Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Additional versions
(Note, Web Cake publishes each variation of this file with the same version, but the hashes are unique.)
Relationships
Parent process
Related files
WebCakeDesktop.exe
WebCake Desktop by Web Cake (Signed)
Version: | 1.0.0.1 |
MD5: | 9eee55b742b65439a0a45bf895e5cea1 |
SHA1: | 3974af6435d0019aa8c84be925611f9287976cc4 |
SHA256: | 3e7eef2daa7a1085a9dce7550d7ed6912f043487c58f0f66ba85a73ec4cef42c |
Warning 17 antivirus scanners has detected malware.
Overview
webcakedesktop.exe is malware that executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The assembly utilizes the .NET run-time framework (which is required to be installed on the PC). The file is digitally signed by Web Cake which was issued by the VeriSign certificate authority (CA).
Details
File name: | webcakedesktop.exe |
Publisher: | WebCake LLC |
Product name: | WebCake Desktop |
Typical file path: | C:\users\user\appdata\roaming\webcake\webcakedesktop.exe |
File version: | 1.0.0.1 |
Size: | 46.77 KB (47,896 bytes) |
Build date: | 5/16/2013 7:19 PM |
Certificate |
Issued to: | Web Cake |
Authority (CA): | VeriSign |
Effective date: | Monday, April 8, 2013 |
Expiration date: | Thursday, April 9, 2015 |
Digital DNA |
File packed: | No |
Code language: | Microsoft Visual C# / Basic .NET |
.NET CLR: | Yes |
.NET NGENed: | No |
More details
Behaviors
Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'WebCake Desktop' → "C:\users\user\appdata\Roaming\WebCake\WebCakeDesktop.exe"
Malware detections
Based on 40+ industry antivirus scanners, 17 of them detected the following malware.
Antivirus engine | Engine version | Detection |
avast! |
8.0.1489.320 |
Win32:Webcake-A [Adw] |
AVG |
2014.0.3629 |
AdInject.WebCake |
BitDefender |
7.2 |
Adware.WebCake.A |
Comodo Internet Security |
16922 |
Application.Win32.Yontoo.wm |
Emsisoft Anti-Malware |
3.0.0.589 |
Adware.WebCake.A (B) |
ESET NOD32 |
7.8789 |
MSIL/WebCake.B |
F-Secure |
11.0.19100.45 |
Adware.WebCake.A |
G Data |
13.9.22 |
Adware.WebCake.A |
Ikarus |
T3.1.5.4.0 |
AdWare.WebCake |
Malwarebytes |
1.75.0.1 |
Adware.WebCake |
Microsoft Security Essentials |
1.9800.0 |
Adware:Win32/WebCake |
eScan by MicroWorld |
12.0.250.0 |
Adware.WebCake.A |
nProtect |
2013-09-11.03 |
Adware.WebCake.C |
Panda Antivirus |
10.0.3.5 |
Adware/WebCake |
PC Tools |
9.0.0.2 |
SecurityRisk.WebCake |
Symantec |
20131.1.5.61 |
WebCake |
VIPRE Antivirus |
21394 |
Yontoo (fs) |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00747064% | |
Kernel CPU: | 0.00332988% | |
User CPU: | 0.00414076% | |
Kernel CPU time: | 746,643 ms/min | |
CPU cycles: | 73,084/sec | |
Context switches: | 2/sec | |
Memory |
Private memory: | 21.19 MB | |
Private (maximum): | 20.72 MB | |
Private (minimum): | 11.13 MB | |
Non-paged memory: | 21.19 MB | |
Virtual memory: | 161.06 MB | |
Virtual memory (peak): | 168.63 MB | |
Working set: | 12.94 MB | |
Working set (peak): | 19.85 MB | |
Page faults: | 10,256/min | |
I/O |
I/O read transfer: | 1.23 KB/sec | |
I/O read operations: | 1/sec | |
I/O write transfer: | 113 Bytes/sec | |
I/O write operations: | 1/sec | |
I/O other transfer: | 113 Bytes/sec | |
I/O other operations: | 3/sec | |
Resource allocations |
Threads: | 13 | |
Handles: | 681 | |
GUI GDI count: | 5 | |
GUI GDI peak: | 4 | |
GUI USER count: | 1 | |
GUI USER peak: | 1 | |
Process properties
Integrety level: | Medium |
Platform: | 32-bit |
Command lines: |
- "C:\users\user\appdata\roaming\webcake\webcakedesktop.exe"
- "C:\Documents and Settings\user\Application data\webcake\webcakedesktop.exe"
- "C:\documents and settings\aa\datos de programa\webcake\webcakedesktop.exe"
|
Owner: | User |
Parent process: | explorer.exe (Windows Explorer by Microsoft Corporation) |
Threads
Averages
WebCakeDesktop.exe (main module) |
Total CPU: | 0.04926854% | |
Kernel CPU: | 0.00720751% | |
User CPU: | 0.04206103% | |
CPU cycles: | 1,379,045/sec | |
Context switches: | 1/sec | |
Memory: | 64 KB | |
mscorwks.dll |
Total CPU: | 0.02364722% | |
Kernel CPU: | 0.00043455% | |
User CPU: | 0.02321267% | |
CPU cycles: | 683,892/sec | |
Memory: | 5.66 MB | |
wow64cpu.dll |
Total CPU: | 0.00126477% | |
Kernel CPU: | 0.00126477% | |
User CPU: | 0.00000000% | |
CPU cycles: | 1,713/sec | |
Memory: | 32 KB | |
ntdll.dll |
Total CPU: | 0.00081922% | |
Kernel CPU: | 0.00081922% | |
User CPU: | 0.00000000% | |
CPU cycles: | 10,684/sec | |
Memory: | 1.23 MB | |
mscoree.dll (Microsoft .NET Framework by Microsoft) |
Total CPU: | 0.00007925% | |
Kernel CPU: | 0.00005315% | |
User CPU: | 0.00002609% | |
Memory: | 296 KB | |
rtutils.dll |
Total CPU: | 0.00003339% | |
Kernel CPU: | 0.00003339% | |
User CPU: | 0.00000000% | |
CPU cycles: | 126/sec | |
Memory: | 52 KB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate |
34.04% |
|
Microsoft Windows XP |
14.89% |
|
Windows 8 |
12.77% |
|
Windows Vista Home Premium |
12.77% |
|
Windows 7 Home Premium |
6.38% |
|
Windows 8 Pro |
6.38% |
|
Windows 7 Professional |
4.26% |
|
Windows 8 Single Language |
4.26% |
|
Windows 8 Enterprise |
4.26% |
|
Distribution by country
United States installs about 19.15% of WebCake Desktop.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Dell |
21.05% |
|
Hewlett-Packard |
21.05% |
|
ASUS |
17.54% |
|
Toshiba |
14.04% |
|
Acer |
10.53% |
|
American Megatrends |
8.77% |
|
MSI |
7.02% |
|