vkbot.exe

VkBot

VkBot Team

This is a setup program which is used to install the application. The file has been seen being downloaded from vkbot.ru.
Publisher:
VkBot Team

Product:
VkBot

Description:
bot for vk.com

Version:
3.5.4.0

MD5:
9bda9a65cfd66fbee859982b9b18d932

SHA-1:
3c0ffbc739ef498c95d4d3af285980168d9bebfb

SHA-256:
247d48cf74d386766aa5ed1bf7d70fc851f2db66a216bfc33d847cdfacbb4819

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/27/2024 1:33:40 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Tool.VkBot.39
9.0.1.0288

File size:
620.8 KB (635,678 bytes)

Product version:
3.5.4.0

Copyright:
© 2009 - 2015

Original file name:
VkBot

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\vkbot.exe

File PE Metadata
Compilation timestamp:
4/3/2014 6:47:00 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:7SPNL6pW1SJwpRhswsL2aNQvJHeEE6Bnvi+t7Nvc+UrK4m7rS:7SVLyWoypT2bQvJ+ErBa+J+NryK

Entry address:
0x86080

Entry point:
B8, 04, 0C, 64, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 7D, 01, 35, 26, 75, AE, 42, 88, 9F, 98, 42, 44, 7C, 7D, 85, 8F, 13, C6, B5, 0D, 86, 35, A9, 49, 95, 8B, 7E, E4, 5D, 18, BD, 0B, 3D, FE, 07, 10, 59, 07, 3F, 34, 36, 5A, 15, 88, 79, 8D, 14, 72, DB, C0, A5, 9C, 94, C4, C7, 49, F2, 4D, E5, 3E, F3, A3, C7, DE, CD, 0E, A7, 46, D2, 23, A0, 44, 24, 77, B5, B1, 00, 39, 93, CF, 98, EE, 79, C0, AA, 98, 14, 49, E6, C7, BA, 15, 97...
 
[+]

Packer / compiler:
PECompact v2

Code size:
587 KB (601,088 bytes)

The file vkbot.exe has been seen being distributed by the following URL.

Scan vkbot.exe - Powered by Reason Core Security