Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
1846
2025-02-24 15:15
network_fix.msi
2e857aab406f072738ef04bd18e8fc05
MSOffice File
CAB
VirusTotal
Malware
suspicious privilege
Check memory
Checks debugger
buffers extracted
unpack itself
AntiVM_Disk
VM Disk Size Check
ComputerName
3.0
M
24
ZeroCERT
1847
2025-02-24 15:15
123.exe
810743a8b00d1866cb3c13c9539a1e31
Malicious Library
Malicious Packer
UPX
PE File
PE64
OS Processor Check
VirusTotal
Malware
1.2
38
ZeroCERT
1848
2025-02-24 15:15
clientside.exe
aa83d654a4475f46e61c95fbd89ee18f
njRAT
backdoor
Generic Malware
PE File
.NET EXE
PE32
VirusTotal
Malware
Checks debugger
unpack itself
suspicious process
WriteConsoleW
DNS
DDNS
1
Info
×
moneroman.ddns.net()
3.6
M
65
ZeroCERT
1849
2025-02-24 15:06
Bootxr.exe
70ddf4f6215e0fd7b65685e3da758082
Generic Malware
Malicious Library
UPX
Antivirus
PE File
PE32
OS Processor Check
PowerShell
VirusTotal
Cryptocurrency Miner
Malware
Cryptocurrency
powershell
AutoRuns
PDB
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
Windows utilities
powershell.exe wrote
suspicious process
WriteConsoleW
Windows
ComputerName
Cryptographic key
6.8
53
ZeroCERT
1850
2025-02-24 12:10
Dpose.exe
331031dc04a856a1f9116494fae27339
Generic Malware
Malicious Library
Antivirus
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
PDB
Check memory
Checks debugger
ICMP traffic
unpack itself
Windows utilities
Windows
ComputerName
crashed
3.8
M
58
ZeroCERT
1851
2025-02-24 12:08
yoda.exe
31c1980129a020ffd2836386ec757229
Gen1
Emotet
Generic Malware
Malicious Library
Antivirus
UPX
Malicious Packer
Admin Tool (Sysinternals etc ...)
Anti_VM
PE File
PE32
OS Processor Check
MZP Format
PE64
MSOffice File
DLL
.NET DLL
.NET EXE
DllRegisterServer
dll
VirusTotal
Malware
AutoRuns
MachineGuid
Check memory
Checks debugger
Creates executable files
unpack itself
AppData folder
sandbox evasion
human activity check
Windows
Browser
ComputerName
crashed
6.2
M
11
ZeroCERT
1852
2025-02-24 12:07
Mizedo.exe
46f366e3ee36c05ab5a7a319319f7c72
Generic Malware
Malicious Packer
UPX
PE File
PE32
VirusTotal
Malware
Check memory
WriteConsoleW
1.6
M
64
ZeroCERT
1853
2025-02-24 12:06
mimikatz.exe
cc5e97a8a3e9b5dfc2093dde57137b23
Generic Malware
Malicious Library
Antivirus
UPX
PE File
PE32
OS Processor Check
PowerShell
powershell
AutoRuns
PDB
suspicious privilege
Check memory
Checks debugger
Creates shortcut
ICMP traffic
unpack itself
Windows utilities
suspicious process
AppData folder
sandbox evasion
WriteConsoleW
Windows
Browser
ComputerName
Cryptographic key
7.2
M
ZeroCERT
1854
2025-02-23 23:37
EDI IR.xls
cfcb25e1ddbb6ab5068d0b8d010826ff
VBA_macro
MSOffice File
VirusTotal
Malware
exploit crash
unpack itself
Exploit
crashed
1.4
1
guest
1855
2025-02-23 23:36
= EDI IR.xls
6505ed15b6710c610c2b82777e68a133
VBA_macro
Generic Malware
MSOffice File
VirusTotal
Malware
unpack itself
0.8
1
guest
1856
2025-02-23 23:17
= EDI IR.xls
6505ed15b6710c610c2b82777e68a133
VBA_macro
Generic Malware
MSOffice File
VirusTotal
Malware
unpack itself
0.8
1
guest
1857
2025-02-23 16:58
CShield.dll
db5198ea4d04bad9c91dc04ba2033579
Malicious Library
PE File
DLL
PE32
VirusTotal
Malware
Check memory
crashed
1.8
M
26
guest
1858
2025-02-21 16:36
CCleanerPerformanceOptimizer.d...
ce21e6627863d977338c069a9ac8e2a3
Malicious Packer
PE File
PE64
VirusTotal
Malware
1.8
M
52
ZeroCERT
1859
2025-02-21 16:34
mtQ.exe
6e6f46cefb577d77d7772a1c51de6da2
Malicious Packer
PE File
PE64
VirusTotal
Malware
1.8
M
43
ZeroCERT
1860
2025-02-21 16:33
WindowsFormsApp14.exe
27c15cccf3c45998d4fe8582c95da58f
Malicious Library
PE File
.NET EXE
PE32
VirusTotal
Malware
PDB
Malicious Traffic
Check memory
Checks debugger
unpack itself
Check virtual network interfaces
Tofsee
Windows
1
Keyword trend analysis
×
Info
×
https://pastebin.com/raw/4LkF0iPK
2
Info
×
pastebin.com(104.20.4.235) - mailcious
104.20.4.235 - mailcious
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
4.0
M
16
ZeroCERT
First
Previous
121
122
123
124
125
126
127
128
129
130
Next
Last
Total : 53,366cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword