Ryan Clouser

Publisher Information

Ryan Clouser is a software publisher located in Camp Hill, Pennsylvania in the United States*. There is one additional code signing certificate issued to this publisher.
Authority:
StartCom Ltd.

Valid from:
11/8/2013 2:13:03 PM

Valid to:
11/9/2015 12:34:04 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0bb8

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

CMC Antivirus
Trojan.Win32.Krap.1!O
85.19%

Vba32 AntiVirus
Malware-Cryptor.General.6
37.04%

IKARUS anti.virus
not-a-virus:AdWare.Amonetize
29.63%

Bkav FE
HW32.Packed
22.22%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
3.70%

Emsisoft Anti-Malware
Gen:Variant.Jaik.8791
3.70%

F-Secure
Gen:Variant.Jaik.8791
3.70%

Lavasoft Ad-Aware
Gen:Variant.Jaik.8791
3.70%

Norman
Gen:Variant.Jaik.8791
3.70%

MicroWorld eScan
Gen:Variant.Jaik.8791
3.70%

4 / 68      (inconclusive)
phBot.exe (phBot by ProjectHax)  (8451a469bac36e10887e7e49b5056392)

4 / 68      (inconclusive)
phBot.exe (phBot by ProjectHax)  (d97698fa1f83736a710cb5e7baa28193)

4 / 68      (inconclusive)
phBot.exe (phBot by ProjectHax)  (0aa07f19cda0e5ed1ea0b8a710766134)

4 / 68      (inconclusive)
phBot.exe (phBot by ProjectHax)  (3a044bb4d06fac7f6c5f70c835a5ab45)

3 / 68
phBot.exe (phBot by ProjectHax)  (2a768231267af8768fd02278dd24cb3f)

3 / 68
phBot.exe (phBot by ProjectHax)  (a2d9754729bd7a0c5237a3ea82cd5b8f)

1 / 68
Manager.exe (Manager by ProjectHax)  (202d7fb2ffbf4b84b32f34f6c513d559)

0 / 68
11.exe (phBot by ProjectHax)  (aba572f79ff6996c33ed1d37f10ea70f)

4 / 68
phBot.exe (phBot by ProjectHax)  (2080c838ab00233e04cec7ab5729a957)

0 / 68
phBot.exe (phBot by ProjectHax)  (0510013f844b085db0aa9374048853f9)

3 / 68
phBot.exe (phBot by ProjectHax)  (315024d0b71b3698a0b7440f153c36ca)

0 / 68
phbot_old.exe (phBot by ProjectHax)  (c446199c5320444dbb9ed3e2ec4120f3)

9 / 68      (Malware)
Manager.exe (Manager by ProjectHax)  (58a05e4b7bb86694b5d8fee4829afe96)

2 / 68
phBot.exe (phBot by ProjectHax)  (d339f860d0ff2a66e413933234d97d07)

1 / 68
Manager.exe (Manager by ProjectHax)  (c7ba7a2dbabca05d5b4e3a40fd9e0cca)

0 / 68
Manager.exe (Manager by ProjectHax)  (f45677ed9875080d5d30144d44d1cd51)

0 / 68
python34.dll (Python by Python Software Foundation)  (1da6e467e9c58eb23c4597df68650d1e)

1 / 68
phBot.exe (phBot by ProjectHax)  (1e03649ad435d08b9422207006fd080d)

1 / 68
phBot.exe (phBot by ProjectHax)  (a4820f0b33b4ae47476d057cf0ad69ff)

1 / 68
Manager.exe (Manager by ProjectHax)  (8c12cdb3c0077a7a8def5ae26d733d67)

1 / 68
phBot.exe (phBot by ProjectHax)  (ceba0c0756cd7a7af605a1d95ad97f76)

0 / 68
phBot.exe (phBot by ProjectHax)  (00b3984bebc7a6e123282bdf426291d8)

0 / 68
Manager.exe (Manager by ProjectHax)  (7894c58cc09763423e379ef6ee261ec6)

1 / 68
phBot.exe (phBot by ProjectHax)  (07795d37a2256a5f8dd6f2edff3567d1)

1 / 68
phBot.exe (phBot by ProjectHax)  (48c427fae92d9f33e5fb35a7bbd10f67)

1 / 68
phBot.exe (phBot by ProjectHax)  (6a58241fb63f6aff7e10d82c1de96516)

1 / 68
phBot.exe (phBot by ProjectHax)  (14174687ae15327f6cd1f0fdc989b2c8)

1 / 68
phBot.exe (phBot by ProjectHax)  (7bd2a394472f1db7328b50593103f024)

1 / 68
phBot.exe (phBot by ProjectHax)  (0edab42f233f538a0cec6a0d8e42ac42)

0 / 68
phBot.exe (phBot by ProjectHax)  (540e95108cc2e792971482caa5c40b3e)

 
Latest 30 of 39 files

Downloads URLs for files signed by Ryan Clouser.

1 / 68
http://cdn.phbot.org/.../phBot.exe  (48c427fae92d9f33e5fb35a7bbd10f67)

1 / 68
http://cdn.phbot.org/.../phBot.exe  (14174687ae15327f6cd1f0fdc989b2c8)

The following websites host and distribute files published by Ryan Clouser.

The following certificate is also signed by Ryan Clouser.

138102673F594B  (Nov 03, 2015 to Nov 03, 2017)

* Note, the details and description above are based on the code signing digital signature issued to Ryan Clouser by StartCom Ltd. on November 08, 2013 with the serial number '0bb8'.