LoviVideo.exe

Lovi Video

iTVA LLC

The application LoviVideo.exe, “Lovi Video 1.4.0.0” by iTVA has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
iTVA LLC www.itva.ru  (signed by iTVA LLC)

Product:
Lovi Video

Description:
Lovi Video 1.4.0.0

Version:
1.4.0.0

MD5:
f99a400308af7535ee543df96baf9ed2

SHA-1:
89d97a4ef7d804049ee8e0c5a1c1f9021e548233

SHA-256:
7d73f3e3bb85937bb8fd3bc004261016e769a9bedc0a6b63cca3c0d96bf575c9

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/16/2024 10:00:02 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.iTVA.iTVAwwwitvaru (M)
16.2.12.18

File size:
4.4 MB (4,654,792 bytes)

Product version:
1.4.0.0

Copyright:
iTVA LLC,Zeyfman Genady

Trademarks:
Lovi Video, Internet Music & Video Downloader

Original file name:
LoviVideo.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\lovivideo\lovivideo.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/23/2012 3:00:00 AM

Valid to:
11/24/2014 2:59:59 AM

Subject:
CN=iTVA LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=iTVA LLC, L=St.Petersburg, S=Russian Federation, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
65EB772671D39CAF088B0D4A828C5E61

File PE Metadata
Compilation timestamp:
1/14/2013 3:12:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:EVOYrwno0RzJWyL96GC67UiWg4whErzmBjVt30NwH:Bo0GWfhE+BZt3VH

Entry address:
0x367F34

Entry point:
55, 8B, EC, 83, C4, EC, 33, C0, 89, 45, EC, B8, 6C, B3, 75, 00, E8, 0B, 3B, CA, FF, 33, C0, 55, 68, 9E, 80, 76, 00, 64, FF, 30, 64, 89, 20, E8, 14, 2F, FF, FF, 84, C0, 75, 11, A1, A4, 95, 77, 00, 8B, 00, E8, 70, C7, D8, FF, E9, 17, 01, 00, 00, E8, E6, CB, C9, FF, 85, C0, 74, 30, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 35, CC, C9, FF, 8B, 45, EC, BA, B8, 80, 76, 00, E8, E8, 04, CA, FF, 75, 14, B0, 01, E8, BB, 25, FF, FF, E8, BA, 26, FF, FF, 84, C0, 0F, 84, DE, 00, 00, 00, A1, 6C, 89, 77, 00, 50, 6A, 00, 68, 01...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3.4 MB (3,568,128 bytes)

Remove LoviVideo.exe - Powered by Reason Core Security