phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
12.1.17.0

MD5:
ceba0c0756cd7a7af605a1d95ad97f76

SHA-1:
56ca133fa00ca66eb0cf72f3df4f08ea311cfed5

SHA-256:
a6a1e0f82c3803b67326bb9261340e06554eeca2bcb9bb60da6562db752cf32f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:25:32 AM UTC  (today)

File size:
19.5 MB (20,431,344 bytes)

Product version:
12.1.17.0

Copyright:
Copyright (C) 2015 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 2:13:03 PM

Valid to:
11/9/2015 12:34:04 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
6/29/2015 8:36:57 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:gi4UH1nB1sfgxyqY/faldM9JzDywSRAzKfGZElo:d4ev/u/WM9JGC

Entry address:
0x211346D

Entry point:
9C, E9, 6A, 69, 8C, FF, 00, 00, 4E, 6F, 74, 69, 66, 79, 57, 69, 6E, 45, 76, 65, 6E, 74, 00, 98, 0F, 94, C4, E9, CE, C8, 8C, FF, 00, 00, 3F, 69, 64, 40, 3F, 24, 6E, 75, 6D, 5F, 67, 65, 74, 40, 5F, 57, 56, 3F, 24, 69, 73, 74, 72, 65, 61, 6D, 62, 75, 66, 5F, 69, 74, 65, 72, 61, 74, 6F, 72, 40, 5F, 57, 55, 3F, 24, 63, 68, 61, 72, 5F, 74, 72, 61, 69, 74, 73, 40, 5F, 57, 40, 73, 74, 64, 40, 40, 40, 73, 74, 64, 40, 40, 40, 73, 74, 64, 40, 40, 32, 56, 30, 6C, 6F, 63, 61, 6C, 65, 40, 32, 40, 41, 00, 00, 00, 47, 65...
 
[+]

Entropy:
7.8946  (probably packed)

Code size:
9.4 MB (9,885,184 bytes)

Scan phBot.exe - Powered by Reason Core Security