vkbot.exe

VkBot

VkBot Team

This is a setup program which is used to install the application. The file has been seen being downloaded from vkbot.ru.
Publisher:
VkBot Team

Product:
VkBot

Description:
bot for vk.com

Version:
2.7.5.0

MD5:
f960da97835dc63a481677c833ff0d96

SHA-1:
3eca33c3095008eb916da5b4ad04a9ab212b8b92

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/30/2024 8:00:52 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoA
1.3.0.4959

File size:
636.8 KB (652,090 bytes)

Product version:
2.7.5.0

Copyright:
© 2009 - 2013

Original file name:
VkBot

File type:
Executable application (Win32 EXE)

Common path:
C:\Documents and Settings\{user}\My documents\downloads\vkbot.exe

File PE Metadata
Compilation timestamp:
7/9/2013 4:35:15 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:UzFdRPvUyQJ9dWGoapTdQngRIfrnZXR1aLaJwOndn9PvBbLlbPV+cJ:UDRVQ4sTOn4IDZXUaJwkd9PvBd9+k

Entry address:
0x87800

Entry point:
B8, 20, 6A, 64, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, EB, BD, C5, F2, 9A, B7, EB, 3E, 74, D1, 74, C7, 41, CE, CD, 1E, 4F, 14, 3A, 12, D4, 4E, 19, 56, 8C, AD, 8B, 18, B6, A1, DB, 3E, 86, 14, DA, 72, 48, FE, FF, 7A, F8, 90, 63, 69, 42, 13, 2C, E3, 7B, C1, EC, B4, D2, AF, 3B, A3, 31, EB, B9, B4, A4, 81, F5, 8F, 71, 67, 31, 13, 06, FF, 68, 8F, 7C, BE, A9, 83, 8B, C0, 86, 40, FF, 04, 52, 54, 61, 45, F1, 97, 24, 9E, C0, C3, 7F...
 
[+]

Packer / compiler:
PECompact v2

Code size:
593 KB (607,232 bytes)

The file vkbot.exe has been seen being distributed by the following URL.

Scan vkbot.exe - Powered by Reason Core Security