I made a short 2min video showing the DNS query and connection made to (ServerClient.XXX.com) everytime the software is launched. (https://www.youtube.com/watch?v=htuf9z2_PS8)
If you look here: http://i.imgur.com/DGZ1Z45.png you can see it is making connections to ServerClient.XXX.com.
>ping ServerClient.XXX.com
>Pinging www.XXX.com [141.0.173.173] with 32 bytes of data: Reply from 141.0.173.173: bytes=32 time=165ms TTL=46
If you open ServerClient.XXX dot com you will be redirected to porn. I am trying to give the company Sharkoon the benefit of doubt here, but I cannot come up with an idea why the software would do that.