Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1816
2025-02-26 10:05
Yg1HwMX.exe
4988bbc7c00f68f54e7b977ff2d9ea25
ScreenShot
AntiDebug
AntiVM
PE File
.NET EXE
PE32
VirusTotal
Malware
Code Injection
Check memory
Checks debugger
buffers extracted
unpack itself
crashed
8.6
M
40
ZeroCERT
1817
2025-02-26 10:03
pccleaner_setup.exe
afc111650ae361b1842619760fa91be2
Emotet
Malicious Library
Malicious Packer
UPX
Antivirus
PE File
PE32
OS Processor Check
VirusTotal
Malware
unpack itself
1.8
M
48
ZeroCERT
1818
2025-02-26 10:01
setup12623.msi
5512164d4268ad020189fcf620747fb6
Generic Malware
Malicious Library
MSOffice File
CAB
OS Processor Check
VirusTotal
Malware
suspicious privilege
Check memory
Checks debugger
unpack itself
AntiVM_Disk
VM Disk Size Check
ComputerName
1
Keyword trend analysis
×
Info
×
http://aukuqiksseyscgie.xyz:443/api/client_hello
3
Info
×
ikswccmqsqeswegi.xyz()
aukuqiksseyscgie.xyz(185.172.129.207)
185.172.129.207
2.2
M
4
ZeroCERT
1819
2025-02-26 09:59
random.exe
7e3f7e223336ef778dfb47afee043852
Themida
UPX
Anti_VM
PE File
PE32
OS Processor Check
VirusTotal
Malware
Checks debugger
unpack itself
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
crashed
5.4
M
41
ZeroCERT
1820
2025-02-26 09:57
setup5917.msi
8f3d48e04ed35dd4c367f28ba5534035
Generic Malware
Malicious Library
MSOffice File
CAB
OS Processor Check
VirusTotal
Malware
suspicious privilege
Check memory
Checks debugger
unpack itself
AntiVM_Disk
VM Disk Size Check
ComputerName
1
Keyword trend analysis
×
Info
×
http://ocaowyumocioiqqm.xyz:443/api/client_hello
2
Info
×
ocaowyumocioiqqm.xyz(31.192.232.23)
31.192.232.23
2.4
M
16
ZeroCERT
1821
2025-02-26 09:55
RHPLumH.exe
8d0868398de40e6e16a7c541f07e5e09
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
crashed
1
Keyword trend analysis
×
Info
×
https://bitbucket.org/oljasing/asdasdasdas/raw/e8b80fd8744136bf0cfef5b87afa55d4f9f0a0e5/teasdasd.txt
2
Info
×
bitbucket.org(104.192.140.24) - malware
104.192.140.24 - malware
1.2
M
32
ZeroCERT
1822
2025-02-26 09:53
8NsQP4U.exe
867903a3686f5cc6f5b9127cdfde51c7
Malicious Library
ScreenShot
AntiDebug
AntiVM
PE File
.NET EXE
PE32
VirusTotal
Malware
Code Injection
Check memory
Checks debugger
buffers extracted
unpack itself
crashed
8.6
M
52
ZeroCERT
1823
2025-02-26 09:53
random.exe
b2485d947085da474eb8c19a810893c7
Themida
UPX
Http API
HTTP
Internet API
AntiDebug
AntiVM
PE File
PE32
VirusTotal
Malware
Code Injection
Checks debugger
buffers extracted
unpack itself
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
crashed
9.4
M
37
ZeroCERT
1824
2025-02-26 09:51
fasdqweqw.dotm
0645c8287be23a2f83c68797ed6afb38
VBA_macro
Generic Malware
Antivirus
Word 2007 file format(docx)
ZIP Format
PowerShell
VirusTotal
Malware
powershell
suspicious privilege
Check memory
Checks debugger
Creates shortcut
RWX flags setting
exploit crash
unpack itself
powershell.exe wrote
Check virtual network interfaces
suspicious process
WriteConsoleW
Windows
Exploit
ComputerName
Cryptographic key
crashed
Downloader
1
Keyword trend analysis
×
Info
×
https://bitbucket.org/x98989/8678678ff/downloads/word.zip
2
Info
×
bitbucket.org(104.192.140.24) - malware
104.192.140.24 - malware
10.0
M
34
ZeroCERT
1825
2025-02-26 09:50
random.exe
2f66c209686505c412ab4a5a9ec53af2
CryptBot
Themida
UPX
PE File
PE32
VirusTotal
Malware
Checks debugger
unpack itself
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
crashed
5.4
M
44
ZeroCERT
1826
2025-02-26 09:49
random.exe
c2dcb9b4b8438e79d1630034e407e8e2
RedLine stealer
Generic Malware
Malicious Library
UPX
Code injection
Anti_VM
AntiDebug
AntiVM
PE File
PE32
OS Processor Check
VirusTotal
Malware
suspicious privilege
Code Injection
Check memory
Checks debugger
WMI
RWX flags setting
unpack itself
Windows utilities
malicious URLs
sandbox evasion
WriteConsoleW
installed browsers check
Ransomware
Windows
Browser
ComputerName
10.8
M
21
ZeroCERT
1827
2025-02-26 09:49
random.exe
745d5cd64aee1b5c9f396c367c36e89a
Themida
UPX
PE File
PE32
VirusTotal
Malware
Checks debugger
unpack itself
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
crashed
5.2
M
39
ZeroCERT
1828
2025-02-26 09:46
random.exe
b5a47811cf8a22d2faddace8ecbc6372
Themida
Anti_VM
PE File
PE32
suspicious privilege
Check memory
Checks debugger
unpack itself
Disables Windows Security
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
Update
crashed
7.0
M
ZeroCERT
1829
2025-02-26 09:46
MegVlau.exe
936f4b47e08ca09483ca85f7b901eb0f
PE File
.NET EXE
PE32
VirusTotal
Malware
Code Injection
Check memory
Checks debugger
unpack itself
5.0
M
39
ZeroCERT
1830
2025-02-26 09:44
random.exe
60dd2030e1ff1f9a3406ddc438893694
ScreenShot
AntiDebug
AntiVM
PE File
.NET EXE
PE32
VirusTotal
Malware
Code Injection
Check memory
Checks debugger
buffers extracted
unpack itself
crashed
7.6
M
43
ZeroCERT
First
Previous
121
122
123
124
125
126
127
128
129
130
Next
Last
Total : 53,366cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword