topbankingsetup.exe

Banking 4W

Subsembly GmbH

This is a setup and installation application. The file has been seen being downloaded from subsembly.com.
Publisher:
Subsembly GmbH  (signed and verified)

Product:
Banking 4W

Description:
Banking 4W Setup

Version:
3.7.2.4868

MD5:
77053baba029f0a6a838dd4aa474b7df

SHA-1:
410dabd88b3f19b95aa9c3df5d66bb4dd2d7eea7

SHA-256:
da2bad3e00ea27ca05f236f974b39338c78548f3cd360e2d2bd550242d910ef4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 5:13:53 PM UTC  (today)

File size:
3.5 MB (3,709,560 bytes)

Product version:
3.7.2.4868

Copyright:
Copyright © 2004-2013 Subsembly GmbH

Trademarks:
Subsembly® ist eine eingetragene Marke von Andreas Selle

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\users\{user}\downloads\topbankingsetup.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
1/9/2012 3:50:06 PM

Valid to:
3/17/2015 8:35:08 AM

Subject:
E=info@subsembly.com, CN=Subsembly GmbH, O=Subsembly GmbH, L=Muenchen, S=Bayern, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121EF9582EEDFFD23064CB3E6FDACC96594

File PE Metadata
Compilation timestamp:
4/30/2013 2:13:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:WpaBv9TGup3OgPk03IvI5u9IipM35MLwkXVUXMNL8vavDe8xHj:WohNlp3OgPIgYPsqXKMNLaZ8hj

Entry address:
0x443B

Entry point:
E8, E8, 31, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 58, DD, 40, 00, 89, 0D, 54, DD, 40, 00, 89, 15, 50, DD, 40, 00, 89, 1D, 4C, DD, 40, 00, 89, 35, 48, DD, 40, 00, 89, 3D, 44, DD, 40, 00, 66, 8C, 15, 70, DD, 40, 00, 66, 8C, 0D, 64, DD, 40, 00, 66, 8C, 1D, 40, DD, 40, 00, 66, 8C, 05, 3C, DD, 40, 00, 66, 8C, 25, 38, DD, 40, 00, 66, 8C, 2D, 34, DD, 40, 00, 9C, 8F, 05, 68, DD, 40, 00, 8B, 45, 00, A3, 5C, DD, 40, 00, 8B, 45, 04, A3, 60, DD, 40, 00, 8D, 45, 08, A3, 6C, DD, 40...
 
[+]

Code size:
35 KB (35,840 bytes)

The file topbankingsetup.exe has been seen being distributed by the following URL.

Scan topbankingsetup.exe - Powered by Reason Core Security