
×
ET MALWARE Generic .bin download from Dotted Quad
9.6
M
20
ZeroCERT
First
1
Last
Total : 4cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword