Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2023-06-22 17:36
cleanmgrse.exe
b1a48b37d6eae92a63c51f1a6a26f604
.NET EXE
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
ComputerName
2.2
M
51
ZeroCERT
2
2023-05-25 17:51
INET_CACHE.exe
4bbbad7edcd5cd1e3e8b298236a94ebb
Anti_VM
.NET EXE
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
DNS
1
Info
×
77.220.215.70
2.6
M
45
ZeroCERT
3
2023-05-25 09:33
CK_CACHE.exe
f3c3805d41ca881e16a9998f0bfc2444
UPX
.NET EXE
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
ComputerName
2.2
M
44
ZeroCERT
4
2023-05-16 09:18
vbc.exe
5be2f10437a6105706e880b53b89544a
AgentTesla
browser
info stealer
Google
Chrome
User Data
Downloader
UPX
Create Service
Socket
DNS
PWS[m]
Sniff Audio
Internet API
Escalate priviledges
KeyLogger
AntiDebug
AntiVM
.NET EXE
PE File
PE32
Remcos
Malware
suspicious privilege
Code Injection
Malicious Traffic
Check memory
Checks debugger
buffers extracted
unpack itself
Windows
Cryptographic key
crashed
keylogger
1
Keyword trend analysis
×
Info
×
http://geoplugin.net/json.gp
4
Info
×
geoplugin.net(178.237.33.50)
pops.mastercoa.co(184.75.223.195)
178.237.33.50
184.75.223.195
1
Info
×
ET JA3 Hash - Remcos 3.x TLS Connection
9.6
M
ZeroCERT
First
1
Last
Total : 4cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword