Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2024-01-23 14:15
PrivateCheat.exe
92d5541274a80650bf7fc9d40f2be865
Generic Malware
Downloader
Malicious Library
UPX
MPRESS
Create Service
Socket
DGA
Http API
ScreenShot
Escalate priviledges
Steal credential
PWS
Sniff Audio
HTTP
DNS
Code injection
Internet API
FTP
KeyLogger
P2P
AntiDebug
AntiVM
PE32
PE File
OS Processor C
VirusTotal
Malware
PDB
Code Injection
Creates executable files
AppData folder
suspicious TLD
Tofsee
ComputerName
Remote Code Execution
crashed
2
Info
×
ca94025.tw1.ru(188.225.40.162)
188.225.40.162
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
5.4
M
28
ZeroCERT
2
2022-04-05 10:44
ЦАЛИН,ТЭТГЭМЖ 20 ХУВИАР НЭМЭГД...
f9d4f1170d1446b03347f6304ebc1de8
Malicious Library
PE32
PE File
GIF Format
Word 2007 file format(docx)
VirusTotal
Email Client Info Stealer
Malware
AutoRuns
MachineGuid
Check memory
Checks debugger
Creates shortcut
Creates executable files
RWX flags setting
exploit crash
unpack itself
Windows utilities
suspicious process
AntiVM_Disk
WriteConsoleW
VM Disk Size Check
installed browsers check
Windows
Exploit
Browser
Email
ComputerName
Cryptographic key
crashed
9.0
42
ZeroCERT
First
1
Last
Total : 2cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword