phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
1.1.0.0

MD5:
d639d128b7d341f75d51d03aac75893e

SHA-1:
6a1a31c135eae991a6b02a744d8b6a6eee6960a5

SHA-256:
34acf4cc5d4ee0115ef3343b5232ed8923f21a67cd12e4c717fd311591d492c5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
3/9/2025 9:48:12 PM UTC  (today)

File size:
20.3 MB (21,245,392 bytes)

Product version:
1.1.0.0

Copyright:
Copyright (C) 2016 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\phbot.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/3/2015 10:42:14 AM

Valid to:
11/3/2017 11:53:45 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
138102673F594B

File PE Metadata
Compilation timestamp:
10/24/2016 10:28:05 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x31C86A9

Entry point:
EB, 08, 5F, 8C, 42, 00, 00, 00, 00, 00, E9, E0, 37, FF, FE, 00, 00, 00, 00, 00, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D0, 0B, 34, 01, 10, 87, 5C, 03, 42, 19, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 19, D4, 89, 00, EE, 72, 94, 00, 09, 73, 94, 00, 32, 73, 94, 00, 5B, 73, 94, 00, 84, 73, 94, 00, AD...
 
[+]

Entropy:
7.9997  (probably packed)

Code size:
9.7 MB (10,211,840 bytes)

Scan phBot.exe - Powered by Reason Core Security