lvid_lvid.exe

Logitech Vid HD

Logitech Inc

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Logitech Inc.  (signed by Logitech Inc)

Product:
Logitech Vid HD

Description:
Logitech Vid HD Installer

Version:
7.2.0.7230

MD5:
89e9df923ef2595d6c2e760b38f8caa5

SHA-1:
515e20c05faf0219b14805165a3553edd04b23c2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 7:18:22 PM UTC  (today)

File size:
14.4 MB (15,058,768 bytes)

Product version:
7.2.0.7230

Copyright:
2003-2010 Logitech Inc.

Trademarks:
Logitech Vid, Logitech Vid logo, Logitech, Logitech Inc.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\Documents and Settings\{user}\Local settings\temp\lvid_lvid.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/6/2009 1:00:00 AM

Valid to:
10/20/2011 12:59:59 AM

Subject:
CN=Logitech Inc, OU=Corp Signing Cert, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Logitech Inc, L=Fremont, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4A1BCAE82193CB3FFE2AF2A5541B9C07

File PE Metadata
Compilation timestamp:
4/10/2010 1:19:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:FlZUbsnqbwe+VJ6ctEgHsJcsUjDoeN8hNGsWOvUWgVy:FksnqbF+KcrsJaXwGNnWgVy

Entry address:
0x33E9

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, 70, 85, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 80, 40, 00, 55, FF, 15, B0, 82, 40, 00, 6A, 08, A3, 78, 06, 47, 00, E8, 67, 27, 00, 00, 55, 68, B4, 02, 00, 00, A3, 90, 05, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 6C, 85, 40, 00, FF, 15, 80, 81, 40, 00, 68, 54, 85, 40, 00, 68, 80, 85, 46, 00, E8, 35, 26, 00, 00, FF, 15, B0, 80, 40, 00, 50, BF, A0, 10, 4C, 00, 57, E8, 23, 26, 00, 00...
 
[+]

Entropy:
7.9986

Packer / compiler:
Nullsoft install system v2.x

Code size:
25 KB (25,600 bytes)

The file lvid_lvid.exe has been seen being distributed by the following 26 URLs.

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_en&type=PROGRAM&Expires=1449464624&Signature=OE1AUaTTqdqkj5Pux6SV84GSF9lgPhE71jldJ3qbkrqVykfaKw5wJwrub1rwFhm8VYXdVDBdaRRnzyzLB0aqSReehTpnXyHvFz7i2L4RHKzNXn4Ldk~VBpTNnGhWS9KOiLAUtNC~fykfT3JEgBB8JGTgmolHHqVJi7gkZZlNiho_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_de&type=PROGRAM&Expires=1422679324&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=MT4qD65gSszIavIBBTQlnehlWulQgkR0GFs8npf8byDvCGNk9D6Aw-~LksZYoVupilx8VzkvFg8OH5KY79godS~PpePwyu531Sm1s-jE5kxjg9fQSMiQa7oVI6brk3BrjJEXmN3J3917LXppC5~C2RSZNzWsMuzehvjaS5-sOnY_&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_en&type=PROGRAM&Expires=1475923608&Signature=IHCUSFSFfKHw-fQxY0u-qssnehlrXECD8vd-qlCubETlIiG8JdYHFcq33308GTe-LaJ42wUyo92cVy8FuBkhCQI6CO2ci-xUyad1EiSMx-CHkeuJZVrrVzvq0FxhWmlEXKiEPrqJOcLBols09wjoZL8-s9BkVcNYYQHWiY6TDeE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_es&type=PROGRAM&Expires=1476531372&Signature=IuSulOoFKincMgdEdf03~cvjw6Gm3toaN3DrRrmwcpa2EA2rl6hnIn2GJHemNJpd6~TJAK7LI1GmDsVcmElxza4hg05XaKWhnUxRBTlSMX0gNB7~iulZ0dojLvo2yjEviMc~-RnyGV3OWZ2bNozYci9-Pgwg7PIiV76FBG9aoYI_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_en&type=PROGRAM&Expires=1440567386&Signature=UQ1fIK4J9jNoJRGP8boRLgqbHN3psGvLYhWp9Bw3JO4MMO1N0RJPfzD7iR6XpFXRbUrC9EoWOL8XKy8Jp-jx5rNoveKcHhlhFdm7y8ABLatusB9PgfGfemex-YQ-DY~jKtjrkXOUwyYa5uvtLkAz6ZVqF2jgHW3EMMHR4B5uI64_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_es&type=PROGRAM&Expires=1480861241&Signature=K5xlq3jWaejwaCN~d7X7s7IMRwb4QP1ZI6BBiTqWkQOyRqcWJBwXpFLZ1TwCZ0JU1mqevHjm-mZZryELcojUyu2D08ZK~cjJGvFzDqf8okcWbC5ocCWDi0nsTcaU7OL2LTOqoeelgguavlQploVmED2vuNWjWopBy0Df89h0hUI_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_es&type=PROGRAM&Expires=1476557153&Signature=iG4wQTQfdMDxKxb~Uh7WvM4WfwFHWjXypcKvKuuGDWghzZoqkbgT2Hc-4mRFNR2mspuyV9uj0Oq8eO9t8duWcXcwiogn1nygmLJuSTUft~6zJQF3h6iIOccHBbkk7wK1CxQHNjR~wKP8-2mfRpivhctlv-M-YlqwwDcOl41UCx4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_en&type=PROGRAM&Expires=1437899441&Signature=Y-YcSmy3oIf4A1lJqhakF3OqTdaTsRGixBpNOBrX2JZldFlA6udb6OdAaLB7ALsttfDjQikwfrazX~Ceq3m9dzhQ1G0uav4zxj53Jq2fIymR-XqalzdnGQAkQdTKIvbmDEu63XIFLH7Ir10ELfcWG2j-NgfosqzPb0M4NgiMY7w_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://logitech-louk.navisite.net/web/ftp/pub/video/.../LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_en&type=PROGRAM&Expires=1469029299&Signature=BIrh2b8tGQ2qigXYjK6KgTGiIczHwBQX5wucSUBbPk1kLUL93y6pkB~p-wgpLsTXscG4YYcQhTCePwWFUt2o2ZvkWwVUGOSgmiodCIlDHdmz8zs7bWzMlgxwwXNZ-~jxKzs~A-1U4NpCzECAuNIW3xKqZiGh9O4FZmf-Y2c1wc8_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_es&type=PROGRAM&Expires=1477742233&Signature=KZyLW8MMrJdOnTP8D4O4wFtrwx2C08x3vkZSjyEnZqzFObrFehv57rHj81CbRd4hCA-t-tGd86AI4EV1RSrvdalW5l8LjK6TjmH1h~aIoF1ODBsYIbjz7nUj~T~3YWzDuw58X3~rk7S7yIYw7hlC6y8Zzy~UHaf6rTK0SKxgLzw_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://gsf-cf.softonic.com/515/e20/.../file?SD_used=0&channel=WEB&fdh=no&id_file=107747&instance=softonic_br&type=PROGRAM&Expires=1474695936&Signature=iR87ViGbO2QGdcIZuGm4iXiKItR6EC6OBkCcd8wUHG3qSdOSjQF0BlNGvhXfndEBpl44Z7BubnKNSI4RMiJzctU06Z3rXBRMzoTUv3rH7Cm9Clzlk0LTj4BtXAUkiuveidnVdkyfMyVB6eEFwXvNBsEoUzT1VgqWinbgLdL8G-Q_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=LogitechVidSetup.exe

http://software-files-a.cnet.com/s/software/11/57/78/.../LogitechVidSetup.exe

http://files.downloadnow.com/s/software/11/57/78/.../LogitechVidSetup.exe