Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2021-10-22 11:32
QS.exe
8febef9e39284335678e45955722d6a6
Malicious Library
UPX
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
AppData folder
Windows
Remote Code Execution
crashed
4.6
46
ZeroCERT
2
2021-10-15 09:41
LS.exe
50bc873b8e08fdc5832350f377a1b5a7
UPX
Malicious Library
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
AppData folder
Windows
crashed
4.0
M
43
ZeroCERT
3
2021-10-11 09:57
DS.exe
facac9092fbd9878bd2b5a0bbc2d0055
Malicious Packer
UPX
Malicious Library
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
AppData folder
Windows
crashed
3.4
M
37
ZeroCERT
4
2021-10-08 11:54
fn.exe
94289a2eedf546dd9dc0624908d1dfba
UPX
Malicious Library
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
AppData folder
Windows
crashed
3.6
M
25
ZeroCERT
5
2021-10-08 11:23
GY.exe
23c8eb156f6124878f21cf5c98c18071
UPX
Malicious Library
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
AppData folder
Windows
Remote Code Execution
crashed
4.2
M
25
ZeroCERT
6
2021-10-05 10:02
BS.exe
4589e8f916643c5d21b413d5ddaa0105
Malicious Packer
UPX
Malicious Library
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
AppData folder
Windows
DNS
crashed
1
Keyword trend analysis
×
Info
×
http://go.microsoft.com/fwlink?linkid=30219&locale=ko-KR&clientType=VISTA_GAMES&clientVersion=6.1.2
3
Info
×
movie.metaservices.microsoft.com(65.55.186.113)
65.55.186.115
104.75.21.121
5.4
M
35
ZeroCERT
First
1
Last
Total : 6cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword