phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
11.8.1.0

MD5:
c1d77f6ca2f11113c3e04bbcd36d5571

SHA-1:
5e8f6382fcdf080572f979cd1595e4741aedec5f

SHA-256:
b1a295caff52d7485dfccc6b20c359359695500662befed767abf72624f02d5e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 9:51:33 AM UTC  (today)

File size:
14.7 MB (15,376,512 bytes)

Product version:
11.8.1.0

Copyright:
Copyright (C) 2014 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 8:13:03 PM

Valid to:
11/9/2015 6:34:04 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
10/30/2014 2:03:50 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:gsf6blwNVKQAMscu1z58eabTt25nYiHzJdcll:gsfYDcupWo5nYaqll

Entry address:
0x17E3F12

Entry point:
68, 9C, A2, 81, B2, 60, 55, C7, 44, 24, 24, 51, 90, BF, ED, E9, 0E, D8, E7, 00, 50, 53, 41, 50, 49, 2E, 44, 4C, 4C, 00, F5, 66, 0F, A3, ED, 01, 45, E0, F7, C2, 85, 87, 8D, 6C, 83, 7D, E0, FF, 8D, 64, 24, 04, 0F, 8C, EC, AC, 22, 00, 50, 9C, 8D, 64, 24, 08, 0F, 85, D3, 81, 00, 00, 98, E9, 57, 90, FE, FF, 04, 5F, 9B, E8, 91, 6A, 43, C8, 57, E3, 6C, 9C, 55, 8E, 9A, 3E, 6A, B7, 38, 68, D5, AE, 2F, 08, AD, 86, 2F, 5F, FC, D5, 5E, 37, 83, D0, AE, 8A, AA, F7, EC, 42, AF, 49, DF, B8, E4, FB, 6B, 4D, 0E, 48, 6E, 92...
 
[+]

Entropy:
7.9998  (probably packed)

Code size:
9.2 MB (9,633,280 bytes)

Scan phBot.exe - Powered by Reason Core Security