phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
11.8.0.0

MD5:
78c063a049d9f8c5a0a3930d3f432069

SHA-1:
5882208b80d1ab0fca4df869206b5efcbfd0d3c8

SHA-256:
84cee9d249d8601c56c08d578bec25ac78f084aa32b434b6fd590755fa695050

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 9:30:22 AM UTC  (today)

File size:
10.8 MB (11,338,880 bytes)

Product version:
11.8.0.0

Copyright:
Copyright (C) 2014 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 8:13:03 PM

Valid to:
11/9/2015 6:34:04 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
10/15/2014 7:58:43 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
196608:PVjAC1VizUBsYrfhoEi4skOnpxBDbMYYGvfB0xlRdyx0ILD1oewybJF697ArIo:POCamsWfhJiNkOrBHMYNXaxljy51TwaL

Entry address:
0x17E6000

Entry point:
68, 48, 78, 00, 00, 89, 34, 24, 68, FE, 17, 00, 00, 89, 04, 24, 68, 60, 6A, 00, 00, 89, 1C, 24, E8, 01, 00, 00, 00, CC, 8B, 04, 24, 50, 89, E0, 55, BD, 04, 00, 00, 00, 2D, 30, 0A, 20, 43, 01, E8, 05, 30, 0A, 20, 43, 5D, 05, 04, 00, 00, 00, 87, 04, 24, 5C, 50, 8B, 1C, 24, 55, 89, E5, 81, C5, 04, 00, 00, 00, 81, C5, 04, 00, 00, 00, 87, 2C, 24, 8B, 24, 24, 56, 57, BF, DA, 49, A0, 0C, BE, 25, B6, 5F, F3, 01, FE, 5F, 05, 09, 56, F5, 49, 29, F0, 2D, 09, 56, F5, 49, 5E, 55, 50, B8, 76, 3E, 13, 43, BD, 8A, A1, 23...
 
[+]

Entropy:
7.9908  (probably packed)

Code size:
9.9 MB (10,420,736 bytes)

Scan phBot.exe - Powered by Reason Core Security