phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
12.0.39.0

MD5:
aea2dc95d5d9e2bd7cf96cc9bf9c6870

SHA-1:
1ca325b34e175cdb4be7fe32b06cc3e559e9b864

SHA-256:
cb7e8def801a653ff4f6f96d40c3e1a35e7126bf2a55220c6cd91417dc807b0c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/10/2024 6:17:22 PM UTC  (today)

File size:
17.4 MB (18,292,872 bytes)

Product version:
12.0.39.0

Copyright:
Copyright (C) 2015 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\phbot.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 12:13:03 PM

Valid to:
11/8/2015 10:34:04 PM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
1/30/2015 2:27:46 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:c0lWuPf/bBxCqSmoklFtzCcfc2USn5LyxF1rdq5OyzL/9:cODP3bHCqSZklP2ul5LwCzL/9

Entry address:
0x2694F53

Entry point:
9C, 60, C7, 44, 24, 20, FC, 17, 32, 99, E9, 34, FF, FF, FF, 8D, 64, 24, 28, 0F, 82, C6, DB, FF, FF, 66, 0F, BA, E2, 0C, 68, 64, A0, 61, 6B, F5, 3B, 45, F0, FF, 34, 24, 8D, 64, 24, 08, 0F, 83, AB, DB, FF, FF, 66, D3, FB, 66, C1, D3, 04, 89, C3, 0F, C9, 66, F7, C3, 3F, 45, 0F, C9, 89, C7, 66, 09, E9, E8, 48, D6, 12, FF, 00, 00, 47, 65, 74, 4D, 6F, 64, 75, 6C, 65, 46, 69, 6C, 65, 4E, 61, 6D, 65, 57, 00, D4, C7, F4, 1E, 8E, 9B, 34, D3, A3, 50, A7, CC, AE, C3, 33, 70, B8, 4C, BD, C4, C2, C6, 72, 49, 50, 4D, CC...
 
[+]

Entropy:
7.9058  (probably packed)

Code size:
9.2 MB (9,647,104 bytes)

Scan phBot.exe - Powered by Reason Core Security