Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
4246
2024-12-30 14:09
blq.exe
6153a06b74491bacb664bf142b598c69
Backdoor
Farfli
Hide_EXE
Generic Malware
Malicious Library
UPX
PE File
PE32
MZP Format
DLL
OS Processor Check
JPEG Format
VirusTotal
Malware
AutoRuns
Check memory
Creates executable files
unpack itself
Windows utilities
suspicious process
AppData folder
sandbox evasion
WriteConsoleW
Windows
Advertising
Google
ComputerName
DNS
DDNS
crashed
keylogger
4
Info
×
docs.google.com(142.250.206.238) -
xred.mooo.com() -
freedns.afraid.org(69.42.215.252) -
103.36.221.195 -
1
Info
×
ET INFO DYNAMIC_DNS Query to Abused Domain *.mooo.com
10.6
66
ZeroCERT
4247
2024-12-30 14:07
boost.exe
3afbec336ce14a69efb9524e4228fa0b
Generic Malware
Malicious Library
UPX
PE File
PE64
OS Processor Check
VirusTotal
Malware
PDB
Check memory
RWX flags setting
unpack itself
RCE
2.0
4
ZeroCERT
4248
2024-12-30 14:04
Akagi32.exe
9f34b183155d23a4d6f6ab940f488157
Malicious Library
Malicious Packer
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
crashed
1.8
56
ZeroCERT
4249
2024-12-30 14:04
final.exe
b588b3f94591ffad45b2d809da200fbe
PE File
PE64
VirusTotal
Malware
unpack itself
crashed
2.2
42
ZeroCERT
4250
2024-12-30 14:04
S.S.A_Statement_969351.exe
f19b1869ff08b5f0e25078c4d46b85f6
njRAT
backdoor
Generic Malware
Malicious Library
Antivirus
UPX
PE File
MSOffice File
CAB
PE32
OS Name Check
OS Processor Check
DLL
VirusTotal
Malware
PDB
suspicious privilege
Check memory
Checks debugger
buffers extracted
Creates executable files
unpack itself
AppData folder
AntiVM_Disk
VM Disk Size Check
Windows
ComputerName
RCE
Cryptographic key
crashed
1
Info
×
lucaria.site(191.96.207.97) -
5.6
24
ZeroCERT
4251
2024-12-30 14:03
Statement_132456798.exe
e60e1903c34321829878bb3b0653650c
njRAT
backdoor
Generic Malware
Malicious Library
Antivirus
UPX
PE File
MSOffice File
CAB
PE32
OS Name Check
OS Processor Check
DLL
VirusTotal
Malware
PDB
suspicious privilege
Check memory
Checks debugger
buffers extracted
Creates executable files
unpack itself
AppData folder
AntiVM_Disk
VM Disk Size Check
Windows
ComputerName
RCE
Cryptographic key
1
Info
×
lucaria.site(191.96.207.97) -
5.2
18
ZeroCERT
4252
2024-12-30 14:01
Blamager.wsf
6618daf45b682e41043da40f78a75680
Generic Malware
Antivirus
VirusTotal
Malware
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
Windows utilities
Check virtual network interfaces
suspicious process
WriteConsoleW
Windows
ComputerName
Cryptographic key
1
Info
×
filedn.eu(45.131.244.47) -
6.6
2
ZeroCERT
4253
2024-12-30 13:59
121.exe
3b8f4ae6dd1ef9625f8ba8f6c9eb8515
Malicious Library
PE File
PE64
VirusTotal
Malware
RWX flags setting
unpack itself
ComputerName
DNS
1
Info
×
152.42.226.16 -
4.6
63
ZeroCERT
4254
2024-12-30 13:58
msgde.exe
c9536d9bb5c51fe2741cbf206531c13b
Malicious Library
.NET framework(MSIL)
UPX
PE File
.NET EXE
PE32
OS Processor Check
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
2.0
61
ZeroCERT
4255
2024-12-30 13:56
OneDrive.exe
7056e050ebbfca6ae325797d51eb2d0a
Malicious Library
.NET framework(MSIL)
UPX
PE File
.NET EXE
PE32
OS Processor Check
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
2.0
55
ZeroCERT
4256
2024-12-30 13:56
33.exe
73b80a68c704e6e1f91595db16205501
Emotet
Generic Malware
Malicious Library
ASPack
UPX
PE File
DllRegisterServer
dll
PE32
OS Processor Check
DLL
VirusTotal
Malware
Creates executable files
unpack itself
AppData folder
RCE
3.4
36
ZeroCERT
4257
2024-12-28 10:29
BootstrapperV1.23_1.exe
02c70d9d6696950c198db93b7f6a835e
Malicious Library
.NET framework(MSIL)
UPX
PE File
PE64
.NET EXE
VirusTotal
Malware
suspicious privilege
Check memory
Checks debugger
unpack itself
Windows utilities
Check virtual network interfaces
suspicious process
Windows
ComputerName
crashed
2
Info
×
gitlab.com(172.65.251.78) - malware
getsolara.dev(104.21.93.27) - mailcious
4.4
57
guest
4258
2024-12-24 15:05
AD.exe
877cefe82dcee5f8e9961f020a636b2b
Browser Login Data Stealer
Generic Malware
Malicious Library
Downloader
Malicious Packer
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
Windows
keylogger
1
Info
×
newstaticfreepoint24.ddns-ip.net(181.131.217.244)
2.2
55
ZeroCERT
4259
2024-12-19 08:47
3344.exe
c2fd049f5e4af19811db14b28e1d9bdc
UPX
PE File
PE64
VirusTotal
Malware
Code Injection
RWX flags setting
DNS
crashed
1
Info
×
45.43.36.223
5.0
56
ZeroCERT
4260
2024-12-19 08:45
evetbeta.exe
6f6137e6f85dc8dac7ff87ca4c86af4c
Browser Login Data Stealer
Malicious Library
Downloader
Malicious Packer
UPX
PE File
PE32
VirusTotal
Malware
Checks debugger
WriteConsoleW
2
Info
×
tr3.localto.net(5.75.234.8)
5.75.234.8
3.4
69
ZeroCERT
First
Previous
281
282
283
284
285
286
287
288
289
290
Next
Last
Total : 53,953cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword