Photo Pos Pro 3.exe

Photo Pos Pro

PowerOfSOftware Ltd.

The application Photo Pos Pro 3.exe by PowerOfSOftware has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
PowerOfSOftware Ltd.  (signed and verified)

Product:
Photo Pos Pro

Version:
3.1.2.0

MD5:
4a76c1d48a0bf5ce839f27755cb44d35

SHA-1:
d064a0f30afd6c1e81f6cf43d99c9b53dff1175e

SHA-256:
c7068b3dd86d192f91b76a4c13f0900411404000ed9bd9cb1f9e3c01d22f4c6e

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/25/2024 5:00:08 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PowerOfS (M)
16.8.1.15

File size:
8.1 MB (8,448,272 bytes)

Product version:
3.1.2.0

Copyright:
Copyright © 2003 - 2015

Original file name:
Photo Pos Pro 3.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\photo pos pro 3\photo pos pro 3.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/6/2016 4:00:00 PM

Valid to:
3/7/2017 3:59:59 PM

Subject:
CN=PowerOfSOftware Ltd., O=PowerOfSOftware Ltd., L=Rison Le-Ziyyon, S=ISRAEL, C=IL

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2E7C7CCEE60DA43C50ECEC58F5F68B12

File PE Metadata
Compilation timestamp:
7/10/2016 6:09:19 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
196608:aGiMiZnpB04or2E2vAQAod0kn/kgVPm/vv1nxyu:UpmrNiAQAod0k/8f1nAu

Entry address:
0x7FCDDE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 70, 00, 00, 80, 10, 00, 00, 00, 88, 00, 00, 80, 18, 00, 00, 00, A0, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 06, 00, 02, 00, 00, 00, B8, 00, 00, 80, 03, 00, 00, 00, D0, 00, 00, 80, 04, 00, 00, 00, E8, 00, 00, 80, 05, 00, 00, 00, 00, 01...
 
[+]

Entropy:
7.8556

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
8 MB (8,367,616 bytes)

Remove Photo Pos Pro 3.exe - Powered by Reason Core Security