FastLoader

First seen
2020-02-01 00:00:00
Malware type
downloader, screen-capture
Family
Malware family
Profile updated
2026-07-07 15:01:05

Targeted industries: financial-services

Context

FastLoader is a small .NET downloader, which name comes from PDB strings seen in samples. It typically downloads TrickBot. It may create a list of processes and uploads it together with screenshot(s). In more recent versions, it employs simple anti-analysis checks (VM detection) and comes with string obfuscations.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Fastloader (report)

External references