Home
Favorites
Tools
Dr.Zero Chatbot
Notifications
Guide
2020-06-10
Version history
2020-06-10
login
popup
Submissions
10
15
20
50
Request
Connection
hash(md5,sha256)
Signature
PE API
Tag or IDS
Icon
user nickname
Date range button:
Date range picker
First seen:
Last seen:
No
Date
Request
Urls
Hosts
IDS
Rule
Score
Zero
VT
Player
Etc
8131
2021-05-19 13:51
sisifo_setup.exe
7e57d2438a4c8daa0605baf3d1074a67
PE File
PE32
DLL
VirusTotal
Malware
Check memory
Creates executable files
unpack itself
AppData folder
DNS
3.4
M
42
ZeroCERT
8132
2021-05-19 13:51
sisifo_setup.exe
b585c637138be59df2b8b1e5fa4b112b
PE File
PE32
DLL
VirusTotal
Malware
Check memory
Creates executable files
unpack itself
AppData folder
2.8
M
42
ZeroCERT
8133
2021-05-19 13:53
sisifo_setup.exe
cc224b39caa09c3cae712578fe07530e
PE File
PE32
DLL
VirusTotal
Malware
Check memory
Creates executable files
unpack itself
AppData folder
DNS
3.0
M
26
ZeroCERT
8134
2021-05-19 13:54
GP_F.exe
024e33b8a7f7c5a5791d00422ed4a21a
PE File
PE32
VirusTotal
Malware
unpack itself
Checks Bios
Detects VirtualBox
Detects VMWare
VMware
anti-virtualization
Windows
Firmware
DNS
crashed
1
Info
×
202.12.80.181
6.8
M
32
ZeroCERT
8135
2021-05-19 17:34
testvba.dotm
de000aa60d73ab904fe119294741e5c4
VBA_macro
VirusTotal
Malware
Creates executable files
unpack itself
Tofsee
2
Info
×
github.com(15.164.81.167) - mailcious
15.164.81.167 - malware
2
Info
×
SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
ET INFO TLS Handshake Failure
3.4
M
25
ZeroCERT
8136
2021-05-19 17:38
cypherx.exe
8abb166e4d3ded36cc646ef02c701ae2
PWS
.NET framework
Malicious Library
.NET EXE
PE File
PE32
VirusTotal
Malware
Check memory
Checks debugger
unpack itself
Windows
DNS
Cryptographic key
2.8
23
ZeroCERT
8137
2021-05-20 07:33
Chrome.exe
5d6143a1e252d99a20871f89bb644ce8
AsyncRAT
backdoor
PWS
.NET framework
Ave Maria
WARZONE RAT
Antivirus
.NET EXE
PE File
PE32
VirusTotal
Malware
powershell
suspicious privilege
Check memory
Checks debugger
Creates shortcut
unpack itself
suspicious process
WriteConsoleW
Windows
ComputerName
Cryptographic key
6.0
M
29
ZeroCERT
8138
2021-05-20 07:33
ABU.exe
47de54f1f21a47cbabe3b547d041da92
PE File
PE32
RWX flags setting
unpack itself
anti-virtualization
DNS
2.0
ZeroCERT
8139
2021-05-20 07:39
EGG.exe
13e0cd9df74775213bc78eba0c269add
PE File
PE32
VirusTotal
Malware
RWX flags setting
unpack itself
anti-virtualization
DNS
3.0
33
ZeroCERT
8140
2021-05-20 07:40
JBO.exe
49481a54a5c2af610b1dea941b3ba062
PE File
PE32
VirusTotal
Malware
RWX flags setting
unpack itself
anti-virtualization
2.4
30
ZeroCERT
8141
2021-05-20 07:41
FBK.exe
0ba742f6d1c206638efd5064acd6f862
PE File
PE32
VirusTotal
Malware
RWX flags setting
unpack itself
anti-virtualization
DNS
3.0
33
ZeroCERT
8142
2021-05-20 07:45
MAL.exe
10c3c7a5841b1a9bf81362243ad9e7e4
PE File
PE32
RWX flags setting
unpack itself
anti-virtualization
1.4
ZeroCERT
8143
2021-05-20 07:45
KUI.exe
331795ffdb6c9f6940d86d4a59c6180e
PE File
PE32
VirusTotal
Malware
RWX flags setting
unpack itself
anti-virtualization
DNS
3.0
34
ZeroCERT
8144
2021-05-20 07:46
JNN.exe
f4b56009dcee0d306b8316618e0b96d3
PE File
PE32
VirusTotal
Malware
RWX flags setting
unpack itself
anti-virtualization
2.4
35
ZeroCERT
8145
2021-05-20 07:46
MKO.exe
c28479bce1d7cfc221be5b71bf470164
PE File
PE32
VirusTotal
Malware
RWX flags setting
unpack itself
anti-virtualization
DNS
3.0
38
ZeroCERT
First
Previous
541
542
543
544
545
546
547
548
549
550
Next
Last
Total : 48,210cnts
Delete
×
Do you want to delete it?
View
×
Insert
×
http
domains
hosts
ips
Memo
Tag
Alert
×
Insert error....
keyword