phbot_update.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
14.0.8.0

MD5:
ba10b5b1e1cef3b4d896e1e973a991f2

SHA-1:
58248539b3adbbb19d5102f20405a203cb02991b

SHA-256:
c59982c1f726eda101b906080bcc908e0f87b250e52f9cd2bfb9888eeb17868e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 9:50:39 AM UTC  (today)

File size:
13.3 MB (13,964,272 bytes)

Product version:
14.0.8.0

Copyright:
Copyright (C) 2015 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 2:13:03 PM

Valid to:
11/9/2015 12:34:04 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
8/29/2015 10:10:47 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
196608:zcHzj747Iyuxodyey6LgI/jh6sWrvFYkuPCGZt0cIE6dmmiFwmsJwB3U4Dw9y6uO:ATIfuxoY16dUs17rjBwmsJwJD2zSjJEn

Entry address:
0x22F8C16

Entry point:
EB, 08, A0, 28, D4, 00, 00, 00, 00, 00, E9, 04, 95, 6A, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 40, 10, 22, 01, 80, 8C, 6F, 02, 8C, 19, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 19, 46, 88, 00, C0, C6, 92, 00, E9, C6, 92, 00, 04, C7, 92, 00, 2D, C7, 92, 00, 56, C7...
 
[+]

Entropy:
7.9992  (probably packed)

Code size:
13.3 MB (13,952,000 bytes)

Scan phbot_update.exe - Powered by Reason Core Security