ilivid.exe

The application ilivid.exe has been detected as a potentially unwanted program by 2 anti-malware scanners. This file is typically installed with the program iLivid by Bandoo Media Inc which is a potentially unwanted software program. The file has been seen being downloaded from dc261.4shared.com and multiple other hosts.
MD5:
a485b5376a7bd86e17da042a64ee3e86

SHA-1:
8a6c63a487d3d45170373f6b9f147956417ad2eb

SHA-256:
0697d22b4ad3afe85924dfad1ab9339b392b355735482b76ff00acf26e781b71

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
12/27/2024 8:54:28 PM UTC  (today)

Scan engine
Detection
Engine version

Boost by Reason
Optional.G
188163

Reason Heuristics
PUP.Win.Reputation
15.4.25.11

File size:
1.9 MB (2,033,152 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ilivid\ilivid.exe

File PE Metadata
Compilation timestamp:
8/5/2011 9:52:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
24576:aYd3DJxz9S+kEsJrT2V5j72B9eK3E9yYGuMl8lnEutTdUfaD3Xg+UJ+tHaZh2:aA95c+kEs1ah6YHMoDT+fkHgHWE2

Entry address:
0x12A0

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, 20, EC, 5E, 00, E8, 98, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 8B, 0D, 48, EC, 5E, 00, 89, E5, 5D, FF, E1, 8D, 74, 26, 00, 55, 8B, 0D, 38, EC, 5E, 00, 89, E5, 5D, FF, E1, 90, 90, 90, 90, 55, 89, E5, 83, EC, 18, C7, 04, 24, 34, D7, 51, 00, E8, 9A, 18, 0A, 00, 52, 85, C0, 74, 65, C7, 44, 24, 04, 47, D7, 51, 00, 89, 04, 24, E8, 8D, 18, 0A, 00, 83, EC, 08, 85, C0, 74, 11, C7, 44, 24, 04, 08, 50, 5E, 00, C7, 04, 24, 00, 10, 5D, 00, FF, D0, 8B...
 
[+]

Entropy:
7.0467

Packer / compiler:
MingWin32

Code size:
1.1 MB (1,138,176 bytes)

The file ilivid.exe has been discovered within the following programs.

iLivid  by Bandoo Media Inc
iLivid is a video download manager for YouTube and other thrid-party video hosted web sites. iLivit includes a bundled includes a bundled VLC Player.
www.ilivid.com
66% remove it
 
Powered by Should I Remove It?

The file ilivid.exe has been seen being distributed by the following 2 URLs.

http://dc261.4shared.com/download/.../ilivid.exe

Remove ilivid.exe - Powered by Reason Core Security