DQVV.exe

DQVV

PRAVIS, LLC

Publisher:
PRAVIS, LLC  (signed and verified)

Product:
DQVV

Version:
1.0.0.0

MD5:
58c1a77db341d0c60f7a3306854e4ad6

SHA-1:
82f67b616f0f0c875813d7c3f10694641d8d868d

SHA-256:
9663d411b634730aad220467ec0f783b116c8138dced5681a895332d2f5b64c1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 9:47:52 AM UTC  (today)

File size:
237.5 KB (243,192 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
DQVV.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\dqvv.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
6/26/2014 12:28:00 AM

Valid to:
6/25/2015 11:05:11 PM

Subject:
CN="PRAVIS, LLC", O="PRAVIS, LLC", L=IRVINE, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
278D3BC6F57760

File PE Metadata
Compilation timestamp:
6/27/2014 3:46:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:PuUuAqwN+gEBvLLartlkAmjW983Zi2LLoQYvKfPdO9HcwKxSFDb8iaH7BdB8jLrC:wBU+zmrtGI83PUvi89dET8jL8xBq/0

Entry address:
0x219FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
3.7800

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
127 KB (130,048 bytes)

The file DQVV.exe has been seen being distributed by the following URL.

Scan DQVV.exe - Powered by Reason Core Security