Static | ZeroBOX

PE Compile Time

2024-11-05 21:57:34

PDB Path

m6Dï^D¤ƒsî¥ÃŸbL–p
ȺFÓÌj’¼—¿ü£¡;âI&º$@ق¶L°L€ãñ¬^Çù’xƔOÝ=t€]“ÒÄó€S€YÂJZÄny4Ì2²Ú¥ð/ª

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00002e1a 0x00003000 6.12057781583
.rsrc 0x00006000 0x0002d472 0x0002d600 4.96944536272

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_ICON 0x0002da84 0x00005422 LANG_NEUTRAL SUBLANG_NEUTRAL PNG image data, 256 x 256, 8-bit/color RGB, non-interlaced
RT_GROUP_ICON 0x00032ea8 0x00000084 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x00032f2c 0x0000035c LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x00033288 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

!This program cannot be run in DOS mode.
`.rsrc
v4.0.30319
#Strings
<>9__11_0
<Initialize>b__11_0
<>c__DisplayClass11_0
<>9__11_1
<Initialize>b__11_1
Func`1
List`1
PROCESSENTRY32
<>9__11_2
<Initialize>b__11_2
Func`2
<>9__11_3
<Initialize>b__11_3
Func`3
<>9__11_4
<Initialize>b__11_4
Func`4
Action`4
<>9__11_5
<Initialize>b__11_5
<Initialize>g__FindSpecificIndex|11_6
<Module>
th32ModuleID
th32DefaultHeapID
th32ProcessID
th32ParentProcessID
get_ASCII
System.IO
mscorlib
System.Collections.Generic
Microsoft.VisualBasic
AesManaged
Versioned
method
instance
source
set_Mode
PaddingMode
CryptoStreamMode
CipherMode
cntUsage
EndInvoke
BeginInvoke
IDisposable
RuntimeTypeHandle
GetTypeFromHandle
handle
szExeFile
FreeConsole
hModule
get_MainModule
ProcessModule
funcName
procName
methodName
get_FileName
lpFileName
appName
CallByName
ValueType
CallType
System.Core
pcPriClassBase
Dispose
VirtualProtectDelegate
MulticastDelegate
CompilerGeneratedAttribute
GuidAttribute
DebuggableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
Fastkroak.exe
set_BlockSize
dwSize
set_KeySize
AmsiInitialize
SizeOf
set_Padding
Encoding
System.Runtime.Versioning
GetString
StartsWith
Fastkroak
AsyncCallback
callback
Marshal
kernel32.dll
user32.dll
amsi.dll
CryptoStream
MemoryStream
Program
get_Item
System
SymmetricAlgorithm
ICryptoTransform
amsiSession
AmsiOpenSession
System.Reflection
caption
Buffer
GetDelegateForFunctionPointer
DataProcessor
.cctor
CreateDecryptor
UIntPtr
System.Diagnostics
cntThreads
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
DebuggingModes
patchBytes
ReadAllBytes
GetBytes
indexes
dwFlags
strings
GetCurrentProcess
GetProcAddress
lpAddress
Object
object
lpflOldProtect
VirtualProtect
flNewProtect
op_Explicit
IAsyncResult
result
get_Count
CreateToolhelp32Snapshot
hSnapshot
Process32First
Process32Next
System.Text
amsiContext
ShowWindow
nCmdShow
specificIndex
MessageBox
ToArray
System.Security.Cryptography
BlockCopy
LoadLibrary
op_Equality
String
IntPtr
Delegate
Process
Stream
Invoke
WrapNonExceptionThrows
Fastkroak
FuckingShit
Copyright
FuckingShit 2024
$759A5A31-0A0E-4B48-8436-E97A22C8F1E7
1.0.0.0
.NETFramework,Version=v4.5.1
FrameworkDisplayName
.NET Framework 4.5.1
9m~gf~
d,""QV[
<2e4chE
yR)sPv!
{Too5t
9WJ566
|~hFPJ
O#w|7~
iZ`k;b
D"Q[SS
hgggSS
:N1}b:
EPJ544TVU
l.]:U}Od
;4rFJQ&?l
@cckkk
YOLrd(
n]UEEww
_li4-L
o%**#kN
3yIW1)e
i75y2_~
:;U[;l
uA!G5Ja"
3VW7,?
PPJht;
*]#,8T4{.c
?#!bUe
!%y>-^
^j]qyl
P__o^~
okss9liQmm
dB]p!_
7}B_4|
:ZY]u8
<p4N?3~
OR:;wf
UgZ^pQ
A=-!n
,1+y;B
B&H8.BNhB
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
pTccFnnCmlrCjDw6
pTccFnnCmlrCjDw6
pTccFnnCmlrCjDw6
m1mYj'~
VLY4Db>
k)0u|q
,>U(m
@UV)Oka?
,'QZpC
6V F&
$&35g'4
(]y{=^`A
BO@9:K0(
DCoLNF
R]!h_U7
j:_5h/|-;
900r;Z
8d>d
dj-dQ]
:E:NAm
UL{Kjj{
b-c$}8
,_In&U
Y#u,iB
<Nn?f&Q
NV/m%A
D{3]`Z
g`Bvzo
c8(sLa
_0^Wr,
$z{8V0
{zuxZjV
QNq0xj
_Lkn+-
*8'=%f
~d9bVw
-9"ey!
Sh7FLX
4w$<gO`
0<t("pg
^8q@6k
ho U F
@v_=tF
5jVmJ!_f
uu:[+t
i.(fS8
A%^6%,
OHtXIk,
mmR(|U
~43k2b
%WI4W]
Jq]Jqad
)J6Z4H
't>FO}3
F8#"5[
\9o}66*v
:9vd{o`@
QF`S1f
?2QixO
DxPUai4R
4H/g3s
64^,EJ
'|VBs
U`l}QQ
'A!93X*s_
*X-W@{
!+DNnA\
yALCpM
j5j[UUu
Y1AtCG?mkB
),*.(r'q
k~d">A
p~4P(>!c
6IBj\
49;aC$\
'O&{:)-uL
+S3pmM
Jea_|UC
`RlP$g
3c,/Nn\
h5f{nx("~
Yt*DLb
$0zT,e
b=1K|F\cD_
PS0DP%
(,O8t}
n6^GeBlJ
6~.gM5
vZ9H']n
9v_CpA
u]f^Fs
[Qe\GuQ
B&1:?^
H;9o;N
$So|Bj
#LJ;~k
JlL}B.+
])5 -j_
=DQdx
-)jgV-
4`Q]>5
rc8iWb
&wL*pzL
mG{Z5X
Ks#w]b
r#/w*i
&{-<p"4
d5r*M@
kh}Nk,
%CL)@/
z]0#:h
%)dR79
^(]gI
&jG)gn
6"&0L}
"5O^t*
iKuKV49
IWnQ#:
hOXpU
c$1]McGl
T$Dz@e
\e-U>%
$Pw-EU
QE*P^/
fa!!m|
s#S]'t#
(\SIO6n
uC|UWNJf
" ,ZE-"I-9
n{mGM-
u-q8y!
+Su*a3s
dzh,z0
=[KUk)
1|tI2v
|8Q%/&
BdNcG3
jH%Q5d
9=||Rz
rT9p3I
g@n3Y-<8
P=k}&
:N*^`t
?C2$5$
'{2x=k
2nykXg
i|e-XZ
e\iFGE)0Y
s$}qc'
5@]nTw
jFt7q9
uifB#s
6rBKXn
/g^I|x45TC
!OZjRcIThq
VCPm^I
1A1@Uq
k?W{^ud
6Om=`d
gEAc@|k
dR,pMf
PKKiuz
xr/D=xQ
b2\uNs
GT*KuB
GLd[48y
3^2L>5)
SlyO)z
rNq7'3@
m@S='e
Ap0{}r
)kt|=x
bGS[2g
FWv'm/E
(:xW(~m\1xj
:$cko5
)aqU[h
ZevBEn
Ew('o,
Ok^7@l
'B~i91
Kk=p])
hyc7`|F
,#_T$vU
Fv6c=|
t)\pBtNzB
g2qks0
"/;xe^
N6?RH\C
E"c=H3,
mI3)hO
XW3?A^
2!zl5:A:
b`Hy'U
%m1mW-
V8D5-X
]+MzOzq
~#.2s4
h2[PUX2
[IIf-2P
A8Ij4lW
?h"/tG
w{QaHC
1('Wv=
GklyHj
cD1)>/
ay)!:tK
0eZqLn
6p[%$P
y!5AZ-
%VIMnBxl
0W@dm;
X:w}7z
H\0acg
W$'~Ndp
#Ta'wQ;
,[=7^k
A5)![$
wIkx3l
)rlL@[nO
[*F2W8
OxSz&K
^hPaBu
xQz}]tD
P;d<sw
I0N1tN0bp
lAhUYO
gen%I=
eN2i[=5+
+m=X!R
XK$?0*
|YG(CD
=N1J7y
{he7;&
FI|TOGcl9
5o_iR{z
5y;zUl
7I,PpY
Y1_Bw`i
:nyrL
OSU%(g
8-"A?)8
z~M^q/
C-9Gq,
]aUYo
v%)&k`
T;Zj
MPZCxT0g
?l#!|kT
g`X@d
n^,#.*
"GN.FE
ob@86kr
~K ;%%
JdvBi!h
yIN>#\V
qnj@NP
&<Ga#c
jdRn2=j
@6v>hO
GO4q
p?m'kwd
}zpZ76
T)oc)"
*Cn#1~
gz&]pa
}_"cI,Sk
oPRFP&
?lW"|I5
`+w{?.
xb?CN
OrUkhm
3@_Pxb
ad:k-0?)M
Y)3BU:
MRSEpE
I'{"y$9
R)X"K9
k<d}PR
/5G~]@b5$!
{_x0>+
#e-2J#
IT~L3%
X"YByW!=
Sc8e
^$4|}p
ET&=[=
h#(=7_W
%K. ._
Iz~^OA
!qW>A[
p!T00p
1f=yFM
izjqstu
ng'H[L
A<|<*-
>Z}X*s
*?[2SP
PF`\;f
X[\Zb}
$8KJ/
'`[Q>[
01 Ss
obju;U
ft6^{z\Z|
vqb%OS
xj+BrjB
zz\{=P
XW7cQ=x
LEX'_"
?7{1Eg
b{[ND?
ffHwju
2+gr18B
PD. 1$
:ZEL<G
}$S,I*
%GZ=_y
a/a*L^
(A@<a!-#bXoO
jGQCKN
@qYymtC
b0't?]
Fy[`tcc
*N8U:W
>XO!3x
YX]IDC
7YMMTE
f:q$ spA
Tj5^0k
0bxHV_
hr_nRHb
~eU/Zeq$
_}aNZS
MN*{7V
vy+:+;
t*xI.S
Z^C25z
#DurN;@4X
'rQ^=~d
$7"%uFF
Q~mF|N.#
yrD4ABC
?v.X_p
O>aw]b
BP/<`v
}[ZCbt^
MK}]ze
cbjyB|&
o1eoK-
+1[w f
G\`b0?[
yxFp55:
unT ~1
KLZ G/
B;:d+-
i_N[v
R1~IXs
^2FXGLw$
g>9M0+
'KCGDJ
@9|4Ll
Lh>Ii0
;S)OP1
5dQ(ot
tcI!|0
}E|9x+d
Fl$JZp
[xrnE
+\"QW"
vBr0>J5F
/6*kk;
)*PHPFs
bB.I<Y
.0eS?%z
d8`|6*$i$
YM*LmK
,5WZd&
$XCNX
x'CK9Q@
+_@|rB(
OW<D|.HG*TI
M1g%t3
.,/mYo
<t+m#'
Y%|rm;O;
VsI;^/
T(7Lj
M}]:f-
%HV8JE
c2eTzH
JoBmA'
EuTj_9
n"KjhO}
4?zCi,b
nUDFMi
m0/12F/
0<;<B~
OB+f.CR|
Y^(4d
{i\W>2gFz
Oa)[y<:8T6?
