Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
6436
2024-01-02 07:48
HomepageReverse.exe
be8cdde4842fd762856c98114130651e
Generic Malware
Suspicious_Script_Bin
Hide_EXE
Downloader
UPX
Admin Tool (Sysinternals etc ...)
Malicious Library
Create Service
Socket
DGA
Http API
ScreenShot
Escalate priviledges
Steal credential
PWS
Hijack Network
Sniff Audio
HTTP
DNS
Code injection
In
VirusTotal
Malware
Buffer PE
suspicious privilege
Code Injection
Checks debugger
buffers extracted
WMI
Creates executable files
unpack itself
Windows utilities
AppData folder
malicious URLs
sandbox evasion
WriteConsoleW
Windows
ComputerName
DNS
2
Info
×
hUbDLxwHbtXNnaaxVEnnFg.hUbDLxwHbtXNnaaxVEnnFg()
91.92.240.171
9.0
M
32
ZeroCERT
6437
2024-01-02 07:46
mm.txt
623d28815c85957bafdd79395e2227c9
Malicious Library
PE32
PE File
VirusTotal
Malware
Check memory
RWX flags setting
AntiVM_Disk
VM Disk Size Check
Browser
DNS
1
Info
×
154.39.239.56 - malware
3.8
M
62
ZeroCERT
6438
2024-01-02 07:45
kkm_2245.exe
8c1279098d87e19ccc488a4b04a77e45
Malicious Library
UPX
.NET framework(MSIL)
PE32
PE File
DLL
.NET DLL
OS Processor Check
PNG Format
ftp
.NET EXE
Lnk Format
GIF Format
VirusTotal
Malware
AutoRuns
Check memory
Creates shortcut
Creates executable files
unpack itself
AppData folder
Windows
ComputerName
3.4
M
17
ZeroCERT
6439
2024-01-02 07:45
XDisk.exe
b6bbdd51556f752b034a1a74f54808e2
Malicious Library
UPX
PE File
PE64
VirusTotal
Malware
Creates executable files
Windows utilities
WriteConsoleW
Windows
2.4
M
18
ZeroCERT
6440
2024-01-02 07:44
kkm.exe
2bd2b08ca47144328cbc68041d8714be
Malicious Library
UPX
.NET framework(MSIL)
Anti_VM
PE32
PE File
DLL
.NET DLL
OS Processor Check
PNG Format
Lnk Format
GIF Format
.NET EXE
ftp
VirusTotal
Malware
AutoRuns
Check memory
Creates shortcut
Creates executable files
unpack itself
AppData folder
Windows
ComputerName
3.6
M
28
ZeroCERT
6441
2024-01-02 07:43
kkm_2335.exe
6d37f5e29d1c1f2635704bf043a58cd1
Malicious Library
UPX
.NET framework(MSIL)
Anti_VM
PE32
PE File
DLL
.NET DLL
OS Processor Check
PNG Format
ftp
.NET EXE
JPEG Format
Lnk Format
GIF Format
VirusTotal
Malware
AutoRuns
Check memory
Creates shortcut
Creates executable files
unpack itself
AppData folder
Windows
ComputerName
3.6
M
29
ZeroCERT
6442
2024-01-02 07:43
tuc7.exe
556c622165478f54c7894abcb56c5bd1
Emotet
Gen1
Generic Malware
Malicious Library
UPX
Malicious Packer
Admin Tool (Sysinternals etc ...)
PE32
PE File
MZP Format
DLL
OS Processor Check
PE64
DllRegisterServer
dll
ZIP Format
VirusTotal
Malware
Check memory
Checks debugger
Creates executable files
unpack itself
Windows utilities
AppData folder
WriteConsoleW
Windows
ComputerName
crashed
5.0
19
ZeroCERT
6443
2024-01-02 07:41
syncUpd.exe
88cdb606728918e779aa4ea58541f3c2
Malicious Library
PE32
PE File
unpack itself
Remote Code Execution
1.2
ZeroCERT
6444
2024-01-02 07:39
fuckjewishpeople.sparc
ba8542b6e1f1e16090485a52b989ce3d
AntiDebug
AntiVM
ELF
VirusTotal
Email Client Info Stealer
Malware
suspicious privilege
Checks debugger
Creates shortcut
unpack itself
installed browsers check
Browser
Email
ComputerName
4.6
M
41
ZeroCERT
6445
2024-01-02 07:38
OriginalBuild.exe
f1ca55e0638b3e0b130a7f59a4029bee
Eredel Stealer Extended
Malicious Library
.NET framework(MSIL)
UPX
PE32
PE File
.NET EXE
OS Processor Check
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
Windows
ComputerName
Cryptographic key
1.8
12
ZeroCERT
6446
2024-01-01 17:23
tuc5.exe
167e8f678e08d79d2039086428bbfa3c
Emotet
Gen1
Generic Malware
Malicious Library
UPX
Malicious Packer
Admin Tool (Sysinternals etc ...)
PE32
PE File
MZP Format
DLL
OS Processor Check
PE64
DllRegisterServer
dll
ZIP Format
VirusTotal
Malware
Checks debugger
Creates executable files
unpack itself
Windows utilities
AppData folder
WriteConsoleW
Windows
ComputerName
crashed
4.0
6
ZeroCERT
6447
2024-01-01 17:23
sl97_2.exe
3b1d15b557762c579fff9346a1d32ac2
PE File
PE64
VirusTotal
Malware
crashed
1.2
M
36
ZeroCERT
6448
2024-01-01 06:56
XClient.exe
a4e4db3529f3699fabe1d01208c5f396
Malicious Library
Antivirus
UPX
PE32
PE File
.NET EXE
OS Processor Check
suspicious privilege
MachineGuid
Check memory
Checks debugger
unpack itself
AntiVM_Disk
VM Disk Size Check
Windows
ComputerName
Cryptographic key
2.8
guest
6449
2023-12-31 21:17
StrikeNet.exe
f2c62f2ee6aa94509c39557a628534a1
.NET framework(MSIL)
PE32
PE File
.NET EXE
VirusTotal
Malware
suspicious privilege
MachineGuid
Check memory
Checks debugger
unpack itself
Windows utilities
suspicious process
AppData folder
WriteConsoleW
Windows
ComputerName
5.6
M
51
guest
6450
2023-12-31 21:13
WWW14_64.exe
24fbc8705072bb32a6ac2fc995a66f17
Generic Malware
Malicious Library
VMProtect
UPX
PE File
PE64
VirusTotal
Malware
unpack itself
Disables Windows Security
Windows
DNS
crashed
4
Info
×
193.42.32.118 - mailcious
208.67.104.60 - mailcious
94.142.138.131 - mailcious
94.142.138.113 - mailcious
5.2
M
55
guest
First
Previous
421
422
423
424
425
426
427
428
429
430
Next
Last
Total : 48,317cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword