pokerclient.exe

Cake Poker

Veneelco Limited

The application pokerclient.exe by Veneelco Limited has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Cake Gaming N.V.  (signed by Veneelco Limited)

Product:
Cake Poker

Version:
2.0.1.3715

MD5:
91c4a2514bd3890ee1b5847b7a274eac

SHA-1:
7295199de6d00fb375c37bd4ba01ba0ee167b69a

SHA-256:
2903c70c59f393ee8119604cce4d3914eb9899b2ca59b5a4697e10a1fb91b116

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 5:56:08 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.1.25.10

File size:
12.2 MB (12,767,984 bytes)

Product version:
2.0.1.3715

Copyright:
Copyright © 2010 Cake Gaming N.V. All rights reserved.

Trademarks:
Cake Poker is a trademark of Cake Gaming N.V.

Original file name:
Skin.Sbet.dll

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\sportsbetting.com 2.0\pokerclient.exe

Digital Signature
Authority:
TC TrustCenter GmbH

Valid from:
5/17/2010 5:16:44 AM

Valid to:
5/17/2013 5:16:44 AM

Subject:
CN=Veneelco Limited, OU=TC Publisher ID for Authenticode, O=Veneelco Limited, L=Nicosia, C=CY

Issuer:
CN=TC TrustCenter Class 2 L1 CA XII, OU=TC TrustCenter Class 2 L1 CA, O=TC TrustCenter GmbH, C=DE

Serial number:
789A000100024B52004194A5BFE9

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x25C8

Entry point:
60, 9C, E9, CD, FF, FF, FF, C3, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, D8, 63, 00, 80, 10, 00, 00, 00, 9C, 64, 00, 80, 18, 00, 00, 00, F0, 68, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 09, 00, 02, 00, 00, 00, 88, 00, 00, 80, 03, 00, 00, 00, 18, 07, 00, 80, 04, 00, 00, 00, 28, 0A, 00, 80, 05, 00, 00, 00, 78, 0B, 00, 80, 06, 00, 00, 00, 48, 1A, 00, 80, 07, 00, 00, 00, 18, 23, 00, 80, 08, 00, 00, 00, A8, 28, 00...
 
[+]

Entropy:
7.9940  (probably packed)

Remove pokerclient.exe - Powered by Reason Core Security