Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
44716
2024-05-30 07:27
clearkhdyy.exe
0f5b0b4c5369dca6775d7adbae0d1ca3
Generic Malware
UPX
PE File
PE32
VirusTotal
Malware
Checks debugger
2.6
M
42
ZeroCERT
44717
2024-05-30 07:30
s2.exe
995710596451478545b9113bfd75a219
HermeticWiper
PhysicalDrive
Generic Malware
Malicious Library
Malicious Packer
Antivirus
UPX
PE File
DllRegisterServer
dll
PE32
OS Processor Check
VirusTotal
Malware
PDB
RWX flags setting
unpack itself
DNS
1
Info
×
204.137.14.135 - mailcious
3.6
M
33
ZeroCERT
44718
2024-05-30 07:32
fscan.exe
cf903e4a1629aa0582fd0363b5786676
UPX
PE64
PE File
VirusTotal
Malware
DNS
crashed
1
Info
×
204.137.14.135 - mailcious
2.8
M
45
ZeroCERT
44719
2024-05-30 07:34
DelHosts.exe
b0283aa6cc06b0880a1681f2c9802f05
UPX
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
2.6
M
52
ZeroCERT
44720
2024-05-30 09:44
LearningGame3.exe
0afac2447128ef47a4e2797fc6adc811
Malicious Library
UPX
PE File
.NET EXE
PE32
VirusTotal
Malware
MachineGuid
Check memory
Checks debugger
unpack itself
2.0
M
31
ZeroCERT
44721
2024-05-30 09:44
inj.exe
0d7664e86105cc3d9bb033f98c6dcb7e
Malicious Library
UPX
PE File
.NET EXE
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
1.6
M
29
ZeroCERT
44722
2024-05-30 09:45
rev.exe
b3e1688a68a66cf3844242de091a1dde
Metasploit
Generic Malware
PE64
PE File
DNS
crashed
1
Info
×
94.139.242.7 - malware
2.4
M
ZeroCERT
44723
2024-05-30 09:48
cry.exe
7855306588f4a86b9a9c60a6f0bb086c
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
unpack itself
crashed
2.4
M
51
ZeroCERT
44724
2024-05-30 09:48
itit.exe
a63b46b7836c6c260dc4b37d7c640d3f
Metasploit
Meterpreter
Generic Malware
PE64
PE File
VirusTotal
Malware
DNS
crashed
1
Info
×
94.139.242.7 - malware
3.6
M
62
ZeroCERT
44725
2024-05-30 09:48
setup%E8%87%AA%E6%9F%A5%E5%85%...
068fb7605542cd8350ed34ec2d767856
Generic Malware
Downloader
Malicious Library
UPX
Malicious Packer
Antivirus
Create Service
Socket
DGA
Http API
ScreenShot
Escalate priviledges
Steal credential
PWS
Hijack Network
Sniff Audio
HTTP
DNS
Code injection
Internet API
persistence
FTP
KeyLogger
P
VirusTotal
Malware
AutoRuns
Code Injection
Malicious Traffic
Check memory
Checks debugger
Creates shortcut
Creates executable files
RWX flags setting
unpack itself
AppData folder
malicious URLs
AntiVM_Disk
sandbox evasion
WriteConsoleW
VM Disk Size Check
human activity check
Windows
Browser
ComputerName
DNS
crashed
1
Keyword trend analysis
×
Info
×
http://154.220.255.213/7773/cdyxf.png
2
Info
×
154.220.255.213
206.238.220.253
10.6
28
ZeroCERT
44726
2024-05-30 09:50
applesandoranges.exe
f76f6ac322b276b7d3f3996606b60abf
PE File
.NET EXE
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
DNS
1
Info
×
206.238.220.253
1.8
M
3
ZeroCERT
44727
2024-05-30 09:50
reverse.exe
4d26ca2043c4603d6c5b6f235811b779
Metasploit
Generic Malware
PE64
PE File
VirusTotal
Malware
DNS
crashed
1
Info
×
46.243.186.75
3.6
M
61
ZeroCERT
44728
2024-05-30 09:52
rev5656.exe
6a9cbc059911a2dc01fbdb901a0107e8
Metasploit
Generic Malware
PE64
PE File
VirusTotal
Malware
DNS
crashed
1
Info
×
94.139.242.7 - malware
3.6
M
61
ZeroCERT
44729
2024-05-30 09:52
hoops.exe
0446fd1ab00e877ee83132179991399f
Malicious Library
UPX
PE File
.NET EXE
PE32
VirusTotal
Malware
MachineGuid
Check memory
Checks debugger
unpack itself
1.8
M
27
ZeroCERT
44730
2024-05-30 09:54
cs2exe.msi
5b7f24d739a68d14b253c0c387e89052
Generic Malware
Malicious Library
MS_Excel_Hidden_Macro_Sheet
MSOffice File
CAB
OS Processor Check
VirusTotal
Malware
suspicious privilege
Check memory
Checks debugger
unpack itself
AntiVM_Disk
VM Disk Size Check
ComputerName
DNS
1
Info
×
3.141.55.131 - mailcious
3.4
M
36
ZeroCERT
First
Previous
2981
2982
2983
2984
2985
2986
2987
2988
2989
2990
Next
Last
Total : 48,318cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword