I am not sure - Have been away from the malware arena while working on other things.
On the surface, it looks legitimate. We should ask users if they installed it when we run across them.

It does kind of throw up a red flag, though. Kinda like the Smitfraud infections that delivered bogus anti-spy app extortions.

I think this can be tracked to Neurosoft Corp.
Their aggressive affiliate program may open the door to abuses similar to what we have seen in the past with the Smitfraud and Vundo families of Trojans . . . .
Neurosoft Affiliate Program

This seems ripe for the same kind of extortionary tactics as we have seen before from the Trojans I noted above, among others.

PP