Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
49021
2024-10-20 09:28
smtp.pdf.exe
bc20ccdfe58debf965054d868fa95085
Gen1
Generic Malware
Malicious Library
UPX
PE File
PE32
MZP Format
OS Processor Check
DLL
PE64
VirusTotal
Malware
Check memory
Checks debugger
Creates executable files
unpack itself
AppData folder
AntiVM_Disk
VM Disk Size Check
3.0
2
ZeroCERT
49022
2024-10-20 09:28
6591.msi
7d1b4fded657252e8f53e24378463b0f
MSOffice File
suspicious privilege
Check memory
Checks debugger
unpack itself
AntiVM_Disk
VM Disk Size Check
ComputerName
DNS
1
Info
×
45.202.35.107 - mailcious
3.4
M
ZeroCERT
49023
2024-10-20 09:30
WindowsUpdate.exe
ed0c790ffc9b1ca55966ee359ca31eb8
Malicious Packer
UPX
PE File
PE32
VirusTotal
Malware
unpack itself
3.0
M
66
ZeroCERT
49024
2024-10-20 09:30
Renci.SshNet.dll
2af177eb2897d2b4b7aaa29bf9438e9c
Antivirus
UPX
PE File
DLL
PE64
OS Processor Check
VirusTotal
Malware
PDB
1.8
M
42
ZeroCERT
49025
2024-10-20 09:32
onetap.exe
fadf16a672e4f4af21b0e364a56897c3
Malicious Library
Malicious Packer
PE File
PE32
MZP Format
VirusTotal
Malware
MachineGuid
Check memory
ComputerName
1
Info
×
pinlateofficial.xyz()
2.2
M
66
ZeroCERT
49026
2024-10-20 09:32
script.exe
308d9beab0eccfd8f218a89456b9b7d4
PE File
.NET EXE
PE32
VirusTotal
Malware
Checks debugger
unpack itself
2.0
M
54
ZeroCERT
49027
2024-10-20 09:32
QQ.exe
b36366f4a27987d6de47887b03f29c68
Generic Malware
Malicious Library
Malicious Packer
UPX
Anti_VM
PE File
PE32
VirusTotal
Malware
AutoRuns
Creates executable files
RWX flags setting
unpack itself
Windows
DNS
crashed
2
Info
×
110.40.45.163
106.52.15.123 - malware
6.6
M
55
ZeroCERT
49028
2024-10-20 09:34
mechant.exe
712b252bf7758b16ccdb405074f9e2c3
Malicious Packer
UPX
PE File
PE32
VirusTotal
Malware
unpack itself
DNS
1
Info
×
99.240.189.173
3.6
M
68
ZeroCERT
49029
2024-10-20 09:34
World%20of%20Tanks.exe
b3520940042d52305df325050a95d98a
Malicious Packer
UPX
PE File
PE32
VirusTotal
Malware
unpack itself
3.0
M
66
ZeroCERT
49030
2024-10-20 09:36
mnobizx.doc
1d02448bc5eb674c43877d2564ef2aa0
MS_RTF_Obfuscation_Objects
RTF File
doc
VirusTotal
Malware
exploit crash
unpack itself
Exploit
DNS
crashed
1
Info
×
87.120.84.38 - malware
4.4
M
36
ZeroCERT
49031
2024-10-20 09:39
winfo.exe
36731ee0e883b48fea504491545d2bff
Malicious Library
PE File
PE32
VirusTotal
Malware
WriteConsoleW
0.6
M
5
ZeroCERT
49032
2024-10-20 09:39
9qP0xWlHdvhkbFG.exe
fdf9c968ea207619e7033cd4e945625b
Malicious Library
.NET framework(MSIL)
UPX
PWS
SMTP
KeyLogger
AntiDebug
AntiVM
PE File
.NET EXE
PE32
Buffer PE
suspicious privilege
Code Injection
Check memory
Checks debugger
buffers extracted
unpack itself
Check virtual network interfaces
IP Check
ComputerName
DNS
DDNS
1
Info
×
checkip.dyndns.org(193.122.6.168)
1
Info
×
ET INFO External IP Lookup Domain in DNS Query (checkip .dyndns .org)
8.4
M
ZeroCERT
49033
2024-10-20 09:41
lb.exe
069e089fa5687caab81cd32e6f931111
Malicious Library
Malicious Packer
UPX
PE File
PE32
VirusTotal
Malware
Check memory
Creates executable files
Windows utilities
WriteConsoleW
Windows
3.0
M
34
ZeroCERT
49034
2024-10-20 09:41
meidan.bin
cba34861991587d459d349d67d96bac9
PE File
.NET EXE
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
Check virtual network interfaces
1
Info
×
paswo.org(162.251.63.78) - malware
2.4
M
51
ZeroCERT
49035
2024-10-20 09:42
main.exe
8292296fd66588cd63632b601dc85981
Gen1
Emotet
Generic Malware
Malicious Library
ASPack
UPX
PE File
PE64
OS Processor Check
DLL
ZIP Format
DllRegisterServer
dll
VirusTotal
Malware
Check memory
Creates executable files
Ransomware
crashed
3.2
M
50
ZeroCERT
First
Previous
3261
3262
3263
3264
3265
3266
3267
3268
3269
3270
Next
Last
Total : 49,283cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword