killemall.scr

KillEmAll

John Shaw

Publisher:
Foolish IT  (signed by John Shaw)

Product:
KillEmAll

Description:
Attempts to terminate all running non-essential processes.

Version:
1.02.0004

MD5:
b1d7a26ced8993632920b456f054612a

SHA-1:
56d758558c629a548a59cba8bc74b6df797f9cd7

SHA-256:
7b77b471e8a128c20bd81295925baec1d52ce3abd15d1a911be00e769980f8aa

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 10:44:44 PM UTC  (today)

File size:
358.9 KB (367,496 bytes)

Product version:
1.02.0004

Copyright:
Foolish IT

Original file name:
KillEmAll.exe

Language:
English (United States)

Common path:
C:\users\{user}\downloads\d7\killemall.scr

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
2/16/2012 10:30:13 AM

Valid to:
2/17/2014 7:18:06 AM

Subject:
E=nick@obxcompguy.com, CN=John Shaw, L=Manteo NC, S=North Carolina, C=US, Description=Q060IjEkExVuy25F

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0545

File PE Metadata
Compilation timestamp:
1/2/2012 10:13:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:/+qxcPJFjsdwbQFdJQc/Y++uEI7QqMfNePOmR:3xcJFjsdwUvJQc/1f7JUNePx

Entry address:
0x5614

Entry point:
68, 04, 5A, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 17, 1E, C6, FF, A5, 4D, 5A, 48, B8, 62, DD, 1C, A1, 1A, 10, FF, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 4B, 69, 6C, 6C, 45, 6D, 41, 6C, 6C, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 11, 00, A4, 8D, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 28, 91, 40, 00, 68, 61, 45, 00, 00, 00, 00, 00, 88, 1D, F6, 03, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.6925

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
340 KB (348,160 bytes)

Scan killemall.scr - Powered by Reason Core Security