Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1
2023-03-28 12:46
vbc.exe
de3409f5d14c9b23a29ad18de6e35446
PWS
.NET framework
RAT
.NET EXE
PE32
PE File
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
ComputerName
2.0
M
33
guest
2
2023-03-28 08:37
vbc.exe
de3409f5d14c9b23a29ad18de6e35446
PWS
.NET framework
RAT
.NET EXE
PE32
PE File
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
ComputerName
DNS
1
Info
×
1.12.242.71 - malware
2.6
M
33
ZeroCERT
3
2023-03-21 10:09
vbc.exe
5ccc064218d48040cb306d30cbd83079
RAT
Generic Malware
Antivirus
AntiDebug
AntiVM
.NET EXE
PE32
PE File
VirusTotal
Malware
suspicious privilege
Code Injection
Malicious Traffic
Check memory
Checks debugger
buffers extracted
Creates shortcut
unpack itself
Check virtual network interfaces
suspicious process
Windows
ComputerName
Cryptographic key
1
Keyword trend analysis
×
Info
×
http://amandamuggleton.com.au/.wp-cli/cache/Hqiogfzdx.bmp
2
Info
×
amandamuggleton.com.au(116.0.23.217)
116.0.23.217 - suspicious
1
Info
×
ET HUNTING Suspicious Terse Request for .bmp
11.4
M
21
ZeroCERT
4
2023-02-28 09:42
vbc.exe
016d625396562b668e9fb2bf0ffceaf6
RAT
.NET EXE
PE32
PE File
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
Check virtual network interfaces
Windows
DNS
1
Info
×
192.3.27.140 - malware
5.0
M
32
ZeroCERT
5
2023-02-27 17:33
vbc.exe
1e1896d38f6c05aacd4c076402549187
RAT
.NET EXE
PE32
PE File
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
Check virtual network interfaces
Windows
DNS
2
Info
×
142.250.204.100
213.170.133.222
4.8
M
29
ZeroCERT
6
2023-02-24 13:44
vbc.exe
30b5426ee9183f43fba9a8a6b6b32b97
RAT
.NET EXE
PE32
PE File
VirusTotal
Malware
suspicious privilege
Malicious Traffic
Check memory
Checks debugger
unpack itself
Check virtual network interfaces
Windows
1
Keyword trend analysis
×
Info
×
http://argentum.com.br/well-known/acme-challenge/k/h/d/g/Pjogwzrhh.bmp
2
Info
×
argentum.com.br(169.47.124.235) - mailcious
169.47.124.235 - mailcious
1
Info
×
ET HUNTING Suspicious Terse Request for .bmp
4.8
M
40
ZeroCERT
7
2023-01-25 04:04
vbc.exe
8b6193b8dfdc920cd6bb65d6fc020104
RAT
PE32
.NET EXE
PE File
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
ComputerName
1.8
M
27
ZeroCERT
8
2023-01-25 03:53
vbc.exe
8b6193b8dfdc920cd6bb65d6fc020104
RAT
PE32
.NET EXE
PE File
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
ComputerName
1.8
M
27
ZeroCERT
First
1
Last
Total : 8cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword