setupcasino_15bfab.exe

Playtech Software Installer

Playtech Software Limited

This is a setup and installation application. This is the uninstaller utility registered in the Windows Control Panel for the program Parimatch. The file has been seen being downloaded from banner.parimatch.com and multiple other hosts.
Publisher:
Playtech  (signed by Playtech Software Limited)

Product:
Playtech Software Installer

Description:
Parimatch

Version:
11.2.38.0

MD5:
81ab0decde3b9ab5e99db01cab49cced

SHA-1:
c968ce95bb54ad31beaa31ffd7e7254ff9612c29

SHA-256:
7d58ca241c7d35aaaf6408066c5fb2a57f00d1c2e467d57d5a393c3eb7addfa2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 2:33:09 AM UTC  (today)

File size:
233.8 KB (239,416 bytes)

Product version:
11.2.38.0

Copyright:
Copyright (C) 2001-2009 Playtech

Original file name:
CasinoDownloader2.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/22/2012 3:00:00 AM

Valid to:
10/27/2015 1:59:59 AM

Subject:
CN=Playtech Software Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Playtech Software Limited, L=Douglas, S=Douglas, C=IM

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7584CAA2377ED24D26D91034E6DE0EBB

File PE Metadata
Compilation timestamp:
12/13/2012 4:21:50 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:EjvW/yjqTTO+USXSL5WquIed8jhbHjjfnnWM1sZTLfuEnmZ:EjQBTTO+USClWquIed81HjjPJqHVA

Entry address:
0x1000

Entry point:
B8, C0, AA, 53, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 6F, 09, A0, BE, C1, CE, D2, B7, 25, 23, 96, AC, C2, 69, 7B, 59, 1D, FC, 83, E1, 6C, B8, CB, 8C, 64, 75, 6C, F6, 16, AF, D7, 70, 60, A7, 2D, 00, 97, AB, 02, A6, 55, 38, CC, CF, 3D, 74, 80, C9, 5A, AE, 4C, D9, 50, 88, BF, 6E, C9, BA, 37, A2, E4, 41, B7, D2, D4, 24, DB, A4, ED, B7, 0C, 67, A0, C1, 0D, 98, BC, 23, CF, 20, F1, 43, 75, 4D, 74, D5, E2, B0, 6B, 97, C2, 03, 44...
 
[+]

Packer / compiler:
PECompact v2

Code size:
335.5 KB (343,552 bytes)

Program Uninstaller
Program name:
Parimatch

Uninstall string:
"C:\Poker\Parimatch\_SetupCasino_15bfab.exe" /uninstall


The file setupcasino_15bfab.exe has been seen being distributed by the following 2 URLs.

Scan setupcasino_15bfab.exe - Powered by Reason Core Security