lt2update2013-12-11.exe

MeinGeld

Buhl Data Service GmbH

This is a setup program which is used to install the application. The file has been seen being downloaded from update3.buhl-data.com and multiple other hosts.
Publisher:
Buhl Data Service GmbH  (signed and verified)

Product:
MeinGeld

Description:
LetsTrade Updater

Version:
0.9.16.0

MD5:
a649eeaaa98096b27a2ddbb37aac2a69

SHA-1:
05a3d61a3fbf4649ce0b5123c7c1303a30f95c2a

SHA-256:
f0349a50541315d58ee67cc6ea1c8c011bb7c8006e994487e18f5e20ac7de41b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/5/2025 4:57:11 PM UTC  (today)

File size:
10.6 MB (11,097,424 bytes)

Product version:
1.0.0.0

Copyright:
©2009 Buhl Data Service GmbH

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\lt2update2013-12-11.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/30/2013 1:00:00 AM

Valid to:
12/29/2016 12:59:59 AM

Subject:
CN=Buhl Data Service GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Buhl Data Service GmbH, L=Neunkirchen, S=NRW, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
73E242F3BA07CAC961E86122803404A9

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:SIDhXnQn/MX+PwSkUZJL0JGqRdJQ7bh6NZzG+zZRzj1uJFk:SKnA/Mu4M0JGqRdJTG+LzjIi

Entry address:
0xC05F4

Entry point:
55, 8B, EC, 83, C4, F4, B8, 54, 02, 4C, 00, E8, 78, 60, F4, FF, A1, B8, 30, 4C, 00, 8B, 00, E8, C4, 70, F8, FF, 8B, 0D, DC, 2D, 4C, 00, A1, B8, 30, 4C, 00, 8B, 00, 8B, 15, 38, 6F, 4B, 00, E8, C4, 70, F8, FF, A1, DC, 2D, 4C, 00, 8B, 00, 8B, 15, B8, 30, 4C, 00, 8B, 12, 89, 82, BC, 00, 00, 00, C7, 82, B8, 00, 00, 00, F8, 72, 4B, 00, A1, B8, 30, 4C, 00, 8B, 00, E8, 19, 71, F8, FF, E8, D8, 33, F4, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
766 KB (784,384 bytes)

The file lt2update2013-12-11.exe has been seen being distributed by the following 2 URLs.

https://update3.buhl-data.com/LT/update/.../LT2Update2013-12-11.exe

Scan lt2update2013-12-11.exe - Powered by Reason Core Security