vkbot.exe

VkBot

VkBot Team

This is a setup program which is used to install the application. The file has been seen being downloaded from vkbot.ru and multiple other hosts.
Publisher:
VkBot Team

Product:
VkBot

Description:
bot for vk.com

Version:
3.2.2.0

MD5:
229c665ab48b0f22a6b60ba7fd8b88d8

SHA-1:
fdcfdd3e9d07b08c9b49ee1a4394e65c7e831501

SHA-256:
9c54023e584e74d7de835d78635aba13b982aac669fc377bdf8fc4e00f7e2dda

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 10:31:39 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoA
1.3.0.4959

File size:
633.3 KB (648,494 bytes)

Product version:
3.2.2.0

Copyright:
© 2009 - 2014

Original file name:
VkBot

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\vkbot.exe

File PE Metadata
Compilation timestamp:
4/3/2014 6:47:00 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:RSPNL6pW1SJwpRhswsL2aNQvJ5G07fOH/3/3OcaFvasZbE7C1l22Lcv/U4gy:RSVLyWoypT2bQvJwwfS39aFvzoC+o2/N

Entry address:
0x86080

Entry point:
B8, 14, 6C, 64, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 82, 5A, CB, DD, A0, 94, A4, 42, E0, 4E, B6, FC, 31, B4, 95, CD, B6, 2E, 82, 29, 10, F0, 7E, 80, F1, 89, 42, F3, 30, A4, B6, 8C, 65, 12, 92, 2D, E9, 3E, 89, 52, EC, 73, 67, AF, 54, CD, 35, F3, B8, 05, 78, 8F, DD, 6B, DA, 5E, 5E, 26, AE, DD, B0, B7, 3D, D7, 7F, 44, B5, 51, 53, 5D, 39, 51, 03, D6, 6F, 7F, 96, FD, E6, 49, B6, 01, 5D, DF, 77, DA, 45, 3D, EC, 2F, 80, 73, 69...
 
[+]

Packer / compiler:
PECompact v2

Code size:
587 KB (601,088 bytes)

The file vkbot.exe has been seen being distributed by the following 2 URLs.

Scan vkbot.exe - Powered by Reason Core Security