valentines frames pack setup 1.0.exe

PowerOfSOftware Ltd.

The application valentines frames pack setup 1.0.exe by PowerOfSOftware has been detected as a potentially unwanted program by 3 anti-malware scanners. Part of RelevantKnowledge, a program typically installed via a software bundle (with the user's knowledge should they read the EULA) and will run in the background collecting and monitoring information about the user's behavior in order to build an extensive profile.
Publisher:
PowerOfSOftware Ltd.  (signed and verified)

MD5:
34b09fa912f1227a42fd6653d0b67a58

SHA-1:
efd6b04d0abd745c40ff5950b6cf2e6fc4591cf6

SHA-256:
0654959786399bc0da837f690cec322d6ac01e54fbcca352b55be8f8e9b35a60

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
4/7/2025 1:27:36 AM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
Win32.AdWare
t3scan.2.2.29

Reason Heuristics
PUP.Installer.PowerOfSOftware.FF
14.7.27.14

SUPERAntiSpyware
Adware.RelevantKnowledge
10566

File size:
2.5 MB (2,624,736 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/14/2012 5:00:00 PM

Valid to:
11/15/2013 4:59:59 PM

Subject:
CN=PowerOfSOftware Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PowerOfSOftware Ltd., L=Rison Le-Ziyyon, S=ISRAEL, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
71932DC939C36251EE6F4F64D0086F55

File PE Metadata
Compilation timestamp:
7/31/2010 8:32:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:A+fqSXYKcE6vUdZK82cM9nIQb+A5sH9QEE9Lq6LE6f12vuFQ4qeA6Bi20Dj:A+fxYKc9sdql5sdQP9fHd6BleA4Zi

Entry address:
0x29432

Entry point:
55, 8B, EC, 6A, FF, 68, 88, C8, 42, 00, 68, C0, 8C, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 38, C1, 42, 00, 33, D2, 8A, D4, 89, 15, 20, 39, 48, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 1C, 39, 48, 00, C1, E1, 08, 03, CA, 89, 0D, 18, 39, 48, 00, C1, E8, 10, A3, 14, 39, 48, 00, 33, F6, 56, E8, E0, 00, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 33, 14, 00, 00, FF, 15, 0C, C1, 42, 00, A3, 20, 3E, 48, 00, E8...
 
[+]

Entropy:
7.9786

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
171 KB (175,104 bytes)

Remove valentines frames pack setup 1.0.exe - Powered by Reason Core Security