Fjd j@
'WOQS
(K~hxD
p\ntM2Z
e,x]Q#{N
e]b]o!
d@xJ&(
2t0#z
#a*l#@b
VF^X+U
EK>9P@5u
bvpD5t
N&8r[\]G
~<"Y=
%naw6Kw){
L6hIO72
`D."20`
E6[Z<f
SRrG+U
}^@8+a
Ao]g/i
GG/jM>
cp&nOAu
(1Tb\t
H'3SZ5<
AH*CtWb
fjh7r*
!opzpp
x&6}d?
dYFX6|y
4-+k"(
>aSRb
63XSV$
??bL6,uu
[(0E`Hx
h#EWe{-;
iR%0dZ
lU}0(V
5-C\Ll
9-XZ"=1
TI^ht,
xcm"|?W5""
S^4TOM
NQU{p&
}*63md
yQ}DlV
^ll&PP
&"ZHL+t
6_wNS p`
0^j@//`[
Hv--(_
{GkkC?
kBw&=u
@L sF@uL
3#h6%F
A.5]qX+
(IGWYBjeC
'&i{CX
C;( X2
Q].+aa
[ge}W=
J<s>Pd<
O)yXfB6
?X[OhT
G"zStfY
jk&*h)
47nF{8AN&
-rr]>xDM)
dg_Ne&
S"2e|8B
uVFo$
f<s[^Nz
Q)H5xI
kd\0Ix
z?QIr?
wS O.oO
x<s8T5
/c+pch
?~Z-7;(
2?#>pN"
~!Hu9-i
n}bGpv
9wE.g"
+)@.!^
R3:4L]U\
cihHk;
6'=Qm'
2+_E!-
?38MK
roy`hr
rv0B9&
"i$>%v
;u|ntJuC
uZ0s:l
1b3Q}
zuE|@5
wWgcg.
"aorg[~
A.@~/:
B/5<;J
^L.vn&
)D3B_X
o;J D9W"
Ot5!{U
s405,]M
\oZh,h#rc
nd4E;f"UO`"l
aKVxVL
LEa0Z}
x8`,pA
&:.&k8
hj,wq_
pE#\J=
G"M=GV
"^);Q8?
Rm6=^o
duNUx*
:W2:h-
m'$Ah.
X$*hn#
x)o\_P^
2dG!B<
![Z\mP%
]20>QN9
$B?-pA^
B:w+)s
s>}Sl%
Q&gKoJ{6
m1=*4`b
1ew7Ta
[%c #>L
v|o4t`P-
\2op-y
mCfDf
;FeS-S,"U
A6wsvn
gJk")YAF
np?=v+
vz~RQ0
])K3Lj
^rz@ZO
#"s]$P~
"o8( #P
m(?+k#
T|edx^
a#)-ohk
~wm+VO#L"
y|*Bg@
xe=<9%Qi
<HsFy-!
l<H0"N
H.,s&_
"kg4j|n
dTkk5C
[2NV9yy
Pc9699{P
D=`n1X
s0l3)y
A(*EV=
9M5hIt
LN>,20oN
Y9?;*u
Vb]NVz
Uqs|FFa
/mv^1i
pKn:dq
rD)uI<nn2
jZg|%]v
*M{<gl
.@+CEj@
`4MyqS
nT #H
m,*NSZS
\Z+%l(Ah
Xa-a*Y
qtO=8|(;A5@Q
o;2-{]
[[}F)
9)n qsN
zY3>ReM
Ta~K1A
u$+&&N`,
u\`A[Y
F+3Bg>
OEzJ)J
KF.w#uao
a#2Y:'6
1yJ/Uw
p(qv|.k
n*tD=Y
Qo5j
tn^5)
NgAQ!<$
#]En6o
;v(WjY9
kC/j_k,0
o*%+{b
HNAw{V
%R$CTmcK
H@>]/e&
6_&NYJ^e=3Ct
6U+R>P
O'TP9s
cL{qDC
/KO:V0A
%AN4#fA
=\msvC
d3 DI'
_YFm\d
iZ/[i_n
UiO9u~g
iWNXRo
:2ZGj
ZG`E\L
'&=)6Z
.MGr~x
_=|e~S
yWpVB
EF0*n6z
a}npV%
C.I/D,y
M5eM`v
a$G<p[
Qlp\aa
J!QY\[U0
RvnYW@
b9p$f
.G;714
6@'rP<
xqXMK
=NJ+jeD
z(zmmm
qFXGt'
c}WO;\
oF.h&<
z}()YHG2
/O2,`IN
u-l`U.
J1(/;g
yOz7-'
:Lo<mg^
G}doeCQ-H
\F1;Ov
.=nv&m
"Iy,Wt
4EJ5C:
^"|$>H|
,XQ&t_
}B5E'pC
-U~z]h
Aa1=~\
cC7t5-yj
yWss\v[:
4cl,*L
8~,9g=
IFs`{E
BC!vmt
{he`Ge
^Ktxz@<F`
;>(|Wu
J#}OH?W3
vyKa;5_H
|dIbh]
~3B-4@
L%KKz_p
`b,1~G
Q#TNELq
~e;^,m
CYHbYcw
f1|hRI!
ZzvFmP
G_RaLq
QNk@FH
M]`xa`,
%nxAZ8
7P!B<
sDZlAY
Y;pX/!
IoSr2|
BLD:tH
VYbP=u[
5mqe\M
}R:v]s
al<@CgEj
H^g+R}
;E>;bk
v%:yyI
`8>O4u
tGNN]A
1*(H!nkF
8;pio\
M5[X!f
t*m7Gy
_b$4Qv
s/v%(?_,m
FMS1n!
LzkD#K
ap'E-z
S]gyT0|
nH!;$n"
B)wf0Z6
CE|=0M
s3*}Jpx
yr8Dr(k+
9MB3~Y
BnLgGb
g&KP"S
_g;04
lp.hje
yv4KU)
wp<q-J
YI3*^
`m_?bOu{
_=Be>3
^5`|CI
0=D~g{
[m/( i
a3EF@A
#K&*U$
xfbC#3
c50t=w
*}H g)(
/v`cQ
@U1%IB
/A9%{`!
32[k"Q
"$y,KO
a4vy(-q
e6+82@
c2dnZi
}sO4j
a!`1?>x
NIq,0u
<adNM:
O2JCS35
v6=RI=;
o!a)Rct
(1b)X
+x`Bcxk
CuRb<R}v
U%glN}*]
>Z1~tTFc
Ab\8Nw
[F#|u
uKRFj"
EKbpzCKO
?(L_jD
ColnSq
"H2,bh
9-tn>/
0mi'7
q2?YL
A9n+1^
/lV^TFqk
UqqU]+R
Fr=}fvV
22>p2rH
pCrL7L;O
<aM4qt
andh`Q
K!o`J,^
c4Z$u|l
L/IwOl
$q/0o Sz
M1_{uG
yS~)pw
U-I7a^2
]*8)!T
_l=Dg^{
`\$E0i
%<1pvZhMmL
,AI]ZD
OK-OYX
,{]A!L!:
fhKg+N
u[gF{R
7~aJ-x/a
QcHz2?g
uFx,aX>#Y
;C*LU
e2*;3{e
m*whi5
k?>\sr
?BRS[5B2C\3
x-,Q~* ^'(
&G/}R66
T]%Qlw
2^(d/ih
5,d:o+
uOr=/v
="#hNu
>Fbd 2
CI::*v
j1q}_q@x
&B`=O~my
AXN~n)`
C[(d8y
("DTUZ
6#kjK!
*z:d!b
o0O[lW
|jiv^W7
4C4fd&
DX9Qm#
>L]byK.
Q{ftIj$(Y8EJ
T@PY&[g
dDYJA3
1FKv}3,B
f%-fm+P
~EC|f&
2CwV&`
`=y{s?H
k7NJWtn
hENI~USf
v"IVws
;PlFF>
K3c/+c
d3.054l
&bk?>?64
?IdA[&Z
d#jABO2
2;Ohb^
!1?|Y`
6S{=r@
KFsIeM
m;q,[6p
w"bCx6w
j`;RPJ2
$%iMUZ
?*)eHB>
WRC>uT
;ldM?+
5@+8&,!
/5J,4m
CM]-h5
bO_|*$
HTjlT&wu?
rx|1g[1
bMtO1q&
W$'T{!cl
qmo{@x
e3|F65
,ws3Qi_
>*~aDZL
v0"CG"
X&kh]p
v6D59b
D-umv0
p)fX8PU)
Emm"^{
+8NJse
qG@~q\i
q?9}S
aE+aFzdMT
a-}@S
B|]9k#
"\zqls
&=?<vAs
Py)Bn`
d%|$!>
(^FLb_E
7+ntkX
!)?7"nT
Mar&BPUN
y{g'>LD-
@}y_~{f1E
ecYG[P
:@qWKS
\P$4TZ
7{wzi0
._ZrGF
]At oV&,
Z{YEPF
7%8UWo
7?3,PA
U$]HwBN5
DDWiAS
q?clZ{Q
au3E0c
-$+PPZ%
a%/JN1*
- !<]5%
4p=qX
+T+B"h
7MczO-S
0C&$GU
mvqD-d
ORWU>c
R/Atl{
uaD8`jc
:5[ot<
PPO[=@
@_&Cm+
MP{g_h
&G"mhi
&-g)&,
*zhH{2
;u_2]}kS
eI=`Mk
k*T(r_A{B
MSr/q~
(|<,JjM
++-^})"Hk
im~5}e
n$7n'~
)UURas
Q@y-tX\
@YN28r
8;#y.b#
mg0^xJF
`m)+A#W@1
w|3sod
)(j]K+3
nDI%'&O
b"A2Z(~
-T7-}~
Q[D$Dw
4I(F-}
XPf4mk
h&lDDR
l2+@<
z>SkVK
'%FkEY(
Ks@@DV
VVc(=Y
IJU0WI
_'0itg
?n$9b
}zlEG-
!Po31,
nEjVOY
7@>Jz%%
W7,Ob/
,sZUAp
*Veo91
}UFayI
t oyKA
0-tFYt
yM(oA|W
YFY)K
n-1RP_MYe}
(!8R-?%-
+8KDk|
r?g,oh
"&3'CH
S1cl@w
d!T Mk.E8;N
wBV[8$
t@GOw Hb?3
KmfbE.
_RMJ4\[
Yho<ky3&
J$n(]Wb
|si]-"
KEl-,kk
(_HQ*d
cJea+>,
`s&u`"
V8&[u
:S8",]
@8wz0)K
~l^]2V
wq4}@G]
iji7@%%
20(O=P
kesuhq
:LU`Q3
,rc&a(
8o kru3
(iNu?;
_f{7hH
1Z7P,v
ysd8!5t
-[Q0QN
$RC8pXf.
X}wr/F
y!&t+[
j+^\q2
P#yC-I
@%[!eP#i
pTccFnnCmlrCjDw6!
pTccFnnCmlrCjDw6
pTccFnnCmlrCjDw6z
pTccFnnCmlrCjDw6PAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDINGXXPAPADDI
Microsoft Code Signing PCA 20111
Microsoft Corporation1
Microsoft Corporation1
Redmond1
Washington1
241105144402Z
251105144402Z0
Microsoft Code Signing PCA 20111
Microsoft Corporation1
Microsoft Corporation1
Redmond1
Washington1
H-54+u
Microsoft Code Signing PCA 20111
Microsoft Corporation1
Microsoft Corporation1
Redmond1
Washington1
20241105144403Z
Manchester1
Sectigo Limited100.
'Sectigo Public Time Stamping Signer R35
Sectigo Limited1,0*
#Sectigo Public Time Stamping CA R360
240115000000Z
350414235959Z0n1
Manchester1
Sectigo Limited100.
'Sectigo Public Time Stamping Signer R350
x2<C>4C
https://sectigo.com/CPS0
9http://crl.sectigo.com/SectigoPublicTimeStampingCAR36.crl0z
9http://crt.sectigo.com/SectigoPublicTimeStampingCAR36.crt0#
http://ocsp.sectigo.com0
%2Ka~
Sectigo Limited1.0,
%Sectigo Public Time Stamping Root R460
210322000000Z
360321235959Z0U1
Sectigo Limited1,0*
#Sectigo Public Time Stamping CA R360
;http://crl.sectigo.com/SectigoPublicTimeStampingRootR46.crl0|
;http://crt.sectigo.com/SectigoPublicTimeStampingRootR46.p7c0#
http://ocsp.sectigo.com0
%59)$J+
G{JVHa
New Jersey1
Jersey City1
The USERTRUST Network1.0,
%USERTrust RSA Certification Authority0
210322000000Z
380118235959Z0W1
Sectigo Limited1.0,
%Sectigo Public Time Stamping Root R460
8hm)(od
?http://crl.usertrust.com/USERTrustRSACertificationAuthority.crl05
http://ocsp.usertrust.com0
avI&Q_
.TPfo:
Sectigo Limited1,0*
#Sectigo Public Time Stamping CA R36
241105144403Z0?
Sectigo Limited1.0,
%Sectigo Public Time Stamping Root R46
New Jersey1
Jersey City1
The USERTRUST Network1.0,
%USERTrust RSA Certification Authority
![:;6u(
Fast sample for malware analysis
$file_splitter$
pTccFnnCmlrCjDw6
PDFFWEFEF(
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FuckingShit
FileDescription
Fastkroak
FileVersion
1.0.0.0
InternalName
Fastkroak.exe
LegalCopyright
Copyright
FuckingShit 2024
LegalTrademarks
FuckingShit
OriginalFilename
Fastkroak.exe
ProductName
Fastkroak
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
Antivirus Signature
Bkav W64.AIDetectMalware.CS
Lionic Trojan.Win32.Agensla.i!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Gen:Variant.Jalapeno.18792
Cylance Unsafe
Zillya Clean
CrowdStrike win/malicious_confidence_90% (D)
Alibaba TrojanPSW:MSIL/Agensla.4f9ed122
K7GW Clean
K7AntiVirus Clean
huorong Trojan/MSIL.Agent.ru
Baidu Clean
VirIT Trojan.Win64.MSIL_Heur.A
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of MSIL/Kryptik.AMPU
APEX Clean
Avast Win64:MalwareX-gen [Trj]
Cynet Clean
Kaspersky HEUR:Trojan-PSW.MSIL.Agensla.gen
BitDefender Gen:Variant.Jalapeno.18792
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Jalapeno.18792
Tencent Msil.Trojan-QQPass.QQRob.Gajl
Sophos Mal/Generic-S
F-Secure Trojan.TR/Kryptik.loazv
DrWeb Trojan.PackedNET.3103
VIPRE Gen:Variant.Jalapeno.18792
TrendMicro Clean
McAfeeD ti!5B96147C1453
Trapmine Clean
CTX exe.trojan.msil
Emsisoft Gen:Variant.Jalapeno.18792 (B)
Ikarus Win32.Outbreak
FireEye Gen:Variant.Jalapeno.18792
Jiangmin Clean
Webroot Clean
Varist W64/ABTrojan.LBYO-2471
Avira TR/Kryptik.loazv
Fortinet MSIL/Kryptik.AMPU!tr
Antiy-AVL Clean
Kingsoft MSIL.Trojan-PSW.Agensla.gen
Gridinsoft Trojan.Win64.AsyncRAT.tr
Xcitium Clean
Arcabit Trojan.Jalapeno.D4968
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Trojan/Win.TrojanX-gen.C5690818
Acronis Clean
McAfee Artemis!7BD5E1E14B24
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.MalPack.MSIL
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H09K724
Rising Malware.Obfus/MSIL@AI.90 (RDM.MSIL2:FMpJx2w/KwB1R2F1bpZdmA)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
GData Gen:Variant.Jalapeno.18792
AVG Win64:MalwareX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.