asterctl.exe

IBIK, LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘asterctl’.
Publisher:
IBIK, LLC  (signed and verified)

MD5:
5cd77bef0f24999e7dfd641640334a45

SHA-1:
d6831b2f8134ca63c3a69629b85a59eb122ec1c2

SHA-256:
7f6305e2a617ac138689c0a87025550c4bc47bcfe86d3221c951ae1073aca69c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:13:48 PM UTC  (today)

File size:
9.3 MB (9,765,064 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\aster\asterctl.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
11/5/2015 7:56:44 PM

Valid to:
1/23/2018 6:21:37 PM

Subject:
CN="IBIK, LLC", O="IBIK, LLC", L=Moscow, S=Moscow, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D88E3D9EA407112D3BA4F31769DAB134

File PE Metadata
Compilation timestamp:
2/10/2017 10:49:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x1F03CF4

Entry point:
EB, 08, 00, B0, 36, 00, 00, 00, 00, 00, 60, E8, 00, 00, 00, 00, 5D, 81, ED, 10, 00, 00, 00, 81, ED, F4, 3C, F0, 01, E9, 04, 00, 00, 00, 74, 39, 62, EE, B8, F4, 3C, F0, 01, 03, C5, 81, C0, 4C, 00, 00, 00, B9, 8D, 05, 00, 00, BA, 72, 68, C3, 37, 30, 10, 40, 49, 0F, 85, F6, FF, FF, FF, E9, 04, 00, 00, 00, 3B, 01, 41, B3, F9, BF, F9, FB, 4E, 72, 72, 72, F3, B3, 8A, 72, 72, 72, 71, BF, CA, 74, 72, 72, 72, C8, 5A, 72, 72, 72, 85, 90, 71, BA, F9, F3, 7E, 72, 72, 72, 71, B7, 22, 22, 1A, B2, 60, 29, 72, 1A, 41, 58...
 
[+]

Entropy:
7.9801  (probably packed)

Code size:
1.6 MB (1,685,504 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
asterctl

Command:
C:\Program Files\aster\asterctl.exe -autostart


Scan asterctl.exe - Powered by Reason Core Security