Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
3031
2024-06-14 07:46
motruhjgmawes.exe
57a6a83482ce2897e8cdec17accbd662
Generic Malware
Downloader
Malicious Library
UPX
VMProtect
Create Service
Socket
DGA
Http API
ScreenShot
Escalate priviledges
Steal credential
PWS
Sniff Audio
HTTP
DNS
Code injection
Internet API
FTP
KeyLogger
P2P
AntiDebug
AntiVM
PE64
PE File
OS Processo
PDB
Code Injection
Creates executable files
RWX flags setting
unpack itself
AppData folder
Remote Code Execution
4.4
M
ZeroCERT
3032
2024-06-14 07:45
luma22222.exe
f4d57589a7db46677d1ced8f8123feda
PE32
PE File
0.4
M
ZeroCERT
3033
2024-06-14 07:44
realtekaft.exe
20878a60ab358f3ce3f3f15245ff85ee
Hide_EXE
Malicious Library
.NET framework(MSIL)
Socket
Http API
HTTP
DNS
Internet API
Anti_VM
AntiDebug
AntiVM
.NET EXE
PE32
PE File
Buffer PE
AutoRuns
suspicious privilege
Code Injection
Check memory
Checks debugger
buffers extracted
unpack itself
Windows
Cryptographic key
crashed
8.2
M
ZeroCERT
3034
2024-06-14 07:43
setup%E4%B8%8B%E8%BD%BD%E5%90%...
fecba5d90715f5235477b67cc514855b
Generic Malware
Malicious Library
PE64
PE File
DNS
1
Keyword trend analysis
×
Info
×
http://8.134.184.154/123.conf
1
Info
×
8.134.184.154
2.0
ZeroCERT
3035
2024-06-14 07:41
setup%E4%B8%8B%E8%BD%BD%E5%90%...
13f784b718e0d45057b628f504a11235
UPX
PE64
PE File
DNS
1
Keyword trend analysis
×
Info
×
http://8.138.18.215/123.conf
1
Info
×
8.138.18.215
2.4
ZeroCERT
3036
2024-06-14 07:41
setup%E4%B8%8B%E8%BD%BD%E5%90%...
5a2054b6a745f47a81341e09b129aacd
UPX
PE64
PE File
DNS
1
Keyword trend analysis
×
Info
×
http://8.138.24.218/123.conf
1
Info
×
8.138.24.218
2.8
ZeroCERT
3037
2024-06-14 07:39
setup%E4%B8%8B%E8%BD%BD%E5%90%...
98180bcff8f8e606b862e0e86d138426
UPX
PE64
PE File
Malware
Malicious Traffic
unpack itself
DNS
crashed
1
Keyword trend analysis
×
Info
×
http://8.138.17.21/123.conf
1
Info
×
8.138.17.21
2.8
ZeroCERT
3038
2024-06-14 07:38
setup%E4%B8%8B%E8%BD%BD%E5%90%...
01b29e7c45075d9d419dcccfed358395
Malicious Library
PE64
PE File
DNS
1
Keyword trend analysis
×
Info
×
http://8.134.254.205/123.conf
1
Info
×
8.134.254.205
2.0
ZeroCERT
3039
2024-06-14 07:36
nomi.exe
5dba79262866002740d9fc8e10d35e7d
Process Kill
Generic Malware
Suspicious_Script_Bin
Malicious Library
FindFirstVolume
CryptGenKey
UPX
Device_File_Check
PE32
PE File
OS Processor Check
Browser Info Stealer
FTP Client Info Stealer
Email Client Info Stealer
suspicious privilege
Check memory
Checks debugger
unpack itself
Browser
Email
ComputerName
Software
crashed
4.2
M
ZeroCERT
3040
2024-06-14 07:36
setup%E7%9B%AE%E5%BD%95%E4%BC%...
defd1593c4d9adc622ddcf38daaac65b
Malicious Library
VMProtect
PE64
PE File
Emotet
Malware
Code Injection
Checks debugger
buffers extracted
unpack itself
sandbox evasion
DNS
crashed
1
Info
×
121.22.248.122
1
Info
×
SURICATA Applayer Protocol detection skipped
8.4
M
ZeroCERT
3041
2024-06-13 16:38
Photo.scr
8caa858a427dda38bced89183ad90530
Generic Malware
Malicious Library
UPX
PE File
OS Processor Check
VirusTotal
Malware
0.4
M
5
guest
3042
2024-06-13 13:44
plugged.dat
88f2abefd23b14fc8691710eccfb27a8
Generic Malware
UPX
ScreenShot
AntiDebug
AntiVM
DLL
DllRegisterServer
dll
PE32
PE File
VirusTotal
Malware
Code Injection
Check memory
Checks debugger
buffers extracted
Creates executable files
unpack itself
AppData folder
sandbox evasion
Browser
ComputerName
6.6
57
ZeroCERT
3043
2024-06-13 13:39
Overdue_9658.zip
4c5709c8fd879a0ead2124fc546fa202
ZIP Format
ZeroCERT
3044
2024-06-13 13:39
Overdue_9658.zip
4c5709c8fd879a0ead2124fc546fa202
ZIP Format
ZeroCERT
3045
2024-06-13 13:32
Overdue_9658.iso
1a5d350d71f6821006691ac076e026e0
Generic Malware
AntiDebug
AntiVM
DllRegisterServer
dll
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
2.2
32
ZeroCERT
First
Previous
201
202
203
204
205
206
207
208
209
210
Next
Last
Total : 48,320cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword