<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Encrypted on blackdemon112</title><link>https://www.blackdemon112.page/tags/encrypted/</link><description>Recent content in Encrypted on blackdemon112</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Wed, 05 Aug 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://www.blackdemon112.page/tags/encrypted/index.xml" rel="self" type="application/rss+xml"/><item><title>Maskgram-Malops</title><link>https://www.blackdemon112.page/posts/maskgram-malops/</link><pubDate>Wed, 05 Aug 2026 00:00:00 +0000</pubDate><guid>https://www.blackdemon112.page/posts/maskgram-malops/</guid><description>Initial Analysis As I get the file i check its file type , It turns out to be a PE32 which is standard windows executable
Then I check for any sort of packing using DIE , which didn&amp;rsquo;t show any signs of a packed binary. It also revealed that it was written in Go.
STAGE 1 Go2Bypass Right from the start we could see that this binary used the Go2Bypass framework.</description></item></channel></rss>