iLivid.exe

iLivid Download Manager

Bandoo Media, Inc

The application iLivid.exe by Bandoo Media, Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘iLivid’. This file is typically installed with the program iLivid by Bandoo Media Inc which is a potentially unwanted software program.
Publisher:
Bandoo Media Inc.  (signed by Bandoo Media, Inc)

Product:
iLivid Download Manager

Version:
5.0.0.3958

MD5:
b820cc1fac0adea66687ee13cc2cb114

SHA-1:
c7287245ec13bfabe9b6c6204fa9a08990bea172

SHA-256:
af68dc3157dafff9e83f88ffd9a45fac14d56659c47ce411f549ac44215046cf

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 10:45:42 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
17.3.11.1

File size:
6.5 MB (6,827,008 bytes)

Product version:
5.0.0.3958

Copyright:
Copyright (C) 2013 Bandoo Media Inc. All Rights Reserved.

Original file name:
iLivid.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\ilivid\ilivid.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
9/19/2012 3:00:00 AM

Valid to:
11/3/2014 1:59:59 AM

Subject:
CN="Bandoo Media, Inc", O="Bandoo Media, Inc", L=Panama City, S=Panama, C=PA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7A5189D163723107DEFA157662A4BAE4

File PE Metadata
Compilation timestamp:
9/9/2013 1:55:28 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x341AA8

Entry point:
E8, 5D, 07, 00, 00, E9, 1C, FD, FF, FF, 8B, 00, 81, 38, 63, 73, 6D, E0, 74, 03, 33, C0, C3, E9, E2, 07, 00, 00, 6A, 14, 68, E8, 27, 95, 00, E8, 40, 04, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF, 55, 14, EB, ED, 8B, 45, EC, 89, 45, E4, 8B, 45, E4, 8B, 00, 89, 45, E0, 8B, 45, E0, 81, 38, 63, 73, 6D, E0, 74, 0B, C7, 45, DC, 00, 00, 00, 00, 8B, 45, DC, C3, E8, 96, 07, 00, 00, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 36, 04, 00, 00, C2, 10, 00, 6A, 0C, 68, 08, 28, 95...
 
[+]

Entropy:
6.5830

Code size:
3.8 MB (4,019,200 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
iLivid

Command:
"C:\users\{user}\appdata\local\ilivid\ilivid.exe" -autorun


The file iLivid.exe has been discovered within the following program.

iLivid  by Bandoo Media Inc
iLivid is a video download manager for YouTube and other thrid-party video hosted web sites. iLivit includes a bundled includes a bundled VLC Player.
www.ilivid.com
66% remove it
 
Powered by Should I Remove It?

Remove iLivid.exe - Powered by Reason Core Security