Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
31
2025-04-08 09:30
aplicativo.msi
33d04e8a112ad9209b165249f967cfe8
Generic Malware
Malicious Library
CAB
MSOffice File
OS Processor Check
VirusTotal
Malware
Buffer PE
suspicious privilege
Check memory
Checks debugger
buffers extracted
unpack itself
AntiVM_Disk
VM Disk Size Check
ComputerName
2
Info
×
almeida.clientepj.com(104.21.93.183) - malware
172.67.213.181 - malware
3.2
M
7
ZeroCERT
32
2025-04-08 09:30
RE_018903890241.pdf.wsf
4b97436ae2e59a3ec6cdd4cd3c4bd264
Generic Malware
Antivirus
VirusTotal
Malware
powershell
suspicious privilege
Check memory
Checks debugger
WMI
Creates shortcut
unpack itself
Windows utilities
suspicious process
WriteConsoleW
Windows
ComputerName
Cloudflare
DNS
Cryptographic key
1
Keyword trend analysis
×
Info
×
https://carry-lately-hills-systematic.trycloudflare.com/klm.bat
2
Info
×
carry-lately-hills-systematic.trycloudflare.com(104.16.230.132) - mailcious
104.16.231.132 - malware
1
Info
×
ET POLICY Observed DNS Query to Commonly Abused Cloudflare Domain (trycloudflare .com)
6.6
4
ZeroCERT
33
2025-04-08 09:20
NotaFiscal1.25.bat
0906079ea36374150e8d617145021147
Generic Malware
Downloader
Antivirus
Create Service
Socket
DGA
Http API
ScreenShot
Escalate priviledges
Steal credential
PWS
Sniff Audio
HTTP
DNS
Code injection
Internet API
FTP
KeyLogger
P2P
AntiDebug
AntiVM
PowerShell
VirusTotal
Malware
powershell
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
Windows utilities
powershell.exe wrote
suspicious process
WriteConsoleW
Windows
ComputerName
Cryptographic key
1
Keyword trend analysis
×
Info
×
https://enota.clientepj.com/cliente.ps1
5.8
M
21
ZeroCERT
34
2025-04-08 09:17
WmP4vZj.exe
f260c734b1fd66443de91cb53a857b5b
Generic Malware
Malicious Library
UPX
PE File
PE64
OS Processor Check
VirusTotal
Malware
crashed
1.8
M
36
ZeroCERT
35
2025-04-08 09:17
Kaeder.chm
aa6bdcff75c2a7f82ffd2c6b53e2d5b3
Suspicious_Script_Bin
AntiDebug
AntiVM
Code Injection
Check memory
crashed
1.4
M
ZeroCERT
36
2025-04-08 09:15
Nehh6wZ.exe
cc1988650b5fe3e0dfb8632a77b2a9ac
Gen1
Generic Malware
Malicious Library
UPX
PE File
PE64
OS Processor Check
VirusTotal
Malware
crashed
1.6
M
26
ZeroCERT
37
2025-04-08 09:15
NlmvJyQ.exe
c6a119bfd5690fd9740d4b0ceda18c46
Generic Malware
Malicious Library
UPX
PE File
PE64
OS Processor Check
VirusTotal
Malware
crashed
2.0
M
46
ZeroCERT
38
2025-04-08 06:28
sw.js
6ac23e50b164eeb9e756aab24af8bb29
crashed
0.2
guest
39
2025-04-08 05:19
tssysprep.dll
e59a1f8f4039ee8470009ef03a5cd292
Gen1
Malicious Packer
PE File
PE64
DLL
PDB
unpack itself
0.8
guest
40
2025-04-08 05:03
@VpnToastIcon.png
98331ed1f15f08a712a974194117d183
PNG Format
guest
41
2025-04-07 21:31
Section_0_.text.bin
52ff1cb7335e9a6c0576292133ee46d5
AntiDebug
AntiVM
Email Client Info Stealer
suspicious privilege
Checks debugger
Creates shortcut
unpack itself
installed browsers check
Browser
Email
ComputerName
3.4
guest
42
2025-04-07 19:44
cdcfe4d9-3401-f075-6f71-c7c897...
a92351d390f50abd23c09dc8e8a6f788
AntiDebug
AntiVM
VirusTotal
Email Client Info Stealer
Malware
suspicious privilege
Checks debugger
Creates shortcut
unpack itself
installed browsers check
Browser
Email
ComputerName
3.8
1
guest
43
2025-04-07 10:44
eula.rtf
2ab3df4762fbde5d86e99a1ad147850e
VirusTotal
Malware
exploit crash
Exploit
crashed
1.8
3
ZeroCERT
44
2025-04-07 10:43
qhjMWht.exe
1dbdcaeaac26f7d34e872439997ee68d
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
unpack itself
crashed
1.8
28
ZeroCERT
45
2025-04-07 10:41
s9471.exe
f258ba9ca646b9749d7f22a3dfdc77d2
Generic Malware
Malicious Library
UPX
PE File
PE64
OS Processor Check
VirusTotal
Malware
crashed
1.8
M
35
ZeroCERT
First
Previous
1
2
3
4
5
6
7
8
9
10
Next
Last
Total : 52,360cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword