mp3voicerecordersetup.exe

MP3 Voice Recorder

prvsoft.com

The application mp3voicerecordersetup.exe, “MP3 Voice Recorder Setup ” has been detected as a potentially unwanted program by 8 anti-malware scanners. This is a self-extracting archive and installer, however the file is not signed with an authenticode signature from a trusted source. Part of RelevantKnowledge, a program typically installed via a software bundle (with the user's knowledge should they read the EULA) and will run in the background collecting and monitoring information about the user's behavior in order to build an extensive profile.
Publisher:
prvsoft.com

Product:
MP3 Voice Recorder

Description:
MP3 Voice Recorder Setup

Version:
1.1

MD5:
f727fdb7f8d51e79cbf0a62238363920

SHA-1:
ba91ec5437a8ed782ac7972597a7ac01125f554c

SHA-256:
34884f4f9c28f7c4ebda3b25be77c74355211029db4c871168ec96377d6c7f88

Scanner detections:
8 / 68

Status:
Potentially unwanted

Analysis date:
12/28/2024 7:58:44 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADSPY/NaviPromo.J
7.11.158.178

avast!
Win32:Relevant-S [PUP]
2014.9-140713

AVG
RelevantKnowledge
2015.0.3414

Baidu Antivirus
Adware.Win32.RKToolbar
4.0.3.14713

Fortinet FortiGate
Adware/Relevant
7/13/2014

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.6.1.0

Kaspersky
not-a-virus:WebToolbar.Win32.RK
14.0.0.3567

Sophos
Generic PUA LK
4.98

File size:
3.7 MB (3,827,399 bytes)

Product version:
1.1

Copyright:
Copyright (c) 2009, prvsoft.com

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
1/30/2013 10:21:56 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:C9jmmdmdv5Pu4xmNJm0TKqanOaediEjv+v5IJrJak9+HgIcUGMQfuIpm5pLUdpXz:yg5PuMatjv+vmVUCuILzXZ4yBL

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Entropy:
7.9894

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file mp3voicerecordersetup.exe has been seen being distributed by the following URL.

Remove mp3voicerecordersetup.exe - Powered by Reason Core Security