Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
6391
2024-08-19 15:40
TMS_C024.exe
b8df4ec39884a6248d88482299a55744
Malicious Library
UPX
PE File
DllRegisterServer
dll
PE32
MZP Format
VirusTotal
Malware
unpack itself
crashed
1.8
M
9
ZeroCERT
6392
2024-08-19 15:38
wednesdayfileequitossMPDW-cons...
97ee32367c563f106c50974bca88a375
Generic Malware
Antivirus
Hide_URL
PowerShell
VirusTotal
Malware
powershell
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
Check virtual network interfaces
suspicious process
WriteConsoleW
Tofsee
Windows
ComputerName
Cryptographic key
1
Keyword trend analysis
×
Info
×
https://ia803104.us.archive.org/27/items/vbs_20240726_20240726/vbs.jpg
2
Info
×
ia803104.us.archive.org(207.241.232.154) - malware
207.241.232.154 - malware
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
7.6
M
4
ZeroCERT
6393
2024-08-19 15:36
NVIDIAShare.exe
b17292cfd59a608662ae9e63a9a799fd
Generic Malware
Malicious Library
UPX
Downloader
PE File
PE32
OS Processor Check
PE64
VirusTotal
Malware
AutoRuns
PDB
Creates executable files
AppData folder
Tofsee
Windows
RCE
1
Keyword trend analysis
×
Info
×
https://bitbucket.org/fcsdcvscvc/sadcasdv/downloads/installer.bat
2
Info
×
bitbucket.org(104.192.140.24) - malware
104.192.140.26 - mailcious
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
3.6
M
54
ZeroCERT
6394
2024-08-19 15:34
wordup.exe
6b3b47c27c01e8f45f6d0f6aa509315c
CoinMiner
AutoIt
Generic Malware
UPX
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
2.6
M
62
ZeroCERT
6395
2024-08-19 15:32
POS_C010.exe
c27b1550edae5ab1b33a3b4a0b823a93
Malicious Library
UPX
PE File
ftp
DllRegisterServer
dll
PE32
MZP Format
OS Processor Check
VirusTotal
Malware
Check memory
unpack itself
Detects VirtualBox
Check virtual network interfaces
AntiVM_Disk
sandbox evasion
anti-virtualization
VM Disk Size Check
human activity check
ComputerName
crashed
5.4
M
12
ZeroCERT
6396
2024-08-19 15:29
wzoptini.exe
e4eff021485fd9e7050c2beebc30a376
Generic Malware
UPX
PE File
PE32
VirusTotal
Malware
Checks debugger
2.2
M
43
ZeroCERT
6397
2024-08-19 15:27
POS_C088.exe
d33adff25e4c94c97c77ad6e9954a5bc
Malicious Library
Admin Tool (Sysinternals etc ...)
UPX
PE File
DllRegisterServer
dll
PE32
MZP Format
VirusTotal
Malware
unpack itself
crashed
2.0
M
10
ZeroCERT
6398
2024-08-19 15:26
TMS_C009.exe
36c9de5666a5ef5b6f7a27f23538f5bb
Malicious Library
UPX
PE File
DllRegisterServer
dll
PE32
MZP Format
VirusTotal
Malware
unpack itself
crashed
1.8
M
10
ZeroCERT
6399
2024-08-19 15:26
imjp14k.dll
4fa897798a9028ea4f8dad8f8da5dc63
Malicious Library
UPX
PE File
DLL
PE32
OS Processor Check
VirusTotal
Malware
1.2
M
49
ZeroCERT
6400
2024-08-19 15:25
POS_C018.exe
4a4725aeec3719c349392b5dd8f01d14
Malicious Library
UPX
PE File
DllRegisterServer
dll
PE32
MZP Format
VirusTotal
Malware
unpack itself
crashed
2.0
M
12
ZeroCERT
6401
2024-08-19 15:24
TMS_C153.exe
1ce9a063972f6f5266b78f7be6365fd6
Malicious Library
UPX
PE File
DllRegisterServer
dll
PE32
MZP Format
VirusTotal
Malware
unpack itself
crashed
1.8
3
ZeroCERT
6402
2024-08-19 15:23
slavamerlov.exe
cecdc6f5ffde0ad1ddc333cc2a59d56e
Generic Malware
Malicious Library
UPX
PE File
PE32
OS Processor Check
VirusTotal
Malware
PDB
Tofsee
crashed
1
Keyword trend analysis
×
Info
×
https://bitbucket.org/fcsdcvscvc/sadcasdv/raw/2def5025c148911543f74f565c76b7154ed5143d/kachelid
2
Info
×
bitbucket.org(104.192.140.26) - malware
104.192.140.26 - mailcious
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
1.6
M
50
ZeroCERT
6403
2024-08-19 15:22
Brazeeel.vbs
14bde8aed8a9f08a93483d751677dc71
Generic Malware
Antivirus
Hide_URL
PowerShell
VirusTotal
Malware
powershell
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
Check virtual network interfaces
suspicious process
WriteConsoleW
Tofsee
Windows
ComputerName
Cryptographic key
1
Keyword trend analysis
×
Info
×
https://ia803104.us.archive.org/27/items/vbs_20240726_20240726/vbs.jpg
2
Info
×
ia803104.us.archive.org(207.241.232.154) - malware
207.241.232.154 - malware
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
7.6
M
2
ZeroCERT
6404
2024-08-19 15:21
huorong.exe
2b7bff01c4165d267d31d52c15b2d0ec
CoinMiner
AutoIt
Generic Malware
UPX
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
sandbox evasion
Tofsee
2
Info
×
down5.huorong.cn(180.163.146.100)
180.163.146.100
1
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
3.0
M
56
ZeroCERT
6405
2024-08-19 15:20
POS_C093.exe
d13c1ebc4923c0603b836f74330b78de
Malicious Library
Downloader
UPX
PE File
DllRegisterServer
dll
PE32
MZP Format
OS Processor Check
VirusTotal
Malware
unpack itself
crashed
1.8
M
4
ZeroCERT
First
Previous
421
422
423
424
425
426
427
428
429
430
Next
Last
Total : 53,728cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword