livestreamproducer.exe

Livestream Producer

LIVESTREAM, LLC

This is a setup and installation application. It runs as a scheduled task under the Windows Task Scheduler triggered to execute each time a user logs in. The file has been seen being downloaded from cdn.livestream.com and multiple other hosts.
Publisher:
Livestream  (signed by LIVESTREAM, LLC)

Product:
Livestream Producer

Description:
This installer database contains the logic and data required to install Livestream Producer.

Version:
1.0.13

MD5:
624e6f567489ab23bfdeca8b3fd9cf25

SHA-1:
610921f6639f8dd65e7cd6b4c1abd86c6fc1e845

SHA-256:
4acd4edcc58e3e18521c0c7ca41223db6291f5894f810286a784371be2acf2b4

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/27/2024 10:25:33 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Sality.AT
7.11.30.172

File size:
19.7 MB (20,651,616 bytes)

Product version:
1.0.13

Copyright:
Copyright (C) Livestream

Original file name:
LivestreamProducer-1.0.13.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\livestreamproducer.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
10/13/2015 5:30:00 AM

Valid to:
11/12/2018 5:29:59 AM

Subject:
CN="LIVESTREAM, LLC", O="LIVESTREAM, LLC", L=Brooklyn, S=New York, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
4DFFCBF95CA3C8BAF50D2E2A7BB796D5

File PE Metadata
Compilation timestamp:
10/19/2011 6:11:07 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:bh5gGN1Q3Jk0gqnbnXqt3AQwkF7LJq59412IsfBO6Z8qU6GOjQoxasPB:b4GNcPgqbEAQwkF7Lgasf8KlJ

Entry address:
0x2D147

Entry point:
E8, 96, 91, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 53, FF, 75, 10, 8D, 4D, F0, E8, D8, FA, FF, FF, 33, DB, 39, 5D, 08, 75, 2E, E8, 45, 2B, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, CD, 2A, 00, 00, 83, C4, 14, 38, 5D, FC, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, C7, 00, 00, 00, 56, 8B, 75, 0C, 3B, F3, 75, 2E, E8, 0F, 2B, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 97, 2A, 00, 00, 83, C4, 14, 38, 5D, FC, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8...
 
[+]

Entropy:
7.9865  (probably packed)

Code size:
249.5 KB (255,488 bytes)

Scheduled Task
Task name:
C__Users_seimon_Downloads_LivestreamProducer.exe

Trigger:
Logon (Runs on logon)


The file livestreamproducer.exe has been seen being distributed by the following 2 URLs.

Scan livestreamproducer.exe - Powered by Reason Core Security