InetCntrl.exe

Bsecure Internet Protection Services

Bsecure Technologies

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘InetCntrl’.
Publisher:
Bsafe Online, Inc.  (signed by Bsecure Technologies)

Product:
Bsecure Internet Protection Services

Description:
Bsecure Internet Protection Services - Application

Version:
5.0.3

MD5:
319891f019bd5573436df1d1ed11d59b

SHA-1:
8addd8a9efbf332427ee27cd31f8d30c8c0b5e48

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 10:24:07 PM UTC  (today)

File size:
821.3 KB (841,008 bytes)

Product version:
5.0.3

Copyright:
Copyright (C) Bsafe Online, Inc. All rights reserved.

Original file name:
InetCntrl.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\inetcntrl\inetcntrl.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/1/2007 6:00:00 PM

Valid to:
2/4/2008 5:59:59 PM

Subject:
CN=Bsecure Technologies, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Bsecure Technologies, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4B1332223E9EE75A741979C1FD97A0C8

File PE Metadata
Compilation timestamp:
1/29/2008 2:23:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:YXsm5XNHw3fblqBbhOz+0h8B4/UgL2ZAQVSf+yUrT7a+od7fiLWWgGe8vpgzb:YXsm5dHkhqBbM+V9gUAQofiqW68+

Entry address:
0x7EC90

Entry point:
E8, C9, FB, 00, 00, E9, 16, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 24, 18, 4C, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 24, 18, 4C, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Entropy:
6.4324

Code size:
628 KB (643,072 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
InetCntrl

Command:
C:\Windows\System32\inetcntrl\inetcntrl.exe


Scan InetCntrl.exe - Powered by Reason Core Security