merchandise pack 1.0 setup.exe

PowerOfSOftware Ltd.

The application merchandise pack 1.0 setup.exe by PowerOfSOftware has been detected as a potentially unwanted program by 4 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software. Part of RelevantKnowledge, a program typically installed via a software bundle (with the user's knowledge should they read the EULA) and will run in the background collecting and monitoring information about the user's behavior in order to build an extensive profile.
Publisher:
PowerOfSOftware Ltd.  (signed and verified)

MD5:
0ea42d6ce50e81274d9fe02c188995f9

SHA-1:
ec57c9dddfdb92e86b5f3b297ed4e07178520a95

SHA-256:
314674ffd53476558ee14bdcb154880fe89614d7b45a53822c1bb8abb5f0477c

Scanner detections:
4 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 4:20:29 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Adware.Downware.2013
9.0.1.0154

Qihoo 360 Security
HEUR/Malware.QVM07.Gen
1.0.0.1015

Reason Heuristics
PUP.Installer.PowerOfSOftware.Z
14.7.27.14

SUPERAntiSpyware
Adware.RelevantKnowledge
10566

File size:
2.4 MB (2,513,528 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/14/2012 5:00:00 PM

Valid to:
11/15/2013 4:59:59 PM

Subject:
CN=PowerOfSOftware Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PowerOfSOftware Ltd., L=Rison Le-Ziyyon, S=ISRAEL, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
71932DC939C36251EE6F4F64D0086F55

File PE Metadata
Compilation timestamp:
7/31/2010 8:32:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:/+fqyf100dH7uHkgpqrQmiQMQI3vwZjlude2Hs89S4ny7GUMCdDC:/+fG05gkgwrQmi7QDl2HhS4nse

Entry address:
0x29432

Entry point:
55, 8B, EC, 6A, FF, 68, 88, C8, 42, 00, 68, C0, 8C, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 38, C1, 42, 00, 33, D2, 8A, D4, 89, 15, 20, 39, 48, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 1C, 39, 48, 00, C1, E1, 08, 03, CA, 89, 0D, 18, 39, 48, 00, C1, E8, 10, A3, 14, 39, 48, 00, 33, F6, 56, E8, E0, 00, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 33, 14, 00, 00, FF, 15, 0C, C1, 42, 00, A3, 20, 3E, 48, 00, E8...
 
[+]

Entropy:
7.9691

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
171 KB (175,104 bytes)

Remove merchandise pack 1.0 setup.exe - Powered by Reason Core Security