Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2024-09-02 10:44
c64.exe
d94524a8793610d5291f4748981e9916
Emotet
Generic Malware
Suspicious_Script_Bin
Suspicious_Script
Malicious Library
ASPack
UPX
Downloader
VMProtect
Malicious Packer
PE File
DllRegisterServer
dll
PE32
OS Processor Check
PNG Format
DLL
PE64
ZIP Format
MZP Format
BMP Format
icon
ftp
MSOffice
VirusTotal
Malware
AutoRuns
suspicious privilege
Check memory
Checks debugger
Creates executable files
ICMP traffic
unpack itself
Windows utilities
suspicious process
AppData folder
AntiVM_Disk
WriteConsoleW
VM Disk Size Check
Ransomware
Windows
ComputerName
RCE
12.2
M
58
ZeroCERT
2
2023-06-09 11:05
xmrig.exe
1e7094119ed8a4415c7549c19d771a71
Generic Malware
UPX
Malicious Library
Malicious Packer
PE File
PE32
PE64
OS Processor Check
VirusTotal
Malware
AutoRuns
Check memory
Creates executable files
Windows utilities
Auto service
suspicious process
AppData folder
suspicious TLD
WriteConsoleW
Windows
RCE
DNS
3
Info
×
mys.cloudbase-init.pw(186.125.222.162)
my.cloudbase-init.pw(186.125.222.162)
186.125.222.162
1
Info
×
ET DNS Query to a *.pw domain - Likely Hostile
9.2
56
ZeroCERT
3
2023-06-05 18:02
c64.exe
b1e73ee6b76cdb99e5fcde09936de056
Gen2
Gen1
Emotet
Generic Malware
Downloader
UPX
Malicious Library
Malicious Packer
Antivirus
Create Service
DGA
Socket
DNS
Code injection
HTTP
PWS[m]
Sniff Audio
Steal credential
Http API
P2P
Internet API
Escalate priviledges
FTP
KeyLogger
ScreenShot
Anti
VirusTotal
Malware
AutoRuns
suspicious privilege
Code Injection
Check memory
Creates executable files
unpack itself
Windows utilities
Auto service
suspicious process
AppData folder
AntiVM_Disk
sandbox evasion
WriteConsoleW
anti-virtualization
VM Disk Size Check
Windows
ComputerName
RCE
4
Info
×
p.f2pool.info(124.172.232.35)
boy.f2pool.info(112.175.114.17)
124.172.232.35
112.175.114.17
14.6
52
ZeroCERT
First
1
Last
Total : 3cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword