phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
11.8.2.0

MD5:
fc62c2cefcc3c34aa03621a0f5eef22a

SHA-1:
30aa3badaf838367a080bea62037e2f178e68975

SHA-256:
d6896f24026e4aa52c6d128d1f1b24922f55f375b9786000841e20d42b10ee6e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:14:33 AM UTC  (today)

File size:
17.4 MB (18,210,432 bytes)

Product version:
11.8.2.0

Copyright:
Copyright (C) 2014 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\phbot v11.7.9\phbot.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 12:13:03 PM

Valid to:
11/8/2015 10:34:04 PM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
11/25/2014 10:31:03 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:UTvsk8hieu7OCzw+CQpg3M+c8GLB7Vm5onERTRV0I:UfeWk+CIgcD3B7g5onPI

Entry address:
0x182A190

Entry point:
55, E9, 15, 1C, A3, 00, 00, 00, 4C, 6F, 63, 61, 6C, 41, 6C, 6C, 6F, 63, 00, 8D, 64, 24, 24, 0F, 87, 00, BE, 13, 01, 14, 41, FE, C8, F5, 0F, 9A, C0, 29, FB, 0F, 99, C0, C0, C8, 07, 66, C1, FF, 0A, 01, E3, E9, 26, D4, 13, 01, 8A, 5C, 24, 08, E8, 00, 18, A1, 00, 4D, B4, 03, 9C, 78, 40, D5, 9A, DB, 3F, DF, 43, DB, 40, D1, A8, 60, 64, 11, 0A, A4, F8, 73, C3, 67, 6E, 91, 84, 99, B0, BA, CB, 42, 8C, AD, D5, E8, 9A, 44, F9, DB, 51, 22, 88, 0E, 89, F6, 72, A2, 1F, 7A, F3, 08, E5, C0, A9, 5B, D9, 93, 7A, 18, 7B, D3...
 
[+]

Entropy:
7.9206  (probably packed)

Code size:
9.2 MB (9,640,960 bytes)

Scan phBot.exe - Powered by Reason Core Security