Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
4471
2024-11-24 19:22
es.hta
10184fe59d8f1d9d1f50d9e373f1c007
Generic Malware
Antivirus
PowerShell
VirusTotal
Malware
powershell
AutoRuns
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
Windows utilities
Check virtual network interfaces
suspicious process
WriteConsoleW
Windows
ComputerName
Cryptographic key
1
Keyword trend analysis
×
Info
×
https://pub-37d3986658af451c9d52bb9f482b3e2d.r2.dev/ONHQNHFT.msi
1
Info
×
pub-37d3986658af451c9d52bb9f482b3e2d.r2.dev(162.159.140.237)
6.4
27
ZeroCERT
4472
2024-11-24 19:20
Lumm.exe
11c8962675b6d535c018a63be0821e4c
Emotet
PhysicalDrive
Generic Malware
Malicious Library
UPX
Anti_VM
PE32
PE File
MSOffice File
VirusTotal
Malware
PDB
1.4
1
ZeroCERT
4473
2024-11-24 19:19
Lumma55.exe
8d5f9df92d2fb9c40125d06c7e3c66be
Themida
UPX
PE32
PE File
VirusTotal
Malware
Checks debugger
unpack itself
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
crashed
5.4
53
ZeroCERT
4474
2024-11-24 19:18
4.exe
4cf7ec59209b42a0bc261c8cc4e70a48
Generic Malware
Malicious Packer
UPX
ftp
PE32
PE File
VirusTotal
Malware
Check virtual network interfaces
suspicious TLD
DNS
1
Info
×
home.sevkk17sr.top(34.116.198.130)
1
Info
×
ET DNS Query to a *.top domain - Likely Hostile
2.0
47
ZeroCERT
4475
2024-11-24 19:17
lll.exe
ef791b7d99a63481993ad96a9f043e71
Themida
UPX
Anti_VM
PE32
PE File
VirusTotal
Malware
Checks debugger
unpack itself
Checks Bios
Detects VMWare
VMware
anti-virtualization
Windows
crashed
5.4
51
ZeroCERT
4476
2024-11-23 18:36
31ed2ee200da9a35ab3868b3d2977e...
4f544e2d32f53e49e0c57913a1fd0d94
Generic Malware
Malicious Packer
UPX
PE32
PE File
VirusTotal
Malware
crashed
1.8
52
guest
4477
2024-11-22 15:43
%E5%B7%85%E3%82%BD%E5%B3%B0[%E...
e516566b25ae853edd6aad00854d782a
Malicious Library
Socket
Http API
ScreenShot
HTTP
SSL
Code injection
Internet API
KeyLogger
AntiDebug
AntiVM
PE32
PE File
Buffer PE
Code Injection
Check memory
buffers extracted
unpack itself
Checks Bios
malicious URLs
AntiVM_Disk
anti-virtualization
VM Disk Size Check
human activity check
installed browsers check
Browser
ComputerName
RCE
crashed
10.0
ZeroCERT
4478
2024-11-22 15:40
d3d10.dll
64813dda8953c66c749bacb55dd46e96
UPX
ftp
DLL
PE64
PE File
OS Processor Check
VirusTotal
Malware
PDB
1.8
41
ZeroCERT
4479
2024-11-22 15:40
exe007.exe
c1b1fa5b6faf06194c42e67d771d3ac0
Malicious Library
Admin Tool (Sysinternals etc ...)
UPX
PE32
PE File
OS Processor Check
DLL
VirusTotal
Malware
AutoRuns
Creates executable files
Windows
crashed
3.6
65
ZeroCERT
4480
2024-11-22 15:40
ps1001.ps1
ada505ededfebe87f28b93e7009aae2f
Generic Malware
Antivirus
VirusTotal
Malware
Check memory
unpack itself
1.6
39
ZeroCERT
4481
2024-11-22 15:37
update.exe
46019966e138888ac9386625fec82285
UPX
PE32
PE File
VirusTotal
Malware
unpack itself
RCE
1
Info
×
www.zhikey.com(39.100.254.136)
3.2
43
ZeroCERT
4482
2024-11-22 15:36
CB1.exe
8441f8a1abcf06e48dc0f6b9380695ef
UPX
PE32
PE File
VirusTotal
Malware
Check memory
unpack itself
2.8
46
ZeroCERT
4483
2024-11-22 15:35
C1.exe
9b1d4309f74f257a78fb09102e83fc37
UPX
PE32
PE File
VirusTotal
Malware
2.2
48
ZeroCERT
4484
2024-11-22 15:35
build.exe
0a8711fa1cb4189ab364c217db5f3620
Malicious Library
Malicious Packer
Antivirus
UPX
PE32
PE File
VirusTotal
Malware
Buffer PE
AutoRuns
suspicious privilege
Code Injection
Check memory
Checks debugger
buffers extracted
Creates executable files
unpack itself
Windows utilities
Windows
ComputerName
RCE
Cryptographic key
crashed
1
Info
×
oportunidad-escolombiasegura.cfd(181.141.40.225)
9.0
55
ZeroCERT
4485
2024-11-22 15:33
fastad4.exe
7077281a1e876202fe81ad4cde09ce2f
Malicious Library
UPX
PE32
PE File
ftp
DLL
VirusTotal
Malware
Check memory
Creates executable files
AppData folder
1
Info
×
cdn.computewall.com(104.26.2.25) - malware
2.0
29
ZeroCERT
First
Previous
291
292
293
294
295
296
297
298
299
300
Next
Last
Total : 53,960cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